deadmz
New Member
Здравствуйте.
Последнее время участились BSOD с ошибкой bad_pool_header
Windbg выдал по дампу такую информацию:
WFP отключен.
Антивирус: NIS
Как то это можно исправить?
Спасибо.
Последнее время участились BSOD с ошибкой bad_pool_header
Windbg выдал по дампу такую информацию:
Code:
*** WARNING: Unable to verify timestamp for adgnetworktdidrv.sys
*** ERROR: Module load completed but symbols could not be loaded for adgnetworktdidrv.sys
Probably caused by : Pool_Corruption ( nt!ExDeferredFreePool+855 )
Followup: Pool_corruption
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
BAD_POOL_HEADER (19)
The pool is already corrupt at the time of the current request.
This may or may not be due to the caller.
The internal pool links must be walked to figure out a possible cause of
the problem, and then special pool applied to the suspect tags or the driver
verifier to a suspect driver.
Arguments:
Arg1: 0000000000000003, the pool freelist is corrupt.
Arg2: ffffe001baeb7010, the pool entry being checked.
Arg3: 0000000000000000, the read back flink freelist value (should be the same as 2).
Arg4: ffffe001baeb7010, the read back blink freelist value (should be the same as 2).
Debugging Details:
------------------
KEY_VALUES_STRING: 1
STACKHASH_ANALYSIS: 1
TIMELINE_ANALYSIS: 1
DUMP_CLASS: 1
DUMP_QUALIFIER: 400
BUILD_VERSION_STRING: 9600.19202.amd64fre.winblue_ltsb.181110-0600
DUMP_TYPE: 2
BUGCHECK_P1: 3
BUGCHECK_P2: ffffe001baeb7010
BUGCHECK_P3: 0
BUGCHECK_P4: ffffe001baeb7010
BUGCHECK_STR: 0x19_3
CPU_COUNT: 4
CPU_MHZ: 8f7
CPU_VENDOR: GenuineIntel
CPU_FAMILY: 6
CPU_MODEL: 45
CPU_STEPPING: 1
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
PROCESS_NAME: chrome.exe
CURRENT_IRQL: 2
ANALYSIS_SESSION_HOST: ******
ANALYSIS_SESSION_TIME: 12-19-2018 18:05:22.0942
ANALYSIS_VERSION: 10.0.17763.1 amd64fre
LAST_CONTROL_TRANSFER: from fffff80071d19265 to fffff80071bcb2a0
STACK_TEXT:
ffffd000`2157cd08 fffff800`71d19265 : 00000000`00000019 00000000`00000003 ffffe001`baeb7010 00000000`00000000 : nt!KeBugCheckEx
ffffd000`2157cd10 fffff800`e73decb9 : ffffe001`00000000 ffffe001`b9043300 00000000`8959cd00 fffff800`00000000 : nt!ExDeferredFreePool+0x855
ffffd000`2157cde0 fffff800`e71e4c9b : 69746365`6e6e6f43 726f7073`6e617254 73736572`64644174 00000000`00000000 : tdx!TdxTdiDispatchCreate+0x139
ffffd000`2157ce80 69746365`6e6e6f43 : 726f7073`6e617254 73736572`64644174 00000000`00000000 ffffe001`b11c3b30 : adgnetworktdidrv+0x1c9b
ffffd000`2157ce88 726f7073`6e617254 : 73736572`64644174 00000000`00000000 ffffe001`b11c3b30 fffff800`e71e5096 : 0x69746365`6e6e6f43
ffffd000`2157ce90 73736572`64644174 : 00000000`00000000 ffffe001`b11c3b30 fffff800`e71e5096 ffffe001`b11c3c48 : 0x726f7073`6e617254
ffffd000`2157ce98 00000000`00000000 : ffffe001`b11c3b30 fffff800`e71e5096 ffffe001`b11c3c48 ffffd000`2157d1f1 : 0x73736572`64644174
THREAD_SHA1_HASH_MOD_FUNC: eb0291a73cc89fdc7da665cc3d3b6c4bf6ea1ff6
THREAD_SHA1_HASH_MOD_FUNC_OFFSET: 74c69c0077d9a164231d198ebe78e1d9f1bd6f32
THREAD_SHA1_HASH_MOD: 49110351523057fb6c3118bfc6273d37d4ffa5fd
FOLLOWUP_IP:
nt!ExDeferredFreePool+855
fffff800`71d19265 cc int 3
FAULT_INSTR_CODE: 6405ffcc
SYMBOL_STACK_INDEX: 1
SYMBOL_NAME: nt!ExDeferredFreePool+855
FOLLOWUP_NAME: Pool_corruption
IMAGE_NAME: Pool_Corruption
DEBUG_FLR_IMAGE_TIMESTAMP: 0
IMAGE_VERSION: 6.3.9600.19202
MODULE_NAME: Pool_Corruption
STACK_COMMAND: .thread ; .cxr ; kb
BUCKET_ID_FUNC_OFFSET: 855
FAILURE_BUCKET_ID: 0x19_3_nt!ExDeferredFreePool
BUCKET_ID: 0x19_3_nt!ExDeferredFreePool
PRIMARY_PROBLEM_CLASS: 0x19_3_nt!ExDeferredFreePool
TARGET_TIME: 2018-12-19T14:13:40.000Z
OSBUILD: 9600
OSSERVICEPACK: 19202
SERVICEPACK_NUMBER: 0
OS_REVISION: 0
SUITE_MASK: 784
PRODUCT_TYPE: 1
OSPLATFORM_TYPE: x64
OSNAME: Windows 8.1
OSEDITION: Windows 8.1 WinNt TerminalServer SingleUserTS Personal
OS_LOCALE:
USER_LCID: 0
OSBUILD_TIMESTAMP: 2018-11-10 19:00:47
BUILDDATESTAMP_STR: 181110-0600
BUILDLAB_STR: winblue_ltsb
BUILDOSVER_STR: 6.3.9600.19202.amd64fre.winblue_ltsb.181110-0600
ANALYSIS_SESSION_ELAPSED_TIME: 5af
ANALYSIS_SOURCE: KM
FAILURE_ID_HASH_STRING: km:0x19_3_nt!exdeferredfreepool
FAILURE_ID_HASH: {d7eb5691-fd6e-cdc5-78e1-c776b0ab9fcd}
Followup: Pool_corruption
---------
* *
* Bugcheck Analysis *
* *
*******************************************************************************
BAD_POOL_HEADER (19)
The pool is already corrupt at the time of the current request.
This may or may not be due to the caller.
The internal pool links must be walked to figure out a possible cause of
the problem, and then special pool applied to the suspect tags or the driver
verifier to a suspect driver.
Arguments:
Arg1: 0000000000000003, the pool freelist is corrupt.
Arg2: ffffe001baeb7010, the pool entry being checked.
Arg3: 0000000000000000, the read back flink freelist value (should be the same as 2).
Arg4: ffffe001baeb7010, the read back blink freelist value (should be the same as 2).
Debugging Details:
------------------
KEY_VALUES_STRING: 1
STACKHASH_ANALYSIS: 1
TIMELINE_ANALYSIS: 1
DUMP_CLASS: 1
DUMP_QUALIFIER: 400
BUILD_VERSION_STRING: 9600.19202.amd64fre.winblue_ltsb.181110-0600
DUMP_TYPE: 2
BUGCHECK_P1: 3
BUGCHECK_P2: ffffe001baeb7010
BUGCHECK_P3: 0
BUGCHECK_P4: ffffe001baeb7010
BUGCHECK_STR: 0x19_3
CPU_COUNT: 4
CPU_MHZ: 8f7
CPU_VENDOR: GenuineIntel
CPU_FAMILY: 6
CPU_MODEL: 45
CPU_STEPPING: 1
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
PROCESS_NAME: chrome.exe
CURRENT_IRQL: 2
ANALYSIS_SESSION_HOST: ******
ANALYSIS_SESSION_TIME: 12-19-2018 18:05:22.0942
ANALYSIS_VERSION: 10.0.17763.1 amd64fre
LAST_CONTROL_TRANSFER: from fffff80071d19265 to fffff80071bcb2a0
STACK_TEXT:
ffffd000`2157cd08 fffff800`71d19265 : 00000000`00000019 00000000`00000003 ffffe001`baeb7010 00000000`00000000 : nt!KeBugCheckEx
ffffd000`2157cd10 fffff800`e73decb9 : ffffe001`00000000 ffffe001`b9043300 00000000`8959cd00 fffff800`00000000 : nt!ExDeferredFreePool+0x855
ffffd000`2157cde0 fffff800`e71e4c9b : 69746365`6e6e6f43 726f7073`6e617254 73736572`64644174 00000000`00000000 : tdx!TdxTdiDispatchCreate+0x139
ffffd000`2157ce80 69746365`6e6e6f43 : 726f7073`6e617254 73736572`64644174 00000000`00000000 ffffe001`b11c3b30 : adgnetworktdidrv+0x1c9b
ffffd000`2157ce88 726f7073`6e617254 : 73736572`64644174 00000000`00000000 ffffe001`b11c3b30 fffff800`e71e5096 : 0x69746365`6e6e6f43
ffffd000`2157ce90 73736572`64644174 : 00000000`00000000 ffffe001`b11c3b30 fffff800`e71e5096 ffffe001`b11c3c48 : 0x726f7073`6e617254
ffffd000`2157ce98 00000000`00000000 : ffffe001`b11c3b30 fffff800`e71e5096 ffffe001`b11c3c48 ffffd000`2157d1f1 : 0x73736572`64644174
THREAD_SHA1_HASH_MOD_FUNC: eb0291a73cc89fdc7da665cc3d3b6c4bf6ea1ff6
THREAD_SHA1_HASH_MOD_FUNC_OFFSET: 74c69c0077d9a164231d198ebe78e1d9f1bd6f32
THREAD_SHA1_HASH_MOD: 49110351523057fb6c3118bfc6273d37d4ffa5fd
FOLLOWUP_IP:
nt!ExDeferredFreePool+855
fffff800`71d19265 cc int 3
FAULT_INSTR_CODE: 6405ffcc
SYMBOL_STACK_INDEX: 1
SYMBOL_NAME: nt!ExDeferredFreePool+855
FOLLOWUP_NAME: Pool_corruption
IMAGE_NAME: Pool_Corruption
DEBUG_FLR_IMAGE_TIMESTAMP: 0
IMAGE_VERSION: 6.3.9600.19202
MODULE_NAME: Pool_Corruption
STACK_COMMAND: .thread ; .cxr ; kb
BUCKET_ID_FUNC_OFFSET: 855
FAILURE_BUCKET_ID: 0x19_3_nt!ExDeferredFreePool
BUCKET_ID: 0x19_3_nt!ExDeferredFreePool
PRIMARY_PROBLEM_CLASS: 0x19_3_nt!ExDeferredFreePool
TARGET_TIME: 2018-12-19T14:13:40.000Z
OSBUILD: 9600
OSSERVICEPACK: 19202
SERVICEPACK_NUMBER: 0
OS_REVISION: 0
SUITE_MASK: 784
PRODUCT_TYPE: 1
OSPLATFORM_TYPE: x64
OSNAME: Windows 8.1
OSEDITION: Windows 8.1 WinNt TerminalServer SingleUserTS Personal
OS_LOCALE:
USER_LCID: 0
OSBUILD_TIMESTAMP: 2018-11-10 19:00:47
BUILDDATESTAMP_STR: 181110-0600
BUILDLAB_STR: winblue_ltsb
BUILDOSVER_STR: 6.3.9600.19202.amd64fre.winblue_ltsb.181110-0600
ANALYSIS_SESSION_ELAPSED_TIME: 5af
ANALYSIS_SOURCE: KM
FAILURE_ID_HASH_STRING: km:0x19_3_nt!exdeferredfreepool
FAILURE_ID_HASH: {d7eb5691-fd6e-cdc5-78e1-c776b0ab9fcd}
Followup: Pool_corruption
---------
WFP отключен.
Антивирус: NIS
Как то это можно исправить?
Спасибо.