neuer absturzfehler
MEMORY_MANAGMENT
Hier die Auswertung des Windows Debugging Tools:
Microsoft (R) Windows Debugger Version 6.8.0004.0 X86
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [C:\WINDOWS\MEMORY.DMP]
Kernel Summary Dump File: Only kernel address space is available
Symbol search path is: .sympath SRV*<DownstreamStore>*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows XP Kernel Version 2600 (Service Pack 2) MP (2 procs) Free x86 compatible
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 2600.xpsp_sp2_gdr.070227-2254
Kernel base = 0x804d7000 PsLoadedModuleList = 0x8055c700
Debug session time: Tue Jul 15 19:07:35.648 2008 (GMT+2)
System Uptime: 0 days 1:09:03.571
Loading Kernel Symbols
..................................................................... .........................................................
Loading User Symbols
PEB is paged out (Peb.Ldr = 7ffde00c). Type ".hh dbgerr001" for details
Loading unloaded module list
......................
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 1A, {41284, 85f3001, 1cce, c0883000}
PEB is paged out (Peb.Ldr = 7ffde00c). Type ".hh dbgerr001" for details
PEB is paged out (Peb.Ldr = 7ffde00c). Type ".hh dbgerr001" for details
Probably caused by : win32k.sys ( win32k!SURFACE::bDeleteSurface+188 )
Followup: MachineOwner
---------
1: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
MEMORY_MANAGEMENT (1a)
# Any other values for parameter 1 must be individually examined.
Arguments:
Arg1: 00041284, A PTE or the working set list is corrupt.
Arg2: 085f3001
Arg3: 00001cce
Arg4: c0883000
Debugging Details:
------------------
PEB is paged out (Peb.Ldr = 7ffde00c). Type ".hh dbgerr001" for details
PEB is paged out (Peb.Ldr = 7ffde00c). Type ".hh dbgerr001" for details
BUGCHECK_STR: 0x1a_41284
DEFAULT_BUCKET_ID: DRIVER_FAULT
PROCESS_NAME: firefox.exe
LAST_CONTROL_TRANSFER: from 805225e5 to 804f9deb
STACK_TEXT:
f27ec61c 805225e5 0000001a 00041284 085f3001 nt!KeBugCheckEx+0x1b
f27ec654 80522e6b 00001cce 085f3000 c0600210 nt!MiLocateWsle+0xc1
f27ec688 80523284 c0042f98 085f3000 00000000 nt!MiDeletePte+0x1fd
f27ec750 80519954 00000318 086e8fff 00000000 nt!MiDeleteVirtualAddresses+0x164
f27ec76c 805b1e24 08590000 086e8fff f27ec824 nt!MiDeleteFreeVm+0x20
f27ec80c 8054086c ffffffff f27ec8ec f27ec8f8 nt!NtFreeVirtualMemory+0x42e
f27ec80c 804ff8e1 ffffffff f27ec8ec f27ec8f8 nt!KiFastCallEntry+0xfc
f27ec894 bf809e0b ffffffff f27ec8ec f27ec8f8 nt!ZwFreeVirtualMemory+0x11
f27ec8f0 bf809e76 00000000 00000000 f27ec914 win32k!SURFACE::bDeleteSurface+0x188
f27ec900 bf80f9fc 00000000 00000000 e2258008 win32k!SURFREF::bDeleteSurface+0x12
f27ec914 bf80fad5 22051079 0013f05c f27ec934 win32k!bDeleteSurface+0x20
f27ec928 8054086c 22051079 0013f070 7c91eb94 win32k!NtGdiDeleteObjectApp+0x74
f27ec928 7c91eb94 22051079 0013f070 7c91eb94 nt!KiFastCallEntry+0xfc
WARNING: Frame IP not in any known module. Following frames may be wrong.
0013f070 00000000 00000000 00000000 00000000 0x7c91eb94
STACK_COMMAND: kb
FOLLOWUP_IP:
win32k!SURFACE::bDeleteSurface+188
bf809e0b e964ffffff jmp win32k!SURFACE::bDeleteSurface+0x1a8 (bf809d74)
SYMBOL_STACK_INDEX: 8
SYMBOL_NAME: win32k!SURFACE::bDeleteSurface+188
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: win32k
IMAGE_NAME: win32k.sys
DEBUG_FLR_IMAGE_TIMESTAMP: 47e0e106
FAILURE_BUCKET_ID: 0x1a_41284_win32k!SURFACE::bDeleteSurface+188
BUCKET_ID: 0x1a_41284_win32k!SURFACE::bDeleteSurface+188
Followup: MachineOwner
---------
1: kd> !thread
THREAD 86085810 Cid 0e9c.0988 Teb: 7ffdd000 Win32Thread: e323dcd0 RUNNING on processor 1
Not impersonating
DeviceMap e21cbd80
Owning Process 85e7d020 Image: firefox.exe
Wait Start TickCount 265188 Ticks: 0
Context Switch Count 217425 LargeStack
UserTime 00:00:19.468
KernelTime 00:00:18.734
Win32 Start Address 0x004015a0
Start Address 0x7c810665
Stack Init f27ecbd0 Current f27ec904 Base f27ed000 Limit f27e6000 Call f27ecbd4
Priority 13 BasePriority 8 PriorityDecrement 5 DecrementCount 16
ChildEBP RetAddr Args to Child
f27ec61c 805225e5 0000001a 00041284 085f3001 nt!KeBugCheckEx+0x1b (FPO: [Non-Fpo])
f27ec654 80522e6b 00001cce 085f3000 c0600210 nt!MiLocateWsle+0xc1 (FPO: [Non-Fpo])
f27ec688 80523284 c0042f98 085f3000 00000000 nt!MiDeletePte+0x1fd (FPO: [Non-Fpo])
f27ec750 80519954 00000318 086e8fff 00000000 nt!MiDeleteVirtualAddresses+0x164 (FPO: [Non-Fpo])
f27ec76c 805b1e24 08590000 086e8fff f27ec824 nt!MiDeleteFreeVm+0x20 (FPO: [Non-Fpo])
f27ec80c 8054086c ffffffff f27ec8ec f27ec8f8 nt!NtFreeVirtualMemory+0x42e (FPO: [Non-Fpo])
f27ec80c 804ff8e1 ffffffff f27ec8ec f27ec8f8 nt!KiFastCallEntry+0xfc (FPO: [0,0] TrapFrame @ f27ec824)
f27ec894 bf809e0b ffffffff f27ec8ec f27ec8f8 nt!ZwFreeVirtualMemory+0x11 (FPO: [4,0,0])
f27ec8f0 bf809e76 00000000 00000000 f27ec914 win32k!SURFACE::bDeleteSurface+0x188 (FPO: [Non-Fpo])
f27ec900 bf80f9fc 00000000 00000000 e2258008 win32k!SURFREF::bDeleteSurface+0x12 (FPO: [Non-Fpo])
f27ec914 bf80fad5 22051079 0013f05c f27ec934 win32k!bDeleteSurface+0x20 (FPO: [Non-Fpo])
f27ec928 8054086c 22051079 0013f070 7c91eb94 win32k!NtGdiDeleteObjectApp+0x74 (FPO: [Non-Fpo])
f27ec928 7c91eb94 22051079 0013f070 7c91eb94 nt!KiFastCallEntry+0xfc (FPO: [0,0] TrapFrame @ f27ec934)
WARNING: Frame IP not in any known module. Following frames may be wrong.
0013f070 00000000 00000000 00000000 00000000 0x7c91eb