I am getting a blue screen once a week on a Windows SBS 2003 server. It gives me event id 1003:
Error code 1000008e, parameter1 c0000005, parameter2 808408de, parameter3 b8484a98, parameter4 00000000.
Another:
Error code 1000000a, parameter1 00000008, parameter2 d0000002, parameter3 00000000, parameter4 808408de.
Yet another:
Error code 1000000a, parameter1 00000050, parameter2 d000001b, parameter3 00000001, parameter4 8083d64d.
I ran dumpchk with the symbols, and here is part 1 of 3:
C:\WINDOWS\Minidump>dumpchk mini082707-01.dmp
Loading dump file mini082707-01.dmp
Microsoft (R) Windows Debugger Version 5.2.3790.3959
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [mini082707-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: *** Invalid *** : Verify _NT_SYMBOL_PATH setting
Executable search path is:
*********************************************************************
* Symbols can not be loaded because symbol path is not initialized. *
* *
* The Symbol Path can be set by: *
* using the _NT_SYMBOL_PATH environment variable. *
* using the -y <symbol_path> argument when starting the debugger. *
* using .sympath and .sympath+ *
*********************************************************************
Unable to load image ntoskrnl.exe
*** WARNING: Unable to verify timestamp for ntoskrnl.exe
*** ERROR: Module load completed but symbols could not be loaded for ntoskrnl.ex
e
Windows Server 2003 Kernel Version 3790 (Service Pack 2) MP (2 procs) Free x86 c
ompatible
Product: LanManNt, suite: SmallBusiness TerminalServer SmallBusinessRestricted S
ingleUserTS
Kernel base = 0x80800000 PsLoadedModuleList = 0x808af9c8
Debug session time: Mon Aug 27 03:35:55 2007
System Uptime: 7 days 0:39:32.634
*********************************************************************
* Symbols can not be loaded because symbol path is not initialized. *
* *
* The Symbol Path can be set by: *
* using the _NT_SYMBOL_PATH environment variable. *
* using the -y <symbol_path> argument when starting the debugger. *
* using .sympath and .sympath+ *
*********************************************************************
Unable to load image ntoskrnl.exe
*** WARNING: Unable to verify timestamp for ntoskrnl.exe
*** ERROR: Module load completed but symbols could not be loaded for ntoskrnl.ex
e
Loading Kernel Symbols
................................................................................
........................................
Loading unloaded module list
.................
Loading User Symbols
The call to LoadLibrary(ext) failed, Win32 error 2
"The system cannot find the file specified."
Please check your debugger configuration and/or network access.
The call to LoadLibrary(exts) failed, Win32 error 2
"The system cannot find the file specified."
Please check your debugger configuration and/or network access.
The call to LoadLibrary(kext) failed, Win32 error 2
"The system cannot find the file specified."
Please check your debugger configuration and/or network access.
The call to LoadLibrary(kdexts) failed, Win32 error 2
"The system cannot find the file specified."
Please check your debugger configuration and/or network access.
The call to LoadLibrary(ext) failed, Win32 error 2
"The system cannot find the file specified."
Please check your debugger configuration and/or network access.
The call to LoadLibrary(exts) failed, Win32 error 2
"The system cannot find the file specified."
Please check your debugger configuration and/or network access.
The call to LoadLibrary(kext) failed, Win32 error 2
"The system cannot find the file specified."
Please check your debugger configuration and/or network access.
The call to LoadLibrary(kdexts) failed, Win32 error 2
"The system cannot find the file specified."
Please check your debugger configuration and/or network access.
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Bugcheck code 1000000A
Arguments 00000008 d0000002 00000000 808408de
ChildEBP RetAddr Args to Child
WARNING: Stack unwind information not available. Following frames may be wrong.
808a33e8 8083dbf1 8a354c80 808a3404 8a7480e0 nt+0x408de
Unable to load image atapi.sys
*** WARNING: Unable to verify timestamp for atapi.sys
*** ERROR: Module load completed but symbols could not be loaded for atapi.sys
808a3428 f7389faa 8a6d05d0 00000000 00000001 nt+0x3dbf1
808a345c 8082e109 8a748028 89410b38 89410b38 atapi+0x7faa
808a3480 f7389ddc 8a748028 89410b38 00000000 nt+0x2e109
808a34b0 80840153 8a748028 89410b38 8a726e50 atapi+0x7ddc
808a34c4 f73885be 00000000 8950e460 00000001 nt+0x40153
808a34dc f738a12f f73893aa 8950e460 8a726e50 atapi+0x65be
808a34fc f738a90c 8a726e50 8a5323b0 8a726ef8 atapi+0x812f
808a352c f738ac94 8a35a008 8a726ef8 808a35a7 atapi+0x890c
808a35a8 8083d99a 8a74809c 8a748028 00000000 atapi+0x8c94
808a3600 80839b2f 00000000 0000000e 00000000 nt+0x3d99a
808a6b40 00000000 808a6b48 808a6b48 808a6b50 nt+0x39b2f
----- 32 bit Kernel Mini Dump Analysis
DUMP_HEADER32:
MajorVersion 0000000f
MinorVersion 00000ece
DirectoryTableBase 00039000
PfnDataBase 81800000
PsLoadedModuleList 808af9c8
PsActiveProcessHead 808b5be8
MachineImageType 0000014c
NumberProcessors 00000002
BugCheckCode 1000000a
BugCheckParameter1 00000008
BugCheckParameter2 d0000002
BugCheckParameter3 00000000
BugCheckParameter4 808408de
PaeEnabled 00000000
KdDebuggerDataBlock 8089d3e0
SecondaryDataState 00000000
ProductType 00000002
SuiteMask 00000131
MiniDumpFields 00000dff
TRIAGE_DUMP32:
ServicePackBuild 00000200
SizeOfDump 00010000
ValidOffset 0000fffc
ContextOffset 00000320
ExceptionOffset 000007d0
MmOffset 00001068
UnloadedDriversOffset 000010a0
PrcbOffset 00001878
ProcessOffset 00002738
ThreadOffset 000029b0
CallStackOffset 00002c00
SizeOfCallStack 00000558
DriverListOffset 00003470
DriverCount 00000079
StringPoolOffset 00005860
StringPoolSize 00001090
BrokenDriverOffset 00000000
TriageOptions 00000041
TopOfStack 808a3358
DebuggerDataOffset 00003158
DebuggerDataSize 00000318
DataBlocksOffset 000068f0
DataBlocksCount 00000004
d0000000 - d0000fff at offset 00006930
80840000 - 80840fff at offset 00007930
8a354000 - 8a354fff at offset 00008930
8a7dd000 - 8a7ddfff at offset 00009930
Max offset a930, d6d0 from end of file
Error code 1000008e, parameter1 c0000005, parameter2 808408de, parameter3 b8484a98, parameter4 00000000.
Another:
Error code 1000000a, parameter1 00000008, parameter2 d0000002, parameter3 00000000, parameter4 808408de.
Yet another:
Error code 1000000a, parameter1 00000050, parameter2 d000001b, parameter3 00000001, parameter4 8083d64d.
I ran dumpchk with the symbols, and here is part 1 of 3:
C:\WINDOWS\Minidump>dumpchk mini082707-01.dmp
Loading dump file mini082707-01.dmp
Microsoft (R) Windows Debugger Version 5.2.3790.3959
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [mini082707-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: *** Invalid *** : Verify _NT_SYMBOL_PATH setting
Executable search path is:
*********************************************************************
* Symbols can not be loaded because symbol path is not initialized. *
* *
* The Symbol Path can be set by: *
* using the _NT_SYMBOL_PATH environment variable. *
* using the -y <symbol_path> argument when starting the debugger. *
* using .sympath and .sympath+ *
*********************************************************************
Unable to load image ntoskrnl.exe
*** WARNING: Unable to verify timestamp for ntoskrnl.exe
*** ERROR: Module load completed but symbols could not be loaded for ntoskrnl.ex
e
Windows Server 2003 Kernel Version 3790 (Service Pack 2) MP (2 procs) Free x86 c
ompatible
Product: LanManNt, suite: SmallBusiness TerminalServer SmallBusinessRestricted S
ingleUserTS
Kernel base = 0x80800000 PsLoadedModuleList = 0x808af9c8
Debug session time: Mon Aug 27 03:35:55 2007
System Uptime: 7 days 0:39:32.634
*********************************************************************
* Symbols can not be loaded because symbol path is not initialized. *
* *
* The Symbol Path can be set by: *
* using the _NT_SYMBOL_PATH environment variable. *
* using the -y <symbol_path> argument when starting the debugger. *
* using .sympath and .sympath+ *
*********************************************************************
Unable to load image ntoskrnl.exe
*** WARNING: Unable to verify timestamp for ntoskrnl.exe
*** ERROR: Module load completed but symbols could not be loaded for ntoskrnl.ex
e
Loading Kernel Symbols
................................................................................
........................................
Loading unloaded module list
.................
Loading User Symbols
The call to LoadLibrary(ext) failed, Win32 error 2
"The system cannot find the file specified."
Please check your debugger configuration and/or network access.
The call to LoadLibrary(exts) failed, Win32 error 2
"The system cannot find the file specified."
Please check your debugger configuration and/or network access.
The call to LoadLibrary(kext) failed, Win32 error 2
"The system cannot find the file specified."
Please check your debugger configuration and/or network access.
The call to LoadLibrary(kdexts) failed, Win32 error 2
"The system cannot find the file specified."
Please check your debugger configuration and/or network access.
The call to LoadLibrary(ext) failed, Win32 error 2
"The system cannot find the file specified."
Please check your debugger configuration and/or network access.
The call to LoadLibrary(exts) failed, Win32 error 2
"The system cannot find the file specified."
Please check your debugger configuration and/or network access.
The call to LoadLibrary(kext) failed, Win32 error 2
"The system cannot find the file specified."
Please check your debugger configuration and/or network access.
The call to LoadLibrary(kdexts) failed, Win32 error 2
"The system cannot find the file specified."
Please check your debugger configuration and/or network access.
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Bugcheck code 1000000A
Arguments 00000008 d0000002 00000000 808408de
ChildEBP RetAddr Args to Child
WARNING: Stack unwind information not available. Following frames may be wrong.
808a33e8 8083dbf1 8a354c80 808a3404 8a7480e0 nt+0x408de
Unable to load image atapi.sys
*** WARNING: Unable to verify timestamp for atapi.sys
*** ERROR: Module load completed but symbols could not be loaded for atapi.sys
808a3428 f7389faa 8a6d05d0 00000000 00000001 nt+0x3dbf1
808a345c 8082e109 8a748028 89410b38 89410b38 atapi+0x7faa
808a3480 f7389ddc 8a748028 89410b38 00000000 nt+0x2e109
808a34b0 80840153 8a748028 89410b38 8a726e50 atapi+0x7ddc
808a34c4 f73885be 00000000 8950e460 00000001 nt+0x40153
808a34dc f738a12f f73893aa 8950e460 8a726e50 atapi+0x65be
808a34fc f738a90c 8a726e50 8a5323b0 8a726ef8 atapi+0x812f
808a352c f738ac94 8a35a008 8a726ef8 808a35a7 atapi+0x890c
808a35a8 8083d99a 8a74809c 8a748028 00000000 atapi+0x8c94
808a3600 80839b2f 00000000 0000000e 00000000 nt+0x3d99a
808a6b40 00000000 808a6b48 808a6b48 808a6b50 nt+0x39b2f
----- 32 bit Kernel Mini Dump Analysis
DUMP_HEADER32:
MajorVersion 0000000f
MinorVersion 00000ece
DirectoryTableBase 00039000
PfnDataBase 81800000
PsLoadedModuleList 808af9c8
PsActiveProcessHead 808b5be8
MachineImageType 0000014c
NumberProcessors 00000002
BugCheckCode 1000000a
BugCheckParameter1 00000008
BugCheckParameter2 d0000002
BugCheckParameter3 00000000
BugCheckParameter4 808408de
PaeEnabled 00000000
KdDebuggerDataBlock 8089d3e0
SecondaryDataState 00000000
ProductType 00000002
SuiteMask 00000131
MiniDumpFields 00000dff
TRIAGE_DUMP32:
ServicePackBuild 00000200
SizeOfDump 00010000
ValidOffset 0000fffc
ContextOffset 00000320
ExceptionOffset 000007d0
MmOffset 00001068
UnloadedDriversOffset 000010a0
PrcbOffset 00001878
ProcessOffset 00002738
ThreadOffset 000029b0
CallStackOffset 00002c00
SizeOfCallStack 00000558
DriverListOffset 00003470
DriverCount 00000079
StringPoolOffset 00005860
StringPoolSize 00001090
BrokenDriverOffset 00000000
TriageOptions 00000041
TopOfStack 808a3358
DebuggerDataOffset 00003158
DebuggerDataSize 00000318
DataBlocksOffset 000068f0
DataBlocksCount 00000004
d0000000 - d0000fff at offset 00006930
80840000 - 80840fff at offset 00007930
8a354000 - 8a354fff at offset 00008930
8a7dd000 - 8a7ddfff at offset 00009930
Max offset a930, d6d0 from end of file