Using dumpchk.exe

J

Joseph

My computer (Windows XP installed) restarts frequently
and according to Microsoft it's most probably due to some
driver. I act according to the Microsoft article for
finding the trouble making driver:
http://support.microsoft.com/default.aspx?scid=kb;EN-
US;314084

In this article, Microsoft advise to find the problematic
driver by running the dumpchk.exe application, found
originally in the Windows XP. According to the article,
when the user runs the dumpchk.exe, it gives a large size
of data in which the most crucial data for finding the
driver appears under the title: ExceptionAddress -
and besides it the driver's address: 0x8014fb84

But when I actually run the dumpchk.exe, there appears no
such title (ExceptionAddress) in the data.

Below is given all the data I receive by running
dumpchk.exe:
**********************************************************
*************

DUMP_HEADER32:
MajorVersion 0000000f
MinorVersion 00000a28
DirectoryTableBase 03ae1000
PfnDataBase 80c4a000
PsLoadedModuleList 8053e0a8
PsActiveProcessHead 805400d8
MachineImageType 0000014c
NumberProcessors 00000001
BugCheckCode 0000007f
BugCheckParameter1 0000000d
BugCheckParameter2 00000000
BugCheckParameter3 00000000
BugCheckParameter4 00000000
PaeEnabled 00000000
KdDebuggerDataBlock 80530060
MiniDumpFields 00000dff

TRIAGE_DUMP32:
ServicePackBuild 00000000
SizeOfDump 00010000
ValidOffset 0000fffc
ContextOffset 00000320
ExceptionOffset 000007d0
MmOffset 00001068
UnloadedDriversOffset 000010a0
PrcbOffset 00001878
ProcessOffset 000024c8
ThreadOffset 00002720
CallStackOffset 00002978
SizeOfCallStack 000003cc
DriverListOffset 00002fd8
DriverCount 0000007c
StringPoolOffset 000054a8
StringPoolSize 00001130
BrokenDriverOffset 00000000
TriageOptions 00000041
TopOfStack f4327c34
DebuggerDataOffset 00002d48
DebuggerDataSize 00000290
DataBlocksOffset 000065d8
DataBlocksCount 00000004


Windows XP Kernel Version 2600 UP Free x86 compatible
Kernel base = 0x804d0000 PsLoadedModuleList = 0x8053e0a8
Debug session time: Mon Aug 23 13:00:03 2004
System Uptime: 0 days 1:37:24
start end module name
804d0000 8069af80 nt Checksum: 001CBD9C
Timestamp: Fri Dec 13 03:
08:32 2002 (3DF93310)

Unloaded modules:
f2f52000 f2f79000 kmixer.sys Timestamp: unavailable
(00000000)
f3019000 f3040000 kmixer.sys Timestamp: unavailable
(00000000)
f3b07000 f3b2e000 kmixer.sys Timestamp: unavailable
(00000000)
fa070000 fa071000 drmkaud.sys Timestamp: unavailable
(00000000)
f3b2e000 f3b4a000 aec.sys Timestamp: unavailable
(00000000)
f3cb9000 f3cc6000 DMusic.sys Timestamp: unavailable
(00000000)
f3cc9000 f3cd7000 swmidi.sys Timestamp: unavailable
(00000000)
f9fae000 f9fb0000 splitter.sys Timestamp:
unavailable (00000000)
f9d9a000 f9d9f000 Cdaudio.SYS Timestamp: unavailable
(00000000)
f9ef6000 f9ef9000 Sfloppy.SYS Timestamp: unavailable
(00000000)

Finished dump check
**********************************************************
********************

Does anyone know precisely how to find here the address
of the "Wanted" driver ???

Thanks
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Similar Threads


Top