none
블루스크린 원인 분석 요청 (KERNEL_MODE_HEAP_CRROUPTION) RRS feed

  • 질문


  • Microsoft (R) Windows Debugger Version 10.0.18362.1 X86
    Copyright (c) Microsoft Corporation. All rights reserved.


    Loading Dump File [C:\Users\owner\OneDrive\8.기타\블루스크린정보\블루스크린 덤프\081419-6453-01.dmp]
    Mini Kernel Dump File: Only registers and stack trace are available

    Symbol search path is: srv*
    Executable search path is: 
    Windows 10 Kernel Version 18362 MP (8 procs) Free x64
    Product: WinNt, suite: TerminalServer SingleUserTS
    Built by: 18362.1.amd64fre.19h1_release.190318-1202
    Machine Name:
    Kernel base = 0xfffff807`25e00000 PsLoadedModuleList = 0xfffff807`26246450
    Debug session time: Wed Aug 14 01:59:04.713 2019 (UTC + 9:00)
    System Uptime: 1 days 1:13:06.652
    Loading Kernel Symbols
    ...............................................................
    ................................................................
    ................................................................
    .........................................
    Loading User Symbols
    Loading unloaded module list
    ..................................................
    For analysis of this file, run !analyze -v
    6: kd> !analyze -v
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************

    KERNEL_MODE_HEAP_CORRUPTION (13a)
    The kernel mode heap manager has detected corruption in a heap.
    Arguments:
    Arg1: 0000000000000011, Type of corruption detected
    Arg2: ffffb98f73202100, Address of the heap that reported the corruption
    Arg3: ffffb98f7c817940, Address at which the corruption was detected
    Arg4: 0000000000000000

    Debugging Details:
    ------------------

    fffff807263713b8: Unable to get MiVisibleState
    Unable to get NonPagedPoolStart
    Unable to get NonPagedPoolEnd
    Unable to get PagedPoolStart
    Unable to get PagedPoolEnd
    Unable to get NonPagedPoolStart
    Unable to get NonPagedPoolEnd
    Unable to get PagedPoolStart
    Unable to get PagedPoolEnd

    KEY_VALUES_STRING: 1


    PROCESSES_ANALYSIS: 1

    SERVICE_ANALYSIS: 1

    STACKHASH_ANALYSIS: 1

    TIMELINE_ANALYSIS: 1


    DUMP_CLASS: 1

    DUMP_QUALIFIER: 400

    BUILD_VERSION_STRING:  18362.1.amd64fre.19h1_release.190318-1202

    SYSTEM_MANUFACTURER:  SAMSUNG ELECTRONICS CO., LTD.

    SYSTEM_PRODUCT_NAME:  930SBE/931SBE/930SBV

    SYSTEM_SKU:  SCAI-A5A5-A5A5-A5A5-PAGW

    SYSTEM_VERSION:  P04AGW

    BIOS_VENDOR:  American Megatrends Inc.

    BIOS_VERSION:  P04AGW.039.190322.SH

    BIOS_DATE:  03/22/2019

    BASEBOARD_MANUFACTURER:  SAMSUNG ELECTRONICS CO., LTD.

    BASEBOARD_PRODUCT:  SAMSUNG_NP_930SBE

    BASEBOARD_VERSION:  SAMSUNG_SW_REVISION_12345+0.0.0000

    DUMP_TYPE:  2

    BUGCHECK_P1: 11

    BUGCHECK_P2: ffffb98f73202100

    BUGCHECK_P3: ffffb98f7c817940

    BUGCHECK_P4: 0

    FAULTING_IP: 
    nt!IopDereferenceVpbAndFree+161b83
    fffff807`26032893 90              nop

    POOL_ADDRESS: Unable to get NonPagedPoolStart
    Unable to get NonPagedPoolEnd
    Unable to get PagedPoolStart
    Unable to get PagedPoolEnd
     ffffb98f7c817940 

    FREED_POOL_TAG:  V

    BUGCHECK_STR:  0x13a_11_V

    CPU_COUNT: 8

    CPU_MHZ: 7c8

    CPU_VENDOR:  GenuineIntel

    CPU_FAMILY: 6

    CPU_MODEL: 8e

    CPU_STEPPING: b

    CPU_MICROCODE: 6,8e,b,0 (F,M,S,R)  SIG: A4'00000000 (cache) A4'00000000 (init)

    BLACKBOXBSD: 1 (!blackboxbsd)


    BLACKBOXNTFS: 1 (!blackboxntfs)


    BLACKBOXPNP: 1 (!blackboxpnp)


    BLACKBOXWINLOGON: 1

    CUSTOMER_CRASH_COUNT:  1

    DEFAULT_BUCKET_ID:  WIN8_DRIVER_FAULT

    PROCESS_NAME:  wininit.exe

    CURRENT_IRQL:  0

    ANALYSIS_SESSION_HOST:  DESKTOP-88K6QAB

    ANALYSIS_SESSION_TIME:  08-14-2019 20:01:33.0587

    ANALYSIS_VERSION: 10.0.18362.1 x86fre

    LAST_CONTROL_TRANSFER:  from fffff807261197e8 to fffff80725fbfcc0

    STACK_TEXT:  
    fffff106`1abcf0f8 fffff807`261197e8 : 00000000`0000013a 00000000`00000011 ffffb98f`73202100 ffffb98f`7c817940 : nt!KeBugCheckEx
    fffff106`1abcf100 fffff807`26119848 : 00000000`00000011 00000000`00000000 ffffb98f`73202100 00000000`00000002 : nt!RtlpHeapHandleError+0x40
    fffff106`1abcf140 fffff807`26119471 : 00000000`00000070 ffffb98f`7c815000 00000000`00000000 00000000`656c6946 : nt!RtlpHpHeapHandleError+0x58
    fffff106`1abcf170 fffff807`26038cfc : ffffb98f`73202340 00000000`000000ff 00000000`00000000 00000000`00000000 : nt!RtlpLogHeapFailure+0x45
    fffff106`1abcf1a0 fffff807`25e45777 : ffffb98f`73202340 00000000`000000ff 00000000`00000989 00000000`00000000 : nt!RtlpHpLfhSubsegmentFreeBlock+0x1538bc
    fffff106`1abcf260 fffff807`2616d0a9 : ffffb98f`752fe510 00000000`00000000 fffff106`1abcf660 01000000`00100000 : nt!ExFreeHeapPool+0x357
    fffff106`1abcf380 fffff807`26032893 : 00000000`00000000 00000000`00000000 fffff106`1abcf660 ffffb98f`872a1e70 : nt!ExFreePool+0x9
    fffff106`1abcf3b0 fffff807`263e41f0 : fffff807`263e3705 fffff106`1abcf660 00000000`00400201 ffffb98f`8e608a80 : nt!IopDereferenceVpbAndFree+0x161b83
    fffff106`1abcf3f0 fffff807`263eac5f : ffffb98f`7d23d910 ffffb98f`7d23d800 ffffb98f`85892010 00000000`00000001 : nt!IopParseDevice+0xa00
    fffff106`1abcf560 fffff807`263e90c1 : ffffb98f`85892000 fffff106`1abcf7a8 00000000`00000040 ffffb98f`738f77a0 : nt!ObpLookupObjectName+0x78f
    fffff106`1abcf720 fffff807`2642dbc0 : ffffb98f`00000001 000000e5`2f8fdf20 00000000`00000001 00000000`00000000 : nt!ObOpenObjectByNameEx+0x201
    fffff106`1abcf860 fffff807`2642d2f8 : 000000e5`2f8fdec8 00000000`00100080 000000e5`2f8fdf20 000000e5`2f8fdf10 : nt!IopCreateFile+0x820
    fffff106`1abcf900 fffff807`25fd1515 : 00000000`00000328 fffff807`2645832b 00000000`00000000 00000000`00000000 : nt!NtOpenFile+0x58
    fffff106`1abcf990 00007ffc`0d93c6c4 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x25
    000000e5`2f8fde68 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ffc`0d93c6c4


    THREAD_SHA1_HASH_MOD_FUNC:  af9471036510095a0f3935492553c9ae3f5a1578

    THREAD_SHA1_HASH_MOD_FUNC_OFFSET:  441cf53ee692dc031e2599122fe63fa71c05785f

    THREAD_SHA1_HASH_MOD:  7f608ac2fbce9034a3386b1d51652e4911d30234

    FOLLOWUP_IP: 
    nt!IopDereferenceVpbAndFree+161b83
    fffff807`26032893 90              nop

    FAULT_INSTR_CODE:  e574e990

    SYMBOL_STACK_INDEX:  7

    SYMBOL_NAME:  nt!IopDereferenceVpbAndFree+161b83

    FOLLOWUP_NAME:  MachineOwner

    MODULE_NAME: nt

    IMAGE_NAME:  ntkrnlmp.exe

    DEBUG_FLR_IMAGE_TIMESTAMP:  74da155a

    IMAGE_VERSION:  10.0.18362.267

    STACK_COMMAND:  .thread ; .cxr ; kb

    BUCKET_ID_FUNC_OFFSET:  161b83

    FAILURE_BUCKET_ID:  0x13a_11_V_nt!IopDereferenceVpbAndFree

    BUCKET_ID:  0x13a_11_V_nt!IopDereferenceVpbAndFree

    PRIMARY_PROBLEM_CLASS:  0x13a_11_V_nt!IopDereferenceVpbAndFree

    TARGET_TIME:  2019-08-13T16:59:04.000Z

    OSBUILD:  18362

    OSSERVICEPACK:  267

    SERVICEPACK_NUMBER: 0

    OS_REVISION: 0

    SUITE_MASK:  272

    PRODUCT_TYPE:  1

    OSPLATFORM_TYPE:  x64

    OSNAME:  Windows 10

    OSEDITION:  Windows 10 WinNt TerminalServer SingleUserTS

    OS_LOCALE:  

    USER_LCID:  0

    OSBUILD_TIMESTAMP:  2032-02-15 18:16:10

    BUILDDATESTAMP_STR:  190318-1202

    BUILDLAB_STR:  19h1_release

    BUILDOSVER_STR:  10.0.18362.1.amd64fre.19h1_release.190318-1202

    ANALYSIS_SESSION_ELAPSED_TIME:  8457

    ANALYSIS_SOURCE:  KM

    FAILURE_ID_HASH_STRING:  km:0x13a_11_v_nt!iopdereferencevpbandfree

    FAILURE_ID_HASH:  {853f12fa-9aa9-37fd-a508-b7034ab65feb}

    Followup:     MachineOwner
    ---------
    2019년 8월 14일 수요일 오후 12:59

답변

  • 안녕하세요,

    기재 해주신 KERNEL_MODE_HEAP_CRROUPTION 버그 검사값은 0x0000013A 입니다. 이는 커널 모드 힙 손상시 발생할 수 있습니다. 

    [버그 확인 0x13A]
    https://docs.microsoft.com/en-us/windows-hardware/drivers/debugger/bug-check-0x13a--kernel-mode-heap-corruption

    다만, 덤프파일 분석은 TechNet 포럼 상 도움을 드리기 어렵기 때문에 기술지원 고객센터를 통해 문의 주시어 조금 더 자세한 답변을 받아보시기 바랍니다.

    감사합니다.

    ※ 응답이 문제 해결에 도움이 되었다면 [답변으로 표시] 버튼을 눌러 주시기 바랍니다. 이는 유사한 증상을 겪는 다른 사용자들에게 도움이 될 수 있습니다. 만약 TechNet 구독자 지원에 대한 의견이 있다면, tnsf@microsoft.com으로 문의할 수 있습니다.

    • 답변으로 표시됨 sjkwon_unioneinc 2019년 8월 17일 토요일 오전 7:03
    2019년 8월 16일 금요일 오전 12:30
    중재자