阅读633 返回首页    go 小米 go 小米5


【蓝屏问题】IRQL NOT LESS OR EQUAL


Microsoft (R) Windows Debugger Version 10.0.15063.468 X86
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [C:\WINDOWS\Minidump\112617-44703-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available

Symbol search path is: srv*
Executable search path is: 
Windows 10 Kernel Version 15063 MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Machine Name:
Kernel base = 0xfffff803`68c02000 PsLoadedModuleList = 0xfffff803`68f4e5c0
Debug session time: Sun Nov 26 20:15:14.063 2017 (UTC + 8:00)
System Uptime: 0 days 0:16:12.811
Loading Kernel Symbols
.

Press ctrl-c (cdb, kd, ntsd) or ctrl-break (windbg) to abort symbol loads that take too long.
Run !sym noisy before .reload to track down problems loading symbols.

..............................................................
................................................................
................................................................
........
Loading User Symbols
Loading unloaded module list
......................
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck D1, {28, 2, 0, fffff80e4931a7d6}

*** WARNING: Unable to verify timestamp for athw8x.sys
*** ERROR: Module load completed but symbols could not be loaded for athw8x.sys
Probably caused by : athw8x.sys ( athw8x+291351 )

Followup:     MachineOwner
---------

0: kd> !analyze -v 
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

DRIVER_IRQL_NOT_LESS_OR_EQUAL (d1)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high.  This is usually
caused by drivers using improper addresses.
If kernel debugger is available get stack backtrace.
Arguments:
Arg1: 0000000000000028, memory referenced
Arg2: 0000000000000002, IRQL
Arg3: 0000000000000000, value 0 = read operation, 1 = write operation
Arg4: fffff80e4931a7d6, address which referenced memory

Debugging Details:
------------------


DUMP_CLASS: 1

DUMP_QUALIFIER: 400

SYSTEM_MANUFACTURER:  LENOVO

SYSTEM_PRODUCT_NAME:  20216

SYSTEM_SKU:  LENOVO_BI_IDEAPAD  

SYSTEM_VERSION:  Lenovo IdeaPad Y410P

BIOS_VENDOR:  LENOVO

BIOS_VERSION:  74CN44WW(V3.05)

BIOS_DATE:  09/18/2013

BASEBOARD_MANUFACTURER:  LENOVO

BASEBOARD_PRODUCT:  VIQY0Y1

BASEBOARD_VERSION:  31900060STD

DUMP_TYPE:  2

DUMP_FILE_ATTRIBUTES: 0x8
  Kernel Generated Triage Dump

BUGCHECK_P1: 28

BUGCHECK_P2: 2

BUGCHECK_P3: 0

BUGCHECK_P4: fffff80e4931a7d6

READ_ADDRESS: fffff80368fe3358: Unable to get MiVisibleState
Unable to get NonPagedPoolStart
Unable to get NonPagedPoolEnd
Unable to get PagedPoolStart
Unable to get PagedPoolEnd
 0000000000000028 

CURRENT_IRQL:  2

FAULTING_IP: 
ndis!NdisMAllocateNetBufferSGList+25836
fffff80e`4931a7d6 8b4728          mov     eax,dword ptr [rdi+28h]

CPU_COUNT: 4

CPU_MHZ: 9be

CPU_VENDOR:  GenuineIntel

CPU_FAMILY: 6

CPU_MODEL: 3c

CPU_STEPPING: 3

CPU_MICROCODE: 6,3c,3,0 (F,M,S,R)  SIG: 1E'00000000 (cache) 1E'00000000 (init)

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  WIN8_DRIVER_FAULT

BUGCHECK_STR:  AV

PROCESS_NAME:  System

ANALYSIS_SESSION_HOST:  EDISONCHEUNG-PC

ANALYSIS_SESSION_TIME:  11-26-2017 20:32:23.0476

ANALYSIS_VERSION: 10.0.15063.468 x86fre

TRAP_FRAME:  fffff80367763f60 -- (.trap 0xfffff80367763f60)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=0000000000000034 rbx=0000000000000000 rcx=000000000000000c
rdx=ffffd7076bed0190 rsi=0000000000000000 rdi=0000000000000000
rip=fffff80e4931a7d6 rsp=fffff803677640f0 rbp=fffff803677648b9
 r8=ffffd7076db4b824  r9=0000000000000001 r10=ffffd7076e4033e0
r11=0000000000000001 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0         nv up ei pl nz ac po nc
ndis!NdisMAllocateNetBufferSGList+0x25836:
fffff80e`4931a7d6 8b4728          mov     eax,dword ptr [rdi+28h] ds:00000000`00000028=????????
Resetting default scope

LAST_CONTROL_TRANSFER:  from fffff80368d798a9 to fffff80368d6e580

STACK_TEXT:  
fffff803`67763e18 fffff803`68d798a9 : 00000000`0000000a 00000000`00000028 00000000`00000002 00000000`00000000 : nt!KeBugCheckEx
fffff803`67763e20 fffff803`68d77e7d : ffffd707`6db90534 fffff80e`4d388510 ffffd707`6db9054c fffff80e`4d388504 : nt!KiBugCheckDispatch+0x69
fffff803`67763f60 fffff80e`4931a7d6 : 00000000`424e444e 00000000`00000050 00000000`00000000 fffff803`6b5e6759 : nt!KiPageFault+0x23d
fffff803`677640f0 fffff80e`4d231351 : 00000000`ffffffff 00000000`00000000 ffffd707`6db4b824 ffffd707`6dab5030 : ndis!NdisMAllocateNetBufferSGList+0x25836
fffff803`677641b0 00000000`ffffffff : 00000000`00000000 ffffd707`6db4b824 ffffd707`6dab5030 ffffd707`6dc10870 : athw8x+0x291351
fffff803`677641b8 00000000`00000000 : ffffd707`6db4b824 ffffd707`6dab5030 ffffd707`6dc10870 fffff80e`000001c0 : 0xffffffff


STACK_COMMAND:  kb

THREAD_SHA1_HASH_MOD_FUNC:  1a28638a517d525a9c0b6c9e2c3582097b733d2d

THREAD_SHA1_HASH_MOD_FUNC_OFFSET:  63cbee704e8b11cdd038738d33522b777c971b26

THREAD_SHA1_HASH_MOD:  b156a5d02dc94eb31d1aac10bc23fce5c52d3740

FOLLOWUP_IP: 
athw8x+291351
fffff80e`4d231351 ??              ???

SYMBOL_STACK_INDEX:  4

SYMBOL_NAME:  athw8x+291351

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: athw8x

IMAGE_NAME:  athw8x.sys

DEBUG_FLR_IMAGE_TIMESTAMP:  56a9e4f6

BUCKET_ID_FUNC_OFFSET:  291351

FAILURE_BUCKET_ID:  AV_athw8x!unknown_function

BUCKET_ID:  AV_athw8x!unknown_function

PRIMARY_PROBLEM_CLASS:  AV_athw8x!unknown_function

TARGET_TIME:  2017-11-26T12:15:14.000Z

OSBUILD:  15063

OSSERVICEPACK:  674

SERVICEPACK_NUMBER: 0

OS_REVISION: 0

SUITE_MASK:  272

PRODUCT_TYPE:  1

OSPLATFORM_TYPE:  x64

OSNAME:  Windows 10

OSEDITION:  Windows 10 WinNt TerminalServer SingleUserTS

OS_LOCALE:  

USER_LCID:  0

OSBUILD_TIMESTAMP:  2017-09-29 15:20:26

ANALYSIS_SESSION_ELAPSED_TIME:  8b5

ANALYSIS_SOURCE:  KM

FAILURE_ID_HASH_STRING:  km:av_athw8x!unknown_function

FAILURE_ID_HASH:  {9e05caf6-f539-cbce-bd78-1ac8d53e7252}

Followup:     MachineOwner
---------

0: kd> !process
       ^ Syntax error in '!process'
0: kd> !process
PROCESS ffffd7076b8a9500
    SessionId: none  Cid: 0004    Peb: 00000000  ParentCid: 0000
    DirBase: 001aa000  ObjectTable: ffff808977014040  HandleCount: <Data Not Accessible>
    Image: System
    VadRoot ffffd7076b82d670 Vads 7 Clone 0 Private 22. Modified 79443. Locked 0.
    DeviceMap ffff808977002080
    Token                             ffff808977016a40
    ReadMemory error: Cannot get nt!KeMaximumIncrement value.
fffff78000000000: Unable to get shared data
    ElapsedTime                       00:00:00.000
    UserTime                          00:00:00.000
    KernelTime                        00:00:00.000
    QuotaPoolUsage[PagedPool]         0
    QuotaPoolUsage[NonPagedPool]      136
    Working Set Sizes (now,min,max)  (40, 50, 450) (160KB, 200KB, 1800KB)
    PeakWorkingSetSize                1959
    VirtualSize                       3 Mb
    PeakVirtualSize                   11 Mb
    PageFaultCount                    30563
    MemoryPriority                    BACKGROUND
    BasePriority                      8
    CommitCharge                      35

        *** Error in reading nt!_ETHREAD @ ffffd7076b8af700


最后更新:2017-11-26 21:07:30

  上一篇:go 新装的电脑,WINDOWS 10 总是蓝屏,求帮忙看一下
  下一篇:go 想要获取trustedinstaller权限,但是网上的方法对我都没用,我该怎么办?