1. Welcome Guest! In order to create a new topic or reply to an existing one, you must register first. It is easy and free. Click here to sign up now!.
    Dismiss Notice

Blue Screen of Death

Discussion in 'Windows Vista' started by Vistaz, Sep 12, 2009.

  1. Vistaz

    Vistaz Guest

    I have been getting the Blue Screen recently. Not really "blue", the
    screen goes all black. After running the debugger, here's what I got.
    *******************************************************************************
    * *
    * Bugcheck Analysis *
    * *
    *******************************************************************************

    IRQL_NOT_LESS_OR_EQUAL (a)
    An attempt was made to access a pageable (or completely invalid)
    address at an
    interrupt request level (IRQL) that is too high. This is usually
    caused by drivers using improper addresses.
    If a kernel debugger is available get the stack backtrace.
    Arguments:
    Arg1: fffffa8efcfe270a, memory referenced
    Arg2: 0000000000000002, IRQL
    Arg3: 0000000000000001, bitfield :
    bit 0 : value 0 = read operation, 1 = write operation
    bit 3 : value 0 = not an execute operation, 1 = execute operation (only
    on chips which support this level of status)
    Arg4: fffff80001c69f2f, address which referenced memory

    Debugging Details:
    ------------------


    AUTOBUG_USER_LCID_STR: ENU

    AUTOBUG_OS_SKU: 3

    WRITE_ADDRESS: GetPointerFromAddress: unable to read from
    fffff80001e2b080
    fffffa8efcfe270a

    CURRENT_IRQL: 2

    FAULTING_IP:
    nt! ?? ::FNODOBFM::`string'+2e846
    fffff800`01c69f2f 80611ad7 and byte ptr [rcx+1Ah],0D7h

    CUSTOMER_CRASH_COUNT: 1

    DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT

    BUGCHECK_STR: 0xA

    PROCESS_NAME: System

    BAD_PAGES_DETECTED: 1

    TRAP_FRAME: fffffa6001924a00 -- (.trap 0xfffffa6001924a00)
    NOTE: The trap frame does not contain all registers.
    Some register values may be zeroed or incorrect.
    rax=0000058000000000 rbx=0000000000000000 rcx=fffffa8efcfe26f0
    rdx=fdffffffffffffff rsi=0000000000000000 rdi=0000000000000000
    rip=fffff80001c69f2f rsp=fffffa6001924b90 rbp=0000000000000006
    r8=0000007ffffffff8 r9=0000098000000000 r10=0000000000000000
    r11=fffff8800d6ee450 r12=0000000000000000 r13=0000000000000000
    r14=0000000000000000 r15=0000000000000000
    iopl=0 nv up ei ng nz na po cy
    nt! ?? ::FNODOBFM::`string'+0x2e846:
    fffff800`01c69f2f 80611ad7 and byte ptr [rcx+1Ah],0D7h
    ds:0001:fffffa8e`fcfe270a=??
    Resetting default scope

    LAST_CONTROL_TRANSFER: from fffff80001c5e1ee to fffff80001c5e450

    STACK_TEXT:
    fffffa60`019248b8 fffff800`01c5e1ee : 00000000`0000000a
    fffffa8e`fcfe270a 00000000`00000002 00000000`00000001 : nt!KeBugCheckEx
    fffffa60`019248c0 fffff800`01c5d0cb : 00000000`00000001
    fffffa80`05329c60 fffffa80`066941f0 00000000`4feff625 :
    nt!KiBugCheckDispatch+0x6e
    fffffa60`01924a00 fffff800`01c69f2f : fffff6fc`4009c060
    fffff880`0c8d02d0 fffffa60`00000001 00001a65`74536d00 :
    nt!KiPageFault+0x20b
    fffffa60`01924b90 fffff800`01eb9b35 : fffffa80`04fe2400
    00000000`00000001 00000000`00084081 00000000`000c0000 : nt! ??
    ::FNODOBFM::`string'+0x2e846
    fffffa60`01924bf0 fffff800`01d2b68f : fffffa80`04fe2400
    00000000`00000080 00000000`00000002 00000000`6d536d4d :
    nt!MiSegmentDelete+0x79
    fffffa60`01924c40 fffff800`01d2e016 : 00000000`00000000
    00000000`00000000 fffffa80`039a2950 00000000`00000012 :
    nt!MiProcessDereferenceList+0x6f
    fffffa60`01924cd0 fffff800`01e68f37 : 00000000`00000000
    00000000`00000000 00000000`00000000 00000000`00000001 :
    nt!MiDereferenceSegmentThread+0x106
    fffffa60`01924d50 fffff800`01c9b616 : fffff800`01d77680
    fffffa80`039babb0 fffff800`01d7cb80 fffff800`01d77cf0 :
    nt!PspSystemThreadStartup+0x57
    fffffa60`01924d80 00000000`00000000 : 00000000`00000000
    00000000`00000000 00000000`00000000 00000000`00000000 :
    nt!KiStartSystemThread+0x16


    STACK_COMMAND: kb

    SYMBOL_NAME: PAGE_NOT_ZERO

    FOLLOWUP_NAME: MachineOwner

    MODULE_NAME: Unknown_Module

    IMAGE_NAME: Unknown_Image

    DEBUG_FLR_IMAGE_TIMESTAMP: 0

    BUCKET_ID: PAGE_NOT_ZERO

    Followup: MachineOwner
    ---------

    *** Memory manager detected 1 instance(s) of page corruption, target is
    likely to have memory corruption.

    0: kd> .trap 0xfffffa6001924a00
    NOTE: The trap frame does not contain all registers.
    Some register values may be zeroed or incorrect.
    rax=0000058000000000 rbx=0000000000000000 rcx=fffffa8efcfe26f0
    rdx=fdffffffffffffff rsi=0000000000000000 rdi=0000000000000000
    rip=fffff80001c69f2f rsp=fffffa6001924b90 rbp=0000000000000006
    r8=0000007ffffffff8 r9=0000098000000000 r10=0000000000000000
    r11=fffff8800d6ee450 r12=0000000000000000 r13=0000000000000000
    r14=0000000000000000 r15=0000000000000000
    iopl=0 nv up ei ng nz na po cy
    nt! ?? ::FNODOBFM::`string'+0x2e846:
    fffff800`01c69f2f 80611ad7 and byte ptr [rcx+1Ah],0D7h
    ds:0001:fffffa8e`fcfe270a=??



    Any suggestions?


    --
    Vistaz
     
  2. Rick Rogers

    Rick Rogers Guest

    Hi,

    Two things I would do:

    a) Run the driver verifier and check for unsigned drivers.

    [​IMG] Run a hard drive integrity check with a diagnostic tool from the
    manufacturer.

    --
    Best of Luck,

    Rick Rogers, aka "Nutcase" - Microsoft MVP

    Windows help -

    Vote for my shoe:


    "Vistaz" <guest@unknown-email.com> wrote in message
    news:84fabfd113a5927f30b1ad4677bb8036@nntp-gateway.com...<!--coloro:blue--><span style="color:blue <!--/coloro-->
    >
    > I have been getting the Blue Screen recently. Not really "blue", the
    > screen goes all black. After running the debugger, here's what I got.
    > *******************************************************************************
    > * *
    > * Bugcheck Analysis *
    > * *
    > *******************************************************************************
    >
    > IRQL_NOT_LESS_OR_EQUAL (a)
    > An attempt was made to access a pageable (or completely invalid)
    > address at an
    > interrupt request level (IRQL) that is too high. This is usually
    > caused by drivers using improper addresses.
    > If a kernel debugger is available get the stack backtrace.
    > Arguments:
    > Arg1: fffffa8efcfe270a, memory referenced
    > Arg2: 0000000000000002, IRQL
    > Arg3: 0000000000000001, bitfield :
    > bit 0 : value 0 = read operation, 1 = write operation
    > bit 3 : value 0 = not an execute operation, 1 = execute operation (only
    > on chips which support this level of status)
    > Arg4: fffff80001c69f2f, address which referenced memory
    >
    > Debugging Details:
    > ------------------
    >
    >
    > AUTOBUG_USER_LCID_STR: ENU
    >
    > AUTOBUG_OS_SKU: 3
    >
    > WRITE_ADDRESS: GetPointerFromAddress: unable to read from
    > fffff80001e2b080
    > fffffa8efcfe270a
    >
    > CURRENT_IRQL: 2
    >
    > FAULTING_IP:
    > nt! ?? ::FNODOBFM::`string'+2e846
    > fffff800`01c69f2f 80611ad7 and byte ptr [rcx+1Ah],0D7h
    >
    > CUSTOMER_CRASH_COUNT: 1
    >
    > DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
    >
    > BUGCHECK_STR: 0xA
    >
    > PROCESS_NAME: System
    >
    > BAD_PAGES_DETECTED: 1
    >
    > TRAP_FRAME: fffffa6001924a00 -- (.trap 0xfffffa6001924a00)
    > NOTE: The trap frame does not contain all registers.
    > Some register values may be zeroed or incorrect.
    > rax=0000058000000000 rbx=0000000000000000 rcx=fffffa8efcfe26f0
    > rdx=fdffffffffffffff rsi=0000000000000000 rdi=0000000000000000
    > rip=fffff80001c69f2f rsp=fffffa6001924b90 rbp=0000000000000006
    > r8=0000007ffffffff8 r9=0000098000000000 r10=0000000000000000
    > r11=fffff8800d6ee450 r12=0000000000000000 r13=0000000000000000
    > r14=0000000000000000 r15=0000000000000000
    > iopl=0 nv up ei ng nz na po cy
    > nt! ?? ::FNODOBFM::`string'+0x2e846:
    > fffff800`01c69f2f 80611ad7 and byte ptr [rcx+1Ah],0D7h
    > ds:0001:fffffa8e`fcfe270a=??
    > Resetting default scope
    >
    > LAST_CONTROL_TRANSFER: from fffff80001c5e1ee to fffff80001c5e450
    >
    > STACK_TEXT:
    > fffffa60`019248b8 fffff800`01c5e1ee : 00000000`0000000a
    > fffffa8e`fcfe270a 00000000`00000002 00000000`00000001 : nt!KeBugCheckEx
    > fffffa60`019248c0 fffff800`01c5d0cb : 00000000`00000001
    > fffffa80`05329c60 fffffa80`066941f0 00000000`4feff625 :
    > nt!KiBugCheckDispatch+0x6e
    > fffffa60`01924a00 fffff800`01c69f2f : fffff6fc`4009c060
    > fffff880`0c8d02d0 fffffa60`00000001 00001a65`74536d00 :
    > nt!KiPageFault+0x20b
    > fffffa60`01924b90 fffff800`01eb9b35 : fffffa80`04fe2400
    > 00000000`00000001 00000000`00084081 00000000`000c0000 : nt! ??
    > ::FNODOBFM::`string'+0x2e846
    > fffffa60`01924bf0 fffff800`01d2b68f : fffffa80`04fe2400
    > 00000000`00000080 00000000`00000002 00000000`6d536d4d :
    > nt!MiSegmentDelete+0x79
    > fffffa60`01924c40 fffff800`01d2e016 : 00000000`00000000
    > 00000000`00000000 fffffa80`039a2950 00000000`00000012 :
    > nt!MiProcessDereferenceList+0x6f
    > fffffa60`01924cd0 fffff800`01e68f37 : 00000000`00000000
    > 00000000`00000000 00000000`00000000 00000000`00000001 :
    > nt!MiDereferenceSegmentThread+0x106
    > fffffa60`01924d50 fffff800`01c9b616 : fffff800`01d77680
    > fffffa80`039babb0 fffff800`01d7cb80 fffff800`01d77cf0 :
    > nt!PspSystemThreadStartup+0x57
    > fffffa60`01924d80 00000000`00000000 : 00000000`00000000
    > 00000000`00000000 00000000`00000000 00000000`00000000 :
    > nt!KiStartSystemThread+0x16
    >
    >
    > STACK_COMMAND: kb
    >
    > SYMBOL_NAME: PAGE_NOT_ZERO
    >
    > FOLLOWUP_NAME: MachineOwner
    >
    > MODULE_NAME: Unknown_Module
    >
    > IMAGE_NAME: Unknown_Image
    >
    > DEBUG_FLR_IMAGE_TIMESTAMP: 0
    >
    > BUCKET_ID: PAGE_NOT_ZERO
    >
    > Followup: MachineOwner
    > ---------
    >
    > *** Memory manager detected 1 instance(s) of page corruption, target is
    > likely to have memory corruption.
    >
    > 0: kd> .trap 0xfffffa6001924a00
    > NOTE: The trap frame does not contain all registers.
    > Some register values may be zeroed or incorrect.
    > rax=0000058000000000 rbx=0000000000000000 rcx=fffffa8efcfe26f0
    > rdx=fdffffffffffffff rsi=0000000000000000 rdi=0000000000000000
    > rip=fffff80001c69f2f rsp=fffffa6001924b90 rbp=0000000000000006
    > r8=0000007ffffffff8 r9=0000098000000000 r10=0000000000000000
    > r11=fffff8800d6ee450 r12=0000000000000000 r13=0000000000000000
    > r14=0000000000000000 r15=0000000000000000
    > iopl=0 nv up ei ng nz na po cy
    > nt! ?? ::FNODOBFM::`string'+0x2e846:
    > fffff800`01c69f2f 80611ad7 and byte ptr [rcx+1Ah],0D7h
    > ds:0001:fffffa8e`fcfe270a=??
    >
    >
    >
    > Any suggestions?
    >
    >
    > --
    > Vistaz <!--colorc--><!--/colorc-->
     

Share This Page