询问者
Windows7 sp1-32位经常蓝屏,请大神帮忙看看

问题
全部回复
-
******************************************************************************* * * * Bugcheck Analysis * * * ******************************************************************************* Use !analyze -v to get detailed debugging information. BugCheck 100000D1, {0, ff, 0, 0} Probably caused by : Unknown_Image ( ANALYSIS_INCONCLUSIVE ) Followup: MachineOwner --------- 2: kd> !analyze -v ******************************************************************************* * * * Bugcheck Analysis * * * ******************************************************************************* DRIVER_IRQL_NOT_LESS_OR_EQUAL (d1) An attempt was made to access a pageable (or completely invalid) address at an interrupt request level (IRQL) that is too high. This is usually caused by drivers using improper addresses. If kernel debugger is available get stack backtrace. Arguments: Arg1: 00000000, memory referenced Arg2: 000000ff, IRQL Arg3: 00000000, value 0 = read operation, 1 = write operation Arg4: 00000000, address which referenced memory Debugging Details: ------------------ KEY_VALUES_STRING: 1 TIMELINE_ANALYSIS: 1 DUMP_CLASS: 1 DUMP_QUALIFIER: 400 BUILD_VERSION_STRING: 7601.17514.x86fre.win7sp1_rtm.101119-1850 SYSTEM_MANUFACTURER: Xen SYSTEM_PRODUCT_NAME: HVM domU SYSTEM_VERSION: 4.1.2_115-901.211. BIOS_VENDOR: Xen BIOS_VERSION: 4.1.2_115-901.211. BIOS_DATE: 05/04/2016 DUMP_TYPE: 2 BUGCHECK_P1: 0 BUGCHECK_P2: ff BUGCHECK_P3: 0 BUGCHECK_P4: 0 READ_ADDRESS: GetPointerFromAddress: unable to read from 8419f700 Unable to get MmSystemRangeStart GetUlongPtrFromAddress: unable to read from 8419f114 GetUlongPtrFromAddress: unable to read from 8419f5b8 Unable to get NonPagedPoolStart Unable to get PagedPoolStart 00000000 CURRENT_IRQL: 0 FAULTING_IP: +0 00000000 ?? ??? PROCESS_NAME: mssecsvr.exe ADDITIONAL_DEBUG_TEXT: The trap occurred when interrupts are disabled on the target. BUGCHECK_STR: DISABLED_INTERRUPT_FAULT CPU_COUNT: 4 CPU_MHZ: 7cf CPU_VENDOR: GenuineIntel CPU_FAMILY: 6 CPU_MODEL: 2d CPU_STEPPING: 7 CPU_MICROCODE: 6,2d,7,0 (F,M,S,R) SIG: 710'00000000 (cache) 710'00000000 (init) CUSTOMER_CRASH_COUNT: 1 ANALYSIS_SESSION_HOST: VLIUTA35VM ANALYSIS_SESSION_TIME: 06-05-2018 16:24:50.0290 ANALYSIS_VERSION: 10.0.17134.12 x86fre IP_IN_FREE_BLOCK: 0 LAST_CONTROL_TRANSFER: from 00000000 to 00000000 FAILED_INSTRUCTION_ADDRESS: +0 00000000 ?? ??? STACK_TEXT: a2bd3cbc 00000000 00000000 00000000 00000000 0x0 SYMBOL_NAME: ANALYSIS_INCONCLUSIVE FOLLOWUP_NAME: MachineOwner MODULE_NAME: Unknown_Module IMAGE_NAME: Unknown_Image DEBUG_FLR_IMAGE_TIMESTAMP: 0 STACK_COMMAND: .thread ; .cxr ; kb BUCKET_ID: BAD_STACK_DISABLED_INTERRUPT_FAULT DEFAULT_BUCKET_ID: BAD_STACK_DISABLED_INTERRUPT_FAULT PRIMARY_PROBLEM_CLASS: BAD_STACK_DISABLED_INTERRUPT_FAULT FAILURE_BUCKET_ID: BAD_STACK_DISABLED_INTERRUPT_FAULT TARGET_TIME: 2018-05-31T22:41:06.000Z OSBUILD: 7601 OSSERVICEPACK: 1000 SERVICEPACK_NUMBER: 0 OS_REVISION: 0 SUITE_MASK: 272 PRODUCT_TYPE: 1 OSPLATFORM_TYPE: x86 OSNAME: Windows 7 OSEDITION: Windows 7 WinNt (Service Pack 1) TerminalServer SingleUserTS OS_LOCALE: USER_LCID: 0 OSBUILD_TIMESTAMP: 2010-11-20 16:42:46 BUILDDATESTAMP_STR: 101119-1850 BUILDLAB_STR: win7sp1_rtm BUILDOSVER_STR: 6.1.7601.17514.x86fre.win7sp1_rtm.101119-1850 ANALYSIS_SESSION_ELAPSED_TIME: f39 ANALYSIS_SOURCE: KM FAILURE_ID_HASH_STRING: km:bad_stack_disabled_interrupt_fault FAILURE_ID_HASH: {cfd67f5e-814d-9815-63d1-740b047a91ce} Followup: MachineOwner --------- ******************************************************************************* * * * Bugcheck Analysis * * * ******************************************************************************* Use !analyze -v to get detailed debugging information. BugCheck 24, {1904fb, 9061f448, 9061f020, 840fa20a} Probably caused by : ntkrnlmp.exe ( nt!CcAllocateInitializeBcb+98 ) Followup: MachineOwner --------- 3: kd> !analyze -v ******************************************************************************* * * * Bugcheck Analysis * * * ******************************************************************************* NTFS_FILE_SYSTEM (24) If you see NtfsExceptionFilter on the stack then the 2nd and 3rd parameters are the exception record and context record. Do a .cxr on the 3rd parameter and then kb to obtain a more informative stack trace. Arguments: Arg1: 001904fb Arg2: 9061f448 Arg3: 9061f020 Arg4: 840fa20a Debugging Details: ------------------ KEY_VALUES_STRING: 1 TIMELINE_ANALYSIS: 1 DUMP_CLASS: 1 DUMP_QUALIFIER: 400 BUILD_VERSION_STRING: 7601.17514.x86fre.win7sp1_rtm.101119-1850 SYSTEM_MANUFACTURER: Xen SYSTEM_PRODUCT_NAME: HVM domU SYSTEM_VERSION: 4.1.2_115-901.211. BIOS_VENDOR: Xen BIOS_VERSION: 4.1.2_115-901.211. BIOS_DATE: 05/04/2016 DUMP_TYPE: 2 BUGCHECK_P1: 1904fb BUGCHECK_P2: ffffffff9061f448 BUGCHECK_P3: ffffffff9061f020 BUGCHECK_P4: ffffffff840fa20a EXCEPTION_RECORD: 9061f448 -- (.exr 0xffffffff9061f448) ExceptionAddress: 840fa20a (nt!CcAllocateInitializeBcb+0x00000098) ExceptionCode: c0000005 (Access violation) ExceptionFlags: 00000000 NumberParameters: 2 Parameter[0]: 00000001 Parameter[1]: 00000000 Attempt to write to address 00000000 CONTEXT: 9061f020 -- (.cxr 0xffffffff9061f020) eax=86fb62f0 ebx=881649f0 ecx=86f05018 edx=00000000 esi=86fb62e0 edi=9061f54c eip=840fa20a esp=9061f510 ebp=9061f520 iopl=0 nv up ei ng nz na pe nc cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00010286 nt!CcAllocateInitializeBcb+0x98: 840fa20a 8902 mov dword ptr [edx],eax ds:0023:00000000=???????? Resetting default scope CPU_COUNT: 4 CPU_MHZ: 7d0 CPU_VENDOR: GenuineIntel CPU_FAMILY: 6 CPU_MODEL: 2d CPU_STEPPING: 7 CPU_MICROCODE: 6,2d,7,0 (F,M,S,R) SIG: 710'00000000 (cache) 710'00000000 (init) CUSTOMER_CRASH_COUNT: 1 DEFAULT_BUCKET_ID: NULL_DEREFERENCE PROCESS_NAME: HDPTrace.exe CURRENT_IRQL: 0 FOLLOWUP_IP: nt!CcAllocateInitializeBcb+98 840fa20a 8902 mov dword ptr [edx],eax FAULTING_IP: nt!CcAllocateInitializeBcb+98 840fa20a 8902 mov dword ptr [edx],eax BUGCHECK_STR: 0x24 WRITE_ADDRESS: GetPointerFromAddress: unable to read from 841ac700 Unable to get MmSystemRangeStart GetUlongPtrFromAddress: unable to read from 841ac114 GetUlongPtrFromAddress: unable to read from 841ac5b8 Unable to get NonPagedPoolStart Unable to get PagedPoolStart 00000000 ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%p referenced memory at 0x%p. The memory could not be %s. EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%p referenced memory at 0x%p. The memory could not be %s. EXCEPTION_CODE_STR: c0000005 EXCEPTION_PARAMETER1: 00000001 EXCEPTION_PARAMETER2: 00000000 ANALYSIS_SESSION_HOST: VLIUTA35VM ANALYSIS_SESSION_TIME: 06-05-2018 16:31:28.0733 ANALYSIS_VERSION: 10.0.17134.12 x86fre LAST_CONTROL_TRANSFER: from 840e4fba to 840fa20a STACK_TEXT: 9061f520 840e4fba 881649f0 86f05008 9061f554 nt!CcAllocateInitializeBcb+0x98 9061f598 8426eba3 881649f0 9061f5dc 00000400 nt!CcPinFileData+0x1bc 9061f610 8e10f45d 8815c2d8 00000000 00000400 nt!CcPinMappedData+0xc6 9061f634 8e114a81 9061f99c 873332d8 04b8d000 Ntfs!NtfsPinMappedData+0x8d 9061f75c 8e1157b2 9061f99c 834c44f0 00000000 Ntfs!NtfsChangeAttributeValue+0x4f4 9061f824 8e0d5ee9 9061f99c 834c44f0 1e6bc3fb Ntfs!NtfsUpdateStandardInformation+0x1b3 9061f8bc 8e0d62a4 9061f99c 834c4738 834c44f0 Ntfs!NtfsModifySecurity+0x1e0 9061f924 8e10a73e 9061f99c 86c4d450 1e6bc2cf Ntfs!NtfsCommonSetSecurityInfo+0x290 9061f988 8e10a7cb 9061f99c 86c4d450 00000001 Ntfs!NtfsFsdDispatchSwitch+0x205 9061fabc 8407b047 87e4f020 86c4d450 86c4d450 Ntfs!NtfsFsdDispatchWait+0x1c 9061fad4 8e02620c 87e463a8 86c4d450 00000000 nt!IofCallDriver+0x63 9061faf8 8e0263cb 9061fb18 87e463a8 00000000 fltmgr!FltpLegacyProcessingAfterPreCallbacksCompleted+0x2aa 9061fb30 8407b047 87e463a8 86c4d450 86fb64e8 fltmgr!FltpDispatch+0xc5 9061fb48 84266ebb b02c222a 00000000 00000000 nt!IofCallDriver+0x63 9061fba4 842ad96f 87e463a8 00000000 9061fbdc nt!IopGetSetSecurityObject+0x257 9061fbd0 84296a8d 86fb6401 00000004 a4610e40 nt!ObSetSecurityObjectByPointer+0x40 9061fc20 8408187a 000001a8 00000004 002838f8 nt!NtSetSecurityObject+0x150 9061fc20 773c70b4 000001a8 00000004 002838f8 nt!KiFastCallEntry+0x12a WARNING: Frame IP not in any known module. Following frames may be wrong. 0114f904 00000000 00000000 00000000 00000000 0x773c70b4 THREAD_SHA1_HASH_MOD_FUNC: 9309b83c583fd73938995455951ccf6af3dbe357 THREAD_SHA1_HASH_MOD_FUNC_OFFSET: a7866ee3c75fd742d78ce343ab3fefe918e971a4 THREAD_SHA1_HASH_MOD: b5a081e5cbcb5d9c92ea36ae64415e07daedffb0 FAULT_INSTR_CODE: 41890289 SYMBOL_STACK_INDEX: 0 SYMBOL_NAME: nt!CcAllocateInitializeBcb+98 FOLLOWUP_NAME: MachineOwner MODULE_NAME: nt IMAGE_NAME: ntkrnlmp.exe DEBUG_FLR_IMAGE_TIMESTAMP: 4ce78a06 IMAGE_VERSION: 6.1.7601.17514 STACK_COMMAND: .cxr 0xffffffff9061f020 ; kb FAILURE_BUCKET_ID: 0x24_nt!CcAllocateInitializeBcb+98 BUCKET_ID: 0x24_nt!CcAllocateInitializeBcb+98 PRIMARY_PROBLEM_CLASS: 0x24_nt!CcAllocateInitializeBcb+98 TARGET_TIME: 2018-06-01T01:02:48.000Z OSBUILD: 7601 OSSERVICEPACK: 1000 SERVICEPACK_NUMBER: 0 OS_REVISION: 0 SUITE_MASK: 272 PRODUCT_TYPE: 1 OSPLATFORM_TYPE: x86 OSNAME: Windows 7 OSEDITION: Windows 7 WinNt (Service Pack 1) TerminalServer SingleUserTS OS_LOCALE: USER_LCID: 0 OSBUILD_TIMESTAMP: 2010-11-20 16:42:46 BUILDDATESTAMP_STR: 101119-1850 BUILDLAB_STR: win7sp1_rtm BUILDOSVER_STR: 6.1.7601.17514.x86fre.win7sp1_rtm.101119-1850 ANALYSIS_SESSION_ELAPSED_TIME: 70c ANALYSIS_SOURCE: KM FAILURE_ID_HASH_STRING: km:0x24_nt!ccallocateinitializebcb+98 FAILURE_ID_HASH: {66379764-843f-8e67-7ed6-d92869e57301} Followup: MachineOwner --------- ******************************************************************************* * * * Bugcheck Analysis * * * ******************************************************************************* Use !analyze -v to get detailed debugging information. BugCheck 10000050, {fffffff0, 0, 8408196b, 0} Could not read faulting driver name Probably caused by : ntkrnlmp.exe ( nt!CcAcquireByteRangeForWrite+3b2 ) Followup: MachineOwner --------- 3: kd> !analyze -v ******************************************************************************* * * * Bugcheck Analysis * * * ******************************************************************************* PAGE_FAULT_IN_NONPAGED_AREA (50) Invalid system memory was referenced. This cannot be protected by try-except. Typically the address is just plain bad or it is pointing at freed memory. Arguments: Arg1: fffffff0, memory referenced. Arg2: 00000000, value 0 = read operation, 1 = write operation. Arg3: 8408196b, If non-zero, the instruction address which referenced the bad memory address. Arg4: 00000000, (reserved) Debugging Details: ------------------ Could not read faulting driver name KEY_VALUES_STRING: 1 TIMELINE_ANALYSIS: 1 DUMP_CLASS: 1 DUMP_QUALIFIER: 400 BUILD_VERSION_STRING: 7601.17514.x86fre.win7sp1_rtm.101119-1850 SYSTEM_MANUFACTURER: Xen SYSTEM_PRODUCT_NAME: HVM domU SYSTEM_VERSION: 4.1.2_115-901.211. BIOS_VENDOR: Xen BIOS_VERSION: 4.1.2_115-901.211. BIOS_DATE: 05/04/2016 DUMP_TYPE: 2 BUGCHECK_P1: fffffffffffffff0 BUGCHECK_P2: 0 BUGCHECK_P3: ffffffff8408196b BUGCHECK_P4: 0 READ_ADDRESS: GetPointerFromAddress: unable to read from 8417d700 Unable to get MmSystemRangeStart GetUlongPtrFromAddress: unable to read from 8417d114 GetUlongPtrFromAddress: unable to read from 8417d5b8 Unable to get NonPagedPoolStart Unable to get PagedPoolStart fffffff0 FAULTING_IP: nt!CcAcquireByteRangeForWrite+3b2 8408196b 663907 cmp word ptr [edi],ax MM_INTERNAL_CODE: 0 CPU_COUNT: 4 CPU_MHZ: 7d0 CPU_VENDOR: GenuineIntel CPU_FAMILY: 6 CPU_MODEL: 2d CPU_STEPPING: 7 CPU_MICROCODE: 6,2d,7,0 (F,M,S,R) SIG: 710'00000000 (cache) 710'00000000 (init) CUSTOMER_CRASH_COUNT: 1 DEFAULT_BUCKET_ID: WIN7_DRIVER_FAULT BUGCHECK_STR: 0x50 PROCESS_NAME: HDPTrace.exe CURRENT_IRQL: 0 ANALYSIS_SESSION_HOST: VLIUTA35VM ANALYSIS_SESSION_TIME: 06-05-2018 16:35:57.0730 ANALYSIS_VERSION: 10.0.17134.12 x86fre LAST_CONTROL_TRANSFER: from 840831be to 8408196b STACK_TEXT: 905bf518 840831be 87e571c0 00000000 00000001 nt!CcAcquireByteRangeForWrite+0x3b2 905bf5bc 8e13ca4f 87e579a0 00000000 00000000 nt!CcFlushCache+0x244 905bf618 8e12879d 905bf924 87e4f0d8 00000001 Ntfs!NtfsFlushLsnStreams+0x278 905bf898 8e148769 905bf924 87e4f0d8 00000000 Ntfs!NtfsCheckpointVolume+0x485 905bf8e8 8e11cde6 905bf924 1e510101 00000000 Ntfs!NtfsCheckpointForLogFileFull+0x48 905bfa7c 8404c047 87e4f020 872ddb28 872ddb28 Ntfs!NtfsFsdCleanup+0x148 905bfa94 8e03220c 87337348 872ddb28 00000000 nt!IofCallDriver+0x63 905bfab8 8e0323cb 905bfad8 87337348 00000000 fltmgr!FltpLegacyProcessingAfterPreCallbacksCompleted+0x2aa 905bfaf0 8404c047 87337348 872ddb28 87180d80 fltmgr!FltpDispatch+0xc5 905bfb08 842277aa 86a23d20 87180d68 00000001 nt!IofCallDriver+0x63 905bfb48 84270cae 8875c838 87180d80 00000001 nt!IopCloseFile+0x2f3 905bfb94 842376f5 8875c838 a265fe10 88956280 nt!ObpDecrementHandleCount+0x139 905bfbdc 84262545 a265fe10 a2661348 8875c838 nt!ObpCloseHandleTableEntry+0x203 905bfc0c 842626eb 8875c838 88956201 00bbf974 nt!ObpCloseHandle+0x7f 905bfc28 8405287a 000001a4 00bbf978 776970b4 nt!NtClose+0x4e 905bfc28 776970b4 000001a4 00bbf978 776970b4 nt!KiFastCallEntry+0x12a WARNING: Frame IP not in any known module. Following frames may be wrong. 00bbf978 00000000 00000000 00000000 00000000 0x776970b4 THREAD_SHA1_HASH_MOD_FUNC: a03d01bc3d759b3735dbab1caec2f9aa07d98524 THREAD_SHA1_HASH_MOD_FUNC_OFFSET: 8f271222addbb12c088e510011e482e3c1fa72df THREAD_SHA1_HASH_MOD: df90fffe50efd3599dddc86f476648a2f829cd54 FOLLOWUP_IP: nt!CcAcquireByteRangeForWrite+3b2 8408196b 663907 cmp word ptr [edi],ax FAULT_INSTR_CODE: 74073966 SYMBOL_STACK_INDEX: 0 SYMBOL_NAME: nt!CcAcquireByteRangeForWrite+3b2 FOLLOWUP_NAME: MachineOwner MODULE_NAME: nt IMAGE_NAME: ntkrnlmp.exe DEBUG_FLR_IMAGE_TIMESTAMP: 4ce78a06 IMAGE_VERSION: 6.1.7601.17514 STACK_COMMAND: .thread ; .cxr ; kb FAILURE_BUCKET_ID: 0x50_nt!CcAcquireByteRangeForWrite+3b2 BUCKET_ID: 0x50_nt!CcAcquireByteRangeForWrite+3b2 PRIMARY_PROBLEM_CLASS: 0x50_nt!CcAcquireByteRangeForWrite+3b2 TARGET_TIME: 2018-05-31T06:22:01.000Z OSBUILD: 7601 OSSERVICEPACK: 1000 SERVICEPACK_NUMBER: 0 OS_REVISION: 0 SUITE_MASK: 272 PRODUCT_TYPE: 1 OSPLATFORM_TYPE: x86 OSNAME: Windows 7 OSEDITION: Windows 7 WinNt (Service Pack 1) TerminalServer SingleUserTS OS_LOCALE: USER_LCID: 0 OSBUILD_TIMESTAMP: 2010-11-20 16:42:46 BUILDDATESTAMP_STR: 101119-1850 BUILDLAB_STR: win7sp1_rtm BUILDOSVER_STR: 6.1.7601.17514.x86fre.win7sp1_rtm.101119-1850 ANALYSIS_SESSION_ELAPSED_TIME: 77e ANALYSIS_SOURCE: KM FAILURE_ID_HASH_STRING: km:0x50_nt!ccacquirebyterangeforwrite+3b2 FAILURE_ID_HASH: {d2908727-c883-b363-e746-b25397017fef} Followup: MachineOwner ---------
Please remember to mark the replies as answers if they help.
If you have feedback for TechNet Subscriber Support, contact tnmff@microsoft.com. -
以管理员身份打开命令提示符,输入
sfc /scannow
回车。
命令执行完以后,打开搜索栏输入msconfig,回车
启动项,禁用所有。
检查更新。
重启
如果认为回帖者的回答有所帮助,请将之标记为答复,这样可以帮助更多的用户获取有效信息。- 已编辑 Teemo TangMicrosoft contingent staff, Moderator 2018年6月5日 8:47
- 已建议为答案 Teemo TangMicrosoft contingent staff, Moderator 2018年6月22日 9:47