häufiger BlueScreen
Hallo zusammen,
seit einiger Zeit stürzt mein PC mit bluescreen IRQL_NOT_LESS_OR-Equal.
Nachfolgend die Auswertung der Dmp datei. Es wäre nett, wenn wir Jemand weiterhelfen könnte.
Vielen lieben Dank im voraus.
Microsoft (R) Windows Debugger Version 6.2.9200.20512 X86
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [C:\Windows\Minidump\061214-17409-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*C:\symbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7601 (Service Pack 1) MP (8 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7601.18409.amd64fre.win7sp1_gdr.140303-2144
Machine Name:
Kernel base = 0xfffff800`1165c000 PsLoadedModuleList = 0xfffff800`1189f890
Debug session time: Thu Jun 12 13:16:18.793 2014 (UTC + 2:00)
System Uptime: 0 days 6:34:07.605
Loading Kernel Symbols
...............................................................
................................................................
.............................
Loading User Symbols
Loading unloaded module list
.......
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck A, {128002064b2a, 2, 0, fffff800116e0d67}
Probably caused by : memory_corruption ( nt!MiPfnShareCountIsZero+77 )
Followup: MachineOwner
---------
6: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
IRQL_NOT_LESS_OR_EQUAL (a)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high. This is usually
caused by drivers using improper addresses.
If a kernel debugger is available get the stack backtrace.
Arguments:
Arg1: 0000128002064b2a, memory referenced
Arg2: 0000000000000002, IRQL
Arg3: 0000000000000000, bitfield :
bit 0 : value 0 = read operation, 1 = write operation
bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status)
Arg4: fffff800116e0d67, address which referenced memory
Debugging Details:
------------------
READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80011909100
GetUlongFromAddress: unable to read from fffff800119091c0
0000128002064b2a Nonpaged pool
CURRENT_IRQL: 2
FAULTING_IP:
nt!MiPfnShareCountIsZero+77
fffff800`116e0d67 0fb6511a movzx edx,byte ptr [rcx+1Ah]
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: WIN7_DRIVER_FAULT
BUGCHECK_STR: 0xA
PROCESS_NAME: explorer.exe
TRAP_FRAME: fffff8800ac970d0 -- (.trap 0xfffff8800ac970d0)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=000fffffffffffff rbx=0000000000000000 rcx=0000128002064b10
rdx=0000000000000000 rsi=0000000000000000 rdi=0000000000000000
rip=fffff800116e0d67 rsp=fffff8800ac97260 rbp=0000058000000000
r8=00000080000acc3b r9=0000000000000006 r10=fffff8a003b2d0c0
r11=0000007ffffffff8 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei pl nz na pe nc
nt!MiPfnShareCountIsZero+0x77:
fffff800`116e0d67 0fb6511a movzx edx,byte ptr [rcx+1Ah] ds:00001280`02064b2a=??
Resetting default scope
LAST_CONTROL_TRANSFER: from fffff800116d1169 to fffff800116d1bc0
STACK_TEXT:
fffff880`0ac96f88 fffff800`116d1169 : 00000000`0000000a 00001280`02064b2a 00000000`00000002 00000000`00000000 : nt!KeBugCheckEx
fffff880`0ac96f90 fffff800`116cfde0 : fffff880`0ac97178 fffff880`094029e0 ffffffff`80000d00 fffffa80`0203c1f0 : nt!KiBugCheckDispatch+0x69
fffff880`0ac970d0 fffff800`116e0d67 : 2aaaaaaa`aaaaaaab fffffa80`0203a9c0 00000580`00000000 fffffa80`0203a9c0 : nt!KiPageFault+0x260
fffff880`0ac97260 fffff800`116f4e4f : 00000000`0001f000 fffffa80`0203c1f0 00000000`00000000 fffff880`0ac97458 : nt!MiPfnShareCountIsZero+0x77
fffff880`0ac972d0 fffff800`119e45ed : fffff980`21b40000 fffff8a0`0fd0eaf0 00000000`00000000 ffffffff`00000000 : nt!MmUnmapViewInSystemCache+0x51f
fffff880`0ac975b0 fffff800`116f467b : 00000000`00000000 fffffa80`07503ef0 00000000`00000000 00000000`000c0000 : nt!CcUnmapVacb+0x5d
fffff880`0ac975f0 fffff800`11712ad9 : 00000000`00000001 00000000`00000000 fffff880`0ac977b0 fffff880`03117100 : nt!CcUnmapVacbArray+0x1bb
fffff880`0ac97680 fffff800`116b4bf2 : fffffa80`092a3398 00000000`00000000 00000000`00000000 00000000`00000000 : nt!CcFlushCache+0x8e9
fffff880`0ac97780 fffff800`119cfa0a : 00000000`00000000 00000000`00000006 00000000`00000080 00000000`01000000 : nt!MiFlushDataSection+0x1ce
fffff880`0ac977f0 fffff800`119acb2e : fffff880`0ac97a40 fffff880`0ac97b60 00000000`00000000 fffff880`0ac97a38 : nt!MmCreateSection+0x2aa
fffff880`0ac979f0 fffff800`116d0e53 : fffffa80`09ff42d0 00000000`044ace88 fffff880`0ac97a88 00000000`044ad038 : nt!NtCreateSection+0x171
fffff880`0ac97a70 00000000`76f8175a : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000000`044ace68 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x76f8175a
STACK_COMMAND: kb
FOLLOWUP_IP:
nt!MiPfnShareCountIsZero+77
fffff800`116e0d67 0fb6511a movzx edx,byte ptr [rcx+1Ah]
SYMBOL_STACK_INDEX: 3
SYMBOL_NAME: nt!MiPfnShareCountIsZero+77
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
DEBUG_FLR_IMAGE_TIMESTAMP: 531590fb
IMAGE_NAME: memory_corruption
FAILURE_BUCKET_ID: X64_0xA_nt!MiPfnShareCountIsZero+77
BUCKET_ID: X64_0xA_nt!MiPfnShareCountIsZero+77
Followup: MachineOwner
---------
Hallo zusammen,
seit einiger Zeit stürzt mein PC mit bluescreen IRQL_NOT_LESS_OR-Equal.
Nachfolgend die Auswertung der Dmp datei. Es wäre nett, wenn wir Jemand weiterhelfen könnte.
Vielen lieben Dank im voraus.
Microsoft (R) Windows Debugger Version 6.2.9200.20512 X86
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [C:\Windows\Minidump\061214-17409-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*C:\symbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7601 (Service Pack 1) MP (8 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7601.18409.amd64fre.win7sp1_gdr.140303-2144
Machine Name:
Kernel base = 0xfffff800`1165c000 PsLoadedModuleList = 0xfffff800`1189f890
Debug session time: Thu Jun 12 13:16:18.793 2014 (UTC + 2:00)
System Uptime: 0 days 6:34:07.605
Loading Kernel Symbols
...............................................................
................................................................
.............................
Loading User Symbols
Loading unloaded module list
.......
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck A, {128002064b2a, 2, 0, fffff800116e0d67}
Probably caused by : memory_corruption ( nt!MiPfnShareCountIsZero+77 )
Followup: MachineOwner
---------
6: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
IRQL_NOT_LESS_OR_EQUAL (a)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high. This is usually
caused by drivers using improper addresses.
If a kernel debugger is available get the stack backtrace.
Arguments:
Arg1: 0000128002064b2a, memory referenced
Arg2: 0000000000000002, IRQL
Arg3: 0000000000000000, bitfield :
bit 0 : value 0 = read operation, 1 = write operation
bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status)
Arg4: fffff800116e0d67, address which referenced memory
Debugging Details:
------------------
READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80011909100
GetUlongFromAddress: unable to read from fffff800119091c0
0000128002064b2a Nonpaged pool
CURRENT_IRQL: 2
FAULTING_IP:
nt!MiPfnShareCountIsZero+77
fffff800`116e0d67 0fb6511a movzx edx,byte ptr [rcx+1Ah]
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: WIN7_DRIVER_FAULT
BUGCHECK_STR: 0xA
PROCESS_NAME: explorer.exe
TRAP_FRAME: fffff8800ac970d0 -- (.trap 0xfffff8800ac970d0)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=000fffffffffffff rbx=0000000000000000 rcx=0000128002064b10
rdx=0000000000000000 rsi=0000000000000000 rdi=0000000000000000
rip=fffff800116e0d67 rsp=fffff8800ac97260 rbp=0000058000000000
r8=00000080000acc3b r9=0000000000000006 r10=fffff8a003b2d0c0
r11=0000007ffffffff8 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei pl nz na pe nc
nt!MiPfnShareCountIsZero+0x77:
fffff800`116e0d67 0fb6511a movzx edx,byte ptr [rcx+1Ah] ds:00001280`02064b2a=??
Resetting default scope
LAST_CONTROL_TRANSFER: from fffff800116d1169 to fffff800116d1bc0
STACK_TEXT:
fffff880`0ac96f88 fffff800`116d1169 : 00000000`0000000a 00001280`02064b2a 00000000`00000002 00000000`00000000 : nt!KeBugCheckEx
fffff880`0ac96f90 fffff800`116cfde0 : fffff880`0ac97178 fffff880`094029e0 ffffffff`80000d00 fffffa80`0203c1f0 : nt!KiBugCheckDispatch+0x69
fffff880`0ac970d0 fffff800`116e0d67 : 2aaaaaaa`aaaaaaab fffffa80`0203a9c0 00000580`00000000 fffffa80`0203a9c0 : nt!KiPageFault+0x260
fffff880`0ac97260 fffff800`116f4e4f : 00000000`0001f000 fffffa80`0203c1f0 00000000`00000000 fffff880`0ac97458 : nt!MiPfnShareCountIsZero+0x77
fffff880`0ac972d0 fffff800`119e45ed : fffff980`21b40000 fffff8a0`0fd0eaf0 00000000`00000000 ffffffff`00000000 : nt!MmUnmapViewInSystemCache+0x51f
fffff880`0ac975b0 fffff800`116f467b : 00000000`00000000 fffffa80`07503ef0 00000000`00000000 00000000`000c0000 : nt!CcUnmapVacb+0x5d
fffff880`0ac975f0 fffff800`11712ad9 : 00000000`00000001 00000000`00000000 fffff880`0ac977b0 fffff880`03117100 : nt!CcUnmapVacbArray+0x1bb
fffff880`0ac97680 fffff800`116b4bf2 : fffffa80`092a3398 00000000`00000000 00000000`00000000 00000000`00000000 : nt!CcFlushCache+0x8e9
fffff880`0ac97780 fffff800`119cfa0a : 00000000`00000000 00000000`00000006 00000000`00000080 00000000`01000000 : nt!MiFlushDataSection+0x1ce
fffff880`0ac977f0 fffff800`119acb2e : fffff880`0ac97a40 fffff880`0ac97b60 00000000`00000000 fffff880`0ac97a38 : nt!MmCreateSection+0x2aa
fffff880`0ac979f0 fffff800`116d0e53 : fffffa80`09ff42d0 00000000`044ace88 fffff880`0ac97a88 00000000`044ad038 : nt!NtCreateSection+0x171
fffff880`0ac97a70 00000000`76f8175a : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000000`044ace68 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x76f8175a
STACK_COMMAND: kb
FOLLOWUP_IP:
nt!MiPfnShareCountIsZero+77
fffff800`116e0d67 0fb6511a movzx edx,byte ptr [rcx+1Ah]
SYMBOL_STACK_INDEX: 3
SYMBOL_NAME: nt!MiPfnShareCountIsZero+77
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
DEBUG_FLR_IMAGE_TIMESTAMP: 531590fb
IMAGE_NAME: memory_corruption
FAILURE_BUCKET_ID: X64_0xA_nt!MiPfnShareCountIsZero+77
BUCKET_ID: X64_0xA_nt!MiPfnShareCountIsZero+77
Followup: MachineOwner
---------
