Symbol search path is: srv*c:\mss*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7601 (Service Pack 1) MP (4 procs) Free x86 compatible
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7601.18205.x86fre.win7sp1_gdr.130708-1532
Machine Name:
Kernel base = 0x84400000 PsLoadedModuleList = 0x845494d0
Debug session time: Tue Jun 10 08:19:59.444 2014 (UTC + 8:00)
System Uptime: 0 days 0:24:18.568
Loading Kernel Symbols
...............................................................
................................................................
.........................................
Loading User Symbols
Loading unloaded module list
.......
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck F4, {3, 88a42910, 88a42a7c, 84618ea0}
----- ETW minidump data unavailable-----
Probably caused by : csrss.exe
Followup: MachineOwner
---------
2: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
CRITICAL_OBJECT_TERMINATION (f4)
A process or thread crucial to system operation has unexpectedly exited or been
terminated.
Several processes and threads are necessary for the operation of the
system; when they are terminated (for any reason), the system can no
longer function.
Arguments:
Arg1: 00000003, Process
Arg2: 88a42910, Terminating object
Arg3: 88a42a7c, Process image file name
Arg4: 84618ea0, Explanatory message (ascii)
Debugging Details:
------------------
----- ETW minidump data unavailable-----
PROCESS_OBJECT: 88a42910
IMAGE_NAME: csrss.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 0
MODULE_NAME: csrss
FAULTING_MODULE: 00000000
PROCESS_NAME: csrss.exe
EXCEPTION_RECORD: 8f821be0 -- (.exr 0xffffffff8f821be0)
ExceptionAddress: 777f33b1
ExceptionCode: c0000005 (Access violation)
ExceptionFlags: 00000000
NumberParameters: 2
Parameter[0]: 00000001
Parameter[1]: 02930ffc
Attempt to write to address 02930ffc
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - 0x%08lx
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: WIN7_DRIVER_FAULT
CURRENT_IRQL: 0
ERROR_CODE: (NTSTATUS) 0xc0000005 - 0x%08lx
EXCEPTION_PARAMETER1: 00000001
EXCEPTION_PARAMETER2: 02930ffc
WRITE_ADDRESS: GetPointerFromAddress: unable to read from 8456984c
Unable to read MiSystemVaType memory at 84548e20
02930ffc
FOLLOWUP_IP:
+0
777f33b1 ?? ???
FAULTING_IP:
+0
777f33b1 ?? ???
FAILED_INSTRUCTION_ADDRESS:
+0
777f33b1 ?? ???
BUGCHECK_STR: 0xF4_8f82141c
STACK_TEXT:
8f821480 846de3fb 000000f4 00000003 88a42910 nt!KeBugCheckEx+0x1e
8f8214a4 8465bfd5 84618ea0 88a42a7c 88a42b80 nt!PspCatchCriticalBreak+0x71
8f8214d4 8465bf18 88a42910 89465798 c0000005 nt!PspTerminateAllThreads+0x2d
8f821528 8449afe3 00000000 8f82141c 00003fe9 nt!NtTerminateProcess+0x1a2
8f8215b0 8443d8c6 ffffffff c0000005 8f821bc4 nt!MiCheckVirtualAddress+0x4c
8f8215b0 8443caf9 ffffffff c0000005 8f821bc4 nt!KiSystemServicePostCall
8f821630 844b46bb ffffffff c0000005 0001007f nt!ZwTerminateProcess+0x11
8f821bc4 8443e4a6 8f821be0 00000000 8f821c34 nt!KiDispatchException+0x497
8f821c2c 8443e45a 02931040 777f33b1 badb0d00 nt!CommonDispatchException+0x4a
8f821c34 777f33b1 badb0d00 7787cc30 00000000 nt!Kei386EoiHelper+0x192
WARNING: Frame IP not in any known module. Following frames may be wrong.
8f821c38 badb0d00 7787cc30 00000000 00000000 0x777f33b1
8f821c3c 7787cc30 00000000 00000000 00000000 0xbadb0d00
8f821c40 00000000 00000000 00000000 00000000 0x7787cc30
STACK_COMMAND: kb
FOLLOWUP_NAME: MachineOwner
FAILURE_BUCKET_ID: 0xF4_8f82141c_IMAGE_csrss.exe
BUCKET_ID: 0xF4_8f82141c_IMAGE_csrss.exe
Followup: MachineOwner
---------
2: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
CRITICAL_OBJECT_TERMINATION (f4)
A process or thread crucial to system operation has unexpectedly exited or been
terminated.
Several processes and threads are necessary for the operation of the
system; when they are terminated (for any reason), the system can no
longer function.
Arguments:
Arg1: 00000003, Process
Arg2: 88a42910, Terminating object
Arg3: 88a42a7c, Process image file name
Arg4: 84618ea0, Explanatory message (ascii)
Debugging Details:
------------------
----- ETW minidump data unavailable-----
PROCESS_OBJECT: 88a42910
IMAGE_NAME: csrss.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 0
MODULE_NAME: csrss
FAULTING_MODULE: 00000000
PROCESS_NAME: csrss.exe
EXCEPTION_RECORD: 8f821be0 -- (.exr 0xffffffff8f821be0)
ExceptionAddress: 777f33b1
ExceptionCode: c0000005 (Access violation)
ExceptionFlags: 00000000
NumberParameters: 2
Parameter[0]: 00000001
Parameter[1]: 02930ffc
Attempt to write to address 02930ffc
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - 0x%08lx
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: WIN7_DRIVER_FAULT
CURRENT_IRQL: 0
ERROR_CODE: (NTSTATUS) 0xc0000005 - 0x%08lx
EXCEPTION_PARAMETER1: 00000001
EXCEPTION_PARAMETER2: 02930ffc
WRITE_ADDRESS: GetPointerFromAddress: unable to read from 8456984c
Unable to read MiSystemVaType memory at 84548e20
02930ffc
FOLLOWUP_IP:
+0
777f33b1 ?? ???
FAULTING_IP:
+0
777f33b1 ?? ???
FAILED_INSTRUCTION_ADDRESS:
+0
777f33b1 ?? ???
BUGCHECK_STR: 0xF4_8f82141c
STACK_TEXT:
8f821480 846de3fb 000000f4 00000003 88a42910 nt!KeBugCheckEx+0x1e
8f8214a4 8465bfd5 84618ea0 88a42a7c 88a42b80 nt!PspCatchCriticalBreak+0x71
8f8214d4 8465bf18 88a42910 89465798 c0000005 nt!PspTerminateAllThreads+0x2d
8f821528 8449afe3 00000000 8f82141c 00003fe9 nt!NtTerminateProcess+0x1a2
8f8215b0 8443d8c6 ffffffff c0000005 8f821bc4 nt!MiCheckVirtualAddress+0x4c
8f8215b0 8443caf9 ffffffff c0000005 8f821bc4 nt!KiSystemServicePostCall
8f821630 844b46bb ffffffff c0000005 0001007f nt!ZwTerminateProcess+0x11
8f821bc4 8443e4a6 8f821be0 00000000 8f821c34 nt!KiDispatchException+0x497
8f821c2c 8443e45a 02931040 777f33b1 badb0d00 nt!CommonDispatchException+0x4a
8f821c34 777f33b1 badb0d00 7787cc30 00000000 nt!Kei386EoiHelper+0x192
WARNING: Frame IP not in any known module. Following frames may be wrong.
8f821c38 badb0d00 7787cc30 00000000 00000000 0x777f33b1
8f821c3c 7787cc30 00000000 00000000 00000000 0xbadb0d00
8f821c40 00000000 00000000 00000000 00000000 0x7787cc30
STACK_COMMAND: kb
FOLLOWUP_NAME: MachineOwner
FAILURE_BUCKET_ID: 0xF4_8f82141c_IMAGE_csrss.exe
BUCKET_ID: 0xF4_8f82141c_IMAGE_csrss.exe
Followup: MachineOwner
---------
2: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
CRITICAL_OBJECT_TERMINATION (f4)
A process or thread crucial to system operation has unexpectedly exited or been
terminated.
Several processes and threads are necessary for the operation of the
system; when they are terminated (for any reason), the system can no
longer function.
Arguments:
Arg1: 00000003, Process
Arg2: 88a42910, Terminating object
Arg3: 88a42a7c, Process image file name
Arg4: 84618ea0, Explanatory message (ascii)
Debugging Details:
------------------
----- ETW minidump data unavailable-----
PROCESS_OBJECT: 88a42910
IMAGE_NAME: csrss.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 0
MODULE_NAME: csrss
FAULTING_MODULE: 00000000
PROCESS_NAME: csrss.exe
EXCEPTION_RECORD: 8f821be0 -- (.exr 0xffffffff8f821be0)
ExceptionAddress: 777f33b1
ExceptionCode: c0000005 (Access violation)
ExceptionFlags: 00000000
NumberParameters: 2
Parameter[0]: 00000001
Parameter[1]: 02930ffc
Attempt to write to address 02930ffc
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - 0x%08lx
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: WIN7_DRIVER_FAULT
CURRENT_IRQL: 0
ERROR_CODE: (NTSTATUS) 0xc0000005 - 0x%08lx
EXCEPTION_PARAMETER1: 00000001
EXCEPTION_PARAMETER2: 02930ffc
WRITE_ADDRESS: GetPointerFromAddress: unable to read from 8456984c
Unable to read MiSystemVaType memory at 84548e20
02930ffc
FOLLOWUP_IP:
+0
777f33b1 ?? ???
FAULTING_IP:
+0
777f33b1 ?? ???
FAILED_INSTRUCTION_ADDRESS:
+0
777f33b1 ?? ???
BUGCHECK_STR: 0xF4_8f82141c
STACK_TEXT:
8f821480 846de3fb 000000f4 00000003 88a42910 nt!KeBugCheckEx+0x1e
8f8214a4 8465bfd5 84618ea0 88a42a7c 88a42b80 nt!PspCatchCriticalBreak+0x71
8f8214d4 8465bf18 88a42910 89465798 c0000005 nt!PspTerminateAllThreads+0x2d
8f821528 8449afe3 00000000 8f82141c 00003fe9 nt!NtTerminateProcess+0x1a2
8f8215b0 8443d8c6 ffffffff c0000005 8f821bc4 nt!MiCheckVirtualAddress+0x4c
8f8215b0 8443caf9 ffffffff c0000005 8f821bc4 nt!KiSystemServicePostCall
8f821630 844b46bb ffffffff c0000005 0001007f nt!ZwTerminateProcess+0x11
8f821bc4 8443e4a6 8f821be0 00000000 8f821c34 nt!KiDispatchException+0x497
8f821c2c 8443e45a 02931040 777f33b1 badb0d00 nt!CommonDispatchException+0x4a
8f821c34 777f33b1 badb0d00 7787cc30 00000000 nt!Kei386EoiHelper+0x192
WARNING: Frame IP not in any known module. Following frames may be wrong.
8f821c38 badb0d00 7787cc30 00000000 00000000 0x777f33b1
8f821c3c 7787cc30 00000000 00000000 00000000 0xbadb0d00
8f821c40 00000000 00000000 00000000 00000000 0x7787cc30
STACK_COMMAND: kb
FOLLOWUP_NAME: MachineOwner
FAILURE_BUCKET_ID: 0xF4_8f82141c_IMAGE_csrss.exe
BUCKET_ID: 0xF4_8f82141c_IMAGE_csrss.exe
Followup: MachineOwner
---------
2: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
CRITICAL_OBJECT_TERMINATION (f4)
A process or thread crucial to system operation has unexpectedly exited or been
terminated.
Several processes and threads are necessary for the operation of the
system; when they are terminated (for any reason), the system can no
longer function.
Arguments:
Arg1: 00000003, Process
Arg2: 88a42910, Terminating object
Arg3: 88a42a7c, Process image file name
Arg4: 84618ea0, Explanatory message (ascii)
Debugging Details:
------------------
----- ETW minidump data unavailable-----
PROCESS_OBJECT: 88a42910
IMAGE_NAME: csrss.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 0
MODULE_NAME: csrss
FAULTING_MODULE: 00000000
PROCESS_NAME: csrss.exe
EXCEPTION_RECORD: 8f821be0 -- (.exr 0xffffffff8f821be0)
ExceptionAddress: 777f33b1
ExceptionCode: c0000005 (Access violation)
ExceptionFlags: 00000000
NumberParameters: 2
Parameter[0]: 00000001
Parameter[1]: 02930ffc
Attempt to write to address 02930ffc
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - 0x%08lx
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: WIN7_DRIVER_FAULT
CURRENT_IRQL: 0
ERROR_CODE: (NTSTATUS) 0xc0000005 - 0x%08lx
EXCEPTION_PARAMETER1: 00000001
EXCEPTION_PARAMETER2: 02930ffc
WRITE_ADDRESS: GetPointerFromAddress: unable to read from 8456984c
Unable to read MiSystemVaType memory at 84548e20
02930ffc
FOLLOWUP_IP:
+0
777f33b1 ?? ???
FAULTING_IP:
+0
777f33b1 ?? ???
FAILED_INSTRUCTION_ADDRESS:
+0
777f33b1 ?? ???
BUGCHECK_STR: 0xF4_8f82141c
STACK_TEXT:
8f821480 846de3fb 000000f4 00000003 88a42910 nt!KeBugCheckEx+0x1e
8f8214a4 8465bfd5 84618ea0 88a42a7c 88a42b80 nt!PspCatchCriticalBreak+0x71
8f8214d4 8465bf18 88a42910 89465798 c0000005 nt!PspTerminateAllThreads+0x2d
8f821528 8449afe3 00000000 8f82141c 00003fe9 nt!NtTerminateProcess+0x1a2
8f8215b0 8443d8c6 ffffffff c0000005 8f821bc4 nt!MiCheckVirtualAddress+0x4c
8f8215b0 8443caf9 ffffffff c0000005 8f821bc4 nt!KiSystemServicePostCall
8f821630 844b46bb ffffffff c0000005 0001007f nt!ZwTerminateProcess+0x11
8f821bc4 8443e4a6 8f821be0 00000000 8f821c34 nt!KiDispatchException+0x497
8f821c2c 8443e45a 02931040 777f33b1 badb0d00 nt!CommonDispatchException+0x4a
8f821c34 777f33b1 badb0d00 7787cc30 00000000 nt!Kei386EoiHelper+0x192
WARNING: Frame IP not in any known module. Following frames may be wrong.
8f821c38 badb0d00 7787cc30 00000000 00000000 0x777f33b1
8f821c3c 7787cc30 00000000 00000000 00000000 0xbadb0d00
8f821c40 00000000 00000000 00000000 00000000 0x7787cc30
STACK_COMMAND: kb
FOLLOWUP_NAME: MachineOwner
FAILURE_BUCKET_ID: 0xF4_8f82141c_IMAGE_csrss.exe
BUCKET_ID: 0xF4_8f82141c_IMAGE_csrss.exe
Followup: MachineOwner
---------
我这个显示 win7 驱动问题啊 |