用WinDbg Preview分析電腦藍屏原因,但看不懂,求解!
電腦老是藍屏,也不知道什么原因??吹骄W(wǎng)上說可以生成系統(tǒng)故障報告,能用WinDbg Preview分析出來原因,我就試試,然后它生成的東西我也看不懂,有沒有懂這方面的大佬給看看?
Microsoft (R) Windows Debugger Version 10.0.25136.1001 AMD64 Copyright (c) Microsoft Corporation. All rights reserved. Loading Dump File [C:\Windows\Minidump\090922-8343-01.dmp] Mini Kernel Dump File: Only registers and stack trace are available ************* Path validation summary ************** Response ? ? ? ? ? ? ? ? ? ? ? ? Time (ms) ? ? Location Deferred ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? srv* Symbol search path is: srv* Executable search path is: Windows 10 Kernel Version 19041 MP (6 procs) Free x64 Product: WinNt, suite: TerminalServer SingleUserTS Personal Machine Name: Kernel base = 0xfffff804`2fe00000 PsLoadedModuleList = 0xfffff804`30a2a250 Debug session time: Fri Sep ?9 19:16:58.050 2022 (UTC + 8:00) System Uptime: 0 days 1:23:34.916 Loading Kernel Symbols .. Press ctrl-c (cdb, kd, ntsd) or ctrl-break (windbg) to abort symbol loads that take too long. Run !sym noisy before .reload to track down problems loading symbols. ............................................................. ................................................................ ................................................................ ...... Loading User Symbols Loading unloaded module list ......... For analysis of this file, run !analyze -vnt!KeBugCheckEx: fffff804`301f88c0 48894c2408 ? ? ?mov ? ? qword ptr [rsp+8],rcx ss:0018:ffff8384`72576430=000000000000007a 2: kd> !analyze -v ******************************************************************************* * ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? * * ? ? ? ? ? ? ? ? ? ? ? ?Bugcheck Analysis ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ?* * ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? * ******************************************************************************* KERNEL_DATA_INPAGE_ERROR (7a) The requested page of kernel data could not be read in. ?Typically caused by a bad block in the paging file or disk controller error. Also see KERNEL_STACK_INPAGE_ERROR. If the error status is 0xC000000E, 0xC000009C, 0xC000009D or 0xC0000185, it means the disk subsystem has experienced a failure. If the error status is 0xC000009A, then it means the request failed because a filesystem failed to make forward progress. Arguments: Arg1: ffffb5c5c726b2f8, lock type that was held (value 1,2,3, or PTE address) Arg2: ffffffffc0000483, error status (normally i/o status code) Arg3: 000020014ee09880, current process (virtual address for lock type 3, or PTE) Arg4: ffff8b8e4d65f488, virtual address that could not be in-paged (or PTE contents if arg1 is a PTE address) Debugging Details: ------------------ KEY_VALUES_STRING: 1 ? ?Key ?: Analysis.CPU.mSec ? ?Value: 2015 ? ?Key ?: Analysis.DebugAnalysisManager ? ?Value: Create ? ?Key ?: Analysis.Elapsed.mSec ? ?Value: 5888 ? ?Key ?: Analysis.Init.CPU.mSec ? ?Value: 452 ? ?Key ?: Analysis.Init.Elapsed.mSec ? ?Value: 262559 ? ?Key ?: Analysis.Memory.CommitPeak.Mb ? ?Value: 90 ? ?Key ?: Bugcheck.Code.DumpHeader ? ?Value: 0x7a ? ?Key ?: Bugcheck.Code.Register ? ?Value: 0x7a ? ?Key ?: Dump.Attributes.AsUlong ? ?Value: 8 ? ?Key ?: Dump.Attributes.KernelGeneratedTriageDump ? ?Value: 1 FILE_IN_CAB: ?090922-8343-01.dmp DUMP_FILE_ATTRIBUTES: 0x8 ?Kernel Generated Triage Dump BUGCHECK_CODE: ?7a BUGCHECK_P1: ffffb5c5c726b2f8 BUGCHECK_P2: ffffffffc0000483 BUGCHECK_P3: 20014ee09880 BUGCHECK_P4: ffff8b8e4d65f488 ERROR_CODE: (NTSTATUS) 0xc0000483 - <Unable to get error code text> CUSTOMER_CRASH_COUNT: ?1 PROCESS_NAME: ?wpscloudsvr.ex TRAP_FRAME: ?ffff8384725767d0 -- (.trap 0xffff8384725767d0)NOTE: The trap frame does not contain all registers.Some register values may be zeroed or incorrect.rax=0000000000000001 rbx=0000000000000000 rcx=80c3446f667a0000 rdx=0000000000000002 rsi=0000000000000000 rdi=0000000000000000 rip=fffff804358e06e7 rsp=ffff838472576960 rbp=ffff8384725769b0 r8=0000000000000000 ?r9=ffff838472576848 r10=fffff8043582dec0 r11=ffff838472576880 r12=0000000000000000 r13=0000000000000000 r14=0000000000000000 r15=0000000000000000 iopl=0 ? ? ? ? nv up ei pl nz na pe nc Ntfs!NtfsAreHashNamesEqual+0x3b: fffff804`358e06e7 498b4518 ? ? ? ?mov ? ? rax,qword ptr [r13+18h] ds:00000000`00000018=???????????????? Resetting default scope STACK_TEXT: ? ffff8384`72576428 fffff804`30020509 ? ? : 00000000`0000007a ffffb5c5`c726b2f8 ffffffff`c0000483 00002001`4ee09880 : nt!KeBugCheckEx ffff8384`72576430 fffff804`300224f5 ? ? : ffff8384`00001000 ffff8384`72576500 ffff8384`725765c0 fffff804`00000000 : nt!MiWaitForInPageComplete+0x7d9 ffff8384`72576520 fffff804`3006d148 ? ? : 00000000`c0033333 00000000`00000000 ffff8b8e`4d65f488 00000000`00000000 : nt!MiIssueHardFault+0x3c5 ffff8384`72576630 fffff804`30206a5e ? ? : ffffe285`c2045de8 ffffe285`c2045de8 00000000`00000000 ffffe285`c26dfae0 : nt!MmAccessFault+0x468 ffff8384`725767d0 fffff804`358e06e7 ? ? : ffff8b8e`497cfb80 ffffe285`be3cdaa0 00000000`00000000 ffffe285`c28c2a40 : nt!KiPageFault+0x35e ffff8384`72576960 fffff804`3586eba3 ? ? : ffffe285`b1baa180 00000000`00001860 ffff8b8e`4a38d010 ffffe285`bdebe010 : Ntfs!NtfsAreHashNamesEqual+0x3b ffff8384`725769e0 fffff804`3586f55c ? ? : ffffe285`c178ccc8 ffffe285`b1bab4f0 ffff8b8e`40172170 ffffe285`b1cd0501 : Ntfs!NtfsFindPrefixHashEntry+0x233 ffff8384`72576aa0 fffff804`35870600 ? ? : ffffe285`c178ccc8 ffffe285`c27f8010 ffffe285`c28c2a88 ffff8384`72576d40 : Ntfs!NtfsFindStartingNode+0x25c ffff8384`72576b90 fffff804`3586be9b ? ? : ffffe285`c27f8010 ffff8384`72576f80 ffffe285`c27f8010 00000000`00000000 : Ntfs!NtfsCommonCreate+0x580 ffff8384`72576e70 fffff804`300abac5 ? ? : ffffe285`b1baa030 ffffe285`c27f8010 ffff8384`72577100 ffffe285`c3c75690 : Ntfs!NtfsFsdCreate+0x1db ffff8384`725770f0 fffff804`2f6d70cf ? ? : ffffe285`c3c75700 ffff8384`725771e0 ffff8384`725771e9 fffff804`2f6d5f3a : nt!IofCallDriver+0x55 ffff8384`72577130 fffff804`2f709f54 ? ? : ffff8384`725771e0 ffffe285`c3c756e8 ffffe285`b1b77ad0 00000000`00000000 : FLTMGR!FltpLegacyProcessingAfterPreCallbacksCompleted+0x28f ffff8384`725771a0 fffff804`300abac5 ? ? : ffffe285`c3c75600 ffffe285`b1b8d460 00000000`00000000 00000000`00000000 : FLTMGR!FltpCreate+0x324 ffff8384`72577250 fffff804`300629a4 ? ? : 00000000`00000000 ffffe285`c27f8010 ffffe285`b1b7ff50 ffffe285`b1b77ad0 : nt!IofCallDriver+0x55 ffff8384`72577290 fffff804`303f1dfd ? ? : ffff8384`72577550 ffffe285`b1b8d460 ffffe285`c3c75728 ffff8384`00000001 : nt!IoCallDriverWithTracing+0x34 ffff8384`725772e0 fffff804`30420cbe ? ? : ffffe285`b1b8d460 00000000`00000000 ffffe285`c25ee010 ffffe285`c25ee001 : nt!IopParseDevice+0x117d ffff8384`72577450 fffff804`30401d3a ? ? : ffffe285`c25ee000 ffff8384`725776b8 00000000`00000040 ffffe285`af6f9a60 : nt!ObpLookupObjectName+0x3fe ffff8384`72577620 fffff804`304897ce ? ? : 00000000`00000000 00000000`0600e8c8 00000000`0610f1a0 00000000`0600f1b0 : nt!ObOpenObjectByNameEx+0x1fa ffff8384`72577750 fffff804`3020a2b5 ? ? : 00000000`003a2000 00000000`00000000 ffffe285`bdd9f080 00007ffe`96be3a10 : nt!NtQueryFullAttributesFile+0x1ce ffff8384`72577a00 00007ffe`96d0f7f4 ? ? : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x25 00000000`0600e888 00000000`00000000 ? ? : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ffe`96d0f7f4 SYMBOL_NAME: ?nt!MiWaitForInPageComplete+7d9 MODULE_NAME: ntIMAGE_VERSION: ?10.0.19041.1889 STACK_COMMAND: ?.cxr; .ecxr ; kb IMAGE_NAME: ?ntkrnlmp.exe BUCKET_ID_FUNC_OFFSET: ?7d9 FAILURE_BUCKET_ID: ?0x7a_c0000483_nt!MiWaitForInPageComplete OSPLATFORM_TYPE: ?x64 OSNAME: ?Windows 10 FAILURE_ID_HASH: ?{e8dd9efb-9408-9f35-7b8e-33c3443ec6de} Followup: ? ? MachineOwner ---------
復制粘貼就這樣,咱也看不懂,也不敢亂斷句換行。中間那個大框框下面的是點那個藍色的“!analyze -v”后顯示出來的。
希望有好心人能幫我看看,謝謝