1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

Dump Data - Win XP Pro SP2

Discussion in 'Windows XP' started by DCTech, 2005/03/18.

Thread Status:
Not open for further replies.
  1. 2005/03/18
    DCTech

    DCTech Inactive Thread Starter

    Joined:
    2005/03/17
    Messages:
    4
    Likes Received:
    0
    Please help, my system is experiencing several blue screens per day, I am a newbie at reading / interpreting dump file, and need some assistance. Thanks for any help. Here is the mini.dmp file.


    Microsoft (R) Windows Debugger Version 6.4.0007.2
    Copyright (c) Microsoft Corporation. All rights reserved.


    Loading Dump File [C:\Documents and Settings\Bill\My Documents\WREC\Mini031705-01.dmp]
    Mini Kernel Dump File: Only registers and stack trace are available

    Symbol search path is: SRV*c:\windows\symbols*http://msdl.microsoft.com/download/symbols
    Executable search path is:
    Windows XP Kernel Version 2600 (Service Pack 2) MP (2 procs) Free x86 compatible
    Product: WinNt, suite: TerminalServer SingleUserTS
    Built by: 2600.xpsp_sp2_rtm.040803-2158
    Kernel base = 0x804d7000 PsLoadedModuleList = 0x805644a0
    Debug session time: Thu Mar 17 12:11:09.738 2005 (GMT-5)
    System Uptime: 0 days 3:31:15.147
    Loading Kernel Symbols
    ...............................................................................................................................
    Loading unloaded module list
    ...............
    Loading User Symbols
    *******************************************************************************
    * *
    * Bugcheck Analysis *
    * *
    *******************************************************************************

    Use !analyze -v to get detailed debugging information.

    BugCheck 1000000A, {4, 1c, 1, 804e2679}

    Probably caused by : ntkrnlmp.exe ( nt!KiTimerExpiration+88 )

    Followup: MachineOwner
    ---------

    0: kd> !analyze -v
    *******************************************************************************
    * *
    * Bugcheck Analysis *
    * *
    *******************************************************************************

    IRQL_NOT_LESS_OR_EQUAL (a)
    An attempt was made to access a pageable (or completely invalid) address at an
    interrupt request level (IRQL) that is too high. This is usually
    caused by drivers using improper addresses.
    If a kernel debugger is available get the stack backtrace.
    Arguments:
    Arg1: 00000004, memory referenced
    Arg2: 0000001c, IRQL
    Arg3: 00000001, value 0 = read operation, 1 = write operation
    Arg4: 804e2679, address which referenced memory

    Debugging Details:
    ------------------


    WRITE_ADDRESS: 00000004

    CURRENT_IRQL: 1c

    FAULTING_IP:
    nt!KiTimerExpiration+88
    804e2679 895f04 mov [edi+0x4],ebx

    CUSTOMER_CRASH_COUNT: 1

    DEFAULT_BUCKET_ID: DRIVER_FAULT

    BUGCHECK_STR: 0xA

    LAST_CONTROL_TRANSFER: from 804dd26b to 804e2679

    STACK_TEXT:
    80558428 804dd26b 80563300 00000000 000c60c9 nt!KiTimerExpiration+0x88
    80558440 80562ca0 ffdffc50 00000000 80562ca0 nt!KiRetireDpcList+0x61
    80558450 804dd14b 00000000 0000000e 00000000 nt!KiIdleThread0


    FOLLOWUP_IP:
    nt!KiTimerExpiration+88
    804e2679 895f04 mov [edi+0x4],ebx

    SYMBOL_STACK_INDEX: 0

    FOLLOWUP_NAME: MachineOwner

    SYMBOL_NAME: nt!KiTimerExpiration+88

    MODULE_NAME: nt

    IMAGE_NAME: ntkrnlmp.exe

    DEBUG_FLR_IMAGE_TIMESTAMP: 41107faa

    STACK_COMMAND: kb

    FAILURE_BUCKET_ID: 0xA_W_nt!KiTimerExpiration+88

    BUCKET_ID: 0xA_W_nt!KiTimerExpiration+88

    Followup: MachineOwner
    ---------
     
  2. 2005/03/18
    JoeHobart

    JoeHobart Inactive Alumni

    Joined:
    2004/05/19
    Messages:
    919
    Likes Received:
    1
    please include the output from 'r' or use the tool in my signature.

    Do all the dumps look like this? I'd like to see any variations on the stack, this one looks like an abandon timer, which is nasty to tshoot, im hoping other dumps are different and its just pool corruption
     

  3. to hide this advert.

  4. 2005/03/22
    DCTech

    DCTech Inactive Thread Starter

    Joined:
    2005/03/17
    Messages:
    4
    Likes Received:
    0
    Thanks for your reply, most of the dumps look very similar, but have some differences, I am including a more recent dump using dbugwiz. I will post the other dump files later. The system is blue screening several times a day, and seems to be more frequent. - thanks - DCtech

    Opened log file 'c:\debuglog.txt'

    Microsoft (R) Windows Debugger Version 6.4.0007.2
    Copyright (c) Microsoft Corporation. All rights reserved.


    Loading Dump File [C:\Documents and Settings\Bill\My Documents\WREC\Mini031605-02.dmp]
    Mini Kernel Dump File: Only registers and stack trace are available

    Symbol search path is: SRV*c:\symbols*http://msdl.microsoft.com/download/symbols
    Executable search path is: C:\WINDOWS;C:\WINDOWS\system32;C:\WINDOWS\system32\drivers
    Windows XP Kernel Version 2600 (Service Pack 2) MP (2 procs) Free x86 compatible
    Product: WinNt, suite: TerminalServer SingleUserTS
    Built by: 2600.xpsp_sp2_rtm.040803-2158
    Kernel base = 0x804d7000 PsLoadedModuleList = 0x805644a0
    Debug session time: Wed Mar 16 16:03:51.106 2005 (GMT-5)
    System Uptime: 0 days 3:36:19.064
    Loading Kernel Symbols
    ...............................................................................................................................
    Loading unloaded module list
    ...........
    Loading User Symbols
    *******************************************************************************
    * *
    * Bugcheck Analysis *
    * *
    *******************************************************************************

    Use !analyze -v to get detailed debugging information.

    BugCheck 1000000A, {0, 1c, 1, 804e2219}

    Probably caused by : win32k.sys ( win32k!xxxSleepThread+192 )

    Followup: MachineOwner
    ---------

    1: kd> !analyze -v;r;kv;lmtn;.logclose;q
    *******************************************************************************
    * *
    * Bugcheck Analysis *
    * *
    *******************************************************************************

    IRQL_NOT_LESS_OR_EQUAL (a)
    An attempt was made to access a pageable (or completely invalid) address at an
    interrupt request level (IRQL) that is too high. This is usually
    caused by drivers using improper addresses.
    If a kernel debugger is available get the stack backtrace.
    Arguments:
    Arg1: 00000000, memory referenced
    Arg2: 0000001c, IRQL
    Arg3: 00000001, value 0 = read operation, 1 = write operation
    Arg4: 804e2219, address which referenced memory

    Debugging Details:
    ------------------


    WRITE_ADDRESS: 00000000

    CURRENT_IRQL: 1c

    FAULTING_IP:
    nt!KeWaitForSingleObject+186
    804e2219 8939 mov [ecx],edi

    CUSTOMER_CRASH_COUNT: 2

    DEFAULT_BUCKET_ID: DRIVER_FAULT

    BUGCHECK_STR: 0xA

    LAST_CONTROL_TRANSFER: from bf802ec4 to 804e2219

    STACK_TEXT:
    b13495cc bf802ec4 00000001 0000000d 00000001 nt!KeWaitForSingleObject+0x186
    b1349608 bf8036ca 000024ff 00000000 00000001 win32k!xxxSleepThread+0x192
    b134961c bf8c493f 000024ff 00000000 00000000 win32k!xxxRealWaitMessageEx+0x12
    b13496ac bf8653ef bbf9cd68 00000009 00270400 win32k!xxxMoveSize+0x409
    b13496e4 bf80a328 bbf9cd68 0000f012 00270400 win32k!xxxSysCommand+0x18c
    b1349744 bf80f436 bbf9cd68 00000112 0000f012 win32k!xxxRealDefWindowProc+0xc97
    b134975c bf81bca1 bbf9cd68 00000112 0000f012 win32k!xxxWrapRealDefWindowProc+0x16
    b1349778 bf80f67d bbf9cd68 00000112 0000f012 win32k!NtUserfnDWORD+0x27
    b13497b0 804ddf0f 00040298 00000112 0000f012 win32k!NtUserMessageCall+0xae
    b13497b0 7c90eb94 00040298 00000112 0000f012 nt!KiFastCallEntry+0xfc
    WARNING: Frame IP not in any known module. Following frames may be wrong.
    0013f660 00000000 00000000 00000000 00000000 0x7c90eb94
    b1349a88 80570593 b1349b44 b1349b48 b1349b18 nt!KiCallUserMode+0x4
    b1349ae4 bf813d09 00000002 b1349b28 00000018 nt!KeUserModeCallback+0x87
    b1349b68 bf813ea0 bbf9cd68 00000112 0000f012 win32k!SfnDWORD+0xa8
    b1349bb0 bf814092 02f9cd68 00000112 0000f012 win32k!xxxSendMessageToClient+0x176
    b1349bfc bf80f470 bbf9cd68 00000112 0000f012 win32k!xxxSendMessageTimeout+0x1a6
    b1349c20 bf8c41ce bbf9cd68 00000112 0000f012 win32k!xxxSendMessage+0x1b
    b1349c4c bf8c3c80 bbf9cd68 000000a1 00000002 win32k!xxxHandleNCMouseGuys+0x131
    b1349c70 bf8092eb bbf9cd68 000000a1 00000002 win32k!xxxDWP_NCMouse+0x30
    b1349cd4 bf80f436 bbf9cd68 000000a1 00000002 win32k!xxxRealDefWindowProc+0x7d1
    b1349cec bf81bca1 bbf9cd68 000000a1 00000002 win32k!xxxWrapRealDefWindowProc+0x16
    b1349d08 bf80f67d bbf9cd68 000000a1 00000002 win32k!NtUserfnDWORD+0x27
    b1349d40 804ddf0f 00040298 000000a1 00000002 win32k!NtUserMessageCall+0xae
    b1349d40 7c90eb94 00040298 000000a1 00000002 nt!KiFastCallEntry+0xfc
    0013fa0c 00000000 00000000 00000000 00000000 0x7c90eb94


    FOLLOWUP_IP:
    win32k!xxxSleepThread+192
    bf802ec4 8945fc mov [ebp-0x4],eax

    SYMBOL_STACK_INDEX: 1

    FOLLOWUP_NAME: MachineOwner

    SYMBOL_NAME: win32k!xxxSleepThread+192

    MODULE_NAME: win32k

    IMAGE_NAME: win32k.sys

    DEBUG_FLR_IMAGE_TIMESTAMP: 41107f7a

    STACK_COMMAND: kb

    FAILURE_BUCKET_ID: 0xA_W_win32k!xxxSleepThread+192

    BUCKET_ID: 0xA_W_win32k!xxxSleepThread+192

    Followup: MachineOwner
    ---------

    eax=89356708 ebx=89356700 ecx=00000000 edx=00000000 esi=8945d5e0 edi=8945d650
    eip=804e2219 esp=b13495ac ebp=b13495cc iopl=0 nv up ei pl zr na po nc
    cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00010246
    nt!KeWaitForSingleObject+0x186:
    804e2219 8939 mov [ecx],edi ds:0023:00000000=????????
    ChildEBP RetAddr Args to Child
    b13495cc bf802ec4 00000001 0000000d 00000001 nt!KeWaitForSingleObject+0x186 (FPO: [Non-Fpo])
    b1349608 bf8036ca 000024ff 00000000 00000001 win32k!xxxSleepThread+0x192 (FPO: [Non-Fpo])
    b134961c bf8c493f 000024ff 00000000 00000000 win32k!xxxRealWaitMessageEx+0x12 (FPO: [Non-Fpo])
    b13496ac bf8653ef bbf9cd68 00000009 00270400 win32k!xxxMoveSize+0x409 (FPO: [Non-Fpo])
    b13496e4 bf80a328 bbf9cd68 0000f012 00270400 win32k!xxxSysCommand+0x18c (FPO: [Non-Fpo])
    b1349744 bf80f436 bbf9cd68 00000112 0000f012 win32k!xxxRealDefWindowProc+0xc97 (FPO: [Non-Fpo])
    b134975c bf81bca1 bbf9cd68 00000112 0000f012 win32k!xxxWrapRealDefWindowProc+0x16 (FPO: [Non-Fpo])
    b1349778 bf80f67d bbf9cd68 00000112 0000f012 win32k!NtUserfnDWORD+0x27 (FPO: [Non-Fpo])
    b13497b0 804ddf0f 00040298 00000112 0000f012 win32k!NtUserMessageCall+0xae (FPO: [Non-Fpo])
    b13497b0 7c90eb94 00040298 00000112 0000f012 nt!KiFastCallEntry+0xfc (FPO: [0,0] TrapFrame @ b13497d4)
    WARNING: Frame IP not in any known module. Following frames may be wrong.
    0013f660 00000000 00000000 00000000 00000000 0x7c90eb94
    b1349a88 80570593 b1349b44 b1349b48 b1349b18 nt!KiCallUserMode+0x4 (FPO: [2,3,4])
    b1349ae4 bf813d09 00000002 b1349b28 00000018 nt!KeUserModeCallback+0x87 (FPO: [Non-Fpo])
    b1349b68 bf813ea0 bbf9cd68 00000112 0000f012 win32k!SfnDWORD+0xa8 (FPO: [Non-Fpo])
    b1349bb0 bf814092 02f9cd68 00000112 0000f012 win32k!xxxSendMessageToClient+0x176 (FPO: [Non-Fpo])
    b1349bfc bf80f470 bbf9cd68 00000112 0000f012 win32k!xxxSendMessageTimeout+0x1a6 (FPO: [Non-Fpo])
    b1349c20 bf8c41ce bbf9cd68 00000112 0000f012 win32k!xxxSendMessage+0x1b (FPO: [Non-Fpo])
    b1349c4c bf8c3c80 bbf9cd68 000000a1 00000002 win32k!xxxHandleNCMouseGuys+0x131 (FPO: [Non-Fpo])
    b1349c70 bf8092eb bbf9cd68 000000a1 00000002 win32k!xxxDWP_NCMouse+0x30 (FPO: [Non-Fpo])
    b1349cd4 bf80f436 bbf9cd68 000000a1 00000002 win32k!xxxRealDefWindowProc+0x7d1 (FPO: [Non-Fpo])
    start end module name
    804d7000 80701000 nt ntkrnlmp.exe Wed Aug 04 02:18:18 2004 (41107FAA)
    80701000 80721d00 hal halmacpi.dll Wed Aug 04 01:59:09 2004 (41107B2D)
    aff7a000 affa3f00 kmixer kmixer.sys Wed Aug 04 02:07:46 2004 (41107D32)
    b13c0000 b13c3800 asyncmac asyncmac.sys Wed Aug 04 02:05:02 2004 (41107C8E)
    b17d1000 b1811100 HTTP HTTP.sys Fri Oct 08 19:48:20 2004 (41672744)
    b19bd000 b19d1400 wdmaud wdmaud.sys Wed Aug 04 02:15:03 2004 (41107EE7)
    b19fa000 b1a1c000 RDPWD RDPWD.SYS Wed Aug 04 01:59:01 2004 (41107B25)
    b1c24000 b1c34960 NAVENG NAVENG.sys Thu Dec 30 16:46:10 2004 (41D47722)
    b1c35000 b1ccda60 NAVEX15 NAVEX15.sys Thu Dec 30 16:45:19 2004 (41D476EF)
    b1cf6000 b1d34000 NAVAP NAVAP.sys Thu Mar 04 21:01:02 2004 (4047DF5E)
    b1d5c000 b1d6ca60 SYMEVENT SYMEVENT.SYS Wed May 14 01:45:43 2003 (3EC1D807)
    b2135000 b2143d80 sysaudio sysaudio.sys Wed Aug 04 02:15:54 2004 (41107F1A)
    b235d000 b236e000 NAVAPEL NAVAPEL.SYS Thu Mar 04 21:01:07 2004 (4047DF63)
    b236e000 b23c0180 srv srv.sys Wed Aug 04 02:14:44 2004 (41107ED4)
    b24d9000 b2505400 mrxdav mrxdav.sys Wed Aug 04 02:00:49 2004 (41107B91)
    b2506000 b2529000 Fastfat Fastfat.SYS Wed Aug 04 02:14:15 2004 (41107EB7)
    b7025000 b703c480 dump_atapi dump_atapi.sys Wed Aug 04 01:59:41 2004 (41107B4D)
    b7065000 b707e680 wceusbsh wceusbsh.sys Mon Sep 01 21:52:07 2003 (3F53F7C7)
    b7089000 b70f7400 mrxsmb mrxsmb.sys Tue Jan 18 23:26:50 2005 (41EDE18A)
    b7102000 b712ca00 rdbss rdbss.sys Wed Oct 27 21:13:57 2004 (418047D5)
    b71eb000 b7211000 vmm vmm.sys Fri Oct 17 19:48:18 2003 (3F907FC2)
    b7211000 b7232d00 afd afd.sys Wed Aug 04 02:14:13 2004 (41107EB5)
    b7233000 b7253f00 ipnat ipnat.sys Wed Sep 29 18:28:36 2004 (415B3714)
    b7254000 b727bc00 netbt netbt.sys Wed Aug 04 02:14:36 2004 (41107ECC)
    b727c000 b72d3a80 tcpip tcpip.sys Wed Aug 04 02:14:39 2004 (41107ECF)
    b72d4000 b72e6400 ipsec ipsec.sys Wed Aug 04 02:14:27 2004 (41107EC3)
    b7307000 b730c500 TDTCP TDTCP.SYS Wed Aug 04 01:58:52 2004 (41107B1C)
    b7337000 b733d000 IOPORT IOPORT.SYS Fri Nov 27 12:57:16 1998 (365EE7FC)
    b992f000 b992fb80 Null Null.SYS Fri Aug 17 16:47:39 2001 (3B7D82EB)
    b9b2b000 b9b5e180 update update.sys Wed Sep 01 18:27:22 2004 (41364CCA)
    b9b5f000 b9b61900 Dxapi Dxapi.sys Fri Aug 17 16:53:19 2001 (3B7D843F)
    b9b63000 b9b66280 ndisuio ndisuio.sys Wed Aug 04 02:03:10 2004 (41107C1E)
    b9b83000 b9b85f80 mouhid mouhid.sys Fri Aug 17 16:47:57 2001 (3B7D82FD)
    b9b87000 b9bb7100 rdpdr rdpdr.sys Wed Aug 04 02:01:10 2004 (41107BA6)
    b9bb8000 b9bc8e00 psched psched.sys Wed Aug 04 02:04:16 2004 (41107C60)
    b9c29000 b9c38900 Cdfs Cdfs.SYS Wed Aug 04 02:14:09 2004 (41107EB1)
    b9c39000 b9c48520 LMouFlt2 LMouFlt2.Sys Fri Nov 08 18:58:27 2002 (3DCC4FA3)
    b9c69000 b9c7f680 ndiswan ndiswan.sys Wed Aug 04 02:14:30 2004 (41107EC6)
    b9c80000 b9ce1c00 ALCXSENS ALCXSENS.SYS Mon Feb 23 13:11:09 2004 (403A423D)
    b9ce2000 b9d05980 portcls portcls.sys Wed Aug 04 02:15:47 2004 (41107F13)
    b9d06000 b9d9b780 ALCXWDM ALCXWDM.SYS Fri May 14 11:24:08 2004 (40A4E498)
    b9d9c000 b9dbe680 ks ks.sys Wed Aug 04 02:15:20 2004 (41107EF8)
    b9dbf000 b9dd2900 parport parport.sys Wed Aug 04 01:59:04 2004 (41107B28)
    b9dd3000 b9df2c00 e1000325 e1000325.sys Tue Oct 28 17:51:03 2003 (3F9EF2D7)
    b9df3000 b9e06780 VIDEOPRT VIDEOPRT.SYS Wed Aug 04 02:07:04 2004 (41107D08)
    b9e07000 ba088700 nv4_mini nv4_mini.sys Mon Aug 02 23:37:12 2004 (410F0868)
    ba089000 ba0abe80 USBPORT USBPORT.SYS Wed Aug 04 02:08:34 2004 (41107D62)
    ba449000 ba44b280 rasacd rasacd.sys Fri Aug 17 16:55:39 2001 (3B7D84CB)
    ba708000 ba708c00 audstub audstub.sys Fri Aug 17 16:59:40 2001 (3B7D85BC)
    ba710000 ba71a200 raspppoe raspppoe.sys Wed Aug 04 02:05:06 2004 (41107C92)
    ba720000 ba72c880 rasl2tp rasl2tp.sys Wed Aug 04 02:14:21 2004 (41107EBD)
    ba730000 ba73e000 VMNetSrv VMNetSrv.sys Fri Sep 19 22:23:38 2003 (3F6BBA2A)
    ba740000 ba74eb80 drmk drmk.sys Wed Aug 04 02:07:54 2004 (41107D3A)
    ba750000 ba75a380 imapi imapi.sys Wed Aug 04 02:00:12 2004 (41107B6C)
    ba760000 ba76e080 redbook redbook.sys Wed Aug 04 01:59:34 2004 (41107B46)
    ba770000 ba77c180 cdrom cdrom.sys Wed Aug 04 01:59:52 2004 (41107B58)
    ba780000 ba78fd80 serial serial.sys Wed Aug 04 02:15:51 2004 (41107F17)
    ba790000 ba798d00 intelppm intelppm.sys Wed Aug 04 01:59:19 2004 (41107B37)
    ba7cc000 ba7cfc80 mssmbios mssmbios.sys Wed Aug 04 02:07:47 2004 (41107D33)
    ba7f8000 ba7fa580 ndistapi ndistapi.sys Fri Aug 17 16:55:29 2001 (3B7D84C1)
    bf000000 bf011580 dxg dxg.sys Wed Aug 04 02:00:51 2004 (41107B93)
    bf012000 bf3aae80 nv4_disp nv4_disp.dll Mon Aug 02 23:32:55 2004 (410F0767)
    bf800000 bf9c0380 win32k win32k.sys Wed Aug 04 02:17:30 2004 (41107F7A)
    f740a000 f7424580 Mup Mup.sys Wed Aug 04 02:15:20 2004 (41107EF8)
    f7425000 f7451a80 NDIS NDIS.sys Wed Aug 04 02:14:27 2004 (41107EC3)
    f7452000 f7468780 KSecDD KSecDD.sys Wed Aug 04 01:59:45 2004 (41107B51)
    f7469000 f747af00 sr sr.sys Wed Aug 04 02:06:22 2004 (41107CDE)
    f747b000 f7499780 fltmgr fltmgr.sys Wed Aug 04 02:01:17 2004 (41107BAD)
    f749a000 f74b1480 atapi atapi.sys Wed Aug 04 01:59:41 2004 (41107B4D)
    f74b2000 f74d7700 dmio dmio.sys Wed Aug 04 02:07:13 2004 (41107D11)
    f74d8000 f74f6880 ftdisk ftdisk.sys Fri Aug 17 16:52:41 2001 (3B7D8419)
    f7517000 f751fd80 HIDCLASS HIDCLASS.SYS Wed Aug 04 02:08:18 2004 (41107D52)
    f7527000 f752ff80 LHidUsb LHidUsb.Sys Fri Nov 08 18:58:54 2002 (3DCC4FBE)
    f7537000 f753f880 Fips Fips.SYS Fri Aug 17 21:31:49 2001 (3B7DC585)
    f7567000 f756f700 wanarp wanarp.sys Wed Aug 04 02:04:57 2004 (41107C89)
    f7577000 f757f700 netbios netbios.sys Wed Aug 04 02:03:19 2004 (41107C27)
    f7597000 f75a7a80 pci pci.sys Wed Aug 04 02:07:45 2004 (41107D31)
    f75a8000 f75d5d80 ACPI ACPI.sys Wed Aug 04 02:07:35 2004 (41107D27)
    f75f7000 f75ffc00 isapnp isapnp.sys Fri Aug 17 16:58:01 2001 (3B7D8559)
    f7607000 f7611500 MountMgr MountMgr.sys Wed Aug 04 01:58:29 2004 (41107B05)
    f7617000 f7623c80 VolSnap VolSnap.sys Wed Aug 04 02:00:14 2004 (41107B6E)
    f7627000 f762fe00 disk disk.sys Wed Aug 04 01:59:53 2004 (41107B59)
    f7637000 f7643200 CLASSPNP CLASSPNP.SYS Wed Aug 04 02:14:26 2004 (41107EC2)
    f7647000 f7651580 agp440 agp440.sys Wed Aug 04 02:07:40 2004 (41107D2C)
    f7677000 f7682d00 raspptp raspptp.sys Wed Aug 04 02:14:26 2004 (41107EC2)
    f7687000 f768f900 msgpc msgpc.sys Wed Aug 04 02:04:11 2004 (41107C5B)
    f7697000 f76a0f00 termdd termdd.sys Wed Aug 04 01:58:52 2004 (41107B1C)
    f76a7000 f76b0480 NDProxy NDProxy.SYS Fri Aug 17 16:55:30 2001 (3B7D84C2)
    f76c7000 f76d5100 usbhub usbhub.sys Wed Aug 04 02:08:40 2004 (41107D68)
    f7707000 f770d200 PCIIDEX PCIIDEX.SYS Wed Aug 04 01:59:40 2004 (41107B4C)
    f770f000 f7713900 PartMgr PartMgr.sys Fri Aug 17 21:32:23 2001 (3B7DC5A7)
    f7737000 f773ba80 Msfs Msfs.SYS Wed Aug 04 02:00:37 2004 (41107B85)
    f773f000 f7746880 Npfs Npfs.SYS Wed Aug 04 02:00:38 2004 (41107B86)
    f775f000 f7766b80 usbccgp usbccgp.sys Wed Aug 04 02:08:45 2004 (41107D6D)
    f7767000 f776d780 USBSTOR USBSTOR.SYS Wed Aug 04 02:08:44 2004 (41107D6C)
    f777f000 f7784880 LHidFlt2 LHidFlt2.Sys Fri Nov 08 18:58:36 2002 (3DCC4FAC)
    f779f000 f77a3500 watchdog watchdog.sys Wed Aug 04 02:07:32 2004 (41107D24)
    f77c7000 f77cc000 usbuhci usbuhci.sys Wed Aug 04 02:08:34 2004 (41107D62)
    f77cf000 f77d5800 usbehci usbehci.sys Wed Aug 04 02:08:34 2004 (41107D62)
    f77d7000 f77d8000 fdc fdc.sys unavailable (00000000)
    f77df000 f77e3880 TDI TDI.SYS Wed Aug 04 02:07:47 2004 (41107D33)
    f77e7000 f77eb580 ptilink ptilink.sys Fri Aug 17 16:49:53 2001 (3B7D8371)
    f77ef000 f77f3080 raspti raspti.sys Fri Aug 17 16:55:32 2001 (3B7D84C4)
    f77f7000 f77fd000 kbdclass kbdclass.sys Wed Aug 04 01:58:32 2004 (41107B08)
    f77ff000 f7804a00 mouclass mouclass.sys Wed Aug 04 01:58:32 2004 (41107B08)
    f7807000 f780c000 flpydisk flpydisk.sys Wed Aug 04 01:59:24 2004 (41107B3C)
    f7817000 f781d180 HIDPARSE HIDPARSE.SYS Wed Aug 04 02:08:15 2004 (41107D4F)
    f781f000 f7824200 vga vga.sys Wed Aug 04 02:07:06 2004 (41107D0A)
    f7897000 f789a000 BOOTVID BOOTVID.dll Fri Aug 17 16:49:09 2001 (3B7D8345)
    f792f000 f7932260 LCcFltr LCcFltr.Sys Fri Nov 08 18:58:59 2002 (3DCC4FC3)
    f7933000 f7936a00 kbdhid kbdhid.sys Wed Aug 04 01:58:33 2004 (41107B09)
    f7947000 f794ac80 serenum serenum.sys Wed Aug 04 01:59:06 2004 (41107B2A)
    f7987000 f7988b80 kdcom kdcom.dll Fri Aug 17 16:49:10 2001 (3B7D8346)
    f7989000 f798a100 WMILIB WMILIB.SYS Fri Aug 17 17:07:23 2001 (3B7D878B)
    f798b000 f798c580 intelide intelide.sys Wed Aug 04 01:59:40 2004 (41107B4C)
    f798d000 f798e700 dmload dmload.sys Fri Aug 17 16:58:15 2001 (3B7D8567)
    f79a9000 f79aa100 swenum swenum.sys Wed Aug 04 01:58:41 2004 (41107B11)
    f79ab000 f79ac280 USBD USBD.SYS Fri Aug 17 17:02:58 2001 (3B7D8682)
    f79ad000 f79aef00 Fs_Rec Fs_Rec.SYS Fri Aug 17 16:49:37 2001 (3B7D8361)
    f79af000 f79b0080 Beep Beep.SYS Fri Aug 17 16:47:33 2001 (3B7D82E5)
    f79b1000 f79b2080 mnmdd mnmdd.SYS Fri Aug 17 16:57:28 2001 (3B7D8538)
    f79b3000 f79b4080 RDPCDD RDPCDD.sys Fri Aug 17 16:46:56 2001 (3B7D82C0)
    f79c3000 f79c4100 dump_WMILIB dump_WMILIB.SYS Fri Aug 17 17:07:23 2001 (3B7D878B)
    f79dd000 f79dea80 ParVdm ParVdm.SYS Fri Aug 17 16:49:49 2001 (3B7D836D)
    f79f5000 f79f6400 pmemnt pmemnt.sys Thu Sep 30 11:51:09 1999 (37F386ED)
    f7a4f000 f7a4fd00 pciide pciide.sys Fri Aug 17 16:51:49 2001 (3B7D83E5)
    f7a9f000 f7a9fd00 dxgthk dxgthk.sys Fri Aug 17 16:53:12 2001 (3B7D8438)
    f7b52000 f7bde480 Ntfs Ntfs.sys Wed Aug 04 02:15:06 2004 (41107EEA)

    Unloaded modules:
    b07dd000 b0807000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    b1970000 b199a000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    b713f000 b7140000 drmkaud.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    b199a000 b19bd000 aec.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    b2729000 b2736000 DMusic.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    b1f3d000 b1f4b000 swmidi.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f79d5000 f79d7000 splitter.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f7923000 f7927000 kbdhid.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f7587000 f7594000 i8042prt.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f780f000 f7814000 Cdaudio.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f791f000 f7922000 Sfloppy.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    Closing open log file c:\debuglog.txt
     
  5. 2005/03/22
    JoeHobart

    JoeHobart Inactive Alumni

    Joined:
    2004/05/19
    Messages:
    919
    Likes Received:
    1
    OK, this is just pool corruption. See this post for how to setup special pool. You'll need to run with that enabled for a little while, it will crash when something does a bad thing. Get 2 dumps with special pool on, and post em here. Note the disclaimers, this key can render you into a no-boot situation if your driver blows up before you can login.
     
  6. 2005/03/28
    DCTech

    DCTech Inactive Thread Starter

    Joined:
    2005/03/17
    Messages:
    4
    Likes Received:
    0
    Here is a more recent dump. Hopefully, I did it right. - Thanks Again for you help. - DCTech

    Opened log file 'c:\debuglog.txt'

    Microsoft (R) Windows Debugger Version 6.4.0007.2
    Copyright (c) Microsoft Corporation. All rights reserved.


    Loading Dump File [E:\Customer\WREC\MEMORY.DMP]
    Kernel Summary Dump File: Only kernel address space is available

    Symbol search path is: SRV*c:\symbols*http://msdl.microsoft.com/download/symbols
    Executable search path is: C:\WINDOWS;C:\WINDOWS\system32;C:\WINDOWS\system32\drivers
    Windows XP Kernel Version 2600 (Service Pack 2) MP (2 procs) Free x86 compatible
    Product: WinNt, suite: TerminalServer SingleUserTS
    Built by: 2600.xpsp_sp2_rtm.040803-2158
    Kernel base = 0x804d7000 PsLoadedModuleList = 0x805644a0
    Debug session time: Mon Mar 28 12:32:24.468 2005 (GMT-5)
    System Uptime: 0 days 0:00:46.194
    Loading Kernel Symbols
    ............................................................................................................................
    Loading unloaded module list
    ...
    Loading User Symbols
    *******************************************************************************
    * *
    * Bugcheck Analysis *
    * *
    *******************************************************************************

    Use !analyze -v to get detailed debugging information.

    BugCheck 4E, {8f, 18df7, 18ad7, 0}

    Probably caused by : memory_corruption ( nt!MmZeroPageThread+130 )

    Followup: MachineOwner
    ---------

    0: kd> !analyze -v;r;kv;lmtn;.logclose;q
    *******************************************************************************
    * *
    * Bugcheck Analysis *
    * *
    *******************************************************************************

    PFN_LIST_CORRUPT (4e)
    Typically caused by drivers passing bad memory descriptor lists (ie: calling
    MmUnlockPages twice with the same list, etc). If a kernel debugger is
    available get the stack trace.
    Arguments:
    Arg1: 0000008f, The free or zeroed page listhead is corrupt
    Arg2: 00018df7, new page
    Arg3: 00018ad7, old page
    Arg4: 00000000, 0

    Debugging Details:
    ------------------


    DEFAULT_BUCKET_ID: DRIVER_FAULT

    BUGCHECK_STR: 0x4E

    LAST_CONTROL_TRANSFER: from 80528aaa to 80537832

    STACK_TEXT:
    f789e800 80528aaa 0000004e 0000008f 00018df7 nt!KeBugCheckEx+0x1b
    f789e840 806b2285 8a512da8 00000000 00000044 nt!MmZeroPageThread+0x130
    f789edac 80576b24 80087000 00000000 00000000 nt!Phase1Initialization+0x1287
    f789eddc 804eed86 806b3797 80087000 00000000 nt!PspSystemThreadStartup+0x34
    00000000 00000000 00000000 00000000 00000000 nt!KiThreadStartup+0x16


    FOLLOWUP_IP:
    nt!MmZeroPageThread+130
    80528aaa cc int 3

    SYMBOL_STACK_INDEX: 1

    FOLLOWUP_NAME: MachineOwner

    SYMBOL_NAME: nt!MmZeroPageThread+130

    MODULE_NAME: nt

    DEBUG_FLR_IMAGE_TIMESTAMP: 41107faa

    STACK_COMMAND: kb

    IMAGE_NAME: memory_corruption

    FAILURE_BUCKET_ID: 0x4E_nt!MmZeroPageThread+130

    BUCKET_ID: 0x4E_nt!MmZeroPageThread+130

    Followup: MachineOwner
    ---------

    eax=ffdff13c ebx=00018df7 ecx=00000000 edx=ffffffff esi=00018ad7 edi=80703aa8
    eip=80537832 esp=f789e7e8 ebp=f789e800 iopl=0 nv up ei ng nz na po nc
    cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00200286
    nt!KeBugCheckEx+0x1b:
    80537832 5d pop ebp
    ChildEBP RetAddr Args to Child
    f789e800 80528aaa 0000004e 0000008f 00018df7 nt!KeBugCheckEx+0x1b (FPO: [Non-Fpo])
    f789e840 806b2285 8a512da8 00000000 00000044 nt!MmZeroPageThread+0x130 (FPO: [Non-Fpo])
    f789edac 80576b24 80087000 00000000 00000000 nt!Phase1Initialization+0x1287 (FPO: [Non-Fpo])
    f789eddc 804eed86 806b3797 80087000 00000000 nt!PspSystemThreadStartup+0x34 (FPO: [Non-Fpo])
    00000000 00000000 00000000 00000000 00000000 nt!KiThreadStartup+0x16
    start end module name
    804d7000 80701000 nt ntkrnlmp.exe Wed Aug 04 02:18:18 2004 (41107FAA)
    80701000 80721d00 hal halmacpi.dll Wed Aug 04 01:59:09 2004 (41107B2D)
    b17eb000 b180d000 RDPWD RDPWD.SYS Wed Aug 04 01:59:01 2004 (41107B25)
    b1a6f000 b1aaf100 HTTP HTTP.sys Fri Oct 08 19:48:20 2004 (41672744)
    b1df3000 b1e1cf00 kmixer kmixer.sys Wed Aug 04 02:07:46 2004 (41107D32)
    b1e45000 b1e67c80 aec aec.sys Fri Feb 13 10:20:15 2004 (402CEB2F)
    b1e90000 b1ea4400 wdmaud wdmaud.sys Wed Aug 04 02:15:03 2004 (41107EE7)
    b1ecd000 b1edd960 NAVENG NAVENG.sys Thu Dec 30 16:46:10 2004 (41D47722)
    b1ede000 b1f76a60 NAVEX15 NAVEX15.sys Thu Dec 30 16:45:19 2004 (41D476EF)
    b1f77000 b1fb5000 NAVAP NAVAP.sys Thu Mar 04 21:01:02 2004 (4047DF5E)
    b201d000 b2029e80 DMusic DMusic.sys Wed Aug 04 02:07:37 2004 (41107D29)
    b202d000 b203a400 swmidi swmidi.sys Fri Aug 17 17:00:42 2001 (3B7D85FA)
    b207d000 b208da60 SYMEVENT SYMEVENT.SYS Wed May 14 01:45:43 2003 (3EC1D807)
    b2226000 b2234d80 sysaudio sysaudio.sys Wed Aug 04 02:15:54 2004 (41107F1A)
    b26a6000 b26b7000 NAVAPEL NAVAPEL.SYS Thu Mar 04 21:01:07 2004 (4047DF63)
    b26b7000 b2709180 srv srv.sys Wed Aug 04 02:14:44 2004 (41107ED4)
    b2822000 b284e400 mrxdav mrxdav.sys Wed Aug 04 02:00:49 2004 (41107B91)
    b29ff000 b2a02280 ndisuio ndisuio.sys Wed Aug 04 02:03:10 2004 (41107C1E)
    b2b07000 b2b08400 pmemnt pmemnt.sys Thu Sep 30 11:51:09 1999 (37F386ED)
    b734b000 b7362480 dump_atapi dump_atapi.sys Wed Aug 04 01:59:41 2004 (41107B4D)
    b738b000 b73f9400 mrxsmb mrxsmb.sys Tue Jan 18 23:26:50 2005 (41EDE18A)
    b73fa000 b7424a00 rdbss rdbss.sys Wed Oct 27 21:13:57 2004 (418047D5)
    b7425000 b744b000 vmm vmm.sys Fri Oct 17 19:48:18 2003 (3F907FC2)
    b74eb000 b750cd00 afd afd.sys Wed Aug 04 02:14:13 2004 (41107EB5)
    b750d000 b7534c00 netbt netbt.sys Wed Aug 04 02:14:36 2004 (41107ECC)
    b7535000 b7555f00 ipnat ipnat.sys Wed Sep 29 18:28:36 2004 (415B3714)
    b7556000 b75ada80 tcpip tcpip.sys Wed Aug 04 02:14:39 2004 (41107ECF)
    b75ae000 b75c0400 ipsec ipsec.sys Wed Aug 04 02:14:27 2004 (41107EC3)
    b98a1000 b98d4180 update update.sys Wed Sep 01 18:27:22 2004 (41364CCA)
    b98d5000 b9905100 rdpdr rdpdr.sys Wed Aug 04 02:01:10 2004 (41107BA6)
    b991a000 b991ab80 Null Null.SYS Fri Aug 17 16:47:39 2001 (3B7D82EB)
    b9b44000 b9b44b80 drmkaud drmkaud.sys Wed Aug 04 02:07:56 2004 (41107D3C)
    b9bdc000 b9bece00 psched psched.sys Wed Aug 04 02:04:16 2004 (41107C60)
    b9bed000 b9c03680 ndiswan ndiswan.sys Wed Aug 04 02:14:30 2004 (41107EC6)
    b9cce000 b9cdd900 Cdfs Cdfs.SYS Wed Aug 04 02:14:09 2004 (41107EB1)
    b9cee000 b9d4fc00 ALCXSENS ALCXSENS.SYS Mon Feb 23 13:11:09 2004 (403A423D)
    b9d50000 b9d73980 portcls portcls.sys Wed Aug 04 02:15:47 2004 (41107F13)
    b9d74000 b9e09780 ALCXWDM ALCXWDM.SYS Fri May 14 11:24:08 2004 (40A4E498)
    b9e0e000 b9e10280 rasacd rasacd.sys Fri Aug 17 16:55:39 2001 (3B7D84CB)
    b9e32000 b9e54680 ks ks.sys Wed Aug 04 02:15:20 2004 (41107EF8)
    b9e55000 b9e68900 parport parport.sys Wed Aug 04 01:59:04 2004 (41107B28)
    b9e69000 b9e88c00 e1000325 e1000325.sys Tue Oct 28 17:51:03 2003 (3F9EF2D7)
    b9e89000 b9e9c780 VIDEOPRT VIDEOPRT.SYS Wed Aug 04 02:07:04 2004 (41107D08)
    b9e9d000 ba11e700 nv4_mini nv4_mini.sys Mon Aug 02 23:37:12 2004 (410F0868)
    ba11f000 ba141e80 USBPORT USBPORT.SYS Wed Aug 04 02:08:34 2004 (41107D62)
    ba476000 ba480200 raspppoe raspppoe.sys Wed Aug 04 02:05:06 2004 (41107C92)
    ba486000 ba492880 rasl2tp rasl2tp.sys Wed Aug 04 02:14:21 2004 (41107EBD)
    ba496000 ba4a4000 VMNetSrv VMNetSrv.sys Fri Sep 19 22:23:38 2003 (3F6BBA2A)
    ba4a6000 ba4b4b80 drmk drmk.sys Wed Aug 04 02:07:54 2004 (41107D3A)
    ba4b6000 ba4c0380 imapi imapi.sys Wed Aug 04 02:00:12 2004 (41107B6C)
    ba4c6000 ba4d4080 redbook redbook.sys Wed Aug 04 01:59:34 2004 (41107B46)
    ba4d6000 ba4e2180 cdrom cdrom.sys Wed Aug 04 01:59:52 2004 (41107B58)
    ba4e6000 ba4f5d80 serial serial.sys Wed Aug 04 02:15:51 2004 (41107F17)
    ba4f6000 ba505520 LMouFlt2 LMouFlt2.Sys Fri Nov 08 18:58:27 2002 (3DCC4FA3)
    ba506000 ba511900 L8042pr2 L8042pr2.Sys Fri Nov 08 18:58:11 2002 (3DCC4F93)
    ba546000 ba549c80 mssmbios mssmbios.sys Wed Aug 04 02:07:47 2004 (41107D33)
    ba586000 ba5a0580 Mup Mup.sys Wed Aug 04 02:15:20 2004 (41107EF8)
    ba5a1000 ba5cda80 NDIS NDIS.sys Wed Aug 04 02:14:27 2004 (41107EC3)
    ba5ce000 ba65a480 Ntfs Ntfs.sys Wed Aug 04 02:15:06 2004 (41107EEA)
    ba65b000 ba671780 KSecDD KSecDD.sys Wed Aug 04 01:59:45 2004 (41107B51)
    ba672000 ba683f00 sr sr.sys Wed Aug 04 02:06:22 2004 (41107CDE)
    ba684000 ba6a2780 fltmgr fltmgr.sys Wed Aug 04 02:01:17 2004 (41107BAD)
    ba6a3000 ba6ba480 atapi atapi.sys Wed Aug 04 01:59:41 2004 (41107B4D)
    ba6bb000 ba6e0700 dmio dmio.sys Wed Aug 04 02:07:13 2004 (41107D11)
    ba6e1000 ba6ff880 ftdisk ftdisk.sys Fri Aug 17 16:52:41 2001 (3B7D8419)
    ba700000 ba70ce00 i8042prt i8042prt.sys Wed Aug 04 02:14:36 2004 (41107ECC)
    ba710000 ba718d00 intelppm intelppm.sys Wed Aug 04 01:59:19 2004 (41107B37)
    ba720000 ba728880 Fips Fips.SYS Fri Aug 17 21:31:49 2001 (3B7DC585)
    ba730000 ba738700 wanarp wanarp.sys Wed Aug 04 02:04:57 2004 (41107C89)
    ba740000 ba748700 netbios netbios.sys Wed Aug 04 02:03:19 2004 (41107C27)
    ba7a0000 ba7b0a80 pci pci.sys Wed Aug 04 02:07:45 2004 (41107D31)
    ba7b1000 ba7ded80 ACPI ACPI.sys Wed Aug 04 02:07:35 2004 (41107D27)
    bf000000 bf011580 dxg dxg.sys Wed Aug 04 02:00:51 2004 (41107B93)
    bf012000 bf3aae80 nv4_disp nv4_disp.dll Mon Aug 02 23:32:55 2004 (410F0767)
    bf800000 bf9c0380 win32k win32k.sys Wed Aug 04 02:17:30 2004 (41107F7A)
    f75f7000 f75ffc00 isapnp isapnp.sys Fri Aug 17 16:58:01 2001 (3B7D8559)
    f7607000 f7611500 MountMgr MountMgr.sys Wed Aug 04 01:58:29 2004 (41107B05)
    f7617000 f7623c80 VolSnap VolSnap.sys Wed Aug 04 02:00:14 2004 (41107B6E)
    f7627000 f762fe00 disk disk.sys Wed Aug 04 01:59:53 2004 (41107B59)
    f7637000 f7643200 CLASSPNP CLASSPNP.SYS Wed Aug 04 02:14:26 2004 (41107EC2)
    f7647000 f7651580 agp440 agp440.sys Wed Aug 04 02:07:40 2004 (41107D2C)
    f7677000 f7682d00 raspptp raspptp.sys Wed Aug 04 02:14:26 2004 (41107EC2)
    f7687000 f768f900 msgpc msgpc.sys Wed Aug 04 02:04:11 2004 (41107C5B)
    f76c7000 f76d0f00 termdd termdd.sys Wed Aug 04 01:58:52 2004 (41107B1C)
    f76d7000 f76e0480 NDProxy NDProxy.SYS Fri Aug 17 16:55:30 2001 (3B7D84C2)
    f76e7000 f76f5100 usbhub usbhub.sys Wed Aug 04 02:08:40 2004 (41107D68)
    f7707000 f770d200 PCIIDEX PCIIDEX.SYS Wed Aug 04 01:59:40 2004 (41107B4C)
    f770f000 f7713900 PartMgr PartMgr.sys Fri Aug 17 21:32:23 2001 (3B7DC5A7)
    f771f000 f7723a80 Msfs Msfs.SYS Wed Aug 04 02:00:37 2004 (41107B85)
    f7737000 f773e880 Npfs Npfs.SYS Wed Aug 04 02:00:38 2004 (41107B86)
    f774f000 f7753500 watchdog watchdog.sys Wed Aug 04 02:07:32 2004 (41107D24)
    f7767000 f776c500 TDTCP TDTCP.SYS Wed Aug 04 01:58:52 2004 (41107B1C)
    f7797000 f779c000 usbuhci usbuhci.sys Wed Aug 04 02:08:34 2004 (41107D62)
    f779f000 f77a5800 usbehci usbehci.sys Wed Aug 04 02:08:34 2004 (41107D62)
    f77a7000 f77aca00 mouclass mouclass.sys Wed Aug 04 01:58:32 2004 (41107B08)
    f77af000 f77b5000 kbdclass kbdclass.sys Wed Aug 04 01:58:32 2004 (41107B08)
    f77b7000 f77bdb00 fdc fdc.sys Wed Aug 04 01:59:25 2004 (41107B3D)
    f77bf000 f77c3880 TDI TDI.SYS Wed Aug 04 02:07:47 2004 (41107D33)
    f77c7000 f77cd000 IOPORT IOPORT.SYS Fri Nov 27 12:57:16 1998 (365EE7FC)
    f77d7000 f77db580 ptilink ptilink.sys Fri Aug 17 16:49:53 2001 (3B7D8371)
    f77df000 f77e3080 raspti raspti.sys Fri Aug 17 16:55:32 2001 (3B7D84C4)
    f77ff000 f7804000 flpydisk flpydisk.sys Wed Aug 04 01:59:24 2004 (41107B3C)
    f7817000 f781d180 HIDPARSE HIDPARSE.SYS Wed Aug 04 02:08:15 2004 (41107D4F)
    f781f000 f7824200 vga vga.sys Wed Aug 04 02:07:06 2004 (41107D0A)
    f7897000 f789a000 BOOTVID BOOTVID.dll Fri Aug 17 16:49:09 2001 (3B7D8345)
    f7923000 f7925900 Dxapi Dxapi.sys Fri Aug 17 16:53:19 2001 (3B7D843F)
    f7927000 f7929d00 itchfltr itchfltr.sys Fri Nov 15 14:32:42 2002 (3DD54BDA)
    f792b000 f792ec80 serenum serenum.sys Wed Aug 04 01:59:06 2004 (41107B2A)
    f793b000 f793d580 ndistapi ndistapi.sys Fri Aug 17 16:55:29 2001 (3B7D84C1)
    f7987000 f7988b80 kdcom kdcom.dll Fri Aug 17 16:49:10 2001 (3B7D8346)
    f7989000 f798a100 WMILIB WMILIB.SYS Fri Aug 17 17:07:23 2001 (3B7D878B)
    f798b000 f798c580 intelide intelide.sys Wed Aug 04 01:59:40 2004 (41107B4C)
    f798d000 f798e700 dmload dmload.sys Fri Aug 17 16:58:15 2001 (3B7D8567)
    f79a1000 f79a2100 swenum swenum.sys Wed Aug 04 01:58:41 2004 (41107B11)
    f79a3000 f79a4280 USBD USBD.SYS Fri Aug 17 17:02:58 2001 (3B7D8682)
    f79cb000 f79ccf00 Fs_Rec Fs_Rec.SYS Fri Aug 17 16:49:37 2001 (3B7D8361)
    f79cd000 f79ce080 Beep Beep.SYS Fri Aug 17 16:47:33 2001 (3B7D82E5)
    f79cf000 f79d0080 mnmdd mnmdd.SYS Fri Aug 17 16:57:28 2001 (3B7D8538)
    f79d1000 f79d2080 RDPCDD RDPCDD.sys Fri Aug 17 16:46:56 2001 (3B7D82C0)
    f79d7000 f79d8100 dump_WMILIB dump_WMILIB.SYS Fri Aug 17 17:07:23 2001 (3B7D878B)
    f79dd000 f79dea80 ParVdm ParVdm.SYS Fri Aug 17 16:49:49 2001 (3B7D836D)
    f79e1000 f79e2900 splitter splitter.sys Wed Aug 04 02:07:46 2004 (41107D32)
    f7a4f000 f7a4fd00 pciide pciide.sys Fri Aug 17 16:51:49 2001 (3B7D83E5)
    f7a69000 f7a69c00 audstub audstub.sys Fri Aug 17 16:59:40 2001 (3B7D85BC)
    f7aad000 f7aadd00 dxgthk dxgthk.sys Fri Aug 17 16:53:12 2001 (3B7D8438)

    Unloaded modules:
    b9e12000 b9e16000 kbdhid.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f780f000 f7814000 Cdaudio.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    b9e16000 b9e19000 Sfloppy.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    Closing open log file c:\debuglog.txt
     
  7. 2005/03/28
    JoeHobart

    JoeHobart Inactive Alumni

    Joined:
    2004/05/19
    Messages:
    919
    Likes Received:
    1
    Hmm, i dont like this latest one, now we've gone from a corrupt timer, to corrupt pool, to a corrupt PTE...

    Have you done any RAM diagnostics? http://oca.microsoft.com/en/windiag.asp

    We may want to consider that you have a bad stick o ram thans causing random failures all over the machine. We have some options here, we can continue to pursue the pool corruption, or start down the path of diagnosing bad ram (by pulling one of the sticks)
     
  8. 2005/03/29
    DCTech

    DCTech Inactive Thread Starter

    Joined:
    2005/03/17
    Messages:
    4
    Likes Received:
    0
    Thanks again for your responses, I have run the Microsoft Memory Analyzer, which I have used in the past to detect bad ram, and let it run for several hours, no bad memory was detected. The machine has 3 Gb. of DDR400 memory, a P4 3.0Ghz. System, and MSI Mainboard. I was wondering the same thing as you, and know that it is possible for there to still be bad RAM even if the analyzer didn't pick it up. I just reformatted the machine yesterday to see if the Blue screen's continue, and paying attention to driver installation. If what you see indicates a possible memory issue, I will persue replacing the memory to see if the problem disappears. - Thanks Again. - DCTech.
     
Thread Status:
Not open for further replies.

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.