BSOD systeme_service
Publié : 09 juin 2021, 18:36
Bonsoir,
je peux tout juste accéder au mode sans echec mais si je démarre normalement j'ai toujours le même BSOD, j'ai pu lire le fichier dump depuis un autre ordi (le voici, désolé la balise n'est pas activée) :
SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 0000000080000003, Exception code that caused the BugCheck
Arg2: fffff802083db5b5, Address of the instruction which caused the BugCheck
Arg3: ffffd0018c2b0ba0, Address of the context record for the exception that caused the BugCheck
Arg4: 0000000000000000, zero.
Debugging Details:
------------------
KEY_VALUES_STRING: 1
Key : Analysis.CPU.mSec
Value: 2108
Key : Analysis.DebugAnalysisManager
Value: Create
Key : Analysis.Elapsed.mSec
Value: 12413
Key : Analysis.Init.CPU.mSec
Value: 1889
Key : Analysis.Init.Elapsed.mSec
Value: 168667
Key : Analysis.Memory.CommitPeak.Mb
Value: 83
Key : WER.OS.Branch
Value: rs4_release
Key : WER.OS.Timestamp
Value: 2018-04-10T18:04:00Z
Key : WER.OS.Version
Value: 10.0.17134.1
BUGCHECK_CODE: 3b
BUGCHECK_P1: 80000003
BUGCHECK_P2: fffff802083db5b5
BUGCHECK_P3: ffffd0018c2b0ba0
BUGCHECK_P4: 0
CONTEXT: ffffd0018c2b0ba0 -- (.cxr 0xffffd0018c2b0ba0)
rax=ffffd0018c2b15b8 rbx=ffffd0018c2b27a8 rcx=0000000000000000
rdx=ffffd0018c2b27a8 rsi=ffffd0018c2b2a70 rdi=0000000000000000
rip=fffff802083db5b5 rsp=ffffd0018c2b1590 rbp=ffffd0018c2b2568
r8=ffffd0018c2b1db0 r9=ffffd0018c2b1730 r10=ffffd0018c2b2a70
r11=00000000000000b0 r12=ffffd0018c2b2a70 r13=ffffd0018c2b2568
r14=ffffd0018c2b1730 r15=0000000000000000
iopl=0 nv up ei pl zr na po nc
cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00000246
nt!KeCheckStackAndTargetAddress+0x45:
fffff802`083db5b5 cc int 3
Resetting default scope
BLACKBOXBSD: 1 (!blackboxbsd)
PROCESS_NAME: setupplatform.exe
TRAP_FRAME: ffff9785d1309c10 -- (.trap 0xffff9785d1309c10)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=0000000000000000 rbx=0000000000000000 rcx=0000000000000000
rdx=0000000000000000 rsi=0000000000000000 rdi=0000000000000000
rip=0000000000000000 rsp=fffff804c20a4048 rbp=b7c170e4f8671508
r8=0000000000000000 r9=0000000000000000 r10=0000000000000000
r11=0000000000000000 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up di pl nz ac po nc
00000000`00000000 ?? ???
Resetting default scope
BAD_STACK_POINTER: fffff804c20a4048
IP_IN_FREE_BLOCK: 0
STACK_TEXT:
ffffd001`8c2b1590 fffff802`084331eb : ffffd583`4d2beef0 fffff804`c1e4d098 ffffd583`44642600 ffffd583`4464269c : nt!KeCheckStackAndTargetAddress+0x45
ffffd001`8c2b15c0 fffff804`c1e3c4b6 : fffff804`c1e4d098 ffffd001`8c2b2568 ffffd001`8c2b2a70 ffffd583`4c61c678 : nt!_C_specific_handler+0x3b
ffffd001`8c2b1630 fffff802`0845f4ad : 00000000`00000000 ffffd001`8c2b1790 ffffd001`8c2b1c50 ffffd001`8c2b2568 : aswSP+0x4c4b6
ffffd001`8c2b1660 fffff802`083db026 : ffffd001`8c2b1790 ffffd001`8c2b1c50 00000000`0000000d ffffd001`8c2b2568 : nt!RtlpExecuteHandlerForException+0xd
ffffd001`8c2b1690 fffff802`083dcb23 : ffffd001`8c2b2568 ffffd001`8c2b22b0 ffffd001`8c2b2568 00000000`00000000 : nt!RtlDispatchException+0x416
ffffd001`8c2b1d80 fffff802`08467842 : ffffd583`4d2c0780 fffff804`c1e28d0c ffff9785`d1309c10 00000000`00000000 : nt!KiDispatchException+0x1f3
ffffd001`8c2b2430 fffff802`084643c5 : 00000000`00000000 ffffd001`8c2b2900 00000000`00000000 ffff9785`d1309c10 : nt!KiExceptionDispatch+0xc2
ffffd001`8c2b2610 00000000`00000000 : fffff804`c1e2374b ffff9785`d12d2960 ffffd001`8c2b2940 00000000`00000000 : nt!KiPageFault+0x405
SYMBOL_NAME: aswSP+4c4b6
MODULE_NAME: aswSP
IMAGE_NAME: aswSP.sys
STACK_COMMAND: .cxr 0xffffd0018c2b0ba0 ; kb
BUCKET_ID_FUNC_OFFSET: 4c4b6
FAILURE_BUCKET_ID: 0x3B_80000003_STACKPTR_ERROR_aswSP!unknown_function
OS_VERSION: 10.0.17134.1
BUILDLAB_STR: rs4_release
OSPLATFORM_TYPE: x64
OSNAME: Windows 10
FAILURE_ID_HASH: {111a04c8-441c-829d-1b83-c80c68aeacc7}
Followup: MachineOwner
Je suis incapable de le déchiffrer, je demande donc de l'aide
j'ai cependant vu le fichier aswSP.sys, lié apparemment à avast, peut etre est ce ça le problème ?
Merci d'avance !
je peux tout juste accéder au mode sans echec mais si je démarre normalement j'ai toujours le même BSOD, j'ai pu lire le fichier dump depuis un autre ordi (le voici, désolé la balise n'est pas activée) :
SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 0000000080000003, Exception code that caused the BugCheck
Arg2: fffff802083db5b5, Address of the instruction which caused the BugCheck
Arg3: ffffd0018c2b0ba0, Address of the context record for the exception that caused the BugCheck
Arg4: 0000000000000000, zero.
Debugging Details:
------------------
KEY_VALUES_STRING: 1
Key : Analysis.CPU.mSec
Value: 2108
Key : Analysis.DebugAnalysisManager
Value: Create
Key : Analysis.Elapsed.mSec
Value: 12413
Key : Analysis.Init.CPU.mSec
Value: 1889
Key : Analysis.Init.Elapsed.mSec
Value: 168667
Key : Analysis.Memory.CommitPeak.Mb
Value: 83
Key : WER.OS.Branch
Value: rs4_release
Key : WER.OS.Timestamp
Value: 2018-04-10T18:04:00Z
Key : WER.OS.Version
Value: 10.0.17134.1
BUGCHECK_CODE: 3b
BUGCHECK_P1: 80000003
BUGCHECK_P2: fffff802083db5b5
BUGCHECK_P3: ffffd0018c2b0ba0
BUGCHECK_P4: 0
CONTEXT: ffffd0018c2b0ba0 -- (.cxr 0xffffd0018c2b0ba0)
rax=ffffd0018c2b15b8 rbx=ffffd0018c2b27a8 rcx=0000000000000000
rdx=ffffd0018c2b27a8 rsi=ffffd0018c2b2a70 rdi=0000000000000000
rip=fffff802083db5b5 rsp=ffffd0018c2b1590 rbp=ffffd0018c2b2568
r8=ffffd0018c2b1db0 r9=ffffd0018c2b1730 r10=ffffd0018c2b2a70
r11=00000000000000b0 r12=ffffd0018c2b2a70 r13=ffffd0018c2b2568
r14=ffffd0018c2b1730 r15=0000000000000000
iopl=0 nv up ei pl zr na po nc
cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00000246
nt!KeCheckStackAndTargetAddress+0x45:
fffff802`083db5b5 cc int 3
Resetting default scope
BLACKBOXBSD: 1 (!blackboxbsd)
PROCESS_NAME: setupplatform.exe
TRAP_FRAME: ffff9785d1309c10 -- (.trap 0xffff9785d1309c10)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=0000000000000000 rbx=0000000000000000 rcx=0000000000000000
rdx=0000000000000000 rsi=0000000000000000 rdi=0000000000000000
rip=0000000000000000 rsp=fffff804c20a4048 rbp=b7c170e4f8671508
r8=0000000000000000 r9=0000000000000000 r10=0000000000000000
r11=0000000000000000 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up di pl nz ac po nc
00000000`00000000 ?? ???
Resetting default scope
BAD_STACK_POINTER: fffff804c20a4048
IP_IN_FREE_BLOCK: 0
STACK_TEXT:
ffffd001`8c2b1590 fffff802`084331eb : ffffd583`4d2beef0 fffff804`c1e4d098 ffffd583`44642600 ffffd583`4464269c : nt!KeCheckStackAndTargetAddress+0x45
ffffd001`8c2b15c0 fffff804`c1e3c4b6 : fffff804`c1e4d098 ffffd001`8c2b2568 ffffd001`8c2b2a70 ffffd583`4c61c678 : nt!_C_specific_handler+0x3b
ffffd001`8c2b1630 fffff802`0845f4ad : 00000000`00000000 ffffd001`8c2b1790 ffffd001`8c2b1c50 ffffd001`8c2b2568 : aswSP+0x4c4b6
ffffd001`8c2b1660 fffff802`083db026 : ffffd001`8c2b1790 ffffd001`8c2b1c50 00000000`0000000d ffffd001`8c2b2568 : nt!RtlpExecuteHandlerForException+0xd
ffffd001`8c2b1690 fffff802`083dcb23 : ffffd001`8c2b2568 ffffd001`8c2b22b0 ffffd001`8c2b2568 00000000`00000000 : nt!RtlDispatchException+0x416
ffffd001`8c2b1d80 fffff802`08467842 : ffffd583`4d2c0780 fffff804`c1e28d0c ffff9785`d1309c10 00000000`00000000 : nt!KiDispatchException+0x1f3
ffffd001`8c2b2430 fffff802`084643c5 : 00000000`00000000 ffffd001`8c2b2900 00000000`00000000 ffff9785`d1309c10 : nt!KiExceptionDispatch+0xc2
ffffd001`8c2b2610 00000000`00000000 : fffff804`c1e2374b ffff9785`d12d2960 ffffd001`8c2b2940 00000000`00000000 : nt!KiPageFault+0x405
SYMBOL_NAME: aswSP+4c4b6
MODULE_NAME: aswSP
IMAGE_NAME: aswSP.sys
STACK_COMMAND: .cxr 0xffffd0018c2b0ba0 ; kb
BUCKET_ID_FUNC_OFFSET: 4c4b6
FAILURE_BUCKET_ID: 0x3B_80000003_STACKPTR_ERROR_aswSP!unknown_function
OS_VERSION: 10.0.17134.1
BUILDLAB_STR: rs4_release
OSPLATFORM_TYPE: x64
OSNAME: Windows 10
FAILURE_ID_HASH: {111a04c8-441c-829d-1b83-c80c68aeacc7}
Followup: MachineOwner
Je suis incapable de le déchiffrer, je demande donc de l'aide
j'ai cependant vu le fichier aswSP.sys, lié apparemment à avast, peut etre est ce ça le problème ?
Merci d'avance !