询问者
Server 2008 一个月内3次意外重启

问题
-
DUMP文件如下,请帮忙分析下服务器意外重启的原因,谢谢!
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
PAGE_FAULT_IN_NONPAGED_AREA (50)
Invalid system memory was referenced. This cannot be protected by try-except,
it must be protected by a Probe. Typically the address is just plain bad or it
is pointing at freed memory.
Arguments:
Arg1: e68252d8, memory referenced.
Arg2: 00000000, value 0 = read operation, 1 = write operation.
Arg3: 81fbf79f, If non-zero, the instruction address which referenced the bad memory
address.
Arg4: 00000000, (reserved)
Debugging Details:
------------------
Could not read faulting driver name
READ_ADDRESS: GetPointerFromAddress: unable to read from 81f7a874
Unable to read MiSystemVaType memory at 81f5a420
e68252d8
FAULTING_IP:
nt!CmpCheckValueList+83
81fbf79f 8b30 mov esi,dword ptr [eax]
MM_INTERNAL_CODE: 0
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: DRIVER_FAULT_SERVER_MINIDUMP
BUGCHECK_STR: 0x50
PROCESS_NAME: System
CURRENT_IRQL: 0
LAST_CONTROL_TRANSFER: from 81fbf275 to 81fbf79f
STACK_TEXT:
8dfbfa38 81fbf275 a4c78a20 00000000 e68245fc nt!CmpCheckValueList+0x83
8dfbfa8c 81fc5844 01000001 03bbd3f8 009c3f70 nt!CmpCheckKey+0x5c9
8dfbfabc 81fc5e72 a4c78a20 01000001 00000006 nt!CmpCheckRegistry2+0x8c
8dfbfb04 81fc0898 01000001 8dfbfc60 80000e9c nt!CmCheckRegistry+0xf5
8dfbfb60 81fc3007 8dfbfbb4 00000005 00000000 nt!CmpInitializeHive+0x4c1
8dfbfbd8 81fc52a7 8dfbfc60 00000000 8dfbfc4c nt!CmpInitHiveFromFile+0x19e
8dfbfc18 81fbb4cd 8dfbfc60 00000000 8dfbfc7b nt!CmpCmdHiveOpen+0x36
8dfbfd14 81fbb702 00000002 81f3b5a0 00000002 nt!CmpFlushBackupHive+0x2fd
8dfbfd38 8209b623 81f4513c 851f5828 81ee7df2 nt!CmpSyncBackupHives+0x90
8dfbfd44 81ee7df2 00000000 00000000 851f5828 nt!CmpPeriodicBackupFlushWorker+0x32
8dfbfd7c 82019242 00000000 c5e0605e 00000000 nt!ExpWorkerThread+0xfd
8dfbfdc0 81e80f4e 81ee7cf5 00000001 00000000 nt!PspSystemThreadStartup+0x9d
00000000 00000000 00000000 00000000 00000000 nt!KiThreadStartup+0x16
STACK_COMMAND: kb
FOLLOWUP_IP:
nt!CmpCheckValueList+83
81fbf79f 8b30 mov esi,dword ptr [eax]
SYMBOL_STACK_INDEX: 0
SYMBOL_NAME: nt!CmpCheckValueList+83
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrpamp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 57f7aff3
FAILURE_BUCKET_ID: 0x50_nt!CmpCheckValueList+83
BUCKET_ID: 0x50_nt!CmpCheckValueList+83
Followup: MachineOwner
---------
全部回复
-
您好,
如果问题发生之前有过更改操作,例如安装/替换硬件,安装/升级软件/驱动等,建议尝试撤销这些更改操作然后确认结果。
运行“sfc /scannow”检查修复系统文件。运行“chkdsk /f /r”检测磁盘的完整性。
>PAGE_FAULT_IN_NONPAGED_AREA (50)
可以参考以下链接中提供的说明进行排查:
https://msdn.microsoft.com/zh-cn/library/windows/hardware/ff559023(v=vs.85).aspx
如果问题依旧:
1. 打开Event Viewer - System Log,检查是否有相关的日志信息。
2. 运行“msinfo32”,提供具体的系统名称及版本信息。
3. 主要的硬件配置。
4. 提供完整的dump文件,可以上传到 OneDirve(https://onedrive.live.com/),分享后提供访问链接。
Best Regards,
Eve WangPlease remember to mark the replies as answers if they help.
If you have feedback for TechNet Subscriber Support, contact tnmff@microsoft.com.- 已建议为答案 Eve WangMicrosoft contingent staff, Moderator 2017年4月21日 3:06
-
您好!
请问现在情况如何?
如果您需要我们的继续协助,您可以随时在该帖下回复。
Best Regards,
Eve WangPlease remember to mark the replies as answers if they help.
If you have feedback for TechNet Subscriber Support, contact tnmff@microsoft.com.