Bluescreens auch nach Reperatur

0x3B: SYSTEM_SERVICE_EXCEPTION Eine Ausnahme während des Ausführens einer Routine die nichtprivilegierten Code zu privilegierten Code ändert.
Argument1:0xC0000005 Speicherzugriffsverletzung.

Weils mittlerweile eh wurscht is: (RAM neu, div.Speichertests in Ordnung, Win neu,...)
häng doch bitte die .dmp verzippt an deinen Post (zu finden in C:\Windows\Minidump), auch wenns wahrscheinlich nix bringt würd ich die gern einmal auswerten.
 
Zuletzt bearbeitet von einem Moderator:
Hi,

hier (ich hoffe, dass das richte war):





Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [C:\Windows\Minidump\050211-21980-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available

Symbol search path is: SRV*C:\symbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7600 MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS Personal
Built by: 7600.16695.amd64fre.win7_gdr.101026-1503
Machine Name:
Kernel base = 0xfffff800`02c0d000 PsLoadedModuleList = 0xfffff800`02e4ae50
Debug session time: Mon May 2 19:40:58.887 2011 (UTC + 2:00)
System Uptime: 0 days 0:32:58.651
Loading Kernel Symbols
...............................................................
................................................................
...............
Loading User Symbols
Loading unloaded module list
.....
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck 50, {fffff900c1fba083, 0, fffff80002db0fca, 0}


Could not read faulting driver name
Probably caused by : Pool_Corruption ( nt!ExDeferredFreePool+13e )

Followup: Pool_corruption
---------

0: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************

PAGE_FAULT_IN_NONPAGED_AREA (50)
Invalid system memory was referenced. This cannot be protected by try-except,
it must be protected by a Probe. Typically the address is just plain bad or it
is pointing at freed memory.
Arguments:
Arg1: fffff900c1fba083, memory referenced.
Arg2: 0000000000000000, value 0 = read operation, 1 = write operation.
Arg3: fffff80002db0fca, If non-zero, the instruction address which referenced the bad memory
address.
Arg4: 0000000000000000, (reserved)

Debugging Details:
------------------


Could not read faulting driver name

READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80002eb50e0
fffff900c1fba083

FAULTING_IP:
nt!ExDeferredFreePool+13e
fffff800`02db0fca 4180790300 cmp byte ptr [r9+3],0

MM_INTERNAL_CODE: 0

CUSTOMER_CRASH_COUNT: 1

DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT

BUGCHECK_STR: 0x50

PROCESS_NAME: explorer.exe

CURRENT_IRQL: 0

TRAP_FRAME: fffff88004ffd5b0 -- (.trap 0xfffff88004ffd5b0)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=0000000001701e70 rbx=0000000000000000 rcx=fffff88002782e90
rdx=fffff900c1fb99c0 rsi=0000000000000000 rdi=0000000000000000
rip=fffff80002db0fca rsp=fffff88004ffd740 rbp=0000000000000000
r8=fffff900c2133010 r9=fffff900c1fba080 r10=fffff900c2001870
r11=0000000000000000 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei pl nz na pe nc
nt!ExDeferredFreePool+0x13e:
fffff800`02db0fca 4180790300 cmp byte ptr [r9+3],0 ds:06b0:fffff900`c1fba083=??
Resetting default scope

LAST_CONTROL_TRANSFER: from fffff80002cfdf14 to fffff80002c7d740

STACK_TEXT:
fffff880`04ffd448 fffff800`02cfdf14 : 00000000`00000050 fffff900`c1fba083 00000000`00000000 fffff880`04ffd5b0 : nt!KeBugCheckEx
fffff880`04ffd450 fffff800`02c7b82e : 00000000`00000000 00000000`000000d1 00000000`05010100 fffff960`000e44f5 : nt! ?? ::FNODOBFM::`string'+0x42837
fffff880`04ffd5b0 fffff800`02db0fca : 00000000`00000000 fffff800`02db1cdd fffff900`c1e69350 fffff960`6c777355 : nt!KiPageFault+0x16e
fffff880`04ffd740 fffff800`02db24c1 : fffff900`c1fb3800 fffff900`c20447b0 fffff900`00000021 fffff960`6c777355 : nt!ExDeferredFreePool+0x13e
fffff880`04ffd7d0 fffff960`00156fda : fffff900`c0800b90 fffff900`c20447c0 fffff900`6c777355 00000000`00000012 : nt!ExFreePoolWithTag+0x411
fffff880`04ffd880 fffff960`000adb19 : fffff900`c20447c0 00000000`00000002 00000000`000001d8 fffff900`c1ef85f0 : win32k!UserReAllocPoolWithTag+0x56
fffff880`04ffd8b0 fffff960`000ad9a6 : 00000000`00000000 fffff900`c0831980 00000000`00000000 00000000`00000012 : win32k!InternalBuildHwndList+0x69
fffff880`04ffd8e0 fffff960`00066a1c : fffff900`c0827330 fffff900`c1ef85f0 00000000`00000004 fffff900`c1f58460 : win32k!BuildHwndList+0x76
fffff880`04ffd910 fffff960`00066a78 : fffff900`c1f585b0 fffff900`c1ef85f0 00000000`00000004 00000000`00000004 : win32k!xxxInternalDoSyncPaint+0x48
fffff880`04ffd960 fffff960`000669c1 : fffff900`c0800b90 00000000`00000000 00000000`00000000 00000000`00000000 : win32k!xxxInternalDoSyncPaint+0xa4
fffff880`04ffd9b0 fffff960`000b9421 : fffff960`00303120 00000000`00000000 fffff960`00000001 00000000`00000000 : win32k!xxxDoSyncPaint+0x51
fffff880`04ffd9e0 fffff960`000b905a : fffff900`00000001 fffff900`c08048c0 00000000`00000002 fffff960`00000000 : win32k!xxxEndDeferWindowPosEx+0x385
fffff880`04ffdaa0 fffff960`000f750d : 00000000`00000000 00000000`00000000 fffff900`00000000 fffff960`00000000 : win32k!xxxSetWindowPos+0x156
fffff880`04ffdb20 fffff800`02c7c993 : fffffa80`063de660 fffff880`04ffdca0 00000000`02bcf5f8 fffff880`04ffdbc8 : win32k!NtUserSetWindowPos+0x1e5
fffff880`04ffdbb0 00000000`773c6c7a : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000000`02bcf5d8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x773c6c7a


STACK_COMMAND: kb

FOLLOWUP_IP:
nt!ExDeferredFreePool+13e
fffff800`02db0fca 4180790300 cmp byte ptr [r9+3],0

SYMBOL_STACK_INDEX: 3

SYMBOL_NAME: nt!ExDeferredFreePool+13e

FOLLOWUP_NAME: Pool_corruption

IMAGE_NAME: Pool_Corruption

DEBUG_FLR_IMAGE_TIMESTAMP: 0

MODULE_NAME: Pool_Corruption

FAILURE_BUCKET_ID: X64_0x50_nt!ExDeferredFreePool+13e

BUCKET_ID: X64_0x50_nt!ExDeferredFreePool+13e

Followup: Pool_corruption
---------

0: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************

PAGE_FAULT_IN_NONPAGED_AREA (50)
Invalid system memory was referenced. This cannot be protected by try-except,
it must be protected by a Probe. Typically the address is just plain bad or it
is pointing at freed memory.
Arguments:
Arg1: fffff900c1fba083, memory referenced.
Arg2: 0000000000000000, value 0 = read operation, 1 = write operation.
Arg3: fffff80002db0fca, If non-zero, the instruction address which referenced the bad memory
address.
Arg4: 0000000000000000, (reserved)

Debugging Details:
------------------


Could not read faulting driver name

READ_ADDRESS: fffff900c1fba083

FAULTING_IP:
nt!ExDeferredFreePool+13e
fffff800`02db0fca 4180790300 cmp byte ptr [r9+3],0

MM_INTERNAL_CODE: 0

CUSTOMER_CRASH_COUNT: 1

DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT

BUGCHECK_STR: 0x50

PROCESS_NAME: explorer.exe

CURRENT_IRQL: 0

TRAP_FRAME: fffff88004ffd5b0 -- (.trap 0xfffff88004ffd5b0)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=0000000001701e70 rbx=0000000000000000 rcx=fffff88002782e90
rdx=fffff900c1fb99c0 rsi=0000000000000000 rdi=0000000000000000
rip=fffff80002db0fca rsp=fffff88004ffd740 rbp=0000000000000000
r8=fffff900c2133010 r9=fffff900c1fba080 r10=fffff900c2001870
r11=0000000000000000 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei pl nz na pe nc
nt!ExDeferredFreePool+0x13e:
fffff800`02db0fca 4180790300 cmp byte ptr [r9+3],0 ds:06b0:fffff900`c1fba083=??
Resetting default scope

LAST_CONTROL_TRANSFER: from fffff80002cfdf14 to fffff80002c7d740

STACK_TEXT:
fffff880`04ffd448 fffff800`02cfdf14 : 00000000`00000050 fffff900`c1fba083 00000000`00000000 fffff880`04ffd5b0 : nt!KeBugCheckEx
fffff880`04ffd450 fffff800`02c7b82e : 00000000`00000000 00000000`000000d1 00000000`05010100 fffff960`000e44f5 : nt! ?? ::FNODOBFM::`string'+0x42837
fffff880`04ffd5b0 fffff800`02db0fca : 00000000`00000000 fffff800`02db1cdd fffff900`c1e69350 fffff960`6c777355 : nt!KiPageFault+0x16e
fffff880`04ffd740 fffff800`02db24c1 : fffff900`c1fb3800 fffff900`c20447b0 fffff900`00000021 fffff960`6c777355 : nt!ExDeferredFreePool+0x13e
fffff880`04ffd7d0 fffff960`00156fda : fffff900`c0800b90 fffff900`c20447c0 fffff900`6c777355 00000000`00000012 : nt!ExFreePoolWithTag+0x411
fffff880`04ffd880 fffff960`000adb19 : fffff900`c20447c0 00000000`00000002 00000000`000001d8 fffff900`c1ef85f0 : win32k!UserReAllocPoolWithTag+0x56
fffff880`04ffd8b0 fffff960`000ad9a6 : 00000000`00000000 fffff900`c0831980 00000000`00000000 00000000`00000012 : win32k!InternalBuildHwndList+0x69
fffff880`04ffd8e0 fffff960`00066a1c : fffff900`c0827330 fffff900`c1ef85f0 00000000`00000004 fffff900`c1f58460 : win32k!BuildHwndList+0x76
fffff880`04ffd910 fffff960`00066a78 : fffff900`c1f585b0 fffff900`c1ef85f0 00000000`00000004 00000000`00000004 : win32k!xxxInternalDoSyncPaint+0x48
fffff880`04ffd960 fffff960`000669c1 : fffff900`c0800b90 00000000`00000000 00000000`00000000 00000000`00000000 : win32k!xxxInternalDoSyncPaint+0xa4
fffff880`04ffd9b0 fffff960`000b9421 : fffff960`00303120 00000000`00000000 fffff960`00000001 00000000`00000000 : win32k!xxxDoSyncPaint+0x51
fffff880`04ffd9e0 fffff960`000b905a : fffff900`00000001 fffff900`c08048c0 00000000`00000002 fffff960`00000000 : win32k!xxxEndDeferWindowPosEx+0x385
fffff880`04ffdaa0 fffff960`000f750d : 00000000`00000000 00000000`00000000 fffff900`00000000 fffff960`00000000 : win32k!xxxSetWindowPos+0x156
fffff880`04ffdb20 fffff800`02c7c993 : fffffa80`063de660 fffff880`04ffdca0 00000000`02bcf5f8 fffff880`04ffdbc8 : win32k!NtUserSetWindowPos+0x1e5
fffff880`04ffdbb0 00000000`773c6c7a : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000000`02bcf5d8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x773c6c7a


STACK_COMMAND: kb

FOLLOWUP_IP:
nt!ExDeferredFreePool+13e
fffff800`02db0fca 4180790300 cmp byte ptr [r9+3],0

SYMBOL_STACK_INDEX: 3

SYMBOL_NAME: nt!ExDeferredFreePool+13e

FOLLOWUP_NAME: Pool_corruption

IMAGE_NAME: Pool_Corruption

DEBUG_FLR_IMAGE_TIMESTAMP: 0

MODULE_NAME: Pool_Corruption

FAILURE_BUCKET_ID: X64_0x50_nt!ExDeferredFreePool+13e

BUCKET_ID: X64_0x50_nt!ExDeferredFreePool+13e

Followup: Pool_corruption
---------

0: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************

PAGE_FAULT_IN_NONPAGED_AREA (50)
Invalid system memory was referenced. This cannot be protected by try-except,
it must be protected by a Probe. Typically the address is just plain bad or it
is pointing at freed memory.
Arguments:
Arg1: fffff900c1fba083, memory referenced.
Arg2: 0000000000000000, value 0 = read operation, 1 = write operation.
Arg3: fffff80002db0fca, If non-zero, the instruction address which referenced the bad memory
address.
Arg4: 0000000000000000, (reserved)

Debugging Details:
------------------


Could not read faulting driver name

READ_ADDRESS: fffff900c1fba083

FAULTING_IP:
nt!ExDeferredFreePool+13e
fffff800`02db0fca 4180790300 cmp byte ptr [r9+3],0

MM_INTERNAL_CODE: 0

CUSTOMER_CRASH_COUNT: 1

DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT

BUGCHECK_STR: 0x50

PROCESS_NAME: explorer.exe

CURRENT_IRQL: 0

TRAP_FRAME: fffff88004ffd5b0 -- (.trap 0xfffff88004ffd5b0)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=0000000001701e70 rbx=0000000000000000 rcx=fffff88002782e90
rdx=fffff900c1fb99c0 rsi=0000000000000000 rdi=0000000000000000
rip=fffff80002db0fca rsp=fffff88004ffd740 rbp=0000000000000000
r8=fffff900c2133010 r9=fffff900c1fba080 r10=fffff900c2001870
r11=0000000000000000 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei pl nz na pe nc
nt!ExDeferredFreePool+0x13e:
fffff800`02db0fca 4180790300 cmp byte ptr [r9+3],0 ds:06b0:fffff900`c1fba083=??
Resetting default scope

LAST_CONTROL_TRANSFER: from fffff80002cfdf14 to fffff80002c7d740

STACK_TEXT:
fffff880`04ffd448 fffff800`02cfdf14 : 00000000`00000050 fffff900`c1fba083 00000000`00000000 fffff880`04ffd5b0 : nt!KeBugCheckEx
fffff880`04ffd450 fffff800`02c7b82e : 00000000`00000000 00000000`000000d1 00000000`05010100 fffff960`000e44f5 : nt! ?? ::FNODOBFM::`string'+0x42837
fffff880`04ffd5b0 fffff800`02db0fca : 00000000`00000000 fffff800`02db1cdd fffff900`c1e69350 fffff960`6c777355 : nt!KiPageFault+0x16e
fffff880`04ffd740 fffff800`02db24c1 : fffff900`c1fb3800 fffff900`c20447b0 fffff900`00000021 fffff960`6c777355 : nt!ExDeferredFreePool+0x13e
fffff880`04ffd7d0 fffff960`00156fda : fffff900`c0800b90 fffff900`c20447c0 fffff900`6c777355 00000000`00000012 : nt!ExFreePoolWithTag+0x411
fffff880`04ffd880 fffff960`000adb19 : fffff900`c20447c0 00000000`00000002 00000000`000001d8 fffff900`c1ef85f0 : win32k!UserReAllocPoolWithTag+0x56
fffff880`04ffd8b0 fffff960`000ad9a6 : 00000000`00000000 fffff900`c0831980 00000000`00000000 00000000`00000012 : win32k!InternalBuildHwndList+0x69
fffff880`04ffd8e0 fffff960`00066a1c : fffff900`c0827330 fffff900`c1ef85f0 00000000`00000004 fffff900`c1f58460 : win32k!BuildHwndList+0x76
fffff880`04ffd910 fffff960`00066a78 : fffff900`c1f585b0 fffff900`c1ef85f0 00000000`00000004 00000000`00000004 : win32k!xxxInternalDoSyncPaint+0x48
fffff880`04ffd960 fffff960`000669c1 : fffff900`c0800b90 00000000`00000000 00000000`00000000 00000000`00000000 : win32k!xxxInternalDoSyncPaint+0xa4
fffff880`04ffd9b0 fffff960`000b9421 : fffff960`00303120 00000000`00000000 fffff960`00000001 00000000`00000000 : win32k!xxxDoSyncPaint+0x51
fffff880`04ffd9e0 fffff960`000b905a : fffff900`00000001 fffff900`c08048c0 00000000`00000002 fffff960`00000000 : win32k!xxxEndDeferWindowPosEx+0x385
fffff880`04ffdaa0 fffff960`000f750d : 00000000`00000000 00000000`00000000 fffff900`00000000 fffff960`00000000 : win32k!xxxSetWindowPos+0x156
fffff880`04ffdb20 fffff800`02c7c993 : fffffa80`063de660 fffff880`04ffdca0 00000000`02bcf5f8 fffff880`04ffdbc8 : win32k!NtUserSetWindowPos+0x1e5
fffff880`04ffdbb0 00000000`773c6c7a : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000000`02bcf5d8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x773c6c7a


STACK_COMMAND: kb

FOLLOWUP_IP:
nt!ExDeferredFreePool+13e
fffff800`02db0fca 4180790300 cmp byte ptr [r9+3],0

SYMBOL_STACK_INDEX: 3

SYMBOL_NAME: nt!ExDeferredFreePool+13e

FOLLOWUP_NAME: Pool_corruption

IMAGE_NAME: Pool_Corruption

DEBUG_FLR_IMAGE_TIMESTAMP: 0

MODULE_NAME: Pool_Corruption

FAILURE_BUCKET_ID: X64_0x50_nt!ExDeferredFreePool+13e

BUCKET_ID: X64_0x50_nt!ExDeferredFreePool+13e

Followup: Pool_corruption
---------

0: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************

PAGE_FAULT_IN_NONPAGED_AREA (50)
Invalid system memory was referenced. This cannot be protected by try-except,
it must be protected by a Probe. Typically the address is just plain bad or it
is pointing at freed memory.
Arguments:
Arg1: fffff900c1fba083, memory referenced.
Arg2: 0000000000000000, value 0 = read operation, 1 = write operation.
Arg3: fffff80002db0fca, If non-zero, the instruction address which referenced the bad memory
address.
Arg4: 0000000000000000, (reserved)

Debugging Details:
------------------


Could not read faulting driver name

READ_ADDRESS: fffff900c1fba083

FAULTING_IP:
nt!ExDeferredFreePool+13e
fffff800`02db0fca 4180790300 cmp byte ptr [r9+3],0

MM_INTERNAL_CODE: 0

CUSTOMER_CRASH_COUNT: 1

DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT

BUGCHECK_STR: 0x50

PROCESS_NAME: explorer.exe

CURRENT_IRQL: 0

TRAP_FRAME: fffff88004ffd5b0 -- (.trap 0xfffff88004ffd5b0)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=0000000001701e70 rbx=0000000000000000 rcx=fffff88002782e90
rdx=fffff900c1fb99c0 rsi=0000000000000000 rdi=0000000000000000
rip=fffff80002db0fca rsp=fffff88004ffd740 rbp=0000000000000000
r8=fffff900c2133010 r9=fffff900c1fba080 r10=fffff900c2001870
r11=0000000000000000 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei pl nz na pe nc
nt!ExDeferredFreePool+0x13e:
fffff800`02db0fca 4180790300 cmp byte ptr [r9+3],0 ds:06b0:fffff900`c1fba083=??
Resetting default scope

LAST_CONTROL_TRANSFER: from fffff80002cfdf14 to fffff80002c7d740

STACK_TEXT:
fffff880`04ffd448 fffff800`02cfdf14 : 00000000`00000050 fffff900`c1fba083 00000000`00000000 fffff880`04ffd5b0 : nt!KeBugCheckEx
fffff880`04ffd450 fffff800`02c7b82e : 00000000`00000000 00000000`000000d1 00000000`05010100 fffff960`000e44f5 : nt! ?? ::FNODOBFM::`string'+0x42837
fffff880`04ffd5b0 fffff800`02db0fca : 00000000`00000000 fffff800`02db1cdd fffff900`c1e69350 fffff960`6c777355 : nt!KiPageFault+0x16e
fffff880`04ffd740 fffff800`02db24c1 : fffff900`c1fb3800 fffff900`c20447b0 fffff900`00000021 fffff960`6c777355 : nt!ExDeferredFreePool+0x13e
fffff880`04ffd7d0 fffff960`00156fda : fffff900`c0800b90 fffff900`c20447c0 fffff900`6c777355 00000000`00000012 : nt!ExFreePoolWithTag+0x411
fffff880`04ffd880 fffff960`000adb19 : fffff900`c20447c0 00000000`00000002 00000000`000001d8 fffff900`c1ef85f0 : win32k!UserReAllocPoolWithTag+0x56
fffff880`04ffd8b0 fffff960`000ad9a6 : 00000000`00000000 fffff900`c0831980 00000000`00000000 00000000`00000012 : win32k!InternalBuildHwndList+0x69
fffff880`04ffd8e0 fffff960`00066a1c : fffff900`c0827330 fffff900`c1ef85f0 00000000`00000004 fffff900`c1f58460 : win32k!BuildHwndList+0x76
fffff880`04ffd910 fffff960`00066a78 : fffff900`c1f585b0 fffff900`c1ef85f0 00000000`00000004 00000000`00000004 : win32k!xxxInternalDoSyncPaint+0x48
fffff880`04ffd960 fffff960`000669c1 : fffff900`c0800b90 00000000`00000000 00000000`00000000 00000000`00000000 : win32k!xxxInternalDoSyncPaint+0xa4
fffff880`04ffd9b0 fffff960`000b9421 : fffff960`00303120 00000000`00000000 fffff960`00000001 00000000`00000000 : win32k!xxxDoSyncPaint+0x51
fffff880`04ffd9e0 fffff960`000b905a : fffff900`00000001 fffff900`c08048c0 00000000`00000002 fffff960`00000000 : win32k!xxxEndDeferWindowPosEx+0x385
fffff880`04ffdaa0 fffff960`000f750d : 00000000`00000000 00000000`00000000 fffff900`00000000 fffff960`00000000 : win32k!xxxSetWindowPos+0x156
fffff880`04ffdb20 fffff800`02c7c993 : fffffa80`063de660 fffff880`04ffdca0 00000000`02bcf5f8 fffff880`04ffdbc8 : win32k!NtUserSetWindowPos+0x1e5
fffff880`04ffdbb0 00000000`773c6c7a : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000000`02bcf5d8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x773c6c7a


STACK_COMMAND: kb

FOLLOWUP_IP:
nt!ExDeferredFreePool+13e
fffff800`02db0fca 4180790300 cmp byte ptr [r9+3],0

SYMBOL_STACK_INDEX: 3

SYMBOL_NAME: nt!ExDeferredFreePool+13e

FOLLOWUP_NAME: Pool_corruption

IMAGE_NAME: Pool_Corruption

DEBUG_FLR_IMAGE_TIMESTAMP: 0

MODULE_NAME: Pool_Corruption

FAILURE_BUCKET_ID: X64_0x50_nt!ExDeferredFreePool+13e

BUCKET_ID: X64_0x50_nt!ExDeferredFreePool+13e

Followup: Pool_corruption
---------
 
Tja, nein, ist der falsche, ein 0x50 vom 2.Mai [einmal !analyze -v reicht auch ;) ].
 
Sry, hier hab ich den von heute



Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [C:\Windows\Minidump\050511-21762-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available

Symbol search path is: SRV*C:\symbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7600 MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS Personal
Built by: 7600.16695.amd64fre.win7_gdr.101026-1503
Machine Name:
Kernel base = 0xfffff800`02c49000 PsLoadedModuleList = 0xfffff800`02e86e50
Debug session time: Thu May 5 17:09:56.489 2011 (UTC + 2:00)
System Uptime: 0 days 0:07:32.315
Loading Kernel Symbols
...............................................................
................................................................
..................
Loading User Symbols
Loading unloaded module list
....
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck 3B, {c0000005, fffff9600010a372, fffff88005e24d30, 0}

Probably caused by : win32k.sys ( win32k!ThreadUnlock1+12 )

Followup: MachineOwner
---------

2: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************

SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 00000000c0000005, Exception code that caused the bugcheck
Arg2: fffff9600010a372, Address of the instruction which caused the bugcheck
Arg3: fffff88005e24d30, Address of the context record for the exception that caused the bugcheck
Arg4: 0000000000000000, zero.

Debugging Details:
------------------


EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - Die Anweisung in 0x%08lx verweist auf Speicher 0x%08lx. Der Vorgang %s konnte nicht im Speicher durchgef hrt werden.

FAULTING_IP:
win32k!ThreadUnlock1+12
fffff960`0010a372 488b01 mov rax,qword ptr [rcx]

CONTEXT: fffff88005e24d30 -- (.cxr 0xfffff88005e24d30)
rax=fffff900c292fc30 rbx=0000000000000000 rcx=ff00f88005e25790
rdx=fffff900c292fc30 rsi=00000000006d02d0 rdi=fffff900c292fc30
rip=fffff9600010a372 rsp=fffff88005e25700 rbp=0000000000000000
r8=fffff80002c49000 r9=0000000000000000 r10=fffffffffffffffb
r11=0000000000000000 r12=fffff96000040000 r13=fffff900c2955360
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei ng nz na po nc
cs=0010 ss=0000 ds=002b es=002b fs=0053 gs=002b efl=00010286
win32k!ThreadUnlock1+0x12:
fffff960`0010a372 488b01 mov rax,qword ptr [rcx] ds:002b:ff00f880`05e25790=????????????????
Resetting default scope

CUSTOMER_CRASH_COUNT: 1

DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT

BUGCHECK_STR: 0x3B

PROCESS_NAME: explorer.exe

CURRENT_IRQL: 0

LAST_CONTROL_TRANSFER: from 0000000000000000 to fffff9600010a372

STACK_TEXT:
fffff880`05e25700 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : win32k!ThreadUnlock1+0x12


FOLLOWUP_IP:
win32k!ThreadUnlock1+12
fffff960`0010a372 488b01 mov rax,qword ptr [rcx]

SYMBOL_STACK_INDEX: 0

SYMBOL_NAME: win32k!ThreadUnlock1+12

FOLLOWUP_NAME: MachineOwner

MODULE_NAME: win32k

IMAGE_NAME: win32k.sys

DEBUG_FLR_IMAGE_TIMESTAMP: 4d6f11c9

STACK_COMMAND: .cxr 0xfffff88005e24d30 ; kb

FAILURE_BUCKET_ID: X64_0x3B_win32k!ThreadUnlock1+12

BUCKET_ID: X64_0x3B_win32k!ThreadUnlock1+12

Followup: MachineOwner
---------

2: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************

SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 00000000c0000005, Exception code that caused the bugcheck
Arg2: fffff9600010a372, Address of the instruction which caused the bugcheck
Arg3: fffff88005e24d30, Address of the context record for the exception that caused the bugcheck
Arg4: 0000000000000000, zero.

Debugging Details:
------------------


EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - Die Anweisung in 0x%08lx verweist auf Speicher 0x%08lx. Der Vorgang %s konnte nicht im Speicher durchgef hrt werden.

FAULTING_IP:
win32k!ThreadUnlock1+12
fffff960`0010a372 488b01 mov rax,qword ptr [rcx]

CONTEXT: fffff88005e24d30 -- (.cxr 0xfffff88005e24d30)
rax=fffff900c292fc30 rbx=0000000000000000 rcx=ff00f88005e25790
rdx=fffff900c292fc30 rsi=00000000006d02d0 rdi=fffff900c292fc30
rip=fffff9600010a372 rsp=fffff88005e25700 rbp=0000000000000000
r8=fffff80002c49000 r9=0000000000000000 r10=fffffffffffffffb
r11=0000000000000000 r12=fffff96000040000 r13=fffff900c2955360
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei ng nz na po nc
cs=0010 ss=0000 ds=002b es=002b fs=0053 gs=002b efl=00010286
win32k!ThreadUnlock1+0x12:
fffff960`0010a372 488b01 mov rax,qword ptr [rcx] ds:002b:ff00f880`05e25790=????????????????
Resetting default scope

CUSTOMER_CRASH_COUNT: 1

DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT

BUGCHECK_STR: 0x3B

PROCESS_NAME: explorer.exe

CURRENT_IRQL: 0

LAST_CONTROL_TRANSFER: from 0000000000000000 to fffff9600010a372

STACK_TEXT:
fffff880`05e25700 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : win32k!ThreadUnlock1+0x12


FOLLOWUP_IP:
win32k!ThreadUnlock1+12
fffff960`0010a372 488b01 mov rax,qword ptr [rcx]

SYMBOL_STACK_INDEX: 0

SYMBOL_NAME: win32k!ThreadUnlock1+12

FOLLOWUP_NAME: MachineOwner

MODULE_NAME: win32k

IMAGE_NAME: win32k.sys

DEBUG_FLR_IMAGE_TIMESTAMP: 4d6f11c9

STACK_COMMAND: .cxr 0xfffff88005e24d30 ; kb

FAILURE_BUCKET_ID: X64_0x3B_win32k!ThreadUnlock1+12

BUCKET_ID: X64_0x3B_win32k!ThreadUnlock1+12

Followup: MachineOwner
---------
 
Memory Management und Speicherzugriffsfehler. Kann vom RAM über die CPU bis zum Board eigentlich alles sein.

Wenn das System (mit einem RAM Riegel) im Bios stabil läuft, würde ich ein Bios-Update wagen.

Ist allerdings nicht ungefährlich. Sollte das System während des Updates abstürzen, kann das Motherboard hinüber sein.

Ich würde daher -an deiner Stelle- lieber auf Nummer sicher gehen und den PC nochmal bei Hardwareversand reklamieren.
 
Na das hört sich ja mal wieder total besch... an. Ich werd versuchen den RAM mit 1.6 oder 1.65 V stabil zu bringen.

Was ich noch fragen wollte. Und zwar wie könnt ihr die dmp. auswerten? Hab schon in google mal nach "Tutorial" gesucht aber nichts gefunden.
 
Da gibt es schon etwas im Netz: http://blogs.msdn.com/b/iliast/archive/2006/12/11/crash-dump-analysis.aspx

Mit einer netten Statistik

Third-party device drivers: 70%
Unknown, because of severe memory corruption: 15%
Hardware error: 10%
Microsoft code: 5%

Die m.E. eher so lauten sollte:

Third-party device drivers: 30%
Unknown, because of severe memory corruption: 55%
Hardware error: 10%
Microsoft code: 5%

Und in der zweiten Zeile kannst du das größte Problem bei den Memory Corruption Fehler sehen: UNKNOWN.
Es ist i.d.R. nicht möglich eine direkte Feherquelle /-Ursache zu benennen. Die schnellste und einfachste (für die meisten aber problematische) Methode ist Komponenten auszutauschen.

Der Rest sind Erfahrungswerte und hilfreiche Posts von Boardies, die Problemlösungen bekannt geben.
 
Zuletzt bearbeitet:
Guten Morgen,

also BIOS Version ist jetzt 1501, also die aktuellste. Ich installiere gerade noch ne Menge Treiber (Chip, Audio usw.). Werde den PC aber so wie es aussieht zu hardwareversand.de schicken.

Danke für eure Hilfe

mfg

A456B123
 
Hi,

ich hab gerade meine PC nochmal aufgeschraubt (eigentlich wegen neuer HW) und hab da bemerkt das mein Mainboard extrem locker angeschraubt war. Eigentlich hätte es schon längst herunterfallen müssen^^.

Ich schreib euch wenn ich die Lösung für das Problem hab

mfg

A456B123
 
Hi,

ich hab mein Mainboard ausgetauscht (habs reparieren lassen) und er läuft.... immer noch nicht. Vieleicht hilfts jemanden der den selben Fehler hat.

mfg

A456B123
 
Zurück
Oben