BSOD à l'arrêt de l'ordinateur et redémarrage du portable

rodepumps Messages postés 55 Statut Membre -  
rodepumps Messages postés 55 Statut Membre -
Bonjour,

Merci de votre aide tout d'abord :)

Voici mon soucis :

A l'arrêt d'un Windows XP sp3, le portable tape un BSOD dont voici le rapport du journal d'évènements système :
Type de l'événement :	Erreur
Source de l'événement : System Error
Catégorie de l'événement : (102)
ID de l'événement : 1003
Date : 27/03/2014
Heure : 15:26:45
Utilisateur : N/A
Ordinateur : POEMBLGJPG
Description :
Code erreur 00000044, paramètre 1 84dbe258, paramètre 2 00001bc0, paramètre 3 00000000, paramètre 4 00000000.

Pour plus d'informations, consultez le centre Aide et support à l'adresse http://go.microsoft.com/fwlink/events.asp.
Données :
0000: 53 79 73 74 65 6d 20 45 System E
0008: 72 72 6f 72 20 20 45 72 rror Er
0010: 72 6f 72 20 63 6f 64 65 ror code
0018: 20 30 30 30 30 30 30 34 0000004
0020: 34 20 20 50 61 72 61 6d 4 Param
0028: 65 74 65 72 73 20 38 34 eters 84
0030: 64 62 65 32 35 38 2c 20 dbe258,
0038: 30 30 30 30 31 62 63 30 00001bc0
0040: 2c 20 30 30 30 30 30 30 , 000000
0048: 30 30 2c 20 30 30 30 30 00, 0000
0050: 30 30 30 30 0000


Avez-vous une idée de ce que ça pourrait être ? Après mes quelques recherches, l'utilisateur concerné m'a parlé d'un classpnp.sys qui apparaissait. J'ai vu quelques pages de solution avec des DLL à rajouter mais je pense que ça n'aidera pas. Et je n'ai pas encore récupérer le Dump.

Merci d'avance de votre aide,

5 réponses

  1. rodepumps Messages postés 55 Statut Membre 5
     
    Et voici le fichier dump analysé par windbg


    Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
    Copyright (c) Microsoft Corporation. All rights reserved.

    Loading Dump File [C:\Users\rode\Desktop\Mini032714-08.dmp]
    Mini Kernel Dump File: Only registers and stack trace are available

    Symbol search path is: *** Invalid ***
    ****************************************************************************
    * Symbol loading may be unreliable without a symbol search path. *
    * Use .symfix to have the debugger choose a symbol path. *
    * After setting your symbol path, use .reload to refresh symbol locations. *
    ****************************************************************************
    Executable search path is:
    *********************************************************************
    * Symbols can not be loaded because symbol path is not initialized. *
    * *
    * The Symbol Path can be set by: *
    * using the _NT_SYMBOL_PATH environment variable. *
    * using the -y <symbol_path> argument when starting the debugger. *
    * using .sympath and .sympath+ *
    *********************************************************************
    Unable to load image ntoskrnl.exe, Win32 error 0n2
    *** WARNING: Unable to verify timestamp for ntoskrnl.exe
    *** ERROR: Module load completed but symbols could not be loaded for ntoskrnl.exe
    Windows XP Kernel Version 2600 (Service Pack 3) MP (4 procs) Free x86 compatible
    Product: WinNt, suite: TerminalServer SingleUserTS
    Machine Name:
    Kernel base = 0x804d7000 PsLoadedModuleList = 0x8055d720
    Debug session time: Thu Mar 27 15:31:36.637 2014 (UTC + 1:00)
    System Uptime: 0 days 0:06:45.798
    *********************************************************************
    * Symbols can not be loaded because symbol path is not initialized. *
    * *
    * The Symbol Path can be set by: *
    * using the _NT_SYMBOL_PATH environment variable. *
    * using the -y <symbol_path> argument when starting the debugger. *
    * using .sympath and .sympath+ *
    *********************************************************************
    Unable to load image ntoskrnl.exe, Win32 error 0n2
    *** WARNING: Unable to verify timestamp for ntoskrnl.exe
    *** ERROR: Module load completed but symbols could not be loaded for ntoskrnl.exe
    Loading Kernel Symbols
    ...............................................................
    ................................................................
    .......................
    Loading User Symbols
    Loading unloaded module list
    ..............
    *******************************************************************************
    * *
    * Bugcheck Analysis *
    * *
    *******************************************************************************

    Use !analyze -v to get detailed debugging information.

    BugCheck 1000000A, {0, 2, 1, 804ff879}

    ***** Kernel symbols are WRONG. Please fix symbols to do analysis.

    *************************************************************************
    *** ***
    *** ***
    *** Your debugger is not using the correct symbols ***
    *** ***
    *** In order for this command to work properly, your symbol path ***
    *** must point to .pdb files that have full type information. ***
    *** ***
    *** Certain .pdb files (such as the public OS symbols) do not ***
    *** contain the required information. Contact the group that ***
    *** provided you with these symbols if you need this command to ***
    *** work. ***
    *** ***
    *** Type referenced: nt!_KPRCB ***
    *** ***
    *************************************************************************
    *************************************************************************
    *** ***
    *** ***
    *** Your debugger is not using the correct symbols ***
    *** ***
    *** In order for this command to work properly, your symbol path ***
    *** must point to .pdb files that have full type information. ***
    *** ***
    *** Certain .pdb files (such as the public OS symbols) do not ***
    *** contain the required information. Contact the group that ***
    *** provided you with these symbols if you need this command to ***
    *** work. ***
    *** ***
    *** Type referenced: nt!KPRCB ***
    *** ***
    *************************************************************************
    *************************************************************************
    *** ***
    *** ***
    *** Your debugger is not using the correct symbols ***
    *** ***
    *** In order for this command to work properly, your symbol path ***
    *** must point to .pdb files that have full type information. ***
    *** ***
    *** Certain .pdb files (such as the public OS symbols) do not ***
    *** contain the required information. Contact the group that ***
    *** provided you with these symbols if you need this command to ***
    *** work. ***
    *** ***
    *** Type referenced: nt!_KPRCB ***
    *** ***
    *************************************************************************
    *************************************************************************
    *** ***
    *** ***
    *** Your debugger is not using the correct symbols ***
    *** ***
    *** In order for this command to work properly, your symbol path ***
    *** must point to .pdb files that have full type information. ***
    *** ***
    *** Certain .pdb files (such as the public OS symbols) do not ***
    *** contain the required information. Contact the group that ***
    *** provided you with these symbols if you need this command to ***
    *** work. ***
    *** ***
    *** Type referenced: nt!KPRCB ***
    *** ***
    *************************************************************************
    *************************************************************************
    *** ***
    *** ***
    *** Your debugger is not using the correct symbols ***
    *** ***
    *** In order for this command to work properly, your symbol path ***
    *** must point to .pdb files that have full type information. ***
    *** ***
    *** Certain .pdb files (such as the public OS symbols) do not ***
    *** contain the required information. Contact the group that ***
    *** provided you with these symbols if you need this command to ***
    *** work. ***
    *** ***
    *** Type referenced: nt!_KPRCB ***
    *** ***
    *************************************************************************
    *************************************************************************
    *** ***
    *** ***
    *** Your debugger is not using the correct symbols ***
    *** ***
    *** In order for this command to work properly, your symbol path ***
    *** must point to .pdb files that have full type information. ***
    *** ***
    *** Certain .pdb files (such as the public OS symbols) do not ***
    *** contain the required information. Contact the group that ***
    *** provided you with these symbols if you need this command to ***
    *** work. ***
    *** ***
    *** Type referenced: nt!_KPRCB ***
    *** ***
    *************************************************************************
    *************************************************************************
    *** ***
    *** ***
    *** Your debugger is not using the correct symbols ***
    *** ***
    *** In order for this command to work properly, your symbol path ***
    *** must point to .pdb files that have full type information. ***
    *** ***
    *** Certain .pdb files (such as the public OS symbols) do not ***
    *** contain the required information. Contact the group that ***
    *** provided you with these symbols if you need this command to ***
    *** work. ***
    *** ***
    *** Type referenced: nt!_KPRCB ***
    *** ***
    *************************************************************************
    Probably caused by : ntoskrnl.exe ( nt+28879 )

    Followup: MachineOwner
    ---------

    0
  2. rodepumps Messages postés 55 Statut Membre 5
     
    Et encore une petite suite :

     kd> !analyze -v
    *******************************************************************************
    * *
    * Bugcheck Analysis *
    * *
    *******************************************************************************

    IRQL_NOT_LESS_OR_EQUAL (a)
    An attempt was made to access a pageable (or completely invalid) address at an
    interrupt request level (IRQL) that is too high. This is usually
    caused by drivers using improper addresses.
    If a kernel debugger is available get the stack backtrace.
    Arguments:
    Arg1: 00000000, memory referenced
    Arg2: 00000002, IRQL
    Arg3: 00000001, bitfield :
    bit 0 : value 0 = read operation, 1 = write operation
    bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status)
    Arg4: 804ff879, address which referenced memory


    J'ai juste un soucis : Les symboles ne sont pas actif et une grosse partie du rapport plante donc... Jamais compris comment les ajouter étant dans un AD avec des GPO, McAfee (une merde)
    0
  3. rodepumps Messages postés 55 Statut Membre 5
     
    Bonjour Bourbons,

    Merci de ton aide tout d'abord :)

    J'ai déjà testé ça ainsi qu'un
    sfc /scannow
    en DOS avec le cd xp sp3. ==> Rien n'y fait.

    Le problème n'est pas... Dérangeant dans l'utilisation du PC en soi.
    Le portable est sur une docking station, quand le portable est sur la docking, pas de soucis : Il s'éteint et s'allume tranquillement.

    Dès qu'on le sort de la docking ==> branché ou pas au secteur ==> à chaque arrêt du portable ==> BSOD sur fenêtre réduite. ====> Ce qui me fait penser à un problème d'alimentation, de la carte vidéo ou bien de tout le portable ... batterie un peu défect... à tester.
    0
    1. bourbons
       
      Alors là, le coup de la station d'accueil ??
      Je connais pas.

      Exécutes: msconfig
      Et là dans l'onglet DÉMARRAGE tu vérifies si il n'y a pas quelque chose à décocher,
      surtout au niveau de la station, pour tester ?
      0
    2. rodepumps Messages postés 55 Statut Membre 5
       
      Mmmm c'est à tester :)
      0
  4. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  5. rodepumps Messages postés 55 Statut Membre 5
     
    Peut-être en changeant de station d'accueil. A tester.
    0
    1. bourbons
       
      On attend de tes nouvelles ;)
      0
    2. rodepumps Messages postés 55 Statut Membre 5
       
      ahaha ;-) Merci, L'utilisateur est parti en mission, je vous recontacte fin de semaine :)

      Thanks,
      0