阅读885 返回首页    go windows


找不到具体原因,求助大神

Symbol search path is: SRV*C:\Symbols*https://msdl.microsoft.com/download/symbols
Executable search path is: 
Windows Server 2003 Kernel Version 3790 (Service Pack 2) MP (4 procs) Free x86 compatible
Product: Server, suite: Enterprise TerminalServer SingleUserTS
Built by: 3790.srv03_sp2_rtm.070216-1710
Kernel base = 0x80800000 PsLoadedModuleList = 0x808a6ea8
Debug session time: Wed Dec 27 15:39:15.847 2017 (GMT+8)
System Uptime: 0 days 0:50:19.791
Loading Kernel Symbols
......................................................................................................
Loading User Symbols

Loading unloaded module list
......
ERROR: FindPlugIns 8007007b
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck D1, {10003, d0000002, 0, ba09b040}

*** ERROR: Module load completed but symbols could not be loaded for netkvm.sys
Probably caused by : netkvm.sys ( netkvm+7e50 )

Followup: MachineOwner
---------

3: kd> !analvze -v
No export analvze found
3: kd> !analyze -v
ERROR: FindPlugIns 8007007b
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

DRIVER_IRQL_NOT_LESS_OR_EQUAL (d1)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high.  This is usually
caused by drivers using improper addresses.
If kernel debugger is available get stack backtrace.
Arguments:
Arg1: 00010003, memory referenced
Arg2: d0000002, IRQL
Arg3: 00000000, value 0 = read operation, 1 = write operation
Arg4: ba09b040, address which referenced memory

Debugging Details:
------------------


READ_ADDRESS:  00010003 

CURRENT_IRQL:  2

FAULTING_IP: 
tcpip!FreeRBChain+d
ba09b040 83780403        cmp     dword ptr [eax+4],3

DEFAULT_BUCKET_ID:  DRIVER_FAULT

BUGCHECK_STR:  0xD1

PROCESS_NAME:  Idle

TRAP_FRAME:  f78be8fc -- (.trap 0xfffffffff78be8fc)
ErrCode = 00000000
eax=0000ffff ebx=80a5a440 ecx=0000005f edx=8c1e99f8 esi=8c7fa008 edi=00000000
eip=ba09b040 esp=f78be970 ebp=f78be974 iopl=0         nv up ei pl nz na pe nc
cs=0008  ss=0010  ds=0023  es=0023  fs=0030  gs=0000             efl=00010206
tcpip!FreeRBChain+0xd:
ba09b040 83780403        cmp     dword ptr [eax+4],3  ds:0023:00010003=????????
Resetting default scope

LAST_CONTROL_TRANSFER:  from ba09b040 to 8088c963

STACK_TEXT:  
f78be8fc ba09b040 badb0d00 8c1e99f8 00000000 nt!KiTrap0E+0x2a7
f78be974 ba0a2ab4 8c9c12c8 80888af0 8c585224 tcpip!FreeRBChain+0xd
f78be99c ba09dba4 07585220 00000002 80888af0 tcpip!CloseTCB+0x3a1
f78be9b8 ba098c2d 8c585220 00000002 8c5d1ba8 tcpip!DerefTCB+0x60
f78bea80 ba095236 8c6f32c0 012a16ac e3181680 tcpip!TCPRcv+0x1753
f78beae0 ba09345e 00000020 8c6f32c0 ba0989d2 tcpip!DeliverToUser+0x189
f78beb70 ba093684 8c6f32c0 8c77662e 0000001a tcpip!IPRcvPacket+0x686
f78bebb0 ba093517 00000000 8c77c3b8 8c77660c tcpip!ARPRcvIndicationNew+0x167
f78bec08 f76f7208 8c6ed570 8c77c3b8 8c8d2008 tcpip!ARPRcvPacket+0x2f9
f78bec5c ba670e50 8caf0ab0 8c8d2008 00000001 NDIS!ethFilterDprIndicateReceivePacket+0x385
WARNING: Stack unwind information not available. Following frames may be wrong.
f78bec98 ba66ed77 8c77660c 000003e8 8c958fb0 netkvm+0x7e50
f78becc4 ba66ac8d 00958a10 000003e8 8caf0ab0 netkvm+0x5d77
f78bece0 f76ec466 8c958a10 f7737a40 8c958f00 netkvm+0x1c8d
f78becf8 808320f0 8c958f00 8c958eec 00000000 NDIS!ndisMDpcX+0x21
f78bed50 8088de1f 00000000 0000000e 00000000 nt!KiRetireDpcList+0xca
f78bed54 00000000 0000000e 00000000 00000000 nt!KiIdleLoop+0x37


STACK_COMMAND:  kb

FOLLOWUP_IP: 
netkvm+7e50
ba670e50 85ff            test    edi,edi

SYMBOL_STACK_INDEX:  a

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: netkvm

IMAGE_NAME:  netkvm.sys

DEBUG_FLR_IMAGE_TIMESTAMP:  57ac5c05

SYMBOL_NAME:  netkvm+7e50

FAILURE_BUCKET_ID:  0xD1_netkvm+7e50

BUCKET_ID:  0xD1_netkvm+7e50

Followup: MachineOwner
---------

3: kd> !process
PROCESS 8089db40  SessionId: none  Cid: 0000    Peb: 00000000  ParentCid: 0000
    DirBase: 00704000  ObjectTable: e1000e40  HandleCount: 653.
    Image: Idle
    VadRoot 00000000 Vads 0 Clone 0 Private 0. Modified 0. Locked 0.
    DeviceMap 00000000
    Token                             e1000a30
    ElapsedTime                       00:00:00.000
    UserTime                          00:00:00.000
    KernelTime                        03:17:47.000
    QuotaPoolUsage[PagedPool]         0
    QuotaPoolUsage[NonPagedPool]      0
    Working Set Sizes (now,min,max)  (7, 50, 450) (28KB, 200KB, 1800KB)
    PeakWorkingSetSize                0
    VirtualSize                       0 Mb
    PeakVirtualSize                   0 Mb
    PageFaultCount                    0
    MemoryPriority                    BACKGROUND
    BasePriority                      0
    CommitCharge                      0

        THREAD 8089d8c0  Cid 0000.0000  Teb: 00000000 Win32Thread: 00000000 RUNNING on processor 0
        THREAD f772a090  Cid 0000.0000  Teb: 00000000 Win32Thread: 00000000 RUNNING on processor 1
        THREAD f7732090  Cid 0000.0000  Teb: 00000000 Win32Thread: 00000000 RUNNING on processor 2
        THREAD f773a090  Cid 0000.0000  Teb: 00000000 Win32Thread: 00000000 RUNNING on processor 3


最后更新:2017-12-31 22:04:15

  上一篇:go 请问 Windows 10 1709 专业版 在哪下载啊
  下一篇:go 笔电win10开机启动完惠普的logo后就黑屏转圈20秒左右才进入锁屏画面