Hola
Me sale una pantalla azul en windows XP.Tengo volcado de memoria completo, me hace un fichero MEMORY.DMP lo leo con el Dump y me sale esto
Microsoft (R) Windows Debugger Version 6.5.0003.7
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [C:\WINDOWS\MEMORY.DMP]
Kernel Complete Dump File: Full address space is available
Symbol search path is: SRV*c:\websymbols*
http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows XP Kernel Version 2600 (Service Pack 2) UP Free x86 compatible
Product: WinNt, suite: TerminalServer SingleUserTS Personal
Built by: 2600.xpsp_sp2_rtm.040803-2158
Kernel base = 0x804d7000 PsLoadedModuleList = 0x805531a0
Debug session time: Tue Feb 7 21:10:56.046 2006 (GMT+1)
System Uptime: 0 days 2:21:24.611
Loading Kernel Symbols
..................................................................................................................
Loading unloaded module list
...........
Loading User Symbols
..........................................
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck D1, {80cced34, ff, 8, 80cced34}
*** WARNING: Unable to verify checksum for ashWebSv.exe
*** ERROR: Module load completed but symbols could not be loaded for ashWebSv.exe
Probably caused by : afd.sys ( afd!AfdCopyMdlChainToBufferAvoidMapping+6f )
Followup: MachineOwner
Luego lo analizo y sale...
kd> 0: kd> !analyze -v
^ Syntax error in '0: kd> !analyze -v'
kd> kd> !analyze -v
Numeric expression missing from '> !analyze -v'
kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
DRIVER_IRQL_NOT_LESS_OR_EQUAL (d1)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high. This is usually
caused by drivers using improper addresses.
If kernel debugger is available get stack backtrace.
Arguments:
Arg1: 80cced34, memory referenced
Arg2: 000000ff, IRQL
Arg3: 00000008, value 0 = read operation, 1 = write operation
Arg4: 80cced34, address which referenced memory
Debugging Details:
------------------
WRITE_ADDRESS: 80cced34
CURRENT_IRQL: ff
FAULTING_IP:
+ffffffff80cced34
80cced34 ?? ???
DEFAULT_BUCKET_ID: DRIVER_FAULT
BUGCHECK_STR: 0xD1
LAST_CONTROL_TRANSFER: from b2f03dfb to 80cced34
TRAP_FRAME: b2401abc -- (.trap ffffffffb2401abc)
ErrCode = 00000010
eax=0000a115 ebx=85cfbbe0 ecx=0000023c edx=000000b5 esi=03304c1c edi=85cbe824
eip=80cced34 esp=b2401b30 ebp=b2401b6c iopl=0 nv up di pl nz ac pe nc
cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00010012
80cced34 ?? ???
Resetting default scope
STACK_TEXT:
WARNING: Frame IP not in any known module. Following frames may be wrong.
b2401b2c b2f03dfb 00000008 00000212 85d2d578 0x80cced34
b2401b6c b2f1758d 85cfbbe0 00000000 0000a115 afd!AfdCopyMdlChainToBufferAvoidMapping+0x6f
85cfbbe0 000a0048 85ead020 b21b5000 032fb000 afd!AfdSend+0x336
b2401c34 804eddf9 862e7030 85d2d578 806d02d0 0xa0048
b2401c44 80573b42 85d2d654 85d137a0 85d2d578 nt!IopfCallDriver+0x31
b2401c58 805749d1 862e7030 85d2d578 85d137a0 nt!IopSynchronousServiceTail+0x60
b2401d00 8056d33c 00000250 00000000 719e8159 nt!IopXxxControlFile+0x5e7
b2401d34 8053c808 00000250 00000000 719e8159 nt!NtDeviceIoControlFile+0x2a
b2401d34 7c91eb94 00000250 00000000 719e8159 nt!KiFastCallEntry+0xf8
02f0f8bc 7c91d8ef 719d5908 00000250 00000000 ntdll!KiFastSystemCallRet
02f0f8c0 719d5908 00000250 00000000 719e8159 ntdll!ZwDeviceIoControlFile+0xc
02f0f94c 71a36294 00000250 02f0f9c0 00000001 mswsock!WSPSend+0x16c
02f0f988 0040a68e 00000250 02f0f9c0 00000001 WS2_32!WSASend+0x77
02f0f9d0 0040284c 00a3de74 00000000 00a3de68 ashWebSv+0xa68e
02f0f9ec 004030e6 024e2ad0 0097b6a0 00000000 ashWebSv+0x284c
02f0fa0c 004034a3 00000001 0097b6a0 00402660 ashWebSv+0x30e6
02f0fa28 7c34218f 004049e8 03162000 024e2ad0 ashWebSv+0x34a3
02f0fa5c 0040329c 02f0faa4 024a17c0 0040fdc3 MSVCR71!free+0xc8
02f0fab8 0042c4f3 02606e08 009ddac8 02461d68 ashWebSv+0x329c
02f0fad4 0042b542 02606e08 02606e08 02461d68 ashWebSv+0x2c4f3
00000000 00000000 00000000 00000000 00000000 ashWebSv+0x2b542
FOLLOWUP_IP:
afd!AfdCopyMdlChainToBufferAvoidMapping+6f
b2f03dfb f3a5 rep movsd
SYMBOL_STACK_INDEX: 1
FOLLOWUP_NAME: MachineOwner
SYMBOL_NAME: afd!AfdCopyMdlChainToBufferAvoidMapping+6f
MODULE_NAME: afd
IMAGE_NAME: afd.sys
DEBUG_FLR_IMAGE_TIMESTAMP: 41107eb5
STACK_COMMAND: .trap ffffffffb2401abc ; kb
FAILURE_BUCKET_ID: 0xD1_W_afd!AfdCopyMdlChainToBufferAvoidMapping+6f
BUCKET_ID: 0xD1_W_afd!AfdCopyMdlChainToBufferAvoidMapping+6f
Followup: MachineOwner
---------
ALguien sabe que debo hacer para solucionar los pantallazos azules
Saludos