Interpréter les résultats de WinDbg

DanMgr 21 Reputation points
2022-12-19T19:44:42.91+00:00

Bonjour,

J'aimerais pouvoir comprendre les résultats de ce fichier DMP que l'application WinDbg :

4: kd> !analyze -v


**

Bugcheck Analysis

**


SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 0000000080000003, Exception code that caused the BugCheck
Arg2: fffff8055e7409f3, Address of the instruction which caused the BugCheck
Arg3: ffffc98288ab9dd0, Address of the context record for the exception that caused the BugCheck
Arg4: 0000000000000000, zero.

Debugging Details:

------------------

KEY_VALUES_STRING: 1

Key  : Analysis.CPU.mSec  
Value: 2343  

Key  : Analysis.DebugAnalysisManager  
Value: Create  

Key  : Analysis.Elapsed.mSec  
Value: 2357  

Key  : Analysis.IO.Other.Mb  
Value: 0  

Key  : Analysis.IO.Read.Mb  
Value: 0  

Key  : Analysis.IO.Write.Mb  
Value: 0  

Key  : Analysis.Init.CPU.mSec  
Value: 796  

Key  : Analysis.Init.Elapsed.mSec  
Value: 67359  

Key  : Analysis.Memory.CommitPeak.Mb  
Value: 97  

Key  : Bugcheck.Code.DumpHeader  
Value: 0x3b  

Key  : Bugcheck.Code.KiBugCheckData  
Value: 0x3b  

Key  : Bugcheck.Code.Register  
Value: 0x3b  

Key  : WER.OS.Branch  
Value: vb_release  

Key  : WER.OS.Timestamp  
Value: 2019-12-06T14:06:00Z  

Key  : WER.OS.Version  
Value: 10.0.19041.1  

FILE_IN_CAB: MEMORY.DMP

BUGCHECK_CODE: 3b

BUGCHECK_P1: 80000003

BUGCHECK_P2: fffff8055e7409f3

BUGCHECK_P3: ffffc98288ab9dd0

BUGCHECK_P4: 0

CONTEXT: ffffc98288ab9dd0 -- (.cxr 0xffffc98288ab9dd0)
rax=ffffc98288aba7f8 rbx=ffffc98288abba28 rcx=0000000000000000
rdx=ffffc98288abba28 rsi=ffffc98288abb020 rdi=0000000000000000
rip=fffff8055e7409f3 rsp=ffffc98288aba7d0 rbp=ffffc98288abb7e8
r8=ffffc98288abb020 r9=ffffc98288abae60 r10=fffff8055e7ce480
r11=00000000000002c8 r12=ffffc98288abc7d0 r13=ffffc98288abb7e8
r14=ffffc98288abae60 r15=ffffc98288abb7e8
iopl=0 nv up ei pl zr na po nc
cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00000246
nt!KeCheckStackAndTargetAddress+0x53:
fffff805`5e7409f3 cc int 3
Resetting default scope

BLACKBOXBSD: 1 (!blackboxbsd)

BLACKBOXNTFS: 1 (!blackboxntfs)

BLACKBOXPNP: 1 (!blackboxpnp)

BLACKBOXWINLOGON: 1

PROCESS_NAME: Taskmgr.exe

TRAP_FRAME: ffff800000000000 -- (.trap 0xffff800000000000)
Unable to read trap frame at ffff8000`00000000

STACK_TEXT:
ffffc98288aba7d0 fffff8055e7ce4bb : ffffc98288aba868 fffff80562fd5bd4 0000000000000000 0000000000000000 : nt!KeCheckStackAndTargetAddress+0x53
ffffc98288aba800 fffff80562f66fae : fffff80562fd5bd4 ffffc98288abb7e8 ffffc98288abc7d0 ffffc98288abae20 : nt!_C_specific_handler+0x3b
ffffc98288aba870 fffff8055e8039c2 : fffff80563002678 ffffc98288abae10 fffff80562f66f44 fffff805631004da : dxgkrnl!_GSHandlerCheck_SEH+0x6a
ffffc98288aba8a0 fffff8055e677a77 : ffffc98288abae10 0000000000000000 ffffc98288abc7d0 fffff805631004da : nt!RtlpExecuteHandlerForException+0x12
ffffc98288aba8d0 fffff8055e676676 : ffffc98288abb7e8 ffffc98288abb520 ffffc98288abb7e8 ffffa604129b5000 : nt!RtlDispatchException+0x297
ffffc98288abaff0 fffff8055e80d46c : 0000000000001000 ffffc98288abb890 ffff800000000000 0000000000000000 : nt!KiDispatchException+0x186
ffffc98288abb6b0 fffff8055e808ebd : 0000000000000001 0000000000000000 0000000000000000 0000000000000001 : nt!KiExceptionDispatch+0x12c
ffffc98288abb890 0000000000000000 : fffff805692df378 0000000000000000 ffffa604175a3080 ffffa604120d8000 : nt!KiPageFault+0x43d

SYMBOL_NAME: dxgkrnl!_GSHandlerCheck_SEH+6a

MODULE_NAME: dxgkrnl

IMAGE_NAME: dxgkrnl.sys

STACK_COMMAND: .cxr 0xffffc98288ab9dd0 ; kb

BUCKET_ID_FUNC_OFFSET: 6a

FAILURE_BUCKET_ID: 0x3B_80000003_dxgkrnl!_GSHandlerCheck_SEH

OS_VERSION: 10.0.19041.1

BUILDLAB_STR: vb_release

OSPLATFORM_TYPE: x64

OSNAME: Windows 10

FAILURE_ID_HASH: {bb7d4166-3f2d-2bc7-f000-c92b3c7366b4}

Followup: MachineOwner

Je n'ai vraiment d'expérience dans le débogage. Je tente de trouver des ressources sur l'internet mais je n'ai pas encore eu de chance. Merci d'avance.

Windows for business | Windows Client for IT Pros | User experience | Other
0 comments No comments
{count} votes

Accepted answer
  1. Docs 15,846 Reputation points
    2022-12-20T21:17:07.983+00:00

    The logs were in a foreign language and were not able to be scanned or read.

    There was one misbehaving driver.

    The BIOS is old.

    Please perform the following steps:

    Open the Lenovo website > enter the serial number > identify the Nvidia GPU drivers and the BIOS

    1) Reinstall the Nvidia GPU drivers: nvlddmkm.sys

    Reinstall from the Lenovo website.

    https://pcsupport.lenovo.com/us/en/products/workstations/thinkstation-p-series-workstations/thinkstation-p500/downloads/ds502507-nvidia-graphic-driver-for-windows-10-64-bit-thinkstation-p500-p700-p900?category=Graphics%20Processing%20Units%20%28GPU%29%20and%20Server-AI%20Accelerators

    2) Upgrade the BIOS: A4KT85AUS > A4KT86A > A4KTACA

    Important Note: If the BIOS version is below A4KT86A, please update to version A4KT86A, before updating to a higher or the latest version.

    https://pcsupport.lenovo.com/us/en/products/workstations/thinkstation-p-series-workstations/thinkstation-p500/downloads/driver-list/component?name=BIOS%2FUEFI

    .
    .
    .
    .
    .

    Please remember to vote and to mark the replies as answers if they help.

    On the bottom of each post there is:

    Propose as answer = answered the question

    On the left side of each post there is /\ with a number: click = a helpful post
    .
    .
    .
    .
    .

    0 comments No comments

10 additional answers

Sort by: Most helpful
  1. Docs 15,846 Reputation points
    2022-12-19T21:53:23.963+00:00

    If you can translate the log files to English they can be scanned and read.

    Si vous traduisez les journaux en anglais, ils peuvent être scannés et lus.

    Please modify the default language to English then run the V2 log collector and post a share link into this thread using one drive, drop box, or google drive.

    https://www.tenforums.com/tutorials/3813-add-remove-change-display-language-windows-10-a.html

    https://www.tenforums.com/tutorials/136792-change-display-language-windows-10-a.html

    Veuillez modifier la langue par défaut en anglais, puis exécutez le collecteur de journaux V2 et publiez un lien de partage dans ce fil à l'aide d'un lecteur, d'une boîte de dépôt ou d'un lecteur Google.

    https://www.tenforums.com/bsod-crashes-debugging/2198-bsod-posting-instructions.html

    https://www.elevenforum.com/t/bsod-posting-instructions.103/

    .
    .
    .
    .
    .

    Please remember to vote and to mark the replies as answers if they help.

    On the bottom of each post there is:

    Propose as answer = answered the question

    On the left side of each post there is /\ with a number: click = a helpful post
    .
    .
    .
    .
    .

    .
    .
    .
    .
    .

    N'oubliez pas de voter et de marquer les réponses comme des réponses si elles vous aident.

    En bas de chaque message, il y a :

    Proposer comme réponse = répondu à la question

    Sur le côté gauche de chaque message, il y a /\ avec un numéro : clic = un message utile
    .
    .
    .
    .
    .

    0 comments No comments

  2. DanMgr 21 Reputation points
    2022-12-20T14:13:32.12+00:00

    @Docs ,

    Hi and thank you for answering so fast. What do you mean by translating the file in english? I copied the .dmp file from a windows 10 pro computer to my computer and ran it through WinDbg tool and pasted the result above. Everything is displayed in english. What am I missing?

    0 comments No comments

  3. DanMgr 21 Reputation points
    2022-12-20T17:02:27.593+00:00

    Oh I get it : you're giving me another tool.

    0 comments No comments

  4. Limitless Technology 44,766 Reputation points
    2022-12-20T17:04:36.947+00:00

    Hello DanMgr,

    The SYSTEM_SERVICE_EXCEPTION bug check has a value of 0x0000003B. This indicates that an exception happened while executing a routine that transitions from non-privileged code to privileged code. In this case, the Arg1: 0000000080000003 means that there was a "exception breakpoint" which likely is related to a memory lead.

    The Failure Bucket is dxgkrnl.sys which is a DirectX Microsoft component that is used by display drivers. I would recommend to update the GPU drivers, maybe consult on the GPU manufacturer's forum for some related information. Also you can use the Microsoft tool Driver Verifier ( https://learn.microsoft.com/en-us/windows-hardware/drivers/devtest/driver-verifier ) that can help diagnose which driver is exactly the one causing the error.

    --If the reply is helpful, please Upvote and Accept as answer--

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.