1. deadmz

    deadmz New Member

    Joined:
    Jul 18, 2016
    Messages:
    14
    Здравствуйте.

    Последнее время участились BSOD с ошибкой bad_pool_header

    Windbg выдал по дампу такую информацию:

    Code:
    *** WARNING: Unable to verify timestamp for adgnetworktdidrv.sys
    *** ERROR: Module load completed but symbols could not be loaded for adgnetworktdidrv.sys
    Probably caused by : Pool_Corruption ( nt!ExDeferredFreePool+855 )
    
    Followup:     Pool_corruption
    
    *******************************************************************************
    * *
    * Bugcheck Analysis *
    * *
    *******************************************************************************

    BAD_POOL_HEADER (19)
    The pool is already corrupt at the time of the current request.
    This may or may not be due to the caller.
    The internal pool links must be walked to figure out a possible cause of
    the problem, and then special pool applied to the suspect tags or the driver
    verifier to a suspect driver.
    Arguments:
    Arg1: 0000000000000003, the pool freelist is corrupt.
    Arg2: ffffe001baeb7010, the pool entry being checked.
    Arg3: 0000000000000000, the read back flink freelist value (should be the same as 2).
    Arg4: ffffe001baeb7010, the read back blink freelist value (should be the same as 2).

    Debugging Details:
    ------------------


    KEY_VALUES_STRING: 1


    STACKHASH_ANALYSIS: 1

    TIMELINE_ANALYSIS: 1


    DUMP_CLASS: 1

    DUMP_QUALIFIER: 400

    BUILD_VERSION_STRING: 9600.19202.amd64fre.winblue_ltsb.181110-0600

    DUMP_TYPE: 2

    BUGCHECK_P1: 3

    BUGCHECK_P2: ffffe001baeb7010

    BUGCHECK_P3: 0

    BUGCHECK_P4: ffffe001baeb7010

    BUGCHECK_STR: 0x19_3

    CPU_COUNT: 4

    CPU_MHZ: 8f7

    CPU_VENDOR: GenuineIntel

    CPU_FAMILY: 6

    CPU_MODEL: 45

    CPU_STEPPING: 1

    CUSTOMER_CRASH_COUNT: 1

    DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT

    PROCESS_NAME: chrome.exe

    CURRENT_IRQL: 2

    ANALYSIS_SESSION_HOST: ******

    ANALYSIS_SESSION_TIME: 12-19-2018 18:05:22.0942

    ANALYSIS_VERSION: 10.0.17763.1 amd64fre

    LAST_CONTROL_TRANSFER: from fffff80071d19265 to fffff80071bcb2a0

    STACK_TEXT:
    ffffd000`2157cd08 fffff800`71d19265 : 00000000`00000019 00000000`00000003 ffffe001`baeb7010 00000000`00000000 : nt!KeBugCheckEx
    ffffd000`2157cd10 fffff800`e73decb9 : ffffe001`00000000 ffffe001`b9043300 00000000`8959cd00 fffff800`00000000 : nt!ExDeferredFreePool+0x855
    ffffd000`2157cde0 fffff800`e71e4c9b : 69746365`6e6e6f43 726f7073`6e617254 73736572`64644174 00000000`00000000 : tdx!TdxTdiDispatchCreate+0x139
    ffffd000`2157ce80 69746365`6e6e6f43 : 726f7073`6e617254 73736572`64644174 00000000`00000000 ffffe001`b11c3b30 : adgnetworktdidrv+0x1c9b
    ffffd000`2157ce88 726f7073`6e617254 : 73736572`64644174 00000000`00000000 ffffe001`b11c3b30 fffff800`e71e5096 : 0x69746365`6e6e6f43
    ffffd000`2157ce90 73736572`64644174 : 00000000`00000000 ffffe001`b11c3b30 fffff800`e71e5096 ffffe001`b11c3c48 : 0x726f7073`6e617254
    ffffd000`2157ce98 00000000`00000000 : ffffe001`b11c3b30 fffff800`e71e5096 ffffe001`b11c3c48 ffffd000`2157d1f1 : 0x73736572`64644174


    THREAD_SHA1_HASH_MOD_FUNC: eb0291a73cc89fdc7da665cc3d3b6c4bf6ea1ff6

    THREAD_SHA1_HASH_MOD_FUNC_OFFSET: 74c69c0077d9a164231d198ebe78e1d9f1bd6f32

    THREAD_SHA1_HASH_MOD: 49110351523057fb6c3118bfc6273d37d4ffa5fd

    FOLLOWUP_IP:
    nt!ExDeferredFreePool+855
    fffff800`71d19265 cc int 3

    FAULT_INSTR_CODE: 6405ffcc

    SYMBOL_STACK_INDEX: 1

    SYMBOL_NAME: nt!ExDeferredFreePool+855

    FOLLOWUP_NAME: Pool_corruption

    IMAGE_NAME: Pool_Corruption

    DEBUG_FLR_IMAGE_TIMESTAMP: 0

    IMAGE_VERSION: 6.3.9600.19202

    MODULE_NAME: Pool_Corruption

    STACK_COMMAND: .thread ; .cxr ; kb

    BUCKET_ID_FUNC_OFFSET: 855

    FAILURE_BUCKET_ID: 0x19_3_nt!ExDeferredFreePool

    BUCKET_ID: 0x19_3_nt!ExDeferredFreePool

    PRIMARY_PROBLEM_CLASS: 0x19_3_nt!ExDeferredFreePool

    TARGET_TIME: 2018-12-19T14:13:40.000Z

    OSBUILD: 9600

    OSSERVICEPACK: 19202

    SERVICEPACK_NUMBER: 0

    OS_REVISION: 0

    SUITE_MASK: 784

    PRODUCT_TYPE: 1

    OSPLATFORM_TYPE: x64

    OSNAME: Windows 8.1

    OSEDITION: Windows 8.1 WinNt TerminalServer SingleUserTS Personal

    OS_LOCALE:

    USER_LCID: 0

    OSBUILD_TIMESTAMP: 2018-11-10 19:00:47

    BUILDDATESTAMP_STR: 181110-0600

    BUILDLAB_STR: winblue_ltsb

    BUILDOSVER_STR: 6.3.9600.19202.amd64fre.winblue_ltsb.181110-0600

    ANALYSIS_SESSION_ELAPSED_TIME: 5af

    ANALYSIS_SOURCE: KM

    FAILURE_ID_HASH_STRING: km:0x19_3_nt!exdeferredfreepool

    FAILURE_ID_HASH: {d7eb5691-fd6e-cdc5-78e1-c776b0ab9fcd}

    Followup: Pool_corruption
    ---------


    WFP отключен.

    Антивирус: NIS

    Как то это можно исправить?

    Спасибо.