Windbg로 덤프파일 열어봤는데 어떤문제인지 알수 있을까요?
Microsoft (R) Windows Debugger Version 10.0.15063.137 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [F:\MEMORY.DMP]
Kernel Bitmap Dump File: Kernel address space is available, User address space may not be available.
Symbol search path is: srv*
Executable search path is:
Windows 8.1 Kernel Version 9600 MP (80 procs) Free x64
Product: Server, suite: TerminalServer SingleUserTS
Built by: 9600.17041.amd64fre.winblue_gdr.140305-1710
Machine Name:
Kernel base = 0xfffff803de404000 PsLoadedModuleList = 0xfffff803de6ce2d0
Debug session time: Wed May 17 14:17:44.868 2017 (UTC + 9:00)
System Uptime: 6 days 3:21:35.313
Loading Kernel Symbols
...............................................................
................................................................
...........
Loading User Symbols
PEB is paged out (Peb.Ldr = 00007ff7`171fb018). Type ".hh dbgerr001" for details
Loading unloaded module list
....
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck E3, {fffff803de750780, ffffe80160599080, ffffe801627ad430, 3}
Probably caused by : ntkrnlmp.exe ( nt! ?? ::FNODOBFM::`string'+26f65 )
Followup: MachineOwner
73: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
RESOURCE_NOT_OWNED (e3)
A thread tried to release a resource it did not own.
Arguments:
Arg1: fffff803de750780, Address of resource
Arg2: ffffe80160599080, Address of thread
Arg3: ffffe801627ad430, Address of owner table if there is one
Arg4: 0000000000000003
Debugging Details:
DUMP_CLASS: 1
DUMP_QUALIFIER: 401
BUILD_VERSION_STRING: 9600.17041.amd64fre.winblue_gdr.140305-1710
SYSTEM_MANUFACTURER: HP
SYSTEM_PRODUCT_NAME: ProLiant DL380 Gen9
SYSTEM_SKU: 719064-B21
BIOS_VENDOR: HP
BIOS_VERSION: P89
BIOS_DATE: 09/13/2016
BASEBOARD_MANUFACTURER: HP
BASEBOARD_PRODUCT: ProLiant DL380 Gen9
DUMP_TYPE: 1
BUGCHECK_P1: fffff803de750780
BUGCHECK_P2: ffffe80160599080
BUGCHECK_P3: ffffe801627ad430
BUGCHECK_P4: 3
CPU_COUNT: 50
CPU_MHZ: 895
CPU_VENDOR: GenuineIntel
CPU_FAMILY: 6
CPU_MODEL: 4f
CPU_STEPPING: 1
CPU_MICROCODE: 6,4f,1,0 (F,M,S,R) SIG: B00001E'00000000 (cache) B00001E'00000000 (init)
DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
BUGCHECK_STR: 0xE3
PROCESS_NAME: svchost.exe
CURRENT_IRQL: 0
ANALYSIS_SESSION_HOST: DO-JY2326-EUM03
ANALYSIS_SESSION_TIME: 05-30-2017 14:17:57.0506
ANALYSIS_VERSION: 10.0.15063.137 amd64fre
LAST_CONTROL_TRANSFER: from fffff803de58f415 to fffff803de557fa0
STACK_TEXT:
ffffd00107ec6238 fffff803de58f415 : 00000000000000e3 fffff803de750780 ffffe80160599080 ffffe801627ad430 : nt!KeBugCheckEx
ffffd00107ec6240 fffff803de8140aa : ffffc00034228000 ffffc00034228000 ffffd00107ec6802 0000000000000000 : nt! ?? ::FNODOBFM::`string'+0x26f65
ffffd00107ec6350 fffff803de7fd4f8 : 0000000000000001 0000000000000001 0000000000000000 ffffd00107ec6760 : nt!CmpParseKey+0x66a
ffffd00107ec6660 fffff803de7fae53 : 0000000000002288 ffffd00107ec6858 ffffc00000000040 ffffe000e53e5730 : nt!ObpLookupObjectName+0x6d8
ffffd00107ec67e0 fffff803de798754 : ffffe00000000001 000000df8450ea20 000000df8450e998 000000000002001f : nt!ObOpenObjectByName+0x1e3
ffffd00107ec6910 fffff803de7984a7 : ffffb0c421ac03ae 0000000000000050 0000000000000000 0000000000100002 : nt!CmOpenKey+0x2a4
ffffd00107ec6ac0 fffff803de5637b3 : ffffe80160599080 000000df84b03f90 0000000000000000 0000000000000000 : nt!NtOpenKeyEx+0xf
ffffd00107ec6b00 00007ffa78cdbc0a : 0000000000000000 0000000000000000 0000000000000000 0000000000000000 : nt!KiSystemServiceCopyEnd+0x13
000000df8450e938 0000000000000000 : 0000000000000000 0000000000000000 0000000000000000 0000000000000000 : 0x00007ffa`78cdbc0a
STACK_COMMAND: kb
THREAD_SHA1_HASH_MOD_FUNC: c5b84e6d2f203f4478802a2eeaffd85c9bbcc1d3
THREAD_SHA1_HASH_MOD_FUNC_OFFSET: d8035e7f16bf6fc53b6282a2218c849aa94ca2d4
THREAD_SHA1_HASH_MOD: cb5f414824c2521bcc505eaa03e92fa10922dad8
FOLLOWUP_IP:
nt! ?? ::FNODOBFM::`string'+26f65
fffff803`de58f415 cc int 3
FAULT_INSTR_CODE: d8b4ccc
SYMBOL_STACK_INDEX: 1
SYMBOL_NAME: nt! ?? ::FNODOBFM::`string'+26f65
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 5318053f
BUCKET_ID_FUNC_OFFSET: 26f65
FAILURE_BUCKET_ID: 0xE3_nt!_??_::FNODOBFM::_string_
BUCKET_ID: 0xE3_nt!_??_::FNODOBFM::_string_
PRIMARY_PROBLEM_CLASS: 0xE3_nt!_??_::FNODOBFM::_string_
TARGET_TIME: 2017-05-17T05:17:44.000Z
OSBUILD: 9600
OSSERVICEPACK: 0
SERVICEPACK_NUMBER: 0
OS_REVISION: 0
SUITE_MASK: 272
PRODUCT_TYPE: 3
OSPLATFORM_TYPE: x64
OSNAME: Windows 8.1
OSEDITION: Windows 8.1 Server TerminalServer SingleUserTS
OS_LOCALE:
USER_LCID: 0
OSBUILD_TIMESTAMP: 2014-03-06 14:18:55
BUILDDATESTAMP_STR: 140305-1710
BUILDLAB_STR: winblue_gdr
BUILDOSVER_STR: 6.3.9600.17041.amd64fre.winblue_gdr.140305-1710
ANALYSIS_SESSION_ELAPSED_TIME: 5ec
ANALYSIS_SOURCE: KM
FAILURE_ID_HASH_STRING: km:0xe3_nt!_??_::fnodobfm::_string_
FAILURE_ID_HASH: {d56602d2-ddd7-783a-b2b0-88383bab84bd}
Followup: MachineOwner