Kernel Security Check Failure mavi ekran hatası

Gazi Altın

Hectopat
Katılım
25 Şubat 2018
Mesajlar
13
Daha fazla  
Cinsiyet
Erkek
Merhabalar. Dün gece bilgisayarım ile herhangi bir işlem yapmadığım halde Kernel Security Check Failure kodlu mavi ekran hatası aldım. Bunun üzerine hard diskim ile ilgili olabileceğini düşünüp 3 ayrı programdan tarama yaptım ve resimlerdeki şekilde sonuçlandı. HD Tune Pro programında error scan sekmesinden tarattığımda da herhangi bir bad sector gözükmüyordu. Harddiskimde herhangi bir sorun oluşmuş olabilir mi? Garanti kapsamında olduğu için müşteri destek ile de iletişime geçtim ama henüz geri dönüş alamadım.
 

Dosya Ekleri

  • Ekran Alıntısı2.PNG
    Ekran Alıntısı2.PNG
    24,8 KB · Görüntüleme: 68
  • Ekran Alıntısı.PNG
    Ekran Alıntısı.PNG
    17,6 KB · Görüntüleme: 60
Battleye kaldırın. Klavye ve fare dışındaki USB aygıtlarını çıkartınız. AMD SATA AHCI sürücünüzü güncelleyiniz.
Kod:
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

DRIVER_POWER_STATE_FAILURE (9f)
A driver has failed to complete a power IRP within a specific time.
Arguments:
Arg1: 0000000000000004, The power transition timed out waiting to synchronize with the Pnp
    subsystem.
Arg2: 000000000000012c, Timeout in seconds.
Arg3: ffffd2077bee9040, The thread currently holding on to the Pnp lock.
Arg4: fffff88aafa458e0, nt!TRIAGE_9F_PNP on Win7 and higher

Debugging Details:
------------------

Implicit thread is now ffffd207`7bee9040
Unable to load image \SystemRoot\System32\drivers\amd_xata.sys, Win32 error 0n2
*** WARNING: Unable to verify timestamp for amd_xata.sys
*** WARNING: Unable to verify timestamp for win32k.sys

KEY_VALUES_STRING: 1

    Key  : Analysis.CPU.mSec
    Value: 6437

    Key  : Analysis.DebugAnalysisProvider.CPP
    Value: Create: 8007007e on DESKTOP-J7A11VA

    Key  : Analysis.DebugData
    Value: CreateObject

    Key  : Analysis.DebugModel
    Value: CreateObject

    Key  : Analysis.Elapsed.mSec
    Value: 52559

    Key  : Analysis.Memory.CommitPeak.Mb
    Value: 76

    Key  : Analysis.System
    Value: CreateObject

    Key  : WER.OS.Branch
    Value: 19h1_release

    Key  : WER.OS.Timestamp
    Value: 2019-03-18T12:02:00Z

    Key  : WER.OS.Version
    Value: 10.0.18362.1


ADDITIONAL_XML: 1

OS_BUILD_LAYERS: 1

BUGCHECK_CODE:  9f

BUGCHECK_P1: 4

BUGCHECK_P2: 12c

BUGCHECK_P3: ffffd2077bee9040

BUGCHECK_P4: fffff88aafa458e0

DRVPOWERSTATE_SUBCODE:  4

IMAGE_NAME:  pci.sys

MODULE_NAME: pci

FAULTING_MODULE: fffff80540460000 pci

BLACKBOXBSD: 1 (!blackboxbsd)


BLACKBOXNTFS: 1 (!blackboxntfs)


BLACKBOXPNP: 1 (!blackboxpnp)


BLACKBOXWINLOGON: 1

CUSTOMER_CRASH_COUNT:  1

PROCESS_NAME:  System

BAD_STACK_POINTER:  fffff88aafa458a8

STACK_TEXT: 
fffff88a`afa458a8 fffff805`3d09f6f6     : 00000000`0000009f 00000000`00000004 00000000`0000012c ffffd207`7bee9040 : nt!KeBugCheckEx
fffff88a`afa458b0 fffff805`3d3af986     : fffff88a`afa45b10 00000000`0000002a fffff805`39b2b800 00000000`00000001 : nt!PnpBugcheckPowerTimeout+0x76
fffff88a`afa45910 fffff805`3cec1d59     : fffff88a`b01d4330 00000184`d04aee7f 00000001`00000002 ffffd207`77718010 : nt!PopBuildDeviceNotifyListWatchdog+0x16
fffff88a`afa45940 fffff805`3cec0ab9     : 00000000`00000016 00000000`00989680 00000000`00613412 00000000`0000002a : nt!KiProcessExpiredTimerList+0x169
fffff88a`afa45a30 fffff805`3cfc5ec4     : ffffffff`00000000 ffffbc00`d6edf180 ffffbc00`d6ef0140 ffffd207`7b3592c0 : nt!KiRetireDpcList+0x4e9
fffff88a`afa45c60 00000000`00000000     : fffff88a`afa46000 fffff88a`afa40000 00000000`00000000 00000000`00000000 : nt!KiIdleLoop+0x84


IMAGE_VERSION:  10.0.18362.628

STACK_COMMAND:  .thread ; .cxr ; kb

FAILURE_BUCKET_ID:  0x9F_4_amd_sata_IMAGE_pci.sys

OS_VERSION:  10.0.18362.1

BUILDLAB_STR:  19h1_release

OSPLATFORM_TYPE:  x64

OSNAME:  Windows 10

FAILURE_ID_HASH:  {95c7d19c-c084-e356-ffb8-0e9c09668a9d}

Followup:     MachineOwner
---------
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

KERNEL_SECURITY_CHECK_FAILURE (139)
A kernel component has corrupted a critical data structure.  The corruption
could potentially allow a malicious user to gain control of this machine.
Arguments:
Arg1: 0000000000000003, A LIST_ENTRY has been corrupted (i.e. double remove).
Arg2: ffffef0710b64390, Address of the trap frame for the exception that caused the bugcheck
Arg3: ffffef0710b642e8, Address of the exception record for the exception that caused the bugcheck
Arg4: 0000000000000000, Reserved

Debugging Details:
------------------

*** WARNING: Unable to verify timestamp for BEDaisy.sys
*** WARNING: Unable to verify timestamp for win32k.sys

KEY_VALUES_STRING: 1

    Key  : Analysis.CPU.mSec
    Value: 7187

    Key  : Analysis.DebugAnalysisProvider.CPP
    Value: Create: 8007007e on DESKTOP-J7A11VA

    Key  : Analysis.DebugData
    Value: CreateObject

    Key  : Analysis.DebugModel
    Value: CreateObject

    Key  : Analysis.Elapsed.mSec
    Value: 56720

    Key  : Analysis.Memory.CommitPeak.Mb
    Value: 74

    Key  : Analysis.System
    Value: CreateObject

    Key  : WER.OS.Branch
    Value: 19h1_release

    Key  : WER.OS.Timestamp
    Value: 2019-03-18T12:02:00Z

    Key  : WER.OS.Version
    Value: 10.0.18362.1


ADDITIONAL_XML: 1

OS_BUILD_LAYERS: 1

BUGCHECK_CODE:  139

BUGCHECK_P1: 3

BUGCHECK_P2: ffffef0710b64390

BUGCHECK_P3: ffffef0710b642e8

BUGCHECK_P4: 0

TRAP_FRAME:  ffffef0710b64390 -- (.trap 0xffffef0710b64390)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=ffffad0e6eb76860 rbx=0000000000000000 rcx=0000000000000003
rdx=0000000000000000 rsi=0000000000000000 rdi=0000000000000000
rip=fffff8055dcb0a00 rsp=ffffef0710b64520 rbp=ffffad0e66251080
 r8=0000000000000001  r9=0000000000000002 r10=ffffad0e612ce100
r11=ffffdf01d4480180 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0         nv up ei pl nz na pe cy
nt!KiExitDispatcher+0x160:
fffff805`5dcb0a00 cd29            int     29h
Resetting default scope

EXCEPTION_RECORD:  ffffef0710b642e8 -- (.exr 0xffffef0710b642e8)
ExceptionAddress: fffff8055dcb0a00 (nt!KiExitDispatcher+0x0000000000000160)
   ExceptionCode: c0000409 (Security check failure or stack buffer overrun)
  ExceptionFlags: 00000001
NumberParameters: 1
   Parameter[0]: 0000000000000003
Subcode: 0x3 FAST_FAIL_CORRUPT_LIST_ENTRY

BLACKBOXBSD: 1 (!blackboxbsd)


BLACKBOXNTFS: 1 (!blackboxntfs)


BLACKBOXPNP: 1 (!blackboxpnp)


BLACKBOXWINLOGON: 1

CUSTOMER_CRASH_COUNT:  1

PROCESS_NAME:  System

ERROR_CODE: (NTSTATUS) 0xc0000409 - Sistem, bu uygulamada y   n tabanl  bir arabelle in ta t   n  alg lad . Bu ta ma, k t  niyetli bir kullan c n n bu uygulaman n denetimini ele ge irmesine olanak verebilir.

EXCEPTION_CODE_STR:  c0000409

EXCEPTION_PARAMETER1:  0000000000000003

EXCEPTION_STR:  0xc0000409

STACK_TEXT: 
ffffef07`10b64068 fffff805`5ddd41e9     : 00000000`00000139 00000000`00000003 ffffef07`10b64390 ffffef07`10b642e8 : nt!KeBugCheckEx
ffffef07`10b64070 fffff805`5ddd4610     : 00000000`00000000 fffff805`5dcb2d56 00000000`00000001 00000000`00000000 : nt!KiBugCheckDispatch+0x69
ffffef07`10b641b0 fffff805`5ddd29a3     : 00000000`00000000 00000000`00000000 00000000`00000000 ffffef07`10b64500 : nt!KiFastFailDispatch+0xd0
ffffef07`10b64390 fffff805`5dcb0a00     : 00000000`00000000 ffffef07`10b645c1 ffffdf01`d4480180 00000000`00000000 : nt!KiRaiseSecurityCheckFailure+0x323
ffffef07`10b64520 fffff805`5dcc60bd     : ffffad0e`6eb76858 00000000`00000200 ffffdf01`d4480101 fffff805`5df6f06d : nt!KiExitDispatcher+0x160
ffffef07`10b64580 fffff805`a8c93c22     : 00000000`00002200 ffffad0e`6eadc308 00000000`0000007b fffff805`00000002 : nt!KeInsertQueueApc+0x14d
ffffef07`10b64620 00000000`00002200     : ffffad0e`6eadc308 00000000`0000007b fffff805`00000002 00000000`00000000 : BEDaisy+0x2e3c22
ffffef07`10b64628 ffffad0e`6eadc308     : 00000000`0000007b fffff805`00000002 00000000`00000000 00000000`00000000 : 0x2200
ffffef07`10b64630 00000000`0000007b     : fffff805`00000002 00000000`00000000 00000000`00000000 00000000`00000000 : 0xffffad0e`6eadc308
ffffef07`10b64638 fffff805`00000002     : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x7b
ffffef07`10b64640 00000000`00000000     : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000001 : 0xfffff805`00000002


SYMBOL_NAME:  BEDaisy+2e3c22

MODULE_NAME: BEDaisy

IMAGE_NAME:  BEDaisy.sys

STACK_COMMAND:  .thread ; .cxr ; kb

BUCKET_ID_FUNC_OFFSET:  2e3c22

FAILURE_BUCKET_ID:  0x139_3_CORRUPT_LIST_ENTRY_BEDaisy!unknown_function

OS_VERSION:  10.0.18362.1

BUILDLAB_STR:  19h1_release

OSPLATFORM_TYPE:  x64

OSNAME:  Windows 10

FAILURE_ID_HASH:  {59d8eb10-b2e4-7df6-f6a5-49968226dbb8}

Followup:     MachineOwner
---------
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

KERNEL_SECURITY_CHECK_FAILURE (139)
A kernel component has corrupted a critical data structure.  The corruption
could potentially allow a malicious user to gain control of this machine.
Arguments:
Arg1: 0000000000000003, A LIST_ENTRY has been corrupted (i.e. double remove).
Arg2: fffff68729452390, Address of the trap frame for the exception that caused the bugcheck
Arg3: fffff687294522e8, Address of the exception record for the exception that caused the bugcheck
Arg4: 0000000000000000, Reserved

Debugging Details:
------------------

*** WARNING: Unable to verify timestamp for BEDaisy.sys
*** WARNING: Unable to verify timestamp for win32k.sys

KEY_VALUES_STRING: 1

    Key  : Analysis.CPU.mSec
    Value: 6531

    Key  : Analysis.DebugAnalysisProvider.CPP
    Value: Create: 8007007e on DESKTOP-J7A11VA

    Key  : Analysis.DebugData
    Value: CreateObject

    Key  : Analysis.DebugModel
    Value: CreateObject

    Key  : Analysis.Elapsed.mSec
    Value: 61276

    Key  : Analysis.Memory.CommitPeak.Mb
    Value: 75

    Key  : Analysis.System
    Value: CreateObject

    Key  : WER.OS.Branch
    Value: 19h1_release

    Key  : WER.OS.Timestamp
    Value: 2019-03-18T12:02:00Z

    Key  : WER.OS.Version
    Value: 10.0.18362.1


ADDITIONAL_XML: 1

OS_BUILD_LAYERS: 1

BUGCHECK_CODE:  139

BUGCHECK_P1: 3

BUGCHECK_P2: fffff68729452390

BUGCHECK_P3: fffff687294522e8

BUGCHECK_P4: 0

TRAP_FRAME:  fffff68729452390 -- (.trap 0xfffff68729452390)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=ffffe20fdf777c60 rbx=0000000000000000 rcx=0000000000000003
rdx=0000000000000000 rsi=0000000000000000 rdi=0000000000000000
rip=fffff8003ccb08e0 rsp=fffff68729452520 rbp=ffffe20fde6ca040
 r8=0000000000000001  r9=0000000000000002 r10=ffffe20fd45fd600
r11=fffff80039f99180 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0         nv up ei pl nz na po nc
nt!KiExitDispatcher+0x160:
fffff800`3ccb08e0 cd29            int     29h
Resetting default scope

EXCEPTION_RECORD:  fffff687294522e8 -- (.exr 0xfffff687294522e8)
ExceptionAddress: fffff8003ccb08e0 (nt!KiExitDispatcher+0x0000000000000160)
   ExceptionCode: c0000409 (Security check failure or stack buffer overrun)
  ExceptionFlags: 00000001
NumberParameters: 1
   Parameter[0]: 0000000000000003
Subcode: 0x3 FAST_FAIL_CORRUPT_LIST_ENTRY

BLACKBOXBSD: 1 (!blackboxbsd)


BLACKBOXNTFS: 1 (!blackboxntfs)


BLACKBOXPNP: 1 (!blackboxpnp)


BLACKBOXWINLOGON: 1

CUSTOMER_CRASH_COUNT:  1

PROCESS_NAME:  System

ERROR_CODE: (NTSTATUS) 0xc0000409 - Sistem, bu uygulamada y   n tabanl  bir arabelle in ta t   n  alg lad . Bu ta ma, k t  niyetli bir kullan c n n bu uygulaman n denetimini ele ge irmesine olanak verebilir.

EXCEPTION_CODE_STR:  c0000409

EXCEPTION_PARAMETER1:  0000000000000003

EXCEPTION_STR:  0xc0000409

STACK_TEXT: 
fffff687`29452068 fffff800`3cdd4829     : 00000000`00000139 00000000`00000003 fffff687`29452390 fffff687`294522e8 : nt!KeBugCheckEx
fffff687`29452070 fffff800`3cdd4c50     : 00000067`b4bbbdff fffff687`00000001 ffffe20f`00000000 ffffe20f`dd99d040 : nt!KiBugCheckDispatch+0x69
fffff687`294521b0 fffff800`3cdd2fe3     : 00000000`00000000 00000000`00000000 00000000`00000000 fffff687`29452500 : nt!KiFastFailDispatch+0xd0
fffff687`29452390 fffff800`3ccb08e0     : 00000000`00000000 fffff687`294525c1 fffff800`39f99180 00000000`00000000 : nt!KiRaiseSecurityCheckFailure+0x323
fffff687`29452520 fffff800`3ccc5f9d     : ffffe20f`df777c58 00000000`00000200 fffff800`39f99101 fffff800`3cf6e06d : nt!KiExitDispatcher+0x160
fffff687`29452580 fffff800`57d68779     : 00000000`00000d00 ffffe20f`d8176308 00000000`00000093 fffff800`00000002 : nt!KeInsertQueueApc+0x14d
fffff687`29452620 00000000`00000d00     : ffffe20f`d8176308 00000000`00000093 fffff800`00000002 00000000`00000000 : BEDaisy+0x308779
fffff687`29452628 ffffe20f`d8176308     : 00000000`00000093 fffff800`00000002 00000000`00000000 00000000`00000000 : 0xd00
fffff687`29452630 00000000`00000093     : fffff800`00000002 00000000`00000000 00000000`00000000 00000000`00000000 : 0xffffe20f`d8176308
fffff687`29452638 fffff800`00000002     : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x93
fffff687`29452640 00000000`00000000     : 00000000`00000000 00000000`00000000 00000000`00000000 ffff0f9d`3d470f01 : 0xfffff800`00000002


SYMBOL_NAME:  BEDaisy+308779

MODULE_NAME: BEDaisy

IMAGE_NAME:  BEDaisy.sys

STACK_COMMAND:  .thread ; .cxr ; kb

BUCKET_ID_FUNC_OFFSET:  308779

FAILURE_BUCKET_ID:  0x139_3_CORRUPT_LIST_ENTRY_BEDaisy!unknown_function

OS_VERSION:  10.0.18362.1

BUILDLAB_STR:  19h1_release

OSPLATFORM_TYPE:  x64

OSNAME:  Windows 10

FAILURE_ID_HASH:  {59d8eb10-b2e4-7df6-f6a5-49968226dbb8}

Followup:     MachineOwner
---------*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

DRIVER_POWER_STATE_FAILURE (9f)
A driver has failed to complete a power IRP within a specific time.
Arguments:
Arg1: 0000000000000004, The power transition timed out waiting to synchronize with the Pnp
    subsystem.
Arg2: 000000000000012c, Timeout in seconds.
Arg3: ffffa58fad14d3c0, The thread currently holding on to the Pnp lock.
Arg4: ffffdd8fa1e458e0, nt!TRIAGE_9F_PNP on Win7 and higher

Debugging Details:
------------------

Implicit thread is now ffffa58f`ad14d3c0

KEY_VALUES_STRING: 1

    Key  : Analysis.CPU.mSec
    Value: 4061

    Key  : Analysis.DebugAnalysisProvider.CPP
    Value: Create: 8007007e on DESKTOP-J7A11VA

    Key  : Analysis.DebugData
    Value: CreateObject

    Key  : Analysis.DebugModel
    Value: CreateObject

    Key  : Analysis.Elapsed.mSec
    Value: 29946

    Key  : Analysis.Memory.CommitPeak.Mb
    Value: 78

    Key  : Analysis.System
    Value: CreateObject

    Key  : WER.OS.Branch
    Value: 19h1_release

    Key  : WER.OS.Timestamp
    Value: 2019-03-18T12:02:00Z

    Key  : WER.OS.Version
    Value: 10.0.18362.1


ADDITIONAL_XML: 1

OS_BUILD_LAYERS: 1

BUGCHECK_CODE:  9f

BUGCHECK_P1: 4

BUGCHECK_P2: 12c

BUGCHECK_P3: ffffa58fad14d3c0

BUGCHECK_P4: ffffdd8fa1e458e0

DRVPOWERSTATE_SUBCODE:  4

IMAGE_NAME:  UsbHub3.sys

MODULE_NAME: UsbHub3

FAULTING_MODULE: fffff80567f70000 UsbHub3

BLACKBOXBSD: 1 (!blackboxbsd)


BLACKBOXNTFS: 1 (!blackboxntfs)


BLACKBOXPNP: 1 (!blackboxpnp)


BLACKBOXWINLOGON: 1

CUSTOMER_CRASH_COUNT:  1

PROCESS_NAME:  System

BAD_STACK_POINTER:  ffffdd8fa1e458a8

STACK_TEXT: 
ffffdd8f`a1e458a8 fffff805`5689f3d6     : 00000000`0000009f 00000000`00000004 00000000`0000012c ffffa58f`ad14d3c0 : nt!KeBugCheckEx
ffffdd8f`a1e458b0 fffff805`56baf936     : ffffdd8f`a1e45b10 00000000`0000000f fffff805`511df800 00000000`00000001 : nt!PnpBugcheckPowerTimeout+0x76
ffffdd8f`a1e45910 fffff805`5666ba89     : ffffdd8f`a4253530 00000798`3bdf52e1 00000001`00000002 ffffa58f`aacaa010 : nt!PopBuildDeviceNotifyListWatchdog+0x16
ffffdd8f`a1e45940 fffff805`5666a7e9     : 00000000`0000000c 00000000`00989680 00000000`01e60ef7 00000000`0000000f : nt!KiProcessExpiredTimerList+0x169
ffffdd8f`a1e45a30 fffff805`567c5054     : ffffffff`00000000 ffffba81`fe4c4180 ffffba81`fe4d5140 ffffa58f`aef57080 : nt!KiRetireDpcList+0x4e9
ffffdd8f`a1e45c60 00000000`00000000     : ffffdd8f`a1e46000 ffffdd8f`a1e40000 00000000`00000000 00000000`00000000 : nt!KiIdleLoop+0x84


IMAGE_VERSION:  10.0.18362.1059

STACK_COMMAND:  .thread ; .cxr ; kb

FAILURE_BUCKET_ID:  0x9F_4_ssudbus_IMAGE_UsbHub3.sys

OS_VERSION:  10.0.18362.1

BUILDLAB_STR:  19h1_release

OSPLATFORM_TYPE:  x64

OSNAME:  Windows 10

FAILURE_ID_HASH:  {b51d08a8-ce88-10bc-51a2-30cd4c64cf15}

Followup:     MachineOwner
---------
Diskin kablosunu değiştiriniz. Mümkünse başka HDD, SSD ile sistemi test ediniz.
 
Şu an ben çökme probleminden çok programların çıkardığı farklı sonuçlara takıldım. Hard diskimle ilgili bir problem söz konusu bence. Çünkü farklı programlarda şu şekilde aynı hata mevcut.
 

Dosya Ekleri

  • Ekran Alıntısı3.PNG
    Ekran Alıntısı3.PNG
    16,9 KB · Görüntüleme: 21
  • Ekran Alıntısı4.PNG
    Ekran Alıntısı4.PNG
    13,9 KB · Görüntüleme: 20
  • Ekran Alıntısı5.PNG
    Ekran Alıntısı5.PNG
    13,6 KB · Görüntüleme: 27
Eksik ve bozuk SYS dosyalarını tarayın.
Ekran kartı sürücünü DDU ile kaldırıp WHQL sürücü yükleyin.
BattleEye yazılımını kaldırın ve Samsung USB'nizi çıkarın.
@Assecreed Hamdrv.sys bu SYS dosyasını bir araştırır mısın internette logmeln Hamachi diye bir programa aitmiş galiba.
 

Geri
Yukarı