Win10 ntoskrnl 蓝屏
蓝霜 2016-11-16 11:23:17 新买的电脑每天总是要蓝屏那么一次,查询dmp日志获取得到以下内容:
************* Symbol Path validation summary **************
Response Time (ms) Location
Deferred SRV*C:\Symbols*http://msdl.microsoft.com/download/symbols
Symbol search path is: SRV*C:\Symbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Unable to load image ntoskrnl.exe, Win32 error 0n2
*** WARNING: Unable to verify timestamp for ntoskrnl.exe
*** ERROR: Module load completed but symbols could not be loaded for ntoskrnl.exe
Windows 10 Kernel Version 14393 MP (8 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS Personal
Machine Name:
Kernel base = 0xfffff803`1e676000 PsLoadedModuleList = 0xfffff803`1e97b060
Debug session time: Tue Nov 15 22:54:34.907 2016 (UTC + 8:00)
System Uptime: 1 days 3:24:04.036
Unable to load image ntoskrnl.exe, Win32 error 0n2
*** WARNING: Unable to verify timestamp for ntoskrnl.exe
*** ERROR: Module load completed but symbols could not be loaded for ntoskrnl.exe
3: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
BAD_POOL_HEADER (19)
The pool is already corrupt at the time of the current request.
This may or may not be due to the caller.
The internal pool links must be walked to figure out a possible cause of
the problem, and then special pool applied to the suspect tags or the driver
verifier to a suspect driver.
Arguments:
Arg1: 0000000000000020, a pool block header size is corrupt.
Arg2: ffffb805eed51940, The pool entry we were looking for within the page.
Arg3: ffffb805eed51a00, The next pool entry.
Arg4: 000000000c0c0001, (reserved)
Debugging Details:
------------------
*** WARNING: Unable to verify timestamp for iaStorA.sys
*** ERROR: Module load completed but symbols could not be loaded for iaStorA.sys
***** Kernel symbols are WRONG. Please fix symbols to do analysis.
STACK_TEXT:
ffffc800`55221b08 fffff802`0f068de0 : 00000000`00000019 00000000`00000020 ffffb805`eed51940 ffffb805`eed51a00 : nt+0x14a510
ffffc800`55221b10 00000000`00000019 : 00000000`00000020 ffffb805`eed51940 ffffb805`eed51a00 00000000`0c0c0001 : nt+0x24dde0
ffffc800`55221b18 00000000`00000020 : ffffb805`eed51940 ffffb805`eed51a00 00000000`0c0c0001 ffffc800`00000004 : 0x19
ffffc800`55221b20 ffffb805`eed51940 : ffffb805`eed51a00 00000000`0c0c0001 ffffc800`00000004 ffffb805`fd6f8393 : 0x20
ffffc800`55221b28 ffffb805`eed51a00 : 00000000`0c0c0001 ffffc800`00000004 ffffb805`fd6f8393 fffff802`00000000 : 0xffffb805`eed51940
ffffc800`55221b30 00000000`0c0c0001 : ffffc800`00000004 ffffb805`fd6f8393 fffff802`00000000 ffffb805`20206f49 : 0xffffb805`eed51a00
ffffc800`55221b38 ffffc800`00000004 : ffffb805`fd6f8393 fffff802`00000000 ffffb805`20206f49 fffff803`23563a16 : 0xc0c0001
ffffc800`55221b40 ffffb805`fd6f8393 : fffff802`00000000 ffffb805`20206f49 fffff803`23563a16 ffffb805`f70f6360 : 0xffffc800`00000004
ffffc800`55221b48 fffff802`00000000 : ffffb805`20206f49 fffff803`23563a16 ffffb805`f70f6360 ffffb805`e55a4f90 : 0xffffb805`fd6f8393
ffffc800`55221b50 ffffb805`20206f49 : fffff803`23563a16 ffffb805`f70f6360 ffffb805`e55a4f90 ffffb805`f70f6360 : 0xfffff802`00000000
ffffc800`55221b58 fffff803`23563a16 : ffffb805`f70f6360 ffffb805`e55a4f90 ffffb805`f70f6360 00000000`00000001 : 0xffffb805`20206f49
ffffc800`55221b60 ffffb805`f70f6360 : ffffb805`e55a4f90 ffffb805`f70f6360 00000000`00000001 ffffb805`eed51a00 : iaStorA+0xc3a16
ffffc800`55221b68 ffffb805`e55a4f90 : ffffb805`f70f6360 00000000`00000001 ffffb805`eed51a00 fffff802`0f13ddb0 : 0xffffb805`f70f6360
ffffc800`55221b70 ffffb805`f70f6360 : 00000000`00000001 ffffb805`eed51a00 fffff802`0f13ddb0 00000000`00000000 : 0xffffb805`e55a4f90
ffffc800`55221b78 00000000`00000001 : ffffb805`eed51a00 fffff802`0f13ddb0 00000000`00000000 00000000`00000000 : 0xffffb805`f70f6360
ffffc800`55221b80 ffffb805`eed51a00 : fffff802`0f13ddb0 00000000`00000000 00000000`00000000 00000000`00000000 : 0x1
ffffc800`55221b88 fffff802`0f13ddb0 : 00000000`00000000 00000000`00000000 00000000`00000000 fffff803`23561050 : 0xffffb805`eed51a00
ffffc800`55221b90 00000000`00000000 : 00000000`00000000 00000000`00000000 fffff803`23561050 ffffb805`f5e26800 : nt+0x322db0
FOLLOWUP_IP:
iaStorA+c3a16
fffff803`23563a16 ?? ???
SYMBOL_STACK_INDEX: b
FOLLOWUP_NAME: MachineOwner
BUGCHECK_STR: 5819BD1F
EXCEPTION_CODE: (NTSTATUS) 0x5819bd1f - <Unable to get error code text>
EXCEPTION_CODE_STR: 5819BD1F
EXCEPTION_STR: WRONG_SYMBOLS
PROCESS_NAME: ntoskrnl.wrong.symbols.exe
IMAGE_NAME: ntoskrnl.wrong.symbols.exe
MODULE_NAME: nt_wrong_symbols
SYMBOL_NAME: nt_wrong_symbols!5819BD1F820000
BUCKET_ID: WRONG_SYMBOLS_X64_TIMESTAMP_161102-101703
DEFAULT_BUCKET_ID: WRONG_SYMBOLS_X64_TIMESTAMP_161102-101703
PRIMARY_PROBLEM_CLASS: WRONG_SYMBOLS
FAILURE_BUCKET_ID: WRONG_SYMBOLS_X64_TIMESTAMP_161102-101703_5819BD1F_nt_wrong_symbols!5819BD1F820000