Loading Dump File [C:\Documents and Settings\Administrator\桌面\Mini063015-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*C:\Symbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows XP Kernel Version 2600 (Service Pack 3) MP (2 procs) Free x86 compatible
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 2600.xpsp_sp3_qfe.130704-0421
Machine Name:
Kernel base = 0x804d8000 PsLoadedModuleList = 0x8055e720
Debug session time: Tue Jun 30 23:19:40.406 2015 (UTC + 8:00)
System Uptime: 0 days 1:47:08.004
Loading Kernel Symbols
...............................................................
............................................................
Loading User Symbols
Loading unloaded module list
...............
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 1000008E, {c0000005, 0, a3c88b60, 0}
Probably caused by : ntkrpamp.exe ( nt!ObAssignSecurity+5e )
Followup: MachineOwner
---------
0: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
KERNEL_MODE_EXCEPTION_NOT_HANDLED_M (1000008e)
This is a very common bugcheck. Usually the exception address pinpoints
the driver/function that caused the problem. Always note this address
as well as the link date of the driver/image that contains this address.
Some common problems are exception code 0x80000003. This means a hard
coded breakpoint or assertion was hit, but this system was booted
/NODEBUG. This is not supposed to happen as developers should never have
hardcoded breakpoints in retail code, but ...
If this happens, make sure a debugger gets connected, and the
system is booted /DEBUG. This will let us see why this breakpoint is
happening.
Arguments:
Arg1: c0000005, The exception code that was not handled
Arg2: 00000000, The address that the exception occurred at
Arg3: a3c88b60, Trap Frame
Arg4: 00000000
Debugging Details:
------------------
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - "0x%08lx"
FAULTING_IP:
+0
00000000 ?? ???
TRAP_FRAME: a3c88b60 -- (.trap 0xffffffffa3c88b60)
ErrCode = 00000010
eax=00000001 ebx=00000000 ecx=e4a1d580 edx=ec170001 esi=8a65e600 edi=8a65e668
eip=00000000 esp=a3c88bd4 ebp=a3c88c08 iopl=0 nv up ei pl zr na pe nc
cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00010246
00000000 ?? ???
Resetting default scope
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: DRIVER_FAULT
BUGCHECK_STR: 0x8E
PROCESS_NAME: 360se.exe
LAST_CONTROL_TRANSFER: from 805c0ff6 to 00000000
STACK_TEXT:
WARNING: Frame IP not in any known module. Following frames may be wrong.
a3c88bd0 805c0ff6 895652d0 00000003 00000000 0x0
a3c88c08 805c440f a3c88c2c 00000000 895652d0 nt!ObAssignSecurity+0x5e
a3c88cf0 806101a2 895652d0 a3c88c2c 00000000 nt!ObInsertObject+0x401
a3c88d48 805427e8 0012da1c 001f0003 00000000 nt!NtCreateEvent+0xc2
a3c88d48 7c92e514 0012da1c 001f0003 00000000 nt!KiSystemServicePostCall
0012da20 00000000 00000000 00000000 00000000 0x7c92e514
STACK_COMMAND: kb
FOLLOWUP_IP:
nt!ObAssignSecurity+5e
805c0ff6 8bf0 mov esi,eax
SYMBOL_STACK_INDEX: 1
SYMBOL_NAME: nt!ObAssignSecurity+5e
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrpamp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 51d4d90f
FAILURE_BUCKET_ID: 0x8E_nt!ObAssignSecurity+5e
BUCKET_ID: 0x8E_nt!ObAssignSecurity+5e
Followup: MachineOwner
---------
0: kd> !process
GetPointerFromAddress: unable to read from 80563134
PROCESS 867db020 SessionId: none Cid: 0238 Peb: 7ffd3000 ParentCid: 066c
DirBase: 0ad00f80 ObjectTable: e1202a30 HandleCount: <Data Not Accessible>
Image: 360se.exe
VadRoot 87c85800 Vads 215 Clone 0 Private 18495. Modified 1465. Locked 0.
DeviceMap e1bb6ce0
Token e4557b88
ReadMemory error: Cannot get nt!KeMaximumIncrement value.
ffdf0000: Unable to get shared data
ElapsedTime 00:00:00.000
UserTime 00:00:00.000
KernelTime 00:00:00.000
QuotaPoolUsage[PagedPool] 182636
QuotaPoolUsage[NonPagedPool] 8752
Working Set Sizes (now,min,max) (21972, 50, 345) (87888KB, 200KB, 1380KB)
PeakWorkingSetSize 22332
VirtualSize 200 Mb
PeakVirtualSize 202 Mb
PageFaultCount 273527
MemoryPriority BACKGROUND
BasePriority 8
CommitCharge 20906
Job 8a45a020
THREAD 86c1fa40 Cid 0238.06bc Teb: 7ffdf000 Win32Thread: e3237008 RUNNING on processor 0
*** Error in reading nt!_ETHREAD @ 867768e8
会不会是DNF与360安全浏览器不兼容? |