Hallo zusammen!
Ich habe auf meinem Rechner, welcher nun bereits 3 Jahre stabil gelaufen ist, seit einer Woche unregelmässige Abstürze! Hab auch bereits W2K neu installiert, hat aber nichts genutzt! Ich denke es liegt wohl an der HW!
Um sicher zu gehen und auch Eure Meinungen zu erfahren, hier das letzte Minidump:
Symbol search path is: C:\WINNT\Symbols
Executable search path is:
Unable to load image ntoskrnl.exe, Win32 error 2
*** WARNING: Unable to verify timestamp for ntoskrnl.exe
*** ERROR: Module load completed but symbols could not be loaded for ntoskrnl.exe
Windows 2000 Kernel Version 2195 (Service Pack 4) UP Free x86 compatible
Kernel base = 0x80400000 PsLoadedModuleList = 0x80480780
Debug session time: Mon Mar 21 11:33:31.741 2005 (GMT+1)
System Uptime: not available
Unable to load image ntoskrnl.exe, Win32 error 2
*** WARNING: Unable to verify timestamp for ntoskrnl.exe
*** ERROR: Module load completed but symbols could not be loaded for ntoskrnl.exe
Loading Kernel Symbols
...
Loading unloaded module list
...
Loading User Symbols
* *
* Bugcheck Analysis *
* *
Use !analyze -v to get detailed debugging information.
BugCheck 1E, {c0000005, a0001b79, 0, 103a0050}
***** Kernel symbols are WRONG. Please fix symbols to do analysis.
Unable to load image win32k.sys, Win32 error 2
*** WARNING: Unable to verify timestamp for win32k.sys
*** ERROR: Module load completed but symbols could not be loaded for win32k.sys
Probably caused by : win32k.sys ( win32k+1b79 )
Followup: MachineOwner
kd> !analyze -v
* *
* Bugcheck Analysis *
* *
KMODE_EXCEPTION_NOT_HANDLED (1e)
This is a very common bugcheck. Usually the exception address pinpoints
the driver/function that caused the problem. Always note this address
as well as the link date of the driver/image that contains this address.
Arguments:
Arg1: c0000005, The exception code that was not handled
Arg2: a0001b79, The address that the exception occurred at
Arg3: 00000000, Parameter 0 of the exception
Arg4: 103a0050, Parameter 1 of the exception
Debugging Details:
***** Kernel symbols are WRONG. Please fix symbols to do analysis.
MODULE_NAME: win32k
FAULTING_MODULE: 80400000 nt
DEBUG_FLR_IMAGE_TIMESTAMP: 41cc5092
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - Die Anweisung in "0x%08lx" verweist auf Speicher in "0x%08lx". Der Vorgang "%s" konnte nicht auf dem Speicher durchgef hrt werden.
FAULTING_IP:
win32k+1b79
a0001b79 ?? ???
EXCEPTION_PARAMETER1: 00000000
EXCEPTION_PARAMETER2: 103a0050
READ_ADDRESS: unable to get nt!MmPoolCodeEnd
unable to get nt!MmSpecialPoolEnd
unable to get nt!MmPagedPoolEnd
unable to get nt!MmNonPagedPoolEnd
unable to get nt!MmNonPagedPoolStart
unable to get nt!MmSpecialPoolStart
unable to get nt!MmPagedPoolStart
unable to get nt!MmNonPagedPoolExpansionStart
unable to get nt!MmPoolCodeStart
103a0050
CUSTOMER_CRASH_COUNT: 2
DEFAULT_BUCKET_ID: DRIVER_FAULT
BUGCHECK_STR: 0x1E
LAST_CONTROL_TRANSFER: from 0000001e to 8042df9c
STACK_TEXT:
b6ea97a0 0000001e c0000005 a0001b79 00000000 nt+0x2df9c
STACK_COMMAND: .bugcheck ; kb
FOLLOWUP_IP:
win32k+1b79
a0001b79 ?? ???
FOLLOWUP_NAME: MachineOwner
SYMBOL_NAME: win32k+1b79
IMAGE_NAME: win32k.sys
BUCKET_ID: WRONG_SYMBOLS
Followup: MachineOwner
Kann mir jemand was dazu sagen? Ob das Memory defekt ist? habe leider nur eines drin, also nix mit "eins rausnehmen und kucken..."
Danke und Gruss
Mr Magoo