none
Server 2008 一个月内3次意外重启

    问题

  • DUMP文件如下,请帮忙分析下服务器意外重启的原因,谢谢!

    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************

    PAGE_FAULT_IN_NONPAGED_AREA (50)
    Invalid system memory was referenced.  This cannot be protected by try-except,
    it must be protected by a Probe.  Typically the address is just plain bad or it
    is pointing at freed memory.
    Arguments:
    Arg1: e68252d8, memory referenced.
    Arg2: 00000000, value 0 = read operation, 1 = write operation.
    Arg3: 81fbf79f, If non-zero, the instruction address which referenced the bad memory
    address.
    Arg4: 00000000, (reserved)

    Debugging Details:
    ------------------


    Could not read faulting driver name

    READ_ADDRESS: GetPointerFromAddress: unable to read from 81f7a874
    Unable to read MiSystemVaType memory at 81f5a420
     e68252d8 

    FAULTING_IP: 
    nt!CmpCheckValueList+83
    81fbf79f 8b30            mov     esi,dword ptr [eax]

    MM_INTERNAL_CODE:  0

    CUSTOMER_CRASH_COUNT:  1

    DEFAULT_BUCKET_ID:  DRIVER_FAULT_SERVER_MINIDUMP

    BUGCHECK_STR:  0x50

    PROCESS_NAME:  System

    CURRENT_IRQL:  0

    LAST_CONTROL_TRANSFER:  from 81fbf275 to 81fbf79f

    STACK_TEXT:  
    8dfbfa38 81fbf275 a4c78a20 00000000 e68245fc nt!CmpCheckValueList+0x83
    8dfbfa8c 81fc5844 01000001 03bbd3f8 009c3f70 nt!CmpCheckKey+0x5c9
    8dfbfabc 81fc5e72 a4c78a20 01000001 00000006 nt!CmpCheckRegistry2+0x8c
    8dfbfb04 81fc0898 01000001 8dfbfc60 80000e9c nt!CmCheckRegistry+0xf5
    8dfbfb60 81fc3007 8dfbfbb4 00000005 00000000 nt!CmpInitializeHive+0x4c1
    8dfbfbd8 81fc52a7 8dfbfc60 00000000 8dfbfc4c nt!CmpInitHiveFromFile+0x19e
    8dfbfc18 81fbb4cd 8dfbfc60 00000000 8dfbfc7b nt!CmpCmdHiveOpen+0x36
    8dfbfd14 81fbb702 00000002 81f3b5a0 00000002 nt!CmpFlushBackupHive+0x2fd
    8dfbfd38 8209b623 81f4513c 851f5828 81ee7df2 nt!CmpSyncBackupHives+0x90
    8dfbfd44 81ee7df2 00000000 00000000 851f5828 nt!CmpPeriodicBackupFlushWorker+0x32
    8dfbfd7c 82019242 00000000 c5e0605e 00000000 nt!ExpWorkerThread+0xfd
    8dfbfdc0 81e80f4e 81ee7cf5 00000001 00000000 nt!PspSystemThreadStartup+0x9d
    00000000 00000000 00000000 00000000 00000000 nt!KiThreadStartup+0x16


    STACK_COMMAND:  kb

    FOLLOWUP_IP: 
    nt!CmpCheckValueList+83
    81fbf79f 8b30            mov     esi,dword ptr [eax]

    SYMBOL_STACK_INDEX:  0

    SYMBOL_NAME:  nt!CmpCheckValueList+83

    FOLLOWUP_NAME:  MachineOwner

    MODULE_NAME: nt

    IMAGE_NAME:  ntkrpamp.exe

    DEBUG_FLR_IMAGE_TIMESTAMP:  57f7aff3

    FAILURE_BUCKET_ID:  0x50_nt!CmpCheckValueList+83

    BUCKET_ID:  0x50_nt!CmpCheckValueList+83

    Followup: MachineOwner
    ---------

    2017年4月6日 6:34

全部回复

  • 您好,

    如果问题发生之前有过更改操作,例如安装/替换硬件,安装/升级软件/驱动等,建议尝试撤销这些更改操作然后确认结果。

    运行“sfc /scannow”检查修复系统文件。运行“chkdsk /f /r”检测磁盘的完整性。

    >PAGE_FAULT_IN_NONPAGED_AREA (50)
    可以参考以下链接中提供的说明进行排查:
    https://msdn.microsoft.com/zh-cn/library/windows/hardware/ff559023(v=vs.85).aspx

    如果问题依旧:
    1. 打开Event Viewer - System Log,检查是否有相关的日志信息。
    2. 运行“msinfo32”,提供具体的系统名称及版本信息。
    3. 主要的硬件配置。
    4. 提供完整的dump文件,可以上传到 OneDirvehttps://onedrive.live.com/),分享后提供访问链接。

    Best Regards,
    Eve Wang

    Please remember to mark the replies as answers if they help.
    If you have feedback for TechNet Subscriber Support, contact tnmff@microsoft.com.

    2017年4月7日 6:35
    版主
  • 您好!

    请问现在情况如何?

    如果您需要我们的继续协助,您可以随时在该帖下回复。

    Best Regards,
    Eve Wang

    Please remember to mark the replies as answers if they help.
    If you have feedback for TechNet Subscriber Support, contact tnmff@microsoft.com.

    2017年4月21日 3:06
    版主