Results 1 to 12 of 12

Hybrid View

Previous Post Previous Post   Next Post Next Post
  1. #1
    bmock squax's Avatar
    Join Date: Jan:2007
    Location: Sofiq
    Posts: 61

    àíàëèç îò Windbg

    Ïîÿâèõà ìè ñå äâà ñèíè åêðàíà:
    -îò ìèíàëàòà ñåäìèöà


    -è îò òàçè ñåäìèöà äðóã


    Ïóñíàõ ñúçäàäåíèòå MEMORY.DMP ôàéëîâå â äåáúãåðà Windbg, ñàìî ÷å íå ìîãà äà ðàçáåðà àíàëèçèòå, êîèòî ìè äàâà. Àêî íÿêîé ìîæå äà ìè ïîìîãíå, ùå ñúì ìó áëàãîäàðåí.

    Ïúðâèÿ àíàëèç å

    Use !analyze -v to get detailed debugging information.
    BugCheck 50, {80a42038, 1, 20003, 0}
    Probably caused by : win32k.sys ( win32k!GenerateNlsVkKey+26 )
    Followup: MachineOwner
    ---------
    kd> .reload
    Loading Kernel Symbols
    ........................................ ........................................ ........................................
    Loading User Symbols
    PEB is paged out (Peb.Ldr = 7ffdf00c). Type ".hh dbgerr001" for details
    Loading unloaded module list
    ................
    kd> !analyze -v
    **************************************** ***************************************
    * *
    * Bugcheck Analysis *
    * *
    **************************************** ***************************************
    PAGE_FAULT_IN_NONPAGED_AREA (50)
    Invalid system memory was referenced. This cannot be protected by try-except,
    it must be protected by a Probe. Typically the address is just plain bad or it
    is pointing at freed memory.
    Arguments:
    Arg1: 80a42038, memory referenced.
    Arg2: 00000001, value 0 = read operation, 1 = write operation.
    Arg3: 00020003, If non-zero, the instruction address which referenced the bad memory
    address.
    Arg4: 00000000, (reserved)
    Debugging Details:
    ------------------
    WRITE_ADDRESS: 80a42038
    FAULTING_IP:
    +20003
    00020003 ?? ???
    MM_INTERNAL_CODE: 0
    DEFAULT_BUCKET_ID: DRIVER_FAULT
    BUGCHECK_STR: 0x50
    PROCESS_NAME: csrss.exe
    TRAP_FRAME: f74a98c8 -- (.trap fffffffff74a98c8)
    ErrCode = 00000002
    eax=80a42038 ebx=bf990000 ecx=00000040 edx=00000004 esi=00868278 edi=f74a99d0
    eip=00020003 esp=f74a993c ebp=f74a994c iopl=0 nv up ei ng nz na po nc
    cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00010282
    00020003 ?? ???
    Resetting default scope
    LAST_CONTROL_TRANSFER: from 80523f44 to 8053331e
    STACK_TEXT:
    f74a9864 80523f44 00000050 80a42038 00000001 nt!KeBugCheckEx+0x1b
    f74a98b0 804e1718 00000001 80a42038 00000000 nt!MmAccessFault+0x6f5
    f74a98b0 00020003 00000001 80a42038 00000000 nt!KiTrap0E+0xcc
    WARNING: Frame IP not in any known module. Following frames may be wrong.
    f74a9938 bf930fbd f74a99d0 00000000 00000000 0x20003
    f74a994c bf9310bf 00868278 bf990000 f74a99d0 win32k!GenerateNlsVkKey+0x26
    f74a9974 bf8b712a 00868278 f74a99d0 00000000 win32k!KbdNlsFuncTypeAlt+0x85
    f74a9990 bf8b85e1 f74a99d0 00000000 f74a99e8 win32k!xxxKENLSProcs+0x67
    f74a99ac bf873940 f74a9912 00000000 00000000 win32k!xxxProcessKeyEvent+0x1f9
    f74a99ec bf874449 e1ef8100 a4ef8180 00000001 win32k!ProcessKeyboardInputWorker+0x24d
    f74a9a0c bf86dcb0 e1ef8180 8204bd58 f74a9a64 win32k!ProcessKeyboardInput+0x68
    f74a9a1c 804f18b8 e1ef8180 e1ef81a8 00000000 win32k!InputApc+0x4e
    f74a9a64 804f02c1 00000000 00000000 00000000 nt!KiDeliverApc+0x124
    f74a9a7c 804e3b7d 804dcbe4 00000001 00000000 nt!KiSwapThread+0x64
    f74a9ab4 bf888cc2 00000007 82108e20 00000001 nt!KeWaitForMultipleObjects+0x284
    f74a9d30 bf86d09c f74b94a8 00000002 f74a9d54 win32k!RawInputThread+0x4f3
    f74a9d40 bf8010ca f74b94a8 f74a9d64 006dfff4 win32k!xxxCreateSystemThreads+0x60
    f74a9d54 804de7ec 00000000 00000022 00000000 win32k!NtUserCallOneParam+0x23
    f74a9d54 7c90eb94 00000000 00000022 00000000 nt!KiFastCallEntry+0xf8
    00000000 00000000 00000000 00000000 00000000 0x7c90eb94
    STACK_COMMAND: kb
    FOLLOWUP_IP:
    win32k!GenerateNlsVkKey+26
    bf930fbd 5d pop ebp
    SYMBOL_STACK_INDEX: 4
    FOLLOWUP_NAME: MachineOwner
    MODULE_NAME: win32k
    IMAGE_NAME: win32k.sys
    DEBUG_FLR_IMAGE_TIMESTAMP: 43446a58
    SYMBOL_NAME: win32k!GenerateNlsVkKey+26
    FAILURE_BUCKET_ID: 0x50_W_win32k!GenerateNlsVkKey+26
    BUCKET_ID: 0x50_W_win32k!GenerateNlsVkKey+26
    Followup: MachineOwner
    ---------

    Âòîðèÿò å

    Use !analyze -v to get detailed debugging information.
    BugCheck 50, {e34415e7, 0, bf887eef, 1}
    Probably caused by : win32k.sys ( win32k!ReadLayoutFile+22c )
    Followup: MachineOwner
    ---------
    kd> .reload
    Loading Kernel Symbols
    ........................................ ........................................ ........................................
    Loading User Symbols
    PEB is paged out (Peb.Ldr = 7ffdf00c). Type ".hh dbgerr001" for details
    Loading unloaded module list
    .................
    kd> !analyze -v
    **************************************** ***************************************
    * *
    * Bugcheck Analysis *
    * *
    **************************************** ***************************************
    PAGE_FAULT_IN_NONPAGED_AREA (50)
    Invalid system memory was referenced. This cannot be protected by try-except,
    it must be protected by a Probe. Typically the address is just plain bad or it
    is pointing at freed memory.
    Arguments:
    Arg1: e34415e7, memory referenced.
    Arg2: 00000000, value 0 = read operation, 1 = write operation.
    Arg3: bf887eef, If non-zero, the instruction address which referenced the bad memory
    address.
    Arg4: 00000001, (reserved)
    Debugging Details:
    ------------------
    READ_ADDRESS: e34415e7 Paged pool
    FAULTING_IP:
    win32k!ReadLayoutFile+22c
    bf887eef 397808 cmp dword ptr [eax+8],edi
    MM_INTERNAL_CODE: 1
    IMAGE_NAME: win32k.sys
    DEBUG_FLR_IMAGE_TIMESTAMP: 43446a58
    MODULE_NAME: win32k
    FAULTING_MODULE: bf800000 win32k
    DEFAULT_BUCKET_ID: DRIVER_FAULT
    BUGCHECK_STR: 0x50
    PROCESS_NAME: winlogon.exe
    TRAP_FRAME: f7cd18b4 -- (.trap fffffffff7cd18b4)
    ErrCode = 00000000
    eax=e34415df ebx=e343b7c8 ecx=e343a008 edx=e34415df esi=e343b5b4 edi=00000000
    eip=bf887eef esp=f7cd1928 ebp=f7cd1944 iopl=0 nv up ei ng nz na po nc
    cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00010282
    win32k!ReadLayoutFile+0x22c:
    bf887eef 397808 cmp dword ptr [eax+8],edi ds:0023:e34415e7=????????
    Resetting default scope
    LAST_CONTROL_TRANSFER: from 80523f44 to 8053331e
    STACK_TEXT:
    f7cd1850 80523f44 00000050 e34415e7 00000000 nt!KeBugCheckEx+0x1b
    f7cd189c 804e1718 00000000 e34415e7 00000000 nt!MmAccessFault+0x6f5
    f7cd189c bf887eef 00000000 e34415e7 00000000 nt!KiTrap0E+0xcc
    f7cd1944 bf887c93 e16c64a8 00a40178 00000858 win32k!ReadLayoutFile+0x22c
    f7cd1964 bf87126f 00000920 000017c0 000075d7 win32k!LoadKeyboardLayoutFile+0x6a
    f7cd19f0 bf870d72 82225120 00000920 00000000 win32k!xxxLoadKeyboardLayoutEx+0x1be
    f7cd1d40 804de7ec 00000920 75d717c0 0006e1b4 win32k!NtUserLoadKeyboardLayoutEx+0x152
    f7cd1d40 7c90eb94 00000920 75d717c0 0006e1b4 nt!KiFastCallEntry+0xf8
    WARNING: Frame IP not in any known module. Following frames may be wrong.
    0006e17c 00000000 00000000 00000000 00000000 0x7c90eb94
    STACK_COMMAND: kb
    FOLLOWUP_IP:
    win32k!ReadLayoutFile+22c
    bf887eef 397808 cmp dword ptr [eax+8],edi
    SYMBOL_STACK_INDEX: 3
    FOLLOWUP_NAME: MachineOwner
    SYMBOL_NAME: win32k!ReadLayoutFile+22c
    FAILURE_BUCKET_ID: 0x50_win32k!ReadLayoutFile+22c
    BUCKET_ID: 0x50_win32k!ReadLayoutFile+22c
    Followup: MachineOwner
    ---------

  2. #2
    Master of Magic Ar4i's Avatar
    Join Date: Nov:2001
    Location: Ñîôèÿ
    Posts: 6,563
    Êàêâî î÷àêâàø äà ðàçáåðåø? Ïîäîáíè ñèíè åêðàíè èçëèçàò â íàé-÷åñòî â ðåçóëòàò îò íåñòàáèëíîñò íà ñèñòåìàòà è â ñëåäñòâèå íà òîâà âúçíèêâà ãðåøêà â íÿêîé äðàéâåð, êàêòî èçãëåæäà â òâîÿ ñëó÷àè. Äåáúãåðà íÿìà äà ïîìîãíå îñîáåíî â ðàçáèðàíåòî íà êàêâîòî è äà áèëî, ïî-ñêîðî ìîæåø äà ïóñêàø ïîäîáíè ãðåøêè â ãîîãëå çà äà ñå îðèåíòèðàø îò êàêâî ìîæå äà å.
    Ïî-äîáðå ïóñíè íÿêâè òåñòîâå çà ñòàáèëíîñò íà ïðîöåñîð/ïàìåò è ò.í.
    Ar4i

  3. #3
    bmock squax's Avatar
    Join Date: Jan:2007
    Location: Sofiq
    Posts: 61
    Àç ñè ìèñëåõ ÷å íÿêúäå â òîçè òåêñò ïèøå èìåòî íà äðàéâåðà, äåò ïðàâè ïðîáëåìè, çà òâà ïèòàõ. Îê. Ùå ïóñíà òåñòîâå.

  4. #4
    Áåëûé è ïóøèñòûé Bombera's Avatar
    Join Date: Jul:2001
    Location: Êàçàíëúê 4EVA
    Posts: 13,833
     ñëó÷àÿ òîâà å äðàéâåðà win32k.sys. Ïîíåæå òîé íå å ñìåíÿåì, ïðîáëåìà òè å õàðäóåðåí, 99%.
    EVGA X299 FTW K|i9-7960X@4.7|4x8 Patriot Viper Steel 4000|GTX 1660 Ti|970 EVO 1 TB|Seasonic Focus GX-1000|Xigmatek Elysium|Êèëî è ïîëîâèíà âîäà
    Rampage IV Extreme BE|E5-1680v2@4.7|4x4 HyperX 1866|Cougar Aqua 240|GTX 1050 Ti|970 EVO 1/4 TB|CM 850 SilentPro|HAF-X|Áåç èñòèíñêî âîäíî

  5. #5
    bmock squax's Avatar
    Join Date: Jan:2007
    Location: Sofiq
    Posts: 61
    Quote Originally Posted by Bombera View Post
     ñëó÷àÿ òîâà å äðàéâåðà win32k.sys. Ïîíåæå òîé íå å ñìåíÿåì, ïðîáëåìà òè å õàðäóåðåí, 99%.
    Ìåðñè. Çíà÷è ùå ñå îòáèÿ äî ñåðâèçà

  6. #6
    Registered User
    Join Date: Oct:2003
    Location: Ñîôèÿ
    Posts: 4,317
    Ñëó÷àéíî äà ïîëçâàø êèðèëèöàòà íà Èíæèíåðà? Àêî äà, ìàõàé ÿ. Çàáåëåæè ôóíêöèèòå â win32k.sys, êúäåòî ñå ñëó÷âà ãúðìåæúò - GenerateNlsVkKey è ReadLayoutFile.
    Ñèíèòå åêðàíè ïðè ïîëçâàíåòî íà òàçè êèðèëèöà ñè îñòàíàõà íåîáÿñíåíè (âúïðåêè ÷å ïî äóìèòå íà Èíæèíåðà å èçïðàùàíà èíôîðìàöèÿ äî Microsoft), íî ñà ôàêò. Ìíîãî ïî-÷åñòî ñå ïîëó÷àâàò, êîãàòî êîìïþòúðúò å â äîìåéí, íî âåäíúæ ìè ñå ñëó÷è è íà êîìïþòúð â íàé-îáèêíîâåíà ðàáîòíà ãðóïà.
    Òúé ÷å ïðîáâàé äà ìàõíåø òàçè êèðèëèöà (èìà è äðóãè ôîíåòè÷íè ïîäðåäáè) è âèæ êàêâî ùå ñòàíå.

  7. #7
    Áåëûé è ïóøèñòûé Bombera's Avatar
    Join Date: Jul:2001
    Location: Êàçàíëúê 4EVA
    Posts: 13,833
    Òîâà ïîñëåäíîòî ìíîãî âÿðíî. Àìà ïðàâè áåëè ñàìî àêî ìàøèíàòà ñå âêëþ÷âà â äîìåéí ìàé.
    EVGA X299 FTW K|i9-7960X@4.7|4x8 Patriot Viper Steel 4000|GTX 1660 Ti|970 EVO 1 TB|Seasonic Focus GX-1000|Xigmatek Elysium|Êèëî è ïîëîâèíà âîäà
    Rampage IV Extreme BE|E5-1680v2@4.7|4x4 HyperX 1866|Cougar Aqua 240|GTX 1050 Ti|970 EVO 1/4 TB|CM 850 SilentPro|HAF-X|Áåç èñòèíñêî âîäíî

  8. #8
    Registered User
    Join Date: Dec:2005
    Location: yvr
    Posts: 5,167
    Òî÷íî èíæèíåðíàòà êèðèëèöà òðÿáâà äà å, ñúâñåì ñêîðî íà Inspiron CoreDuo ñ 1ÃÁ ïðàâåøå ñúùèÿò äúìï, íà 2-3 äíè è ñàìî ïðè ãàñåíå.

    edit: íå áåøå â äîìåéí
    Last edited by ilko; 11th March 2007 at 16:05.

  9. #9
    bmock squax's Avatar
    Join Date: Jan:2007
    Location: Sofiq
    Posts: 61
    Äà. Ñ íåÿ ñúì. Ùå ÿ ìàõíà è äàíî èìà åôåêò

    Èìàøå. 10x
    Last edited by squax; 14th April 2007 at 14:22.

  10. #10
    Registered User
    Join Date: Oct:2006
    Location: Òå òóêà ñúì!
    Posts: 214
    Å èìà ëè åôåêò ?

  11. #11
    Mire-x
    Join Date: Apr:2005
    Location: Sofia
    Posts: 763
    Ñèãóðíî. Ùîì íå ñå å îáàäèë, çíà÷è íå ìó òðÿáâàòå âå÷è...

    À àç, äà ñå â çàïëåñà, ñå ñïóêàõ äà ïñóâàì Windows-à â ñëóæáàòà, ÷å ñàìî ìè ïðàâè ïðîáëåìè ñ òèÿ ñèíè åêðàíè, ïúê âñå íÿìàì âðåìå äà ïðåèíñòàëèðàì... Ñ èíäæèíåðñêàòà êèðèëèöà ñúì, â äîìåéí ñúì, íà öÿëîòî îòãîðå ïúê è âçå äà ìè ïðàâè âïå÷àòëåíèå, ÷å ìíîãî ïúòè "ãàñíà" òî÷íî êàòî öúêíà Alt+Shift. Îîî, îùå ïîíåäåëíèê ÿ ìàõàì (è áåç òîâà ìíîãî íàïðåäíàõ â ÁÄÑ-òî)! Áëàãîäàðÿ.

    EDIT:
    Ìäà. Àìà ÷óê÷à ïèñàòåë... 10x çà ïîïðàâêàòà, ilko. À íà squax äúëæà èçâèíåíèå.
    Last edited by Tarvin; 22nd March 2008 at 10:12.
    (10b) || !(10b)

  12. #12
    Registered User
    Join Date: Dec:2005
    Location: yvr
    Posts: 5,167
    Òîé ñè å íàïèñàë äàëè å èìàëî åôåêò:
    Äà. Ñ íåÿ ñúì. Ùå ÿ ìàõíà è äàíî èìà åôåêò

    Èìàøå. 10x

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  

Copyright © 1999-2011 Õàðäóåð ÁÃ. Âúçìîæíî å ñúäúðæàíèåòî íà òàçè ñòðàíèöà äà å îáåêò íà àâòîðñêè ïðàâà.
iskamPC.com | mobility.BG | Bloody's Techblog | Êðèïòîâàëóòè è ìàéíèíã | 3D Vision Blog | Ìàãàçèí çà åëåêòðîííè öèãàðè