Microsoft (R) Windows Debugger Version 6.11.0001.404 X86
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [F:\7 Desktop\Mini101915-02.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*C:\Symbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows XP Kernel Version 2600 (Service Pack 3) MP (2 procs) Free x86 compatible
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 2600.xpsp_sp3_gdr.130307-0422
Machine Name:
Kernel base = 0x804d8000 PsLoadedModuleList = 0x8055e720
Debug session time: Mon Oct 19 19:00:14.875 2015 (GMT+8)
System Uptime: 0 days 0:01:44.546
Loading Kernel Symbols
...............................................................
.............................................................
Loading User Symbols
Loading unloaded module list
.............
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck F4, {3, 862a17c8, 862a193c, 805d32aa}
Unable to load image avipbb.sys, Win32 error 0n2
*** WARNING: Unable to verify timestamp for avipbb.sys
*** ERROR: Module load completed but symbols could not be loaded for avipbb.sys
*** WARNING: Unable to verify timestamp for bd0001.sys
*** ERROR: Module load completed but symbols could not be loaded for bd0001.sys
unable to get nt!KiCurrentEtwBufferOffset
unable to get nt!KiCurrentEtwBufferBase
Probably caused by : hardware_disk ( +fc )
Followup: MachineOwner
---------
1: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
CRITICAL_OBJECT_TERMINATION (f4)
A process or thread crucial to system operation has unexpectedly exited or been
terminated.
Several processes and threads are necessary for the operation of the
system; when they are terminated (for any reason), the system can no
longer function.
Arguments:
Arg1: 00000003, Process
Arg2: 862a17c8, Terminating object
Arg3: 862a193c, Process image file name
Arg4: 805d32aa, Explanatory message (ascii)
Debugging Details:
------------------
unable to get nt!KiCurrentEtwBufferOffset
unable to get nt!KiCurrentEtwBufferBase
PROCESS_OBJECT: 862a17c8
IMAGE_NAME: hardware_disk
DEBUG_FLR_IMAGE_TIMESTAMP: 0
FAULTING_MODULE: 00000000
PROCESS_NAME: csrss.exe
EXCEPTION_RECORD: aa02e9d8 -- (.exr 0xffffffffaa02e9d8)
ExceptionAddress: 7c99308f
ExceptionCode: c0000006 (In-page I/O error)
ExceptionFlags: 00000000
NumberParameters: 3
Parameter[0]: 00000008
Parameter[1]: 7c99308f
Parameter[2]: c000026e
Inpage operation failed at 7c99308f, due to I/O error c000026e
EXCEPTION_CODE: (NTSTATUS) 0xc0000006 - 0x%p
CUSTOMER_CRASH_COUNT: 2
DEFAULT_BUCKET_ID: DRIVER_FAULT
ERROR_CODE: (NTSTATUS) 0xc0000006 - 0x%p
EXCEPTION_PARAMETER1: 00000008
EXCEPTION_PARAMETER2: 7c99308f
EXCEPTION_PARAMETER3: c000026e
IO_ERROR: (NTSTATUS) 0xc000026e - <Unable to get error code text>
EXCEPTION_STR: 0xc0000006_c000026e
FAULTING_IP:
+fc
7c99308f ?? ???
BUGCHECK_STR: 0xF4_IOERR_C000026E
FOLLOWUP_IP:
+fc
7c99308f ?? ???
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: hardware_disk
SYMBOL_NAME: +fc
STACK_COMMAND: kb
FAILURE_BUCKET_ID: 0xF4_IOERR_C000026E_+fc
BUCKET_ID: 0xF4_IOERR_C000026E_+fc
Followup: MachineOwner
---------
以上是dump文件的内容,英文的看不懂。
|