1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

Resolved Meaning of Dump

Discussion in 'Legacy Windows' started by Neelaka, 2009/05/22.

  1. 2009/05/22
    Neelaka

    Neelaka Inactive Thread Starter

    Joined:
    2009/05/22
    Messages:
    7
    Likes Received:
    0
    Hi,

    I am having trouble understanding what this dump means. Please help.

    Thank you

    ---

    Loading dump file c.dmp
    ----- User Mini Dump Analysis

    MINIDUMP_HEADER:
    Version A793 (5128)
    NumberOfStreams 8
    Flags 0

    Streams:
    Stream 0: type ThreadListStream (3), size 00000094, RVA 00000178
    Stream 1: type ModuleListStream (4), size 00001228, RVA 0000020C
    43 modules
    RVA 00000210, 00400000 - 004ca000: 'C:\Adept\CopperLevel_PCI\CopperLevel.exe'
    RVA 0000027C, 77f80000 - 77ffb000: 'C:\WINNT\system32\ntdll.dll'
    RVA 000002E8, 10000000 - 100be000: 'C:\WINNT\system32\itxco10.dll'
    RVA 00000354, 00230000 - 0023d000: 'C:\WINNT\system32\Itxdrv10.dll'
    RVA 000003C0, 78000000 - 78046000: 'C:\WINNT\system32\msvcrt.dll'
    RVA 0000042C, 77e80000 - 77f36000: 'C:\WINNT\system32\kernel32.dll'
    RVA 00000498, 77e10000 - 77e75000: 'C:\WINNT\system32\user32.dll'
    RVA 00000504, 77f40000 - 77f7c000: 'C:\WINNT\system32\gdi32.dll'
    RVA 00000570, 77db0000 - 77e0d000: 'C:\WINNT\system32\advapi32.dll'
    RVA 000005DC, 77d30000 - 77da1000: 'C:\WINNT\system32\rpcrt4.dll'
    RVA 00000648, 00240000 - 0025c000: 'C:\WINNT\system32\Itxdsp10.dll'
    RVA 000006B4, 6a8f0000 - 6a910000: 'C:\WINNT\system32\msvfw32.dll'
    RVA 00000720, 77570000 - 775a0000: 'C:\WINNT\system32\winmm.dll'
    RVA 0000078C, 782f0000 - 78536000: 'C:\WINNT\system32\shell32.dll'
    RVA 000007F8, 70bd0000 - 70c34000: 'C:\WINNT\system32\shlwapi.dll'
    RVA 00000864, 71780000 - 7180a000: 'C:\WINNT\system32\comctl32.dll'
    RVA 000008D0, 00260000 - 0026c000: 'C:\WINNT\system32\Hiffl32.dll'
    RVA 0000093C, 00270000 - 00279000: 'C:\WINNT\system32\Itxavi10.dll'
    RVA 000009A8, 74870000 - 74886000: 'C:\WINNT\system32\avifil32.dll'
    RVA 00000A14, 77a50000 - 77b45000: 'C:\WINNT\system32\ole32.dll'
    RVA 00000A80, 77410000 - 77423000: 'C:\WINNT\system32\msacm32.dll'
    RVA 00000AEC, 77820000 - 77827000: 'C:\WINNT\system32\version.dll'
    RVA 00000B58, 759b0000 - 759b6000: 'C:\WINNT\system32\lz32.dll'
    RVA 00000BC4, 41200000 - 41265000: 'C:\WINNT\system32\mvtools.dll'
    RVA 00000C30, 41000000 - 4100f000: 'C:\WINNT\system32\itimgutl.dll'
    RVA 00000C9C, 779b0000 - 77a4b000: 'C:\WINNT\system32\oleaut32.dll'
    RVA 00000D08, 00280000 - 00288000: 'C:\WINNT\system32\CorLic.dll'
    RVA 00000D74, 47000000 - 4700b000: 'C:\WINNT\system32\itlicdrv.dll'
    RVA 00000DE0, 41100000 - 41112000: 'C:\MVTools\bin\itimgmgr.dll'
    RVA 00000E4C, 6e100000 - 6e3e2000: 'C:\Adept\CopperLevel_PCI\ifc18.dll'
    RVA 00000EB8, 60000000 - 60058000: 'C:\WINNT\system32\ijl15.dll'
    RVA 00000F24, 00290000 - 002a8000: 'C:\Adept\CopperLevel_PCI\ifcdrv18.dll'
    RVA 00000F90, 6df00000 - 6df1d000: 'C:\Adept\CopperLevel_PCI\ifcdsp18.dll'
    RVA 00000FFC, 002b0000 - 002df000: 'C:\WINNT\system32\Axdrv32.dll'
    RVA 00001068, 76b30000 - 76b6d000: 'C:\WINNT\system32\comdlg32.dll'
    RVA 000010D4, 77800000 - 7781e000: 'C:\WINNT\system32\winspool.drv'
    RVA 00001140, 76620000 - 76630000: 'C:\WINNT\system32\mpr.dll'
    RVA 000011AC, 752f0000 - 7530f000: 'C:\WINNT\system32\oledlg.dll'
    RVA 00001218, 51000000 - 5104b000: 'C:\WINNT\system32\ddraw.dll'
    RVA 00001284, 728a0000 - 728a6000: 'C:\WINNT\system32\dciman32.dll'
    RVA 000012F0, 01540000 - 01565000: 'C:\WINNT\system32\Axda22p.dll'
    RVA 0000135C, 59a60000 - 59b01000: 'C:\Adept\CopperLevel_PCI\dbghelp.dll'
    RVA 000013C8, 690a0000 - 690ab000: 'C:\WINNT\system32\psapi.dll'
    Stream 2: type MemoryListStream (5), size 00000054, RVA 000042F2
    5 memory ranges
    range# Address Size
    0 77f83793 00000100
    1 77f96d7b 00000100
    2 0012f878 00000788
    3 01e2fafc 00000504
    4 01f2e8c4 0000173c
    Stream 3: type ExceptionStream (6), size 000000A8, RVA 000000D0
    Stream 4: type SystemInfoStream (7), size 00000038, RVA 00000080
    Stream 5: type ??? (15), size 00000018, RVA 000000B8
    Stream 6: type UnusedStream (0), size 00000000, RVA 00000000
    Stream 7: type UnusedStream (0), size 00000000, RVA 00000000


    Windows 2000 Version 2195 (Service Pack 3) UP Free x86 compatible
    Debug session time: Mon May 18 12:19:41 2009
    System Uptime: not available
    The call to LoadLibrary(ext) failed with error 2.
    Please check your debugger configuration and/or network access
    The call to LoadLibrary(uext) failed with error 2.
    Please check your debugger configuration and/or network access
    No export peb found
    Finished dump check

    ---

    Any ideas?

    Thank you
     
  2. 2009/05/22
    Arie

    Arie Administrator Administrator Staff

    Joined:
    2001/12/27
    Messages:
    15,174
    Likes Received:
    412
    Arie,
    #2

  3. to hide this advert.

  4. 2009/05/26
    Neelaka

    Neelaka Inactive Thread Starter

    Joined:
    2009/05/22
    Messages:
    7
    Likes Received:
    0
    Thank you
     
  5. 2009/06/09
    Neelaka

    Neelaka Inactive Thread Starter

    Joined:
    2009/05/22
    Messages:
    7
    Likes Received:
    0
    Dump data

    Hi,

    I have attached the dump data as you instructed. Please advice on where the problem is caused.

    Thank you


    ---


    Opened log file 'c:debuglog.txt'

    Microsoft (R) Windows Debugger Version 6.11.0001.404 X86
    Copyright (c) Microsoft Corporation. All rights reserved.


    Loading Dump File [C:\Adept\CopperLevel_PCI\CopperLevel2009.06.09_17.01.50.dmp]
    User Mini Dump File: Only registers, stack and portions of memory are available

    Symbol search path is: SRV*c:\symbols*http://msdl.microsoft.com/download/symbols
    Executable search path is: C:\WINNT;C:\WINNT\system32;C:\WINNT\system32\drivers
    Windows 2000 Version 2195 (Service Pack 3) UP Free x86 compatible
    Product: WinNt
    Machine Name:
    Debug session time: Tue Jun 9 17:03:14.000 2009 (GMT+10)
    System Uptime: not available
    Process Uptime: 0 days 2:03:21.000
    ...........................................
    This dump file has an exception of interest stored in it.
    The stored exception information can be accessed via .ecxr.
    (444.460): Access violation - code c0000005 (first/second chance not available)
    eax=00130110 ebx=00167e18 ecx=00000066 edx=00000000 esi=00167df0 edi=00167e48
    eip=77f96dfb esp=01e2e8c8 ebp=01e2ebc0 iopl=0 nv up ei pl zr na pe nc
    cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246
    ntdll!ZwGetContextThread+0xb:
    77f96dfb c20800 ret 8
    0:001> !analyze -v;r;kv;lmtn;.logclose;q
    *******************************************************************************
    * *
    * Exception Analysis *
    * *
    *******************************************************************************

    *** ERROR: Symbol file could not be found. Defaulted to export symbols for Itxdrv10.dll -
    *** WARNING: Unable to verify checksum for Itxdsp10.dll
    *** ERROR: Symbol file could not be found. Defaulted to export symbols for Itxdsp10.dll -
    *** ERROR: Symbol file could not be found. Defaulted to export symbols for Hiffl32.dll -
    *** WARNING: Unable to verify checksum for Itxavi10.dll
    *** ERROR: Symbol file could not be found. Defaulted to export symbols for Itxavi10.dll -
    *** WARNING: Unable to verify checksum for CorLic.dll
    *** ERROR: Symbol file could not be found. Defaulted to export symbols for CorLic.dll -
    *** WARNING: Unable to verify checksum for ifcdrv18.dll
    *** ERROR: Symbol file could not be found. Defaulted to export symbols for ifcdrv18.dll -
    *** WARNING: Unable to verify checksum for Axdrv32.dll
    *** ERROR: Symbol file could not be found. Defaulted to export symbols for Axdrv32.dll -
    *** WARNING: Unable to verify checksum for Axda22p.dll
    *** ERROR: Symbol file could not be found. Defaulted to export symbols for Axda22p.dll -
    *** ERROR: Symbol file could not be found. Defaulted to export symbols for itxco10.dll -
    *** WARNING: Unable to verify checksum for itimgutl.dll
    *** ERROR: Symbol file could not be found. Defaulted to export symbols for itimgutl.dll -
    *** WARNING: Unable to verify checksum for itimgmgr.dll
    *** ERROR: Symbol file could not be found. Defaulted to export symbols for itimgmgr.dll -
    *** WARNING: Unable to verify checksum for itlicdrv.dll
    *** ERROR: Symbol file could not be found. Defaulted to export symbols for itlicdrv.dll -
    *** ERROR: Symbol file could not be found. Defaulted to export symbols for ddraw.dll -
    *** ERROR: Symbol file could not be found. Defaulted to export symbols for ijl15.dll -
    *** WARNING: Unable to verify checksum for ifcdsp18.dll
    *** ERROR: Symbol file could not be found. Defaulted to export symbols for ifcdsp18.dll -
    *** WARNING: Unable to verify checksum for ifc18.dll
    *** ERROR: Symbol file could not be found. Defaulted to export symbols for ifc18.dll -
    *** ERROR: Symbol file could not be found. Defaulted to export symbols for comctl32.dll -
    *************************************************************************
    *** ***
    *** ***
    *** Your debugger is not using the correct symbols ***
    *** ***
    *** In order for this command to work properly, your symbol path ***
    *** must point to .pdb files that have full type information. ***
    *** ***
    *** Certain .pdb files (such as the public OS symbols) do not ***
    *** contain the required information. Contact the group that ***
    *** provided you with these symbols if you need this command to ***
    *** work. ***
    *** ***
    *** Type referenced: IMAGE_NT_HEADERS32 ***
    *** ***
    *************************************************************************
    *************************************************************************
    *** ***
    *** ***
    *** Your debugger is not using the correct symbols ***
    *** ***
    *** In order for this command to work properly, your symbol path ***
    *** must point to .pdb files that have full type information. ***
    *** ***
    *** Certain .pdb files (such as the public OS symbols) do not ***
    *** contain the required information. Contact the group that ***
    *** provided you with these symbols if you need this command to ***
    *** work. ***
    *** ***
    *** Type referenced: kernel32!pNlsUserInfo ***
    *** ***
    *************************************************************************
    *************************************************************************
    *** ***
    *** ***
    *** Your debugger is not using the correct symbols ***
    *** ***
    *** In order for this command to work properly, your symbol path ***
    *** must point to .pdb files that have full type information. ***
    *** ***
    *** Certain .pdb files (such as the public OS symbols) do not ***
    *** contain the required information. Contact the group that ***
    *** provided you with these symbols if you need this command to ***
    *** work. ***
    *** ***
    *** Type referenced: kernel32!pNlsUserInfo ***
    *** ***
    *************************************************************************

    FAULTING_IP:
    mvtools!mvt_smooth+157
    4122a697 8b4604 mov eax,dword ptr [esi+4]

    EXCEPTION_RECORD: ffffffff -- (.exr 0xffffffffffffffff)
    .exr 0xffffffffffffffff
    ExceptionAddress: 4122a697 (mvtools!mvt_smooth+0x00000157)
    ExceptionCode: c0000005 (Access violation)
    ExceptionFlags: 00000000
    NumberParameters: 2
    Parameter[0]: 00000000
    Parameter[1]: 01619000
    Attempt to read from address 01619000

    PROCESS_NAME: CopperLevel.exe

    ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at "0x%08lx" referenced memory at "0x%08lx ". The memory could not be "%s ".

    EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at "0x%08lx" referenced memory at "0x%08lx ". The memory could not be "%s ".

    EXCEPTION_PARAMETER1: 00000000

    EXCEPTION_PARAMETER2: 01619000

    READ_ADDRESS: 01619000

    FOLLOWUP_IP:
    mvtools!mvt_smooth+157
    4122a697 8b4604 mov eax,dword ptr [esi+4]

    ADDITIONAL_DEBUG_TEXT: Enable Pageheap/AutoVerifer

    FAULTING_THREAD: 00000460

    DEFAULT_BUCKET_ID: HEAP_CORRUPTION

    PRIMARY_PROBLEM_CLASS: HEAP_CORRUPTION

    BUGCHECK_STR: APPLICATION_FAULT_HEAP_CORRUPTION_INVALID_POINTER_READ

    LAST_CONTROL_TRANSFER: from 004036f9 to 4122a697

    STACK_TEXT:
    WARNING: Stack unwind information not available. Following frames may be wrong.
    01e2fbc0 004036f9 01595dc0 003afdd8 41dfeca2 mvtools!mvt_smooth+0x157
    01e2fc28 77412c93 01595dc0 003ad0d8 0000010a CopperLevel+0x36f9
    01e2fc8c 77fcb650 77fcb516 77fcb52d 00000020 msacm32!threadInitialize+0x19
    01e2feec 00408f25 01534d78 41dfe802 00000128 ntdll!RtlAllocateHeap+0x582
    01e2ff74 0044ac62 0012f774 41dfe8da 00000128 CopperLevel+0x8f25
    01e2ffac 0044ad07 00030001 77e887dd 01536930 CopperLevel+0x4ac62
    01e2ffec 00000000 0044ac88 01536930 00000000 CopperLevel+0x4ad07


    STACK_COMMAND: ~1s; .ecxr ; kb

    SYMBOL_NAME: heap_corruption!heap_corruption

    FOLLOWUP_NAME: MachineOwner

    MODULE_NAME: heap_corruption

    IMAGE_NAME: heap_corruption

    DEBUG_FLR_IMAGE_TIMESTAMP: 0

    FAILURE_BUCKET_ID: HEAP_CORRUPTION_c0000005_heap_corruption!heap_corruption

    BUCKET_ID: APPLICATION_FAULT_HEAP_CORRUPTION_INVALID_POINTER_READ_heap_corruption!heap_corruption

    WATSON_STAGEONE_URL: http://watson.microsoft.com/StageOn...1_0/3d51892b/c0000005/0002a697.htm?Retriage=1

    Followup: MachineOwner
    ---------

    eax=00130110 ebx=00167e18 ecx=00000066 edx=00000000 esi=00167df0 edi=00167e48
    eip=77f96dfb esp=01e2e8c8 ebp=01e2ebc0 iopl=0 nv up ei pl zr na pe nc
    cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246
    ntdll!ZwGetContextThread+0xb:
    77f96dfb c20800 ret 8
    ChildEBP RetAddr Args to Child
    01e2e950 59a8ddb1 77e87738 00000001 00130178 ntdll!ZwGetContextThread+0xb (FPO: [2,0,0])
    01e2ebc0 00000000 00000000 00000000 00000000 dbghelp!Win32LiveSystemProvider::OpenMapping+0x1b9 (FPO: [5,75,4])
    start end module name
    00230000 0023d000 Itxdrv10 Itxdrv10.dll Tue Dec 04 10:32:38 2001 (3C0C0B96)
    00240000 0025c000 Itxdsp10 Itxdsp10.dll Thu Mar 16 05:58:12 2000 (38CFDD44)
    00260000 0026c000 Hiffl32 Hiffl32.dll Wed Mar 22 09:33:04 1995 (2F6F5420)
    00270000 00279000 Itxavi10 Itxavi10.dll Thu Jun 17 01:02:17 1999 (3767BC79)
    00280000 00288000 CorLic CorLic.dll Thu Aug 08 06:31:26 2002 (3D51839E)
    00290000 002a8000 ifcdrv18 ifcdrv18.dll Fri Mar 22 03:43:40 2002 (3C9A0DBC)
    002b0000 002df000 Axdrv32 Axdrv32.dll Sat Nov 24 06:16:36 2001 (3BFEA094)
    00400000 004ca000 CopperLevel CopperLevel.exe Tue May 29 16:42:22 2007 (465BCB4E)
    01540000 01565000 Axda22p Axda22p.dll Thu Nov 22 11:50:56 2001 (3BFC4BF0)
    10000000 100be000 itxco10 itxco10.dll Wed Mar 31 00:41:46 2004 (4069872A)
    41000000 4100f000 itimgutl itimgutl.dll Thu Aug 08 06:33:39 2002 (3D518423)
    41100000 41112000 itimgmgr itimgmgr.dll Wed Jul 24 03:49:24 2002 (3D3D9724)
    41200000 41265000 mvtools mvtools.dll Thu Aug 08 06:55:07 2002 (3D51892B)
    47000000 4700b000 itlicdrv itlicdrv.dll Thu Aug 08 06:30:29 2002 (3D518365)
    51000000 5104b000 ddraw ddraw.dll Wed Oct 17 04:26:20 2001 (3BCC7BCC)
    59a60000 59b01000 dbghelp dbghelp.dll Wed Aug 04 17:56:10 2004 (4110969A)
    60000000 60058000 ijl15 ijl15.dll Thu May 31 07:37:47 2001 (3B15682B)
    690a0000 690ab000 psapi psapi.dll Tue Nov 30 20:34:02 1999 (38439A0A)
    6a8f0000 6a910000 msvfw32 msvfw32.dll Tue Nov 30 20:33:38 1999 (384399F2)
    6df00000 6df1d000 ifcdsp18 ifcdsp18.dll Tue Apr 30 00:57:05 2002 (3CCD5F41)
    6e100000 6e3e2000 ifc18 ifc18.dll Tue Apr 30 00:54:20 2002 (3CCD5E9C)
    70bd0000 70c34000 shlwapi shlwapi.dll Sat Aug 18 15:40:51 2001 (3B7DFFE3)
    71780000 7180a000 comctl32 comctl32.dll Sat Aug 18 15:40:55 2001 (3B7DFFE7)
    728a0000 728a6000 dciman32 dciman32.dll Tue Nov 30 20:31:52 1999 (38439988)
    74870000 74886000 avifil32 avifil32.dll Tue Nov 30 20:31:17 1999 (38439965)
    752f0000 7530f000 oledlg oledlg.dll Wed Dec 08 11:42:19 1999 (384DA96B)
    759b0000 759b6000 lz32 lz32.dll Tue Nov 30 20:30:58 1999 (38439952)
    76620000 76630000 mpr mpr.dll Tue Jul 23 17:14:00 2002 (3D3D0238)
    76b30000 76b6d000 comdlg32 comdlg32.dll Tue Jul 23 17:13:20 2002 (3D3D0210)
    77410000 77423000 msacm32 msacm32.dll Wed Dec 01 18:37:29 1999 (3844D039)
    77570000 775a0000 winmm winmm.dll Wed Dec 01 18:37:28 1999 (3844D038)
    77800000 7781e000 winspool winspool.drv Tue Jul 23 17:13:17 2002 (3D3D020D)
    77820000 77827000 version version.dll Wed Dec 01 18:37:27 1999 (3844D037)
    779b0000 77a4b000 oleaut32 oleaut32.dll Tue Jul 23 17:13:16 2002 (3D3D020C)
    77a50000 77b45000 ole32 ole32.dll Tue Jul 23 17:13:16 2002 (3D3D020C)
    77d30000 77da1000 rpcrt4 rpcrt4.dll Tue Jul 23 17:13:15 2002 (3D3D020B)
    77db0000 77e0d000 advapi32 advapi32.dll Tue Jul 23 17:13:14 2002 (3D3D020A)
    77e10000 77e75000 user32 user32.dll Tue Jul 23 17:13:14 2002 (3D3D020A)
    77e80000 77f36000 kernel32 kernel32.dll Tue Jul 23 17:13:13 2002 (3D3D0209)
    77f40000 77f7c000 gdi32 gdi32.dll Tue Jul 23 17:13:13 2002 (3D3D0209)
    77f80000 77ffb000 ntdll ntdll.dll Tue Jul 23 17:13:13 2002 (3D3D0209)
    78000000 78046000 msvcrt msvcrt.dll Fri Sep 21 07:52:56 2001 (3BAA6538)
    782f0000 78536000 shell32 shell32.dll Tue Jul 23 17:13:17 2002 (3D3D020D)
    Closing open log file c:debuglog.txt
     
  6. 2009/06/09
    Arie

    Arie Administrator Administrator Staff

    Joined:
    2001/12/27
    Messages:
    15,174
    Likes Received:
    412
    First: You have a symbol problem - please make sure you have the correct symbols installed. More info here: http://www.windowsbbs.com/showthread.php?t=33471

    Also: remain connected to the Internet while running the wizard.

    Second, a HEAP_CORRUPTION usually means there's a problem in the application, in this case it seems to be CopperLevel.exe

    It could also be a memory problem, start by testing your memory. Run Memtest86 or Windows Memory Diagnostic.

    Please note:

     
    Arie,
    #5
  7. 2009/06/10
    Neelaka

    Neelaka Inactive Thread Starter

    Joined:
    2009/05/22
    Messages:
    7
    Likes Received:
    0
    Hi,

    Thank you for your help so far.

    I tested the memory using the tools yo suggested but could not find any problems.

    The CopperLevel.exe is an imaging application that runs continuously, it captures images and processes them.

    The program runs without any problems for about 40 minutes and then crashes. This problem started happening about 2 weeks back. Before that the system worked for a couple of years without any problems.

    Any ideas?

    Thank you again.
     
  8. 2009/06/11
    Arie

    Arie Administrator Administrator Staff

    Joined:
    2001/12/27
    Messages:
    15,174
    Likes Received:
    412
    Things change. Files get updated. It could well be that CopperLevel tries to use a function/address which was changed by a Microsoft update.
     
    Arie,
    #7
  9. 2009/06/22
    Neelaka

    Neelaka Inactive Thread Starter

    Joined:
    2009/05/22
    Messages:
    7
    Likes Received:
    0
    Thank you very much for your help. The error was found to be caused by one of the supporting programs for CopperVision program.

    Thanks again.

    Cheers
     
  10. 2009/06/22
    Arie

    Arie Administrator Administrator Staff

    Joined:
    2001/12/27
    Messages:
    15,174
    Likes Received:
    412
    Thanks for posting back, great you got it solved.
     
    Arie,
    #9

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.