Mavi ekran hatası

Arda Selim1907

Femtopat
Katılım
4 Aralık 2020
Mesajlar
3
Kod:
1- Microsoft (r) Windows debugger version 10.0.20153.1000 AMD64

Copyright (C) Microsoft corporation. All rights reserved.



Loading dump file [C:\Users\arda\Desktop\minidump\120420-5984-01.dmp]

Mini kernel dump file: Only registers and stack trace are available



************* Path validation summary **************

Response time (ms) location

Deferred srv*

Symbol Search path is: Srv*

Executable Search path is:

Windows 10 kernel version 19041 MP (12 procs) Free X64

PROduct: Winnt, Suite: Terminalserver singleuserts

Edition Build lab: 19041.1.AMD64fre. VB_RELEASE. 191206-1406

Machine name:

Kernel base = 0xfffff802`16600000 psloadedmodulelist = 0xfffff802`1722a3b0

Debug session time: Fri dec 4 03:57:20.744 2020 (utc + 3:00)

System uptime: 0 days 0:00:07.393

Loading kernel symbols





Loading user symbols

Loading unloaded module list



For analysis of this file, run! Analyze -v

Nt! Kebugcheckex:

Fffff802'169F5210 48894C2408 mov qword PTR [rsp+8],rcx SS:0018:fffff307'0F0455A0=000000000000004C

11: Kd>! Analyze -v

*******************************************************************************

* *

* Bugcheck analysis *

* *

*******************************************************************************



WINLOGON_FATAL_ERROR (C000021A)

The winlogon process terminated unexpectedly.

Arguments:

Arg1: FFFF820D292477E0, string that identifies the problem.

Arg2: FfffFFFFC0000428, error code.

Arg3: 0000000000000000

Arg4: 00000202E3EC0000



Debugging details:

------------------



Etw minidump data unavailable



KEY_VALUES_STRING: 1



Key: Analysis. CPU. Msec

Value: 4342



Key: Analysis.DebugAnalysisProvider.CPP

Value: Create: 8007007E on deSKTOP-9DTRD6C



Key: Analysis. Debugdata

Value: Createobject



Key: Analysis. Debugmodel

Value: Createobject



Key: Analysis. Elapsed. Msec

Value: 5635



Key: Analysis. Memory. Commitpeak. MB

Value: 75



Key: Analysis. System

Value: Createobject



Key: Wer. OS. Branch

Value: VB_RELEASE



Key: Wer. OS. Timestamp

Value: 2019-12-06T14:06:00Z



Key: Wer. OS. Version

Value: 10.0.19041.1



ADDITIONAL_XML: 1



OS_BUILD_LAYERS: 1



ERROR_CODE: (Ntstatus) 0xc000021a - { nemli sistem hatas } %hs sistem i lemi, 0X



EXCEPTION_CODE_STR: C000021A



EXCEPTION_PARAMETER1: FFFF820D292477E0



EXCEPTION_PARAMETER2: FfffFFFFC0000428



EXCEPTION_PARAMETER3: 0000000000000000



EXCEPTION_PARAMETER4: 202E3EC0000



BUGCHECK_CODE: C000021A



BUGCHECK_P1: FFFF820D292477E0



BUGCHECK_P2: FfffFFFFC0000428



BUGCHECK_P3: 0



BUGCHECK_P4: 202E3EC0000



PROCESS_NAME: smss.exe



ADDITIONAL_DEBUG_TEXT: İnitial session process or



IMAGE_NAME: ntkrnlmp.exe



MODULE_NAME: NT



Blackboxbsd: 1 (!Blackboxbsd)



Blackboxntfs: 1 (!Blackboxntfs)



CUSTOMER_CRASH_COUNT: 1



STACK_TEXT:

Fffff307'0F045598 fffff802'16FAD56A: 00000000'0000004C 00000000'C000021A fffff307'0F07D3F0 ffffb387'A79F4C50: Nt! Kebugcheckex

Fffff307'0F0455A0 fffff802'16F9F30D: Fffff307'0F0456C0 fffff307'0F045660 fffff307'0F0456C0 fffff307'0F045660: Nt! Popgracefulshutdown+0x29A

Fffff307'0F0455E0 fffff802'16F947DC: 00000000'00000001 fffff802'00000006 00000000'00000004 00000000'00000000: Nt! Poptransitionsystempowerstateex+0x11839

Fffff307'0F0456A0 fffff802'16A06BB8: 00000000'00000000 00000000'00000001 00000000'00000000 00000000'00000000: Nt! Ntsetsystempowerstate+0x4C

Fffff307'0F045880 fffff802'169F9070: Fffff802'16E431D7 00000000'00000014 ffffffff'ffffff00 00000000'00000000: Nt! Kisystemservicecopyend+0x28

Fffff307'0F045A18 fffff802'16E431D7: 00000000'00000014 ffffffff'ffffff00 00000000'00000000 fffff802'17223CA0: Nt! Kiservicelinkage

Fffff307'0F045A20 fffff802'16D59BD9: 00000000'00000000 ffffb387'A0E81A30 00000000'00000000 00000000'00000000: Nt! Popıssueactionrequest+0xe94df

Fffff307'0F045AC0 fffff802'168A0D34: 00000000'00000001 00000000'00000000 ffffffff'ffffffff fffff802'17223C00: Nt! Poppolicyworkeraction+0x79

Fffff307'0F045B30 fffff802'169034B5: Ffffb387'00000001 ffffb387'A4B7D040 fffff802'168A0CA0 ffffb387'00000000: Nt! Poppolicyworkerthread+0x94

Fffff307'0F045B70 fffff802'168A29A5: Ffffb387'A4B7D040 00000000'00000080 ffffb387'A0E65080 000F8067'b4bbbdff: Nt! Expworkerthread+0x105

Fffff307'0F045C10 fffff802'169FC868: Ffffd600'FD69E180 ffffb387'A4B7D040 fffff802'168A2950 2327B735'7726780D: Nt! Pspsystemthreadstartup+0x55

Fffff307'0F045C60 00000000'00000000: Fffff307'0F046000 fffff307'0F040000 00000000'00000000 00000000'00000000: Nt! Kistartsystemthread+0x28



SYMBOL_NAME: Nt! Poptransitionsystempowerstateex+11839



IMAGE_VERSION: 10.0.19041.630



STACK_COMMAND:. Thread;. Cxr; KB



BUCKET_ID_FUNC_OFFSET: 11839



FAILURE_BUCKET_ID: 0xc000021a_smpdestroycontrolblock_smss.exe_terminaTED_C0000428_NT! Poptransitionsystempowerstateex



OS_VERSION: 10.0.19041.1



BUILDLAB_STR: VB_RELEASE



OSPLATFORM_TYPE: X64



Osname: Windows 10



FAILURE_ID_HASH: {11C026A4-042B-4C24-02DC-2DA456397475}



Followup: Machineowner

---------



2-

Microsoft (r) Windows debugger version 10.0.20153.1000 AMD64

Copyright (C) Microsoft corporation. All rights reserved.



Loading dump file [C:\Users\arda\Desktop\minidump\120420-7046-01.dmp]

Mini kernel dump file: Only registers and stack trace are available



************* Path validation summary **************

Response time (ms) location

Deferred srv*

Symbol Search path is: Srv*

Executable Search path is:

Windows 10 kernel version 19041 MP (12 procs) Free X64

PROduct: Winnt, Suite: Terminalserver singleuserts

Edition Build lab: 19041.1.AMD64fre. VB_RELEASE. 191206-1406

Machine name:

Kernel base = 0xfffff800`45c00000 psloadedmodulelist = 0xfffff800`4682a3b0

Debug session time: Fri dec 4 03:29:43.408 2020 (utc + 3:00)

System uptime: 0 days 0:00:06.056

Loading kernel symbols





Loading user symbols

Loading unloaded module list



For analysis of this file, run! Analyze -v

Nt! Kebugcheckex:

Fffff800'45FF5210 48894C2408 mov qword PTR [rsp+8],rcx SS:0018:fffffd09'F2605220=0000000000000050

0: Kd>! Analyze -v

*******************************************************************************

* *

* Bugcheck analysis *

* *

*******************************************************************************



PAGE_FAULT_IN_NONPAGED_AREA (50)

Invalid System Memory was referenced. This cannot be protected by try-except.

Typically the address is just plain bad or it is pointing at freed Memory.

Arguments:

Arg1: FFFFCD8204CF9E80, Memory referenced.

Arg2: 0000000000000000, Value 0 = read operation, 1 = write operation.

Arg3: FFFFF80048449C52, ıf non-Zero, the instruction address which referenced the bad Memory

Address.

Arg4: 0000000000000002, (reserved)



Debugging details:

------------------



Could not read faulting driver name



KEY_VALUES_STRING: 1



Key: Analysis. CPU. Msec

Value: 3765



Key: Analysis.DebugAnalysisProvider.CPP

Value: Create: 8007007E on deSKTOP-9DTRD6C



Key: Analysis. Debugdata

Value: Createobject



Key: Analysis. Debugmodel

Value: Createobject



Key: Analysis. Elapsed. Msec

Value: 5197



Key: Analysis. Memory. Commitpeak. MB

Value: 72



Key: Analysis. System

Value: Createobject



Key: Wer. OS. Branch

Value: VB_RELEASE



Key: Wer. OS. Timestamp

Value: 2019-12-06T14:06:00Z



Key: Wer. OS. Version

Value: 10.0.19041.1



ADDITIONAL_XML: 1



OS_BUILD_LAYERS: 1



BUGCHECK_CODE: 50



BUGCHECK_P1: FFFFCD8204CF9E80



BUGCHECK_P2: 0



BUGCHECK_P3: FFFFF80048449C52



BUGCHECK_P4: 2



READ_ADDRESS: FFFFF800468FB390: Unable to GET mivisiblestate

Unable to GET nonpagedpoolstart

Unable to GET nonpagedpoolend

Unable to GET pagedpoolstart

Unable to GET pagedpoolend

FFFFF8004680F340: Unable to GET flags Value from nt! Kdversionblock

FFFFF8004680F340: Unable to GET flags Value from nt! Kdversionblock

Unable to GET nt! Mmspecialpagesınuse

FFFFCD8204CF9E80



MM_INTERNAL_CODE: 2



Blackboxntfs: 1 (!Blackboxntfs)



CUSTOMER_CRASH_COUNT: 1



PROCESS_NAME: System



TRAP_FRAME: FFFFFD09F26054C0 -- (.Trap 0xfffffd09f26054c0)

Note: The trap frame does not contain all registers.

Some register values may be zeroed or incorrect.

Rax=0000000000000000 rbx=0000000000000000 rcx=0000000000000000

Rdx=fffffffFFFDD1070 rsi=0000000000000000 rdi=0000000000000000

Rip=FFFFF80048449C52 rsp=fFFFFD09F2605650 rbp=0000000000008004

R8=0000000000000014 R9=FFFFF8004844C350 R10=0000FFFFF8004844

R11=FFFFD17D78C00000 R12=0000000000000000 R13=0000000000000000

R14=0000000000000000 R15=0000000000000000

İopl=0 NV up ei PL zr na po NC

Cı! I_findfileorheaderhashınloadedcatalogs+0x9A:

Fffff800'48449C52 8B4760 mov eax, dword PTR [rdi+60h] DS: 00000000'00000060=?

Resetting default scope



STACK_TEXT:

Fffffd09'F2605218 fffff800'4607A665: 00000000'00000050 ffffcd82'04CF9E80 00000000'00000000 fffffd09'F26054C0: Nt! Kebugcheckex

Fffffd09'F2605220 fffff800'45EEA4A0: Fffffd09'F2605350 00000000'00000000 fffffd09'F2605540 00000000'00000000: Nt! Misystemfault+0x172315

Fffffd09'F2605320 fffff800'4600335E: Fffffd09'F26054F0 fffff800'49B44000 00000000'00000000 00000000'00000000: Nt! Mmaccessfault+0x400

Fffffd09'F26054C0 fffff800'48449C52: 00000000'00000000 00000000'00008004 00000000'00000004 ffffcd82'0ccfa9F0: Nt! Kipagefault+0x35E

Fffffd09'F2605650 fffff800'4844948E: Ffffcd82'0C6ADC20 ffffcd82'0C6ADC20 FFFF8442'00000001 fffff800'00000000: Cı! I_findfileorheaderhashınloadedcatalogs+0x9A

Fffffd09'F26056D0 fffff800'484490F4: 00720075'3A629000 00000000'00000014 0074006E'A6290003 0053006C'C77C4E14: Cı! I_findfileorheaderhashıncatalogs+0x2BE

Fffffd09'F2605830 fffff800'48454EFE: Fffffd09'F2605A1C fffffd09'F2605A28 00000000'00000000 00000000'00000000: Cı! MINCryPK_VERIFYHASHINCATALOG+0x110

Fffffd09'F26058E0 fffff800'4845076F: 00000000'00000000 00000000'00000000 fffff800'49B30000 fffff800'0000002A: Cı! Civerifyfilehashıncatalogs+0x18E

Fffffd09'F26059C0 fffff800'48451C79: 00000000'00000000 fffffd09'F2605CF1 00000000'00000000 00000000'00000000: Cı! Cipfindfilehash+0x2DB

Fffffd09'F2605B20 fffff800'484515AB: Ffffcd82'0C6AD450 FFFF9403'0793E0C0 FFFF9403'03868040 fffff800'49B30000: Cı! Cipvalidatefilehash+0x2D9

Fffffd09'F2605C00 fffff800'4844F9E2: 00000000'00000088 00000000'00000000 FFFF9403'0793E0C0 fffff800'49B30000: Cı! Cipvalidateımagehash+0x10F

Fffffd09'F2605D40 fffff800'462735E5: Fffffd09'F2605F80 fffff800'49B30000 00000000'0000000F fffff800'49B30000: Cı! Civalidateımageheader+0x812

Fffffd09'F2605EC0 fffff800'46273140: 00000000'00000000 FFFF9403'077B9920 00000000'00000000 00000000'00015000: Nt! Sevalidateımageheader+0xd9

Fffffd09'F2605F70 fffff800'4620C09B: Fffffd09'F2606400 00000000'00000000 00000000'00000000 ffffffff'80000358: Nt! Mivalidatesectioncreate+0x438

Fffffd09'F2606150 fffff800'4620B4E6: Fffffd09'F2606490 fffffd09'F2606490 fffffd09'F26062B0 00000000'00000000: Nt! Mivalidatesectionsigningpolicy+0xab

Fffffd09'F26061B0 fffff800'462FF71B: FFFF9403'0793E0C0 fffffd09'F2606490 fffffd09'F2606490 00000000'00000000: Nt! Micreatenewsection+0x66E

Fffffd09'F2606320 fffff800'462FED64: Fffffd09'F2606350 ffffcd82'0F8F4690 FFFF9403'0793E0C0 00000000'00000000: Nt! Micreateımageordatasection+0x2DB

Fffffd09'F2606410 fffff800'45F6CE18: 00000000'00000000 00000000'ffffffff ffffffff'800001D0 fffff800'45ECB429: Nt! Micreatesection+0xf4

Fffffd09'F2606590 fffff800'46333FA2: 00000000'00000000 fffffd09'F26066A9 ffffffff'800001D0 00000000'00000000: Nt! Micreatesystemsection+0xa4

Fffffd09'F2606630 fffff800'4633187E: Fffff800'4682A3B0 ffffffff'800001D0 fffffd09'F26067C8 00000000'00000000: Nt! Micreatesectionfordriver+0x126

Fffffd09'F2606710 fffff800'463310D2: 00000000'00000000 fffffd09'F2606860 00000000'00000000 00000000'000009C8: Nt! Miobtainsectionfordriver+0xa6

Fffffd09'F2606760 fffff800'46330F66: Fffffd09'F2606998 00000000'00000000 00000000'00000000 00000000'00000000: Nt! Mmloadsystemımageex+0x156

Fffffd09'F2606900 fffff800'4631E124: Fffffd09'F2606A40 00000000'00000000 fffff800'46845900 00000000'00000000: Nt! Mmloadsystemımage+0x26

Fffffd09'F2606940 fffff800'46653EAF: FFFF9403'0752BC10 FFFF9403'0752BC10 fffffd09'F2606B80 00000000'00000000: Nt! Ioploaddriver+0x23C

Fffffd09'F2606B10 fffff800'46660AD6: Ffffffff'00000000 ffffcd82'101F7AA0 00000000'00000000 fffff800'41665B10: Nt! Iopınitializesystemdrivers+0x157

Fffffd09'F2606BB0 fffff800'463946DB: Fffff800'41665B10 fffff800'46847068 fffff800'463946A0 fffff800'41665B10: Nt! Ioınitsystem+0x2E

Fffffd09'F2606BE0 fffff800'45EA29A5: FFFF9403'03869040 fffff800'463946A0 fffff800'41665B10 00000000'00000000: Nt! Phase1ınitialization+0x3B

Fffffd09'F2606C10 fffff800'45FFC868: Fffff800'41A0C180 FFFF9403'03869040 fffff800'45EA2950 00000000'00000000: Nt! Pspsystemthreadstartup+0x55

Fffffd09'F2606C60 00000000'00000000: Fffffd09'F2607000 fffffd09'F2601000 00000000'00000000 00000000'00000000: Nt! Kistartsystemthread+0x28



SYMBOL_NAME: Cı! I_findfileorheaderhashınloadedcatalogs+9a



MODULE_NAME: Cı



IMAGE_NAME: CI.dll



IMAGE_VERSION: 10.0.19041.606



STACK_COMMAND:. Thread;. Cxr; KB



BUCKET_ID_FUNC_OFFSET: 9A



FAILURE_BUCKET_ID: AV_R_INVALID_CI! I_findfileorheaderhashınloadedcatalogs



OS_VERSION: 10.0.19041.1



BUILDLAB_STR: VB_RELEASE



OSPLATFORM_TYPE: X64



Osname: Windows 10



FAILURE_ID_HASH: {FAD8963D-5D30-5D2F-AE25-A594DC86284F}



Followup: Machineowner

---------



3-

Microsoft (r) Windows debugger version 10.0.20153.1000 AMD64

Copyright (C) Microsoft corporation. All rights reserved.



Loading dump file [C:\Users\arda\Desktop\minidump\120420-7125-01.dmp]

Mini kernel dump file: Only registers and stack trace are available



************* Path validation summary **************

Response time (ms) location

Deferred srv*

Symbol Search path is: Srv*

Executable Search path is:

Windows 10 kernel version 19041 MP (12 procs) Free X64

PROduct: Winnt, Suite: Terminalserver singleuserts

Edition Build lab: 19041.1.AMD64fre. VB_RELEASE. 191206-1406

Machine name:

Kernel base = 0xfffff806`04800000 psloadedmodulelist = 0xfffff806`0542a3b0

Debug session time: Fri dec 4 13:59:20.876 2020 (utc + 3:00)

System uptime: 0 days 0:00:05.525

Loading kernel symbols





Loading user symbols

Loading unloaded module list



For analysis of this file, run! Analyze -v

Nt! Kebugcheckex:

Fffff806'04BF5210 48894C2408 mov qword PTR [rsp+8],rcx SS:0018:ffffd381'C252EBC0=0000000000000050

8: Kd>! Analyze -v

*******************************************************************************

* *

* Bugcheck analysis *

* *

*******************************************************************************



PAGE_FAULT_IN_NONPAGED_AREA (50)

Invalid System Memory was referenced. This cannot be protected by try-except.

Typically the address is just plain bad or it is pointing at freed Memory.

Arguments:

Arg1: FFFF81040C81FD90, Memory referenced.

Arg2: 0000000000000000, Value 0 = read operation, 1 = write operation.

Arg3: FFFFF80604F432AC, ıf non-Zero, the instruction address which referenced the bad Memory

Address.

Arg4: 0000000000000002, (reserved)



Debugging details:

------------------



Could not read faulting driver name



KEY_VALUES_STRING: 1



Key: Analysis. CPU. Msec

Value: 6343



Key: Analysis.DebugAnalysisProvider.CPP

Value: Create: 8007007E on deSKTOP-9DTRD6C



Key: Analysis. Debugdata

Value: Createobject



Key: Analysis. Debugmodel

Value: Createobject



Key: Analysis. Elapsed. Msec

Value: 7807



Key: Analysis. Memory. Commitpeak. MB

Value: 73



Key: Analysis. System

Value: Createobject



Key: Wer. OS. Branch

Value: VB_RELEASE



Key: Wer. OS. Timestamp

Value: 2019-12-06T14:06:00Z



Key: Wer. OS. Version

Value: 10.0.19041.1



ADDITIONAL_XML: 1



OS_BUILD_LAYERS: 1



BUGCHECK_CODE: 50



BUGCHECK_P1: FFFF81040C81FD90



BUGCHECK_P2: 0



BUGCHECK_P3: FFFFF80604F432AC



BUGCHECK_P4: 2



READ_ADDRESS: FFFFF806054FB390: Unable to GET mivisiblestate

Unable to GET nonpagedpoolstart

Unable to GET nonpagedpoolend

Unable to GET pagedpoolstart

Unable to GET pagedpoolend

FFFFF8060540F340: Unable to GET flags Value from nt! Kdversionblock

FFFFF8060540F340: Unable to GET flags Value from nt! Kdversionblock

Unable to GET nt! Mmspecialpagesınuse

FFFF81040C81FD90



MM_INTERNAL_CODE: 2



CUSTOMER_CRASH_COUNT: 1



PROCESS_NAME: System



TRAP_FRAME: FFFFD381C252EE60 -- (.Trap 0xffffd381c252ee60)

Note: The trap frame does not contain all registers.

Some register values may be zeroed or incorrect.

Rax=FFFF8104075F4530 rbx=0000000000000000 rcx=0000000000000028

Rdx=0000000000000000 rsi=0000000000000000 rdi=0000000000000000

Rip=FFFFF80604F432AC rsp=FFFFD381C252EFF0 rbp=FFFFD381C252F130

R8=0000000000000FFF R9=00000000000006D0 R10=00000000656C5252

R11=0000000000001001 R12=0000000000000000 R13=0000000000000000

R14=0000000000000000 R15=0000000000000000

İopl=0 NV up ei NG nz na po NC

Nt! Rtlpcopyrangelistentry+0x2C:

Fffff806'04F432AC 0F1006 movups xmm0, xmmword PTR [rsi] DS: 00000000'00000000=?

Resetting default scope



LOCK_ADDRESS: FFFFF80605444C80 -- (!Locks FFFFF80605444C80)



Resource @ nt! Pienginelock (0xFFFFF80605444C80) exclusively owned

Threads: FFFFB18EA91E1100-01<*>

1 Total locks



PNP_TRIAGE_DATA:

Lock address : 0xfffff80605444c80

Thread count: 1

Thread address: 0xffffb18ea91e1100

Thread wait : 0x161



STACK_TEXT:

Ffffd381'C252EBB8 fffff806'04C7A665: 00000000'00000050 FFFF8104'0C81FD90 00000000'00000000 ffffd381'C252EE60: Nt! Kebugcheckex

Ffffd381'C252EBC0 fffff806'04AEA4A0: 00000000'00000000 00000000'00000000 ffffd381'C252EEE0 00000000'00000000: Nt! Misystemfault+0x172315

Ffffd381'C252ECC0 fffff806'04C0335E: 00000000'00000001 ffffb18e'00000000 00000000'000006D0 00000000'00000000: Nt! Mmaccessfault+0x400

Ffffd381'C252EE60 fffff806'04F432AC: 00000000'00000000 00000000'00000000 ffffc301'A5546180 fffff806'04AC4A8A: Nt! Kipagefault+0x35E

Ffffd381'C252EFF0 fffff806'04F43231: FFFF8104'023830F0 FFFF8104'0C81FD90 FFFF8104'02383270 fffff806'09991620: Nt! Rtlpcopyrangelistentry+0x2C

Ffffd381'C252F020 fffff806'04F42F48: Fffff806'05444360 00000000'00000000 FFFF8104'02712334 00000000'00000005: Nt! Rtlcopyrangelist+0x41

Ffffd381'C252F050 fffff806'04F54AD8: Fffff806'05444360 ffffd381'C252F130 00000000'00000000 fffff806'09991600: Nt! Arbtestallocation+0x38

Ffffd381'C252F0A0 fffff806'04F3F59E: FFFF8104'02678B90 00000000'00000000 FFFF8104'08A616D0 00000000'00000000: Nt! Arbarbiterhandler+0x68

Ffffd381'C252F0E0 fffff806'04F3E2A6: Ffffb18e'A5932CB0 ffffb18e'A91ACA90 FFFF8104'02712330 ffffb18e'A9106120: Nt! Iopcallarbiter+0xca

Ffffd381'C252F140 fffff806'04F56926: 00000000'00000000 ffffb18e'00000009 ffffb18e'00000000 ffffb18e'A91ACA90: Nt! Pnpreleaseresourcesınternal+0x122

Ffffd381'C252F210 fffff806'04F56856: Fffff806'05444B00 00000000'00000004 00000000'00000000 00000000'00000000: Nt! Iopreleaseresources+0xe

Ffffd381'C252F240 fffff806'04F39924: 00000000'ffffffff ffffb18e'A5928D80 ffffb18e'A91ACA90 FFFF8104'08A616D0: Nt! Ioplegacyresourceallocation+0xb6

Ffffd381'C252F300 fffff806'0505E873: Ffffffff'00000078 ffffd381'C252F459 FFFF8104'08A616D0 00000000'00000001: Nt! Iopreleasedeviceresources+0xa4

Ffffd381'C252F390 fffff806'04F1E563: 00000000'00000000 00000000'00000000 00000000'00000000 00000000'00000000: Nt! Pnpdriverloadingfailed+0xa9ee3

Ffffd381'C252F4C0 fffff806'04F1FD56: 00000000'00000000 00000000'00000000 00000000'00000004 ffffd381'00000004: Nt! Ioploaddriver+0x67B

Ffffd381'C252F690 fffff806'04F1FA66: Ffffffff'80000301 00000000'00000000 ffffb18e'A90C9600 ffffffff'80000384: Nt! Pipcalldriveradddevicequeryroutine+0x1BE

Ffffd381'C252F720 fffff806'04F1F424: 00000000'00000000 ffffd381'C252F830 00000000'6E657050 00000000'00000012: Nt! Pnpcalldriverqueryservicehelper+0X'da

Ffffd381'C252F7D0 fffff806'04F1EBB7: Ffffb18e'A91ACA90 ffffd381'C252FA11 ffffb18e'A91ACA90 00000000'00000000: Nt! Pipcalldriveradddevice+0x41C

Ffffd381'C252F990 fffff806'04FB5B9C: Ffffb18e'A9669E00 ffffd381'C252FB01 ffffd381'C252FAB0 fffff806'00000000: Nt! Pipprocessdevnodetree+0x333

Ffffd381'C252FA60 fffff806'04B70ABC: 00000001'00000003 ffffb18e'A9669E30 00000000'00000000 ffffb18e'A9669E30: Nt! Piprocessstartsystemdevices+0x60

Ffffd381'C252FAB0 fffff806'04B034B5: Ffffb18e'A91E1100 ffffb18e'A5887C70 fffff806'054434E0 ffffb18e'00000000: Nt! Pnpdeviceactionworker+0x4CC

Ffffd381'C252FB70 fffff806'04AA29A5: Ffffb18e'A91E1100 00000000'00000080 ffffb18e'A5868040 000F8067'b4bbbdff: Nt! Expworkerthread+0x105

Ffffd381'C252FC10 fffff806'04BFC868: Fffff806'02C55180 ffffb18e'A91E1100 fffff806'04AA2950 00000000'00000000: Nt! Pspsystemthreadstartup+0x55

Ffffd381'C252FC60 00000000'00000000: Ffffd381'C2530000 ffffd381'C252A000 00000000'00000000 00000000'00000000: Nt! Kistartsystemthread+0x28



SYMBOL_NAME: Nt! Rtlpcopyrangelistentry+2C



MODULE_NAME: NT



IMAGE_NAME: ntkrnlmp.exe



IMAGE_VERSION: 10.0.19041.630



STACK_COMMAND:. Thread;. Cxr; KB



BUCKET_ID_FUNC_OFFSET: 2C



FAILURE_BUCKET_ID: AV_R_INVALID_NT! Rtlpcopyrangelistentry



OS_VERSION: 10.0.19041.1



BUILDLAB_STR: VB_RELEASE



OSPLATFORM_TYPE: X64



Osname: Windows 10



FAILURE_ID_HASH: {D5B064C0-4155-C35D-1B5E-259F544A3839}



Followup: Machineowner

---------
Öncelikle merhaba, ben de bu aralar arada mavi ekran sorunu almaya başladım ve mindump dosyalarına girdim ama direkt olarak dosyaları buraya atamadım. o yüzden çıkan yazıları kopyalayıp buraya atmak istedim. Toplam 3 dosya çıktı karşıma ve! Analyze -v dedikten sonra dosyaları attım direkt atamadığım için özür diliyorum şimdiden.
 
Masaüstünde bir klasör oluşturarak minidump dosyalarını o klasörün içine kopyalayıp, klasörü de MediaFire'a upload ederek indirme bağlantısını paylaşabilirsin.
biraz önce şöyle bir hata daha aldım
 
Son düzenleme:

Dosya Ekleri

  • 20201205_033409.jpg
    20201205_033409.jpg
    385,7 KB · Görüntüleme: 33

Geri
Yukarı