Salut,
Voici l'analyse du dump:
Je te mets le rapport tel quel, il va faloir faire des recherches.
A premiere vue, c'est "sptd.sys" et BAD_POOL_HEADER (19) + klif.sys qui causent probleme.
Recherche avec ces 3 choses.
Symbol search path is: srv*c:\symboles*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows XP Kernel Version 2600 (Service Pack 2) UP Free x86 compatible
Product: WinNt, suite: TerminalServer SingleUserTS Personal
Built by: 2600.xpsp_sp2_gdr.050301-1519
Kernel base = 0x804d7000 PsLoadedModuleList = 0x8055a420
Debug session time: Thu Jul 20 22:55:16.786 2006 (GMT+2)
System Uptime: 0 days 2:41:19.358
Loading Kernel Symbols
.................................................................................................................................
Loading User Symbols
Loading unloaded module list
............................
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 19, {20, 81df45f0, 81df5340, adaaf601}
Unable to load image sptd.sys, Win32 error 2
*** WARNING: Unable to verify timestamp for sptd.sys
*** ERROR: Module load completed but symbols could not be loaded for sptd.sys
*** WARNING: Unable to verify timestamp for klif.sys
*** ERROR: Module load completed but symbols could not be loaded for klif.sys
Probably caused by : sptd.sys ( sptd+148a8 )
Followup: MachineOwner
---------
kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
BAD_POOL_HEADER (19)
The pool is already corrupt at the time of the current request.
This may or may not be due to the caller.
The internal pool links must be walked to figure out a possible cause of
the problem, and then special pool applied to the suspect tags or the driver
verifier to a suspect driver.
Arguments:
Arg1: 00000020, a pool block header size is corrupt.
Arg2: 81df45f0, The pool entry we were looking for within the page.
Arg3: 81df5340, The next pool entry.
Arg4: adaaf601, (reserved)
Debugging Details:
------------------
BUGCHECK_STR: 0x19_20
POOL_ADDRESS: 81df45f0
CUSTOMER_CRASH_COUNT: 3
DEFAULT_BUCKET_ID: INTEL_CPU_MICROCODE_ZERO
LAST_CONTROL_TRANSFER: from 8054b741 to 8053331e
STACK_TEXT:
f8932994 8054b741 00000019 00000020 81df45f0 nt!KeBugCheckEx+0x1b
f89329e4 8054b0b9 81df45f8 00000000 f8932a00 nt!ExFreePoolWithTag+0x2be
f89329f4 f8201764 81df45f8 f8932a20 f8232446 nt!ExFreePool+0xf
f8932a00 f8232446 f821ede0 81df45f8 e11ca8c0 Ntfs!ExFreeToPagedLookasideList+0x1e
f8932a20 f8226cb4 fe711008 f8930705 e11ca8f0 Ntfs!NtfsDeleteScb+0x191
f8932a38 f82017a9 fe711008 e27e7cb0 00000000 Ntfs!NtfsRemoveScb+0x88
f8932a54 f8226a9b fe711008 e11ca8c0 00000000 Ntfs!NtfsPrepareFcbForRemoval+0x52
f8932a9c f8201759 fe711008 e27e7cb0 e11cab20 Ntfs!NtfsTeardownStructures+0x5b
f8932ac8 f82246eb fe711008 007e7cb0 e11cab20 Ntfs!NtfsDecrementCloseCounts+0x9e
f8932b4c f822448a fe711008 e27e7cb0 e11ca8c0 Ntfs!NtfsCommonClose+0x397
f8932bec f83c28a8 8211f2f0 fe181e28 00000000 Ntfs!NtfsFsdClose+0x21f
WARNING: Stack unwind information not available. Following frames may be wrong.
f8932c1c 804e37f7 822eb5a8 8211f2f0 fe181e28 sptd+0x148a8
f8932ce0 804e37f7 81be2338 fe181e28 fe181e28 nt!IopfCallDriver+0x31
f8932cf0 8056a701 82104f78 00000000 00000000 nt!IopfCallDriver+0x31
f8932cd4 b2c61e53 00be2338 fe181e28 804e37f7 nt!IopDeleteFile+0x132
f8932d28 805638f7 00104f90 82104f78 00000000 klif+0x10e53
f8932d44 804e36d5 82104f90 00000000 806ed03c nt!ObpRemoveObjectRoutine+0xdf
f8932d68 804f33d1 8055eab8 82104e30 806ed070 nt!ObfDereferenceObject+0x5f
f8932d8c 804fee2c e31f6960 00000000 822d9bd8 nt!MiSegmentDelete+0xdd
f8932dac 8057be15 00000000 00000000 00000000 nt!MiDereferenceSegmentThread+0x9e
f8932ddc 804fa4da 804fed96 00000000 00000000 nt!PspSystemThreadStartup+0x34
00000000 00000000 00000000 00000000 00000000 nt!KiThreadStartup+0x16
STACK_COMMAND: kb
FOLLOWUP_IP:
sptd+148a8
f83c28a8 ?? ???
FAULTING_SOURCE_CODE:
SYMBOL_STACK_INDEX: b
FOLLOWUP_NAME: MachineOwner
SYMBOL_NAME: sptd+148a8
MODULE_NAME: sptd
IMAGE_NAME: sptd.sys
DEBUG_FLR_IMAGE_TIMESTAMP: 4391a4df
FAILURE_BUCKET_ID: 0x19_20_sptd+148a8
BUCKET_ID: 0x19_20_sptd+148a8
Followup: MachineOwner
---------
Message édité par alix13 le 22-07-2006 à 13:18:53