Click here to Skip to main content
15,899,679 members
Home / Discussions / System Admin
   

System Admin

 
QuestionWindows Indexing server catalogs Pin
akshayswaroop19-Dec-05 19:32
akshayswaroop19-Dec-05 19:32 
AnswerRe: Windows Indexing server catalogs Pin
Mekong River19-Dec-05 22:37
Mekong River19-Dec-05 22:37 
QuestionCrash dump analysis Pin
eric_haiara19-Dec-05 19:10
eric_haiara19-Dec-05 19:10 
AnswerRe: Crash dump analysis Pin
Ted Ferenc19-Dec-05 21:50
Ted Ferenc19-Dec-05 21:50 
GeneralRe: Crash dump analysis Pin
eric_haiara20-Dec-05 17:07
eric_haiara20-Dec-05 17:07 
GeneralRe: Crash dump analysis Pin
Ted Ferenc20-Dec-05 21:42
Ted Ferenc20-Dec-05 21:42 
AnswerRe: Crash dump analysis Pin
Mike Dimmick20-Dec-05 3:36
Mike Dimmick20-Dec-05 3:36 
GeneralRe: Crash dump analysis Pin
eric_haiara20-Dec-05 17:03
eric_haiara20-Dec-05 17:03 
Thank you Mike for the quick response. I did a ram test and it passed. Its was done in windows though. My hardware is Dell 2650 and it has hardware monitor software(open manage) which I can be able to see what is failing and what is not. It seems all is fine and testing the Ram from this program runs success. In the event log there are continuing reports of print spooler services restarting. From the user dump files on the same box I am extracting the dump files showing below. I am suspecting they are related but not to sure why spoolsv servier is not mentioned on the privious dump. Can you be able to see any relation ore are they two different. One hardware issue and the other print driver issue?

thanks once again
Eric
---------------------------

Loading Dump File [\\bfpmi01\c$\Documents and Settings\All Users\Documents\DrWatson\user old2.dmp]
User Dump File: Only application data is available

Windows 2000 Version 2195 UP Free x86 compatible
Product: Server, suite: TerminalServer SingleUserTS
Debug session time: Mon Dec 19 16:43:15.128 2005 (GMT+10)
System Uptime: 7 days 5:11:53.921
Process Uptime: not available
Symbol search path is: srv*\\bfpmi01\c$\winnt\symbols*http://msdl.microsoft.com/download/symbols
Executable search path is: \\bfpmi01\c$\winnt\;\\bfpmi01\c$\winnt\system32\; \\bfpmi01\c$\winnt\system32\drivers\
..................................................................................................
(bec.c5c): Access violation - code c0000005 (!!! second chance !!!)
eax=0000013c ebx=027b66d0 ecx=7ffa0000 edx=0000013c esi=02828cf8 edi=00000000
eip=77f87eeb esp=01d5fe84 ebp=01d5feb8 iopl=0 nv up ei pl zr na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246
ntdll!RtlEnterCriticalSection+0xb:
77f87eeb 837a1400 cmp dword ptr [edx+0x14],0x0 ds:0023:00000150=????????
0:011> !analyze -v
*******************************************************************************
* *
* Exception Analysis *
* *
*******************************************************************************

*************************************************************************
*** ***
*** ***
*** Your debugger is not using the correct symbols ***
*** ***
*** In order for this command to work properly, your symbol path ***
*** must point to .pdb files that have full type information. ***
*** ***
*** Certain .pdb files (such as the public OS symbols) do not ***
*** contain the required information. Contact the group that ***
*** provided you with these symbols if you need this command to ***
*** work. ***
*** ***
*** Type referenced: ntdll!_PEB ***
*** ***
*************************************************************************
*** WARNING: Unable to verify checksum for HPBHealr.dll
*** ERROR: Symbol file could not be found. Defaulted to export symbols for HPBHealr.dll -
*** WARNING: Unable to verify checksum for hpz2ku12.dll
*** ERROR: Symbol file could not be found. Defaulted to export symbols for hpz2ku12.dll -
*** ERROR: Symbol file could not be found. Defaulted to export symbols for HPBF042G.DLL -

FAULTING_IP:
ntdll!RtlEnterCriticalSection+b
77f87eeb 837a1400 cmp dword ptr [edx+0x14],0x0

EXCEPTION_RECORD: ffffffff -- (.exr ffffffffffffffff)
ExceptionAddress: 77f87eeb (ntdll!RtlEnterCriticalSection+0x0000000b)
ExceptionCode: c0000005 (Access violation)
ExceptionFlags: 00000000
NumberParameters: 2
Parameter[0]: 00000000
Parameter[1]: 00000150
Attempt to read from address 00000150

FAULTING_THREAD: 00000c5c

DEFAULT_BUCKET_ID: APPLICATION_FAULT

PROCESS_NAME: spoolsv.exe

ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at "0x%08lx" referenced memory at "0x%08lx". The memory could not be "%s".

READ_ADDRESS: 00000150

BUGCHECK_STR: ACCESS_VIOLATION

LAST_CONTROL_TRANSFER: from 77d56bb4 to 77f87eeb

STACK_TEXT:
01d5fe80 77d56bb4 0000013c 00000000 027b65f8 ntdll!RtlEnterCriticalSection+0xb
01d5fe90 77d56b79 027b65f8 77d522b0 027b65f8 RPCRT4!OSF_ASSOCIATION::RemoveConnection+0x21
01d5fe98 77d522b0 027b65f8 77d56974 00015f90 RPCRT4!OSF_SCONNECTION::FreeObject+0xf
01d5fea0 77d56974 00015f90 027b65f8 00000000 RPCRT4!REFERENCED_OBJECT::RemoveReference+0x18
01d5feb8 77d54738 00015f90 00085480 7c57b594 RPCRT4!OSF_SCONNECTION::AbortConnection+0x87
01d5ff10 77d533a8 c0021012 00000000 000006d2 RPCRT4!OSF_SCONNECTION::ProcessReceiveComplete+0x2ab
01d5ff20 77d4f99c 00085480 0000000c c0021012 RPCRT4!ProcessConnectionServerReceivedEvent+0x1b
01d5ff74 77d43dd7 77d4e003 00085480 00000000 RPCRT4!LOADABLE_TRANSPORT::ProcessIOEvents+0x14a
01d5ff78 77d4e003 00085480 00000000 00000000 RPCRT4!ProcessIOEventsWrapper+0x9
01d5ffa8 77d4af16 0009bfc0 01d5ffec 7c57b388 RPCRT4!BaseCachedThreadRoutine+0x4f
01d5ffb4 7c57b388 0009bfe8 00000000 00000000 RPCRT4!ThreadStartRoutine+0x18
01d5ffec 00000000 77d4aefc 0009bfe8 00000000 KERNEL32!BaseThreadStart+0x52


FOLLOWUP_IP:
RPCRT4!OSF_ASSOCIATION::RemoveConnection+21
77d56bb4 ff4e1c dec dword ptr [esi+0x1c]

SYMBOL_STACK_INDEX: 1

FOLLOWUP_NAME: MachineOwner

SYMBOL_NAME: RPCRT4!OSF_ASSOCIATION::RemoveConnection+21

MODULE_NAME: RPCRT4

IMAGE_NAME: RPCRT4.dll

DEBUG_FLR_IMAGE_TIMESTAMP: 425670f4

STACK_COMMAND: ~11s ; kb

FAILURE_BUCKET_ID: ACCESS_VIOLATION_RPCRT4!OSF_ASSOCIATION::RemoveConnection+21

BUCKET_ID: ACCESS_VIOLATION_RPCRT4!OSF_ASSOCIATION::RemoveConnection+21

Followup: MachineOwner
---------

0:011> ~11s
eax=0000013c ebx=027b66d0 ecx=7ffa0000 edx=0000013c esi=02828cf8 edi=00000000
eip=77f87eeb esp=01d5fe84 ebp=01d5feb8 iopl=0 nv up ei pl zr na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246
ntdll!RtlEnterCriticalSection+0xb:
77f87eeb 837a1400 cmp dword ptr [edx+0x14],0x0 ds:0023:00000150=????????
0:011> ;
0:011> kb
ChildEBP RetAddr Args to Child
01d5fe80 77d56bb4 0000013c 00000000 027b65f8 ntdll!RtlEnterCriticalSection+0xb
01d5fe90 77d56b79 027b65f8 77d522b0 027b65f8 RPCRT4!OSF_ASSOCIATION::RemoveConnection+0x21
01d5fe98 77d522b0 027b65f8 77d56974 00015f90 RPCRT4!OSF_SCONNECTION::FreeObject+0xf
01d5fea0 77d56974 00015f90 027b65f8 00000000 RPCRT4!REFERENCED_OBJECT::RemoveReference+0x18
01d5feb8 77d54738 00015f90 00085480 7c57b594 RPCRT4!OSF_SCONNECTION::AbortConnection+0x87
01d5ff10 77d533a8 c0021012 00000000 000006d2 RPCRT4!OSF_SCONNECTION::ProcessReceiveComplete+0x2ab
01d5ff20 77d4f99c 00085480 0000000c c0021012 RPCRT4!ProcessConnectionServerReceivedEvent+0x1b
01d5ff74 77d43dd7 77d4e003 00085480 00000000 RPCRT4!LOADABLE_TRANSPORT::ProcessIOEvents+0x14a
01d5ff78 77d4e003 00085480 00000000 00000000 RPCRT4!ProcessIOEventsWrapper+0x9
01d5ffa8 77d4af16 0009bfc0 01d5ffec 7c57b388 RPCRT4!BaseCachedThreadRoutine+0x4f
01d5ffb4 7c57b388 0009bfe8 00000000 00000000 RPCRT4!ThreadStartRoutine+0x18
01d5ffec 00000000 77d4aefc 0009bfe8 00000000 KERNEL32!BaseThreadStart+0x52


Myhope
GeneralRe: Crash dump analysis Pin
Mike Dimmick21-Dec-05 1:54
Mike Dimmick21-Dec-05 1:54 
AnswerRe: Crash dump analysis Pin
Mekong River13-Feb-06 5:29
Mekong River13-Feb-06 5:29 
GeneralRe: Crash dump analysis Pin
eric_haiara13-Feb-06 12:10
eric_haiara13-Feb-06 12:10 
Questionghost key strokes (windows) Pin
vbms19-Dec-05 12:10
vbms19-Dec-05 12:10 
QuestionBluetooth mobile phone Pin
Mekong River19-Dec-05 4:33
Mekong River19-Dec-05 4:33 
AnswerRe: Bluetooth mobile phone Pin
Indivara23-Dec-05 5:41
professionalIndivara23-Dec-05 5:41 
GeneralRe: Bluetooth mobile phone Pin
Mekong River23-Dec-05 15:53
Mekong River23-Dec-05 15:53 
GeneralRe: Bluetooth mobile phone Pin
Mekong River25-Dec-05 5:57
Mekong River25-Dec-05 5:57 
GeneralRe: Bluetooth mobile phone Pin
Indivara26-Dec-05 4:38
professionalIndivara26-Dec-05 4:38 
GeneralRe: Bluetooth mobile phone Pin
Mekong River26-Dec-05 4:59
Mekong River26-Dec-05 4:59 
QuestionRun programs at shutdown Pin
JimmyRopes17-Dec-05 16:57
professionalJimmyRopes17-Dec-05 16:57 
AnswerRe: Run programs at shutdown Pin
Dave Kreskowiak17-Dec-05 17:31
mveDave Kreskowiak17-Dec-05 17:31 
GeneralRe: Run programs at shutdown Pin
JimmyRopes17-Dec-05 19:32
professionalJimmyRopes17-Dec-05 19:32 
GeneralRe: Run programs at shutdown Pin
Dave Kreskowiak18-Dec-05 7:06
mveDave Kreskowiak18-Dec-05 7:06 
GeneralRe: Run programs at shutdown Pin
JimmyRopes18-Dec-05 9:27
professionalJimmyRopes18-Dec-05 9:27 
GeneralRe: Run programs at shutdown Pin
Mekong River19-Dec-05 14:19
Mekong River19-Dec-05 14:19 
GeneralRe: Run programs at shutdown Pin
JimmyRopes19-Dec-05 17:50
professionalJimmyRopes19-Dec-05 17:50 

General General    News News    Suggestion Suggestion    Question Question    Bug Bug    Answer Answer    Joke Joke    Praise Praise    Rant Rant    Admin Admin   

Use Ctrl+Left/Right to switch messages, Ctrl+Up/Down to switch threads, Ctrl+Shift+Left/Right to switch pages.