Hello,
We have a 2003 server and it created 5 mini-dumps on 7/21 and 2 more today. I'm not able to boounce this box at will so I'm hoping someone can look at this and point me in a direction. Normally, I see a QLogic driver issue or something that jumps out at me but only MS files this time.
Thanks for the help...
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
KERNEL_MODE_EXCEPTION_NOT_HANDLED_M (1000008e)
This is a very common bugcheck. Usually the exception address pinpoints
the driver/function that caused the problem. Always note this address
as well as the link date of the driver/image that contains this address.
Some common problems are exception code 0x80000003. This means a hard
coded breakpoint or assertion was hit, but this system was booted
/NODEBUG. This is not supposed to happen as developers should never have
hardcoded breakpoints in retail code, but ...
If this happens, make sure a debugger gets connected, and the
system is booted /DEBUG. This will let us see why this breakpoint is
happening.
Arguments:
Arg1: c0000005, The exception code that was not handled
Arg2: 809413c4, The address that the exception occurred at
Arg3: ba01b8f8, Trap Frame
Arg4: 00000000
Debugging Details:
------------------
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at "0x%08lx" referenced memory at "0x%08lx". The memory could not be "%s".
FAULTING_IP:
nt!HvpGetCellMapped+97
809413c4 8b4604 mov eax,dword ptr [esi+4]
TRAP_FRAME: ba01b8f8 -- (.trap 0xffffffffba01b8f8)
ErrCode = 00000000
eax=e1021000 ebx=e101a3d0 ecx=000003b3 edx=89e1e338 esi=00000970 edi=00000000
eip=809413c4 esp=ba01b96c ebp=ba01b9e0 iopl=0 nv up ei pl nz na po nc
cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00010202
nt!HvpGetCellMapped+0x97:
809413c4 8b4604 mov eax,dword ptr [esi+4] ds:0023:00000974=????????
Resetting default scope
CUSTOMER_CRASH_COUNT: 2
DEFAULT_BUCKET_ID: DRIVER_FAULT_SERVER_MINIDUMP
BUGCHECK_STR: 0x8E
PROCESS_NAME: services.exe
CURRENT_IRQL: 0
LAST_CONTROL_TRANSFER: from 8091bfb7 to 809413c4
STACK_TEXT:
ba01b9e0 8091bfb7 e101a3d0 76697461 e101a3d0 nt!HvpGetCellMapped+0x97
ba01b9f4 8091be9e e101a3d0 76697461 d5687eec nt!HvpGetHCell+0x10
ba01ba14 808d5597 e101a6c4 76697461 00000000 nt!HvMarkCellDirty+0x5a
ba01ba64 808d541e e101a3d0 00286ee8 d5721784 nt!CmpMarkKeyValuesDirty+0x100
ba01ba80 808d5205 e101a3d0 00286ee8 d5687eec nt!CmpFreeKeyValues+0x17
ba01bae8 808d4e52 e101a3d0 0001f2a8 d54602ac nt!CmpSyncKeyValues+0x37
ba01bb2c 808d5ac2 e240e000 00000400 00000004 nt!CmpCopySyncTree2+0x1fa
ba01bb5c 808d59aa e101a3d0 000001b8 e101a3d0 nt!CmpCopySyncTree+0x4f
ba01bccc 808d5795 00010003 ba01bd64 ba01bce8 nt!CmpSaveBootControlSet+0x29e
ba01bcdc 80834d3f 00000005 ba01bd64 8083c661 nt!NtInitializeRegistry+0x5e
ba01bcdc 8083c661 00000005 ba01bd64 8083c661 nt!KiFastCallEntry+0xfc
ba01bd58 80834d3f 00000005 00e6f8b8 7c82ed54 nt!ZwInitializeRegistry+0x11
ba01bd58 7c82ed54 00000005 00e6f8b8 7c82ed54 nt!KiFastCallEntry+0xfc
WARNING: Frame IP not in any known module. Following frames may be wrong.
00e6f8b8 00000000 00000000 00000000 00000000 0x7c82ed54
STACK_COMMAND: kb
FOLLOWUP_IP:
nt!HvpGetCellMapped+97
809413c4 8b4604 mov eax,dword ptr [esi+4]
SYMBOL_STACK_INDEX: 0
SYMBOL_NAME: nt!HvpGetCellMapped+97
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 45ebe552
FAILURE_BUCKET_ID: 0x8E_nt!HvpGetCellMapped+97
BUCKET_ID: 0x8E_nt!HvpGetCellMapped+97
Followup: MachineOwner
---------
eax=e1021000 ebx=e101a3d0 ecx=000003b3 edx=89e1e338 esi=00000970 edi=00000000
eip=809413c4 esp=ba01b96c ebp=ba01b9e0 iopl=0 nv up ei pl nz na po nc
cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00010202
nt!HvpGetCellMapped+0x97:
809413c4 8b4604 mov eax,dword ptr [esi+4] ds:0023:00000974=????????
ChildEBP RetAddr Args to Child
ba01b9e0 8091bfb7 e101a3d0 76697461 e101a3d0 nt!HvpGetCellMapped+0x97 (FPO: [Non-Fpo])
ba01b9f4 8091be9e e101a3d0 76697461 d5687eec nt!HvpGetHCell+0x10 (FPO: [Non-Fpo])
ba01ba14 808d5597 e101a6c4 76697461 00000000 nt!HvMarkCellDirty+0x5a (FPO: [Non-Fpo])
ba01ba64 808d541e e101a3d0 00286ee8 d5721784 nt!CmpMarkKeyValuesDirty+0x100 (FPO: [Non-Fpo])
ba01ba80 808d5205 e101a3d0 00286ee8 d5687eec nt!CmpFreeKeyValues+0x17 (FPO: [Non-Fpo])
ba01bae8 808d4e52 e101a3d0 0001f2a8 d54602ac nt!CmpSyncKeyValues+0x37 (FPO: [Non-Fpo])
ba01bb2c 808d5ac2 e240e000 00000400 00000004 nt!CmpCopySyncTree2+0x1fa (FPO: [Non-Fpo])
ba01bb5c 808d59aa e101a3d0 000001b8 e101a3d0 nt!CmpCopySyncTree+0x4f (FPO: [Non-Fpo])
ba01bccc 808d5795 00010003 ba01bd64 ba01bce8 nt!CmpSaveBootControlSet+0x29e (FPO: [Non-Fpo])
ba01bcdc 80834d3f 00000005 ba01bd64 8083c661 nt!NtInitializeRegistry+0x5e (FPO: [Non-Fpo])
ba01bcdc 8083c661 00000005 ba01bd64 8083c661 nt!KiFastCallEntry+0xfc (FPO: [0,0] TrapFrame @ ba01bce8)
ba01bd58 80834d3f 00000005 00e6f8b8 7c82ed54 nt!ZwInitializeRegistry+0x11 (FPO: [1,0,0])
ba01bd58 7c82ed54 00000005 00e6f8b8 7c82ed54 nt!KiFastCallEntry+0xfc (FPO: [0,0] TrapFrame @ ba01bd64)
WARNING: Frame IP not in any known module. Following frames may be wrong.
00e6f8b8 00000000 00000000 00000000 00000000 0x7c82ed54
We have a 2003 server and it created 5 mini-dumps on 7/21 and 2 more today. I'm not able to boounce this box at will so I'm hoping someone can look at this and point me in a direction. Normally, I see a QLogic driver issue or something that jumps out at me but only MS files this time.
Thanks for the help...
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
KERNEL_MODE_EXCEPTION_NOT_HANDLED_M (1000008e)
This is a very common bugcheck. Usually the exception address pinpoints
the driver/function that caused the problem. Always note this address
as well as the link date of the driver/image that contains this address.
Some common problems are exception code 0x80000003. This means a hard
coded breakpoint or assertion was hit, but this system was booted
/NODEBUG. This is not supposed to happen as developers should never have
hardcoded breakpoints in retail code, but ...
If this happens, make sure a debugger gets connected, and the
system is booted /DEBUG. This will let us see why this breakpoint is
happening.
Arguments:
Arg1: c0000005, The exception code that was not handled
Arg2: 809413c4, The address that the exception occurred at
Arg3: ba01b8f8, Trap Frame
Arg4: 00000000
Debugging Details:
------------------
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at "0x%08lx" referenced memory at "0x%08lx". The memory could not be "%s".
FAULTING_IP:
nt!HvpGetCellMapped+97
809413c4 8b4604 mov eax,dword ptr [esi+4]
TRAP_FRAME: ba01b8f8 -- (.trap 0xffffffffba01b8f8)
ErrCode = 00000000
eax=e1021000 ebx=e101a3d0 ecx=000003b3 edx=89e1e338 esi=00000970 edi=00000000
eip=809413c4 esp=ba01b96c ebp=ba01b9e0 iopl=0 nv up ei pl nz na po nc
cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00010202
nt!HvpGetCellMapped+0x97:
809413c4 8b4604 mov eax,dword ptr [esi+4] ds:0023:00000974=????????
Resetting default scope
CUSTOMER_CRASH_COUNT: 2
DEFAULT_BUCKET_ID: DRIVER_FAULT_SERVER_MINIDUMP
BUGCHECK_STR: 0x8E
PROCESS_NAME: services.exe
CURRENT_IRQL: 0
LAST_CONTROL_TRANSFER: from 8091bfb7 to 809413c4
STACK_TEXT:
ba01b9e0 8091bfb7 e101a3d0 76697461 e101a3d0 nt!HvpGetCellMapped+0x97
ba01b9f4 8091be9e e101a3d0 76697461 d5687eec nt!HvpGetHCell+0x10
ba01ba14 808d5597 e101a6c4 76697461 00000000 nt!HvMarkCellDirty+0x5a
ba01ba64 808d541e e101a3d0 00286ee8 d5721784 nt!CmpMarkKeyValuesDirty+0x100
ba01ba80 808d5205 e101a3d0 00286ee8 d5687eec nt!CmpFreeKeyValues+0x17
ba01bae8 808d4e52 e101a3d0 0001f2a8 d54602ac nt!CmpSyncKeyValues+0x37
ba01bb2c 808d5ac2 e240e000 00000400 00000004 nt!CmpCopySyncTree2+0x1fa
ba01bb5c 808d59aa e101a3d0 000001b8 e101a3d0 nt!CmpCopySyncTree+0x4f
ba01bccc 808d5795 00010003 ba01bd64 ba01bce8 nt!CmpSaveBootControlSet+0x29e
ba01bcdc 80834d3f 00000005 ba01bd64 8083c661 nt!NtInitializeRegistry+0x5e
ba01bcdc 8083c661 00000005 ba01bd64 8083c661 nt!KiFastCallEntry+0xfc
ba01bd58 80834d3f 00000005 00e6f8b8 7c82ed54 nt!ZwInitializeRegistry+0x11
ba01bd58 7c82ed54 00000005 00e6f8b8 7c82ed54 nt!KiFastCallEntry+0xfc
WARNING: Frame IP not in any known module. Following frames may be wrong.
00e6f8b8 00000000 00000000 00000000 00000000 0x7c82ed54
STACK_COMMAND: kb
FOLLOWUP_IP:
nt!HvpGetCellMapped+97
809413c4 8b4604 mov eax,dword ptr [esi+4]
SYMBOL_STACK_INDEX: 0
SYMBOL_NAME: nt!HvpGetCellMapped+97
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 45ebe552
FAILURE_BUCKET_ID: 0x8E_nt!HvpGetCellMapped+97
BUCKET_ID: 0x8E_nt!HvpGetCellMapped+97
Followup: MachineOwner
---------
eax=e1021000 ebx=e101a3d0 ecx=000003b3 edx=89e1e338 esi=00000970 edi=00000000
eip=809413c4 esp=ba01b96c ebp=ba01b9e0 iopl=0 nv up ei pl nz na po nc
cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00010202
nt!HvpGetCellMapped+0x97:
809413c4 8b4604 mov eax,dword ptr [esi+4] ds:0023:00000974=????????
ChildEBP RetAddr Args to Child
ba01b9e0 8091bfb7 e101a3d0 76697461 e101a3d0 nt!HvpGetCellMapped+0x97 (FPO: [Non-Fpo])
ba01b9f4 8091be9e e101a3d0 76697461 d5687eec nt!HvpGetHCell+0x10 (FPO: [Non-Fpo])
ba01ba14 808d5597 e101a6c4 76697461 00000000 nt!HvMarkCellDirty+0x5a (FPO: [Non-Fpo])
ba01ba64 808d541e e101a3d0 00286ee8 d5721784 nt!CmpMarkKeyValuesDirty+0x100 (FPO: [Non-Fpo])
ba01ba80 808d5205 e101a3d0 00286ee8 d5687eec nt!CmpFreeKeyValues+0x17 (FPO: [Non-Fpo])
ba01bae8 808d4e52 e101a3d0 0001f2a8 d54602ac nt!CmpSyncKeyValues+0x37 (FPO: [Non-Fpo])
ba01bb2c 808d5ac2 e240e000 00000400 00000004 nt!CmpCopySyncTree2+0x1fa (FPO: [Non-Fpo])
ba01bb5c 808d59aa e101a3d0 000001b8 e101a3d0 nt!CmpCopySyncTree+0x4f (FPO: [Non-Fpo])
ba01bccc 808d5795 00010003 ba01bd64 ba01bce8 nt!CmpSaveBootControlSet+0x29e (FPO: [Non-Fpo])
ba01bcdc 80834d3f 00000005 ba01bd64 8083c661 nt!NtInitializeRegistry+0x5e (FPO: [Non-Fpo])
ba01bcdc 8083c661 00000005 ba01bd64 8083c661 nt!KiFastCallEntry+0xfc (FPO: [0,0] TrapFrame @ ba01bce8)
ba01bd58 80834d3f 00000005 00e6f8b8 7c82ed54 nt!ZwInitializeRegistry+0x11 (FPO: [1,0,0])
ba01bd58 7c82ed54 00000005 00e6f8b8 7c82ed54 nt!KiFastCallEntry+0xfc (FPO: [0,0] TrapFrame @ ba01bd64)
WARNING: Frame IP not in any known module. Following frames may be wrong.
00e6f8b8 00000000 00000000 00000000 00000000 0x7c82ed54