2008/07/24

MEMORY.DMP - IRQL_NOT_LESS_OR_EQUAL (a)

IRQL_NOT_LESS_OR_EQUAL (a)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high.  This is usually
caused by drivers using improper addresses.
If a kernel debugger is available get the stack backtrace.
Arguments:
Arg1: 0003afda, memory referenced
Arg2: 00000002, IRQL
Arg3: 00000001, bitfield :
 bit 0 : value 0 = read operation, 1 = write operation
 bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status)
Arg4: 80a5802a, address which referenced memory


WRITE_ADDRESS:  0003afda

CURRENT_IRQL:  2

FAULTING_IP:
hal!KeAcquireSpinLockRaiseToSynch+1a
80a5802a f00fba2900      lock bts dword ptr [ecx],0

DEFAULT_BUCKET_ID:  DRIVER_FAULT

BUGCHECK_STR:  0xA

PROCESS_NAME:  System

TRAP_FRAME:  f78f2b44 -- (.trap 0xfffffffff78f2b44)
ErrCode = 00000002
eax=00000000 ebx=f78f2cf8 ecx=0003afda edx=00000000 esi=0003afd2 edi=0003afda
eip=80a5802a esp=f78f2bb8 ebp=f78f2cd0 iopl=0         nv up ei pl zr na pe nc
cs=0008  ss=0010  ds=0023  es=0023  fs=0030  gs=0000             efl=00010246
hal!KeAcquireSpinLockRaiseToSynch+0x1a:
80a5802a f00fba2900      lock bts dword ptr [ecx],0   ds:0023:0003afda=????????
Resetting default scope

LAST_CONTROL_TRANSFER:  from 80a5802a to 8088bde3

STACK_TEXT: 
f78f2b44 80a5802a badb0d00 00000000 00000000 nt!KiTrap0E+0x2a7
f78f2bb4 f676aba5 87471ba4 87471b10 87471ba8 hal!KeAcquireSpinLockRaiseToSynch+0x1a
f78f2cd0 f676aad4 f78f2cf8 87471ba8 8b981c88 tcpip!TdiQueryInformation+0x555
f78f2d10 f676ab14 87471b10 87471ba4 87471b10 tcpip!TCPQueryInformation+0xa2
f78f2d2c 8081dcdf 8a3b4d00 87471b10 8a29d768 tcpip!TCPDispatchInternalDeviceControl+0x18f
f78f2d40 f67598db 8bb6adb0 8babe5d0 873eb5f8 nt!IofCallDriver+0x45
WARNING: Stack unwind information not available. Following frames may be wrong.
f78f2d58 f675933e 8a2def18 8743a638 8a2def18 ts_lb+0x38db
f78f2d6c 808eb5f7 8a2def18 8babe5d0 808ae5fc ts_lb+0x333e

f78f2d80 8087f92f 873eb5f8 00000000 8bb6adb0 nt!IopProcessWorkItem+0x13
f78f2dac 80948bd0 873eb5f8 00000000 00000000 nt!ExpWorkerThread+0xeb
f78f2ddc 8088d4e2 8087f844 00000001 00000000 nt!PspSystemThreadStartup+0x2e
00000000 00000000 00000000 00000000 00000000 nt!KiThreadStartup+0x16

STACK_COMMAND:  kb

FOLLOWUP_IP:
ts_lb+38db
f67598db eb16            jmp     ts_lb+0x38f3 (f67598f3)

SYMBOL_STACK_INDEX:  6

SYMBOL_NAME:  ts_lb+38db

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: ts_lb

IMAGE_NAME:  ts_lb.sys

DEBUG_FLR_IMAGE_TIMESTAMP:  46782ea2

FAILURE_BUCKET_ID:  0xA_W_ts_lb+38db

BUCKET_ID:  0xA_W_ts_lb+38db

Followup: MachineOwner


1: kd> lmvm ts_lb
start    end        module name
f6756000 f6767000   ts_lb      (no symbols)          
    Loaded symbol image file: ts_lb.sys
    Image path: \SystemRoot\system32\drivers\ts_lb.sys
    Image name: ts_lb.sys
    Timestamp:        Wed Jun 20 04:29:38 2007 (46782EA2)
    CheckSum:         0000A6C3
    ImageSize:        00011000
    Translations:     0000.04b0 0000.04e0 0409.04b0 0409.04e0


C:\Program Files\CommView

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ts_lb]
"DisplayName"="ts_lb"
"Group"="PNP_TDI"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ts_lb\Enum]
"0"="Root\\LEGACY_TS_LB\\0000"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\CV2K1]
"DisplayName"="CommView Network Monitor"
"Group"="PNP_TDI"
"Description"="CommView Network Monitor"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\CV2K1\Enum]
"0"="Root\\LEGACY_CV2K1\\0000"


댓글 없음:

댓글 쓰기

가장 많이 본 글