Jump to content

wingleaf

Member
  • Posts

    6
  • Joined

  • Last visited

  • Donations

    0.00 USD 
  • Country

    Philippines

Everything posted by wingleaf

  1. Hey guys, Please tell me on how to debug/read minidump(BSOD) using windbg to troubleshoot PC. any site, tutorials would be appreciated I really want to know why others know what is the problem in BSOD while reading the minidump like this for example http://www.techspot.com/vb/all/windows/t-4..._not_equal.html this is the sample of the minidump based on my pc, can you please debug it and please tell me step by step on how to know the problem. Microsoft ® Windows Debugger Version 6.6.0007.5 Copyright © Microsoft Corporation. All rights reserved. Loading Dump File [C:\WINDOWS\Minidump\Mini021507-01.dmp] Mini Kernel Dump File: Only registers and stack trace are available Symbol search path is: *** Invalid *** **************************************************************************** * Symbol loading may be unreliable without a symbol search path. * * Use .symfix to have the debugger choose a symbol path. * * After setting your symbol path, use .reload to refresh symbol locations. * **************************************************************************** Executable search path is: ********************************************************************* * Symbols can not be loaded because symbol path is not initialized. * * * * The Symbol Path can be set by: * * using the _NT_SYMBOL_PATH environment variable. * * using the -y <symbol_path> argument when starting the debugger. * * using .sympath and .sympath+ * ********************************************************************* Unable to load image ntoskrnl.exe, Win32 error 2 *** WARNING: Unable to verify timestamp for ntoskrnl.exe *** ERROR: Module load completed but symbols could not be loaded for ntoskrnl.exe Windows XP Kernel Version 2600 (Service Pack 2) UP Free x86 compatible Product: WinNt, suite: TerminalServer SingleUserTS Kernel base = 0x804d7000 PsLoadedModuleList = 0x8055a420 Debug session time: Thu Feb 15 04:47:23.281 2007 (GMT+8) System Uptime: 0 days 5:50:38.833 ********************************************************************* * Symbols can not be loaded because symbol path is not initialized. * * * * The Symbol Path can be set by: * * using the _NT_SYMBOL_PATH environment variable. * * using the -y <symbol_path> argument when starting the debugger. * * using .sympath and .sympath+ * ********************************************************************* Unable to load image ntoskrnl.exe, Win32 error 2 *** WARNING: Unable to verify timestamp for ntoskrnl.exe *** ERROR: Module load completed but symbols could not be loaded for ntoskrnl.exe Loading Kernel Symbols .................................................................................................... .................. Loading User Symbols Loading unloaded module list .............. ******************************************************************************* * * * Bugcheck Analysis * * * ******************************************************************************* Use !analyze -v to get detailed debugging information. BugCheck 1000000A, {28, 2, 0, 804f0bbc} ANALYSIS: Kernel with unknown size. Will force reload symbols with known size. ANALYSIS: Force reload command: .reload /f ntoskrnl.exe=FFFFFFFF804D7000,213F80,42250FF9 ***** Kernel symbols are WRONG. Please fix symbols to do analysis. ***** Kernel symbols are WRONG. Please fix symbols to do analysis. Probably caused by : ntoskrnl.exe ( nt+19bbc ) Followup: MachineOwner --------- Thanks, gau
  2. hello Guys, I got this error intermittently, i dont know if this was caused by sasser or blaster worm but i know that its not known issue in XPSP2 because of the patches it made to them.by the way can you help me with these kind of error, The System Process: "C:\Winnt\System32\lsass.exe" terminated unexpectedly with status code -1073741795. The System Will Now Reboot and also when i run spybot search and destroy under Tools>System Startup i see a blank key which the message is: Current filename: Database status: Not required - virus, spyware, malware or other resource hog Value: Filename: system32.exe Description Added by the _AGOBOT-KU_ WORM! Note - has a blank entry under the Startup Item/Name field Source: Paul Collins Startup list I search the net about these, and i found out that its name is for sophos Name W32/Agobot-KU Type Worm Aliases Gaobot Nortonbot Phatbot Polybot Protection available since 19 July 2004 11:21:11 (GMT) Included in our products from September 2004 (3.85) Locate the HKEY_LOCAL_MACHINE entries: HKLM\Software\Microsoft\Windows\CurrentVersion\Run\ "" = system32.exe HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices "" = system32.exe but in the registry entry i found this I already scan for virus using the latest updates, ad-aware, spybot but its seems its clean with them.. thanks for your help,
  3. helo guys, just want to ask, what software do you use to make or convert video file like avi, mpg to gif? and any suggestion in making them? cause i want to make a gif avatar which made from anime video files. thanks.
  4. Hi guys.. Right now im using windows vista transpormation pack v4.0 by windows x on windows xp pro machine my question is can i integrate some of the customization in xpize like the new windows theme in new conncection wizard, add printer wizard etc, in which the left side pictures is change? thanks and may the force be with you..
  5. i do have a winxp without sp1 nor sp2, and now i downloaded a sp2 from microsoft and i want to slipstream it with my winxp pro (no sp1 and sp2), before slipstreaming my winxp, do i need to slipstream sp1 first or it is recommended or required before slipstreaming sp2? any idea guys? thanks,
×
×
  • Create New...