win 7 memory dump help


  1. Posts : 1
    Windows 7 home 64bit oem
       #1

    win 7 memory dump help


    windows 7 64bit oem version, 1 month old, new mobo, cpu, RAM, hard drive, video card.

    i've been getting memory dump errors recently while playing world of warcraft, sometimes i get the BSoD memory dump error sometimes WoW crashes with their "error 132 memory could not be read."

    this is the most recent, the past couple of errors are the same as this:

    2: kd> !analyze -v
    *******************************************************************************
    * *
    * Bugcheck Analysis *
    * *
    *******************************************************************************

    NTFS_FILE_SYSTEM (24)
    If you see NtfsExceptionFilter on the stack then the 2nd and 3rd
    parameters are the exception record and context record. Do a .cxr
    on the 3rd parameter and then kb to obtain a more informative stack
    trace.
    Arguments:
    Arg1: 00000000001904fb
    Arg2: fffff88007b5c2b8
    Arg3: fffff88007b5bb20
    Arg4: fffff880012cab69

    Debugging Details:
    ------------------


    EXCEPTION_RECORD: fffff88007b5c2b8 -- (.exr 0xfffff88007b5c2b8)
    ExceptionAddress: fffff880012cab69 (Ntfs!NtfsFlushVolume+0x0000000000000449)
    ExceptionCode: c0000005 (Access violation)
    ExceptionFlags: 00000000
    NumberParameters: 2
    Parameter[0]: 0000000000000000
    Parameter[1]: ffffffffffffffff
    Attempt to read from address ffffffffffffffff

    CONTEXT: fffff88007b5bb20 -- (.cxr 0xfffff88007b5bb20)
    rax=fffbf8a00df31b40 rbx=0000000000000000 rcx=0000000000000000
    rdx=fffff88007b5c580 rsi=0000000000000001 rdi=fffffa8003c76b10
    rip=fffff880012cab69 rsp=fffff88007b5c4f0 rbp=fffff88007b5c8a0
    r8=0000000000000000 r9=fffff8a010df3d40 r10=fffff88007b5c580
    r11=fffff88007b5c4a0 r12=fffff8a00dfc0b40 r13=fffff8a00dfc0cf0
    r14=fffffa80047e2180 r15=0000000000000702
    iopl=0 nv up ei ng nz na pe nc
    cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010282
    Ntfs!NtfsFlushVolume+0x449:
    fffff880`012cab69 f0017014 lock add dword ptr [rax+14h],esi ds:002b:fffbf8a0`0df31b54=????????
    Resetting default scope

    CUSTOMER_CRASH_COUNT: 1

    DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT

    PROCESS_NAME: explorer.exe

    CURRENT_IRQL: 0

    ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.

    EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.

    EXCEPTION_PARAMETER1: 0000000000000000

    EXCEPTION_PARAMETER2: ffffffffffffffff

    READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80002f0b0e0
    ffffffffffffffff

    FOLLOWUP_IP:
    Ntfs!NtfsFlushVolume+449
    fffff880`012cab69 f0017014 lock add dword ptr [rax+14h],esi

    FAULTING_IP:
    Ntfs!NtfsFlushVolume+449
    fffff880`012cab69 f0017014 lock add dword ptr [rax+14h],esi

    BUGCHECK_STR: 0x24

    LAST_CONTROL_TRANSFER: from fffff8800126cb7c to fffff880012cab69

    STACK_TEXT:
    fffff880`07b5c4f0 fffff880`0126cb7c : fffffa80`03c76b10 fffffa80`047e2180 fffff6fc`00000001 fffffa80`00000000 : Ntfs!NtfsFlushVolume+0x449
    fffff880`07b5c620 fffff880`01260bed : fffffa80`03c76b10 fffff880`01100d01 fffffa80`0460cb10 fffff880`07b5c700 : Ntfs!NtfsVolumeDasdIo+0x1dc
    fffff880`07b5c6d0 fffff880`01261f78 : fffffa80`03c76b10 fffffa80`05cbb810 fffff880`07b5c801 fffffa80`03b79b00 : Ntfs!NtfsCommonRead+0x1e61
    fffff880`07b5c870 fffff880`010f423f : fffffa80`05cbbbb0 fffffa80`05cbb810 fffffa80`03b79bd0 00000000`00000000 : Ntfs!NtfsFsdRead+0x1b8
    fffff880`07b5c920 fffff880`010f26df : fffffa80`04605860 00000000`00000001 fffffa80`04605800 fffffa80`05cbb810 : fltmgr!FltpLegacyProcessingAfterPreCallbacksCompleted+0x24f
    fffff880`07b5c9b0 fffff800`02fe7ae9 : 00000000`00000000 fffffa80`05c0fdc0 00000000`00000001 fffffa80`05cbb810 : fltmgr!FltpDispatch+0xcf
    fffff880`07b5ca10 fffff800`02fef2e3 : fffffa80`05c0fdc0 fffffa80`05c0fdc0 fffffa80`05c0fdc0 fffff880`02f63180 : nt!IopSynchronousServiceTail+0xf9
    fffff880`07b5ca80 fffff800`02cd2993 : 00000000`000045f8 00000000`00000000 00000000`00000000 00000000`00000000 : nt!NtReadFile+0x631
    fffff880`07b5cb70 00000000`7701f71a : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
    00000000`0c7fe398 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x7701f71a


    SYMBOL_STACK_INDEX: 0

    SYMBOL_NAME: Ntfs!NtfsFlushVolume+449

    FOLLOWUP_NAME: MachineOwner

    MODULE_NAME: Ntfs

    IMAGE_NAME: Ntfs.sys

    DEBUG_FLR_IMAGE_TIMESTAMP: 4a5bc14f

    STACK_COMMAND: .cxr 0xfffff88007b5bb20 ; kb

    FAILURE_BUCKET_ID: X64_0x24_Ntfs!NtfsFlushVolume+449

    BUCKET_ID: X64_0x24_Ntfs!NtfsFlushVolume+449

    Followup: MachineOwner
    ---------



    Last edited by skavatar; 09 Mar 2011 at 06:32. Reason: adding rammon and cpuz
      My Computer

  2.   My Computer


 

  Related Discussions
Our Sites
Site Links
About Us
Windows 7 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 7" and related materials are trademarks of Microsoft Corp.

© Designer Media Ltd
All times are GMT -5. The time now is 02:10.
Find Us