locked
Résultat windbg incompréhensible RRS feed

  • Question

  • Bonjour,

    J'ai un ordinateur portable DELL sous Windows 7 SP1 qui provoque des écrans bleus.

    J'ai chargé le fichier dump dans windebug mais je n'arrive pas à comprendre le résultat (la cause).

    Habituellement Windebug dit un truc du genre probably caused by  machintruc.sys mais là le résultat est plus nébuleux.

    Voici le rapport windebug, pouvez vous m'expliquer ce qu'il dit ?

    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************

    REGISTRY_ERROR (51)
    Something has gone badly wrong with the registry.  If a kernel debugger
    is available, get a stack trace. It can also indicate that the registry got
    an I/O error while trying to read one of its files, so it can be caused by
    hardware problems or filesystem corruption.
    It may occur due to a failure in a refresh operation, which is used only
    in by the security system, and then only when resource limits are encountered.
    Arguments:
    Arg1: 0000000000000001, (reserved)
    Arg2: fffff8a000024010, (reserved)
    Arg3: 000000000118f000, depends on where Windows bugchecked, may be pointer to hive
    Arg4: 0000000000000374, depends on where Windows bugchecked, may be return code of
        HvCheckHive if the hive is corrupt.

    Debugging Details:
    ------------------


    OVERLAPPED_MODULE: Address regions for 'lltdio' and 'RtsUStor.sys' overlap

    CUSTOMER_CRASH_COUNT:  1

    DEFAULT_BUCKET_ID:  WIN7_DRIVER_FAULT

    BUGCHECK_STR:  0x51

    PROCESS_NAME:  services.exe

    CURRENT_IRQL:  0

    ANALYSIS_VERSION: 6.3.9600.17237 (debuggers(dbg).140716-0327) amd64fre

    LAST_CONTROL_TRANSFER:  from fffff800031f7158 to fffff80002ec6bc0

    STACK_TEXT:  
    fffff880`030492f8 fffff800`031f7158 : 00000000`00000051 00000000`00000001 fffff8a0`00024010 00000000`0118f000 : nt!KeBugCheckEx
    fffff880`03049300 fffff800`0315fc95 : 00000000`00021ace 00000000`00008c77 00000000`00000001 00000000`00000004 : nt! ?? ::NNGAKEGL::`string'+0x9d9a
    fffff880`03049360 fffff800`0315fa6c : fffff8a0`00024010 fffff8a0`00024010 fffff8a0`0003ca00 00000000`0065004c : nt!HvMarkDirty+0x176
    fffff880`030493c0 fffff800`0312301b : 00000000`00000001 fffff8a0`0620ee24 fffff8a0`06252ba4 fffff8a0`00024010 : nt!HvMarkCellDirty+0x150
    fffff880`03049410 fffff800`03122df4 : fffff8a0`06252ba4 00000000`ffffffff fffff8a0`06252ba4 fffff8a0`00024010 : nt!CmpMarkKeyValuesDirty+0x14b
    fffff880`030494b0 fffff800`031224fa : fffff8a0`00024010 00000000`ffffffff fffff8a0`06252ba4 fffff8a0`00024010 : nt!CmpFreeKeyValues+0x24
    fffff880`030494e0 fffff800`03122228 : fffff8a0`00024010 00000000`0034e458 fffff8a0`06252ba4 fffff8a0`006c1ba0 : nt!CmpSyncKeyValues+0x7a
    fffff880`030495c0 fffff800`031244de : fffff8a0`0bf05000 00000000`003fa3b8 fffffa80`00000000 00000000`00000000 : nt!CmpCopySyncTree2+0x2a8
    fffff880`03049670 fffff800`031243f7 : 00000000`00000000 00000000`00000002 fffff8a0`0e123fa0 fffff8a0`0be13e50 : nt!CmpCopySyncTree+0x6e
    fffff880`030496c0 fffff800`03123fc6 : fffff8a0`0cd2e5a0 00000000`00000000 00000000`00000001 00000000`00000000 : nt!CmpSaveBootControlSet+0x307
    fffff880`030498a0 fffff800`02ec5e53 : fffffa80`098d3b50 00000000`00000000 fffff880`03049970 00000000`00000001 : nt!NtInitializeRegistry+0xc6
    fffff880`030498f0 fffff800`02ec2410 : fffff800`03123f6f 00000000`00000220 00000000`0021f298 00000000`0021f5c8 : nt!KiSystemServiceCopyEnd+0x13
    fffff880`03049a88 fffff800`03123f6f : 00000000`00000220 00000000`0021f298 00000000`0021f5c8 00000000`000a001f : nt!KiServiceLinkage
    fffff880`03049a90 fffff800`02ec5e53 : fffffa80`098d3b50 fffff880`03049b60 fffff880`03049b60 00000000`00000002 : nt!NtInitializeRegistry+0x6f
    fffff880`03049ae0 00000000`771d205a : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
    00000000`0021f548 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x771d205a


    STACK_COMMAND:  kb

    FOLLOWUP_IP:
    nt! ?? ::NNGAKEGL::`string'+9d9a
    fffff800`031f7158 cc              int     3

    SYMBOL_STACK_INDEX:  1

    SYMBOL_NAME:  nt! ?? ::NNGAKEGL::`string'+9d9a

    FOLLOWUP_NAME:  MachineOwner

    MODULE_NAME: nt

    IMAGE_NAME:  ntkrnlmp.exe

    DEBUG_FLR_IMAGE_TIMESTAMP:  531590fb

    IMAGE_VERSION:  6.1.7601.18409

    FAILURE_BUCKET_ID:  X64_0x51_nt!_??_::NNGAKEGL::_string_+9d9a

    BUCKET_ID:  X64_0x51_nt!_??_::NNGAKEGL::_string_+9d9a

    ANALYSIS_SOURCE:  KM

    FAILURE_ID_HASH_STRING:  km:x64_0x51_nt!_??_::nngakegl::_string_+9d9a

    FAILURE_ID_HASH:  {df0f285b-7d2d-1740-b980-5c22936f6bd7}

    Followup: MachineOwner


    Orwell

    mercredi 10 décembre 2014 13:36

Réponses

  • Bonjour,
     Vous pouvez poser votre question ici:

    social.msdn.microsoft.com/Forums/windowsdesktop

    Cordialement,
    Boris


    Votez! Appel à la contribution. Nous vous prions de considérer que dans le cadre de ce forum on n’offre pas de support technique et aucune garantie de la part de Microsoft ne peut être offerte.

    mercredi 10 décembre 2014 14:28