【藍屏問題】IRQL NOT LESS OR EQUAL
Microsoft (R) Windows Debugger Version 10.0.15063.468 X86
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [C:\WINDOWS\Minidump\112617-44703-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: srv*
Executable search path is:
Windows 10 Kernel Version 15063 MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Machine Name:
Kernel base = 0xfffff803`68c02000 PsLoadedModuleList = 0xfffff803`68f4e5c0
Debug session time: Sun Nov 26 20:15:14.063 2017 (UTC + 8:00)
System Uptime: 0 days 0:16:12.811
Loading Kernel Symbols
.
Press ctrl-c (cdb, kd, ntsd) or ctrl-break (windbg) to abort symbol loads that take too long.
Run !sym noisy before .reload to track down problems loading symbols.
..............................................................
................................................................
................................................................
........
Loading User Symbols
Loading unloaded module list
......................
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck D1, {28, 2, 0, fffff80e4931a7d6}
*** WARNING: Unable to verify timestamp for athw8x.sys
*** ERROR: Module load completed but symbols could not be loaded for athw8x.sys
Probably caused by : athw8x.sys ( athw8x+291351 )
Followup: MachineOwner
---------
0: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
DRIVER_IRQL_NOT_LESS_OR_EQUAL (d1)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high. This is usually
caused by drivers using improper addresses.
If kernel debugger is available get stack backtrace.
Arguments:
Arg1: 0000000000000028, memory referenced
Arg2: 0000000000000002, IRQL
Arg3: 0000000000000000, value 0 = read operation, 1 = write operation
Arg4: fffff80e4931a7d6, address which referenced memory
Debugging Details:
------------------
DUMP_CLASS: 1
DUMP_QUALIFIER: 400
SYSTEM_MANUFACTURER: LENOVO
SYSTEM_PRODUCT_NAME: 20216
SYSTEM_SKU: LENOVO_BI_IDEAPAD
SYSTEM_VERSION: Lenovo IdeaPad Y410P
BIOS_VENDOR: LENOVO
BIOS_VERSION: 74CN44WW(V3.05)
BIOS_DATE: 09/18/2013
BASEBOARD_MANUFACTURER: LENOVO
BASEBOARD_PRODUCT: VIQY0Y1
BASEBOARD_VERSION: 31900060STD
DUMP_TYPE: 2
DUMP_FILE_ATTRIBUTES: 0x8
Kernel Generated Triage Dump
BUGCHECK_P1: 28
BUGCHECK_P2: 2
BUGCHECK_P3: 0
BUGCHECK_P4: fffff80e4931a7d6
READ_ADDRESS: fffff80368fe3358: Unable to get MiVisibleState
Unable to get NonPagedPoolStart
Unable to get NonPagedPoolEnd
Unable to get PagedPoolStart
Unable to get PagedPoolEnd
0000000000000028
CURRENT_IRQL: 2
FAULTING_IP:
ndis!NdisMAllocateNetBufferSGList+25836
fffff80e`4931a7d6 8b4728 mov eax,dword ptr [rdi+28h]
CPU_COUNT: 4
CPU_MHZ: 9be
CPU_VENDOR: GenuineIntel
CPU_FAMILY: 6
CPU_MODEL: 3c
CPU_STEPPING: 3
CPU_MICROCODE: 6,3c,3,0 (F,M,S,R) SIG: 1E'00000000 (cache) 1E'00000000 (init)
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
BUGCHECK_STR: AV
PROCESS_NAME: System
ANALYSIS_SESSION_HOST: EDISONCHEUNG-PC
ANALYSIS_SESSION_TIME: 11-26-2017 20:32:23.0476
ANALYSIS_VERSION: 10.0.15063.468 x86fre
TRAP_FRAME: fffff80367763f60 -- (.trap 0xfffff80367763f60)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=0000000000000034 rbx=0000000000000000 rcx=000000000000000c
rdx=ffffd7076bed0190 rsi=0000000000000000 rdi=0000000000000000
rip=fffff80e4931a7d6 rsp=fffff803677640f0 rbp=fffff803677648b9
r8=ffffd7076db4b824 r9=0000000000000001 r10=ffffd7076e4033e0
r11=0000000000000001 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei pl nz ac po nc
ndis!NdisMAllocateNetBufferSGList+0x25836:
fffff80e`4931a7d6 8b4728 mov eax,dword ptr [rdi+28h] ds:00000000`00000028=????????
Resetting default scope
LAST_CONTROL_TRANSFER: from fffff80368d798a9 to fffff80368d6e580
STACK_TEXT:
fffff803`67763e18 fffff803`68d798a9 : 00000000`0000000a 00000000`00000028 00000000`00000002 00000000`00000000 : nt!KeBugCheckEx
fffff803`67763e20 fffff803`68d77e7d : ffffd707`6db90534 fffff80e`4d388510 ffffd707`6db9054c fffff80e`4d388504 : nt!KiBugCheckDispatch+0x69
fffff803`67763f60 fffff80e`4931a7d6 : 00000000`424e444e 00000000`00000050 00000000`00000000 fffff803`6b5e6759 : nt!KiPageFault+0x23d
fffff803`677640f0 fffff80e`4d231351 : 00000000`ffffffff 00000000`00000000 ffffd707`6db4b824 ffffd707`6dab5030 : ndis!NdisMAllocateNetBufferSGList+0x25836
fffff803`677641b0 00000000`ffffffff : 00000000`00000000 ffffd707`6db4b824 ffffd707`6dab5030 ffffd707`6dc10870 : athw8x+0x291351
fffff803`677641b8 00000000`00000000 : ffffd707`6db4b824 ffffd707`6dab5030 ffffd707`6dc10870 fffff80e`000001c0 : 0xffffffff
STACK_COMMAND: kb
THREAD_SHA1_HASH_MOD_FUNC: 1a28638a517d525a9c0b6c9e2c3582097b733d2d
THREAD_SHA1_HASH_MOD_FUNC_OFFSET: 63cbee704e8b11cdd038738d33522b777c971b26
THREAD_SHA1_HASH_MOD: b156a5d02dc94eb31d1aac10bc23fce5c52d3740
FOLLOWUP_IP:
athw8x+291351
fffff80e`4d231351 ?? ???
SYMBOL_STACK_INDEX: 4
SYMBOL_NAME: athw8x+291351
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: athw8x
IMAGE_NAME: athw8x.sys
DEBUG_FLR_IMAGE_TIMESTAMP: 56a9e4f6
BUCKET_ID_FUNC_OFFSET: 291351
FAILURE_BUCKET_ID: AV_athw8x!unknown_function
BUCKET_ID: AV_athw8x!unknown_function
PRIMARY_PROBLEM_CLASS: AV_athw8x!unknown_function
TARGET_TIME: 2017-11-26T12:15:14.000Z
OSBUILD: 15063
OSSERVICEPACK: 674
SERVICEPACK_NUMBER: 0
OS_REVISION: 0
SUITE_MASK: 272
PRODUCT_TYPE: 1
OSPLATFORM_TYPE: x64
OSNAME: Windows 10
OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS
OS_LOCALE:
USER_LCID: 0
OSBUILD_TIMESTAMP: 2017-09-29 15:20:26
ANALYSIS_SESSION_ELAPSED_TIME: 8b5
ANALYSIS_SOURCE: KM
FAILURE_ID_HASH_STRING: km:av_athw8x!unknown_function
FAILURE_ID_HASH: {9e05caf6-f539-cbce-bd78-1ac8d53e7252}
Followup: MachineOwner
---------
0: kd> !process
^ Syntax error in '!process'
0: kd> !process
PROCESS ffffd7076b8a9500
SessionId: none Cid: 0004 Peb: 00000000 ParentCid: 0000
DirBase: 001aa000 ObjectTable: ffff808977014040 HandleCount: <Data Not Accessible>
Image: System
VadRoot ffffd7076b82d670 Vads 7 Clone 0 Private 22. Modified 79443. Locked 0.
DeviceMap ffff808977002080
Token ffff808977016a40
ReadMemory error: Cannot get nt!KeMaximumIncrement value.
fffff78000000000: Unable to get shared data
ElapsedTime 00:00:00.000
UserTime 00:00:00.000
KernelTime 00:00:00.000
QuotaPoolUsage[PagedPool] 0
QuotaPoolUsage[NonPagedPool] 136
Working Set Sizes (now,min,max) (40, 50, 450) (160KB, 200KB, 1800KB)
PeakWorkingSetSize 1959
VirtualSize 3 Mb
PeakVirtualSize 11 Mb
PageFaultCount 30563
MemoryPriority BACKGROUND
BasePriority 8
CommitCharge 35
*** Error in reading nt!_ETHREAD @ ffffd7076b8af700
最後更新:2017-11-26 21:07:30
上一篇:
新裝的電腦,WINDOWS 10 總是藍屏,求幫忙看一下
下一篇:
想要獲取trustedinstaller權限,但是網上的方法對我都沒用,我該怎麼辦?
你的設備已過期,並缺少重要的安全和質量更新,因此存在風險。讓我們帶你重回正軌,這樣
Microsoft store 無法聯網,顯示Microsoft Store需要聯網,你似乎沒有聯網
設備以遷移 由於僅部分匹配或匹配不明確,因此無法遷移設備
由於在創建轉儲期間出錯,創建轉儲文件失敗。
發生臨時 DNS 錯誤
應用商店,在我們這邊發生問題,無法使你登陸,錯誤代碼: 0xD000000D
照相機不可用,錯誤代碼:0xA00F4244(0xC00DABE0)
應用商店打開異常提示“清單中指定了未知的布局”
自定義掃描Windows defender裏麵的設備性能和運行狀況 黃色感歎號問題
windows預口體驗成員內口版本遇到問題需要重啟
熱門內容
windows10 點開此電腦後,有兩個顯示硬盤盤符的目錄是怎麼回事?
windows 10 專業版無法下載中文語言包
KB4056892
win10不能共享文件夾
在Surfacebook上用Windows to go 1703版本,更新後重啟藍屏,無法進入係統
windows10 1709版本更新失敗,錯誤0x8007001f
microdoft visual c++ 2015 redistributable
WIN10 Insider Preview 17025更新失敗,錯誤代碼0x80096004
計算機管理服務 出現一個內部錯誤(INVALID
關於控製麵板中的安全和維護內提示Windows defender 防病毒已關閉的問題