Stop Error Message

G

Guest

Since installing Service Pack 4, I'm now receiving the error message "STOP 0x0000001e (0xc0000005, 0x80496bd9, 0x00000001, 0x00000000)-ntoskernel.exe" on a blue screen.

Additionally System Event shows
The computer has rebooted from a bugcheck.
The bugcheck was: 0x0000001e (0xc0000005, 0x80496bd9, 0x00000001, 0x00000000).
Microsoft Windows 2000 [v15.2195].
A dump was saved in: C:\WINNT\Minidump\Mini052904-01.dmp.

It occurs randomly during normal system use and often disappears for days before re-appearing.

I've verified that all hardware is functioning properly, no thermal issues, no running 3rd party drivers, no antivirus software

Any assistance with this problem would be greatly appreciated.
 
R

Robert Mitchell [MSFT]

Hello Ship Wrecked,

The STOP 0x0000001e is a pretty common STOP. Please post the
Mini052904-01.dmp file so we can try to narrow things down a bit.

Thanks,

--
Robert Mitchell
Windows NT4&2000 MCSE
Microsoft Enterprise Support

Search our Knowledge Base at http://support.microsoft.com/directory
Visit the Windows 2000 Homepage at
http://www.microsoft.com/windows2000/default.asp
See the Windows NT Homepage at http://www.microsoft.com/ntserver/

NOTE: Please reply to the newsgroup and not directly to me. This allows
others to add to and benefit from these threads and also helps to ensure a
more timely response. Thank you!
This posting is provided "AS IS" without warranty either expressed or
implied, including, but not limited to, the implied warranties of
merchantability or fitness for a particular purpose.
The views and opinions expressed in this newsgroup posting are mine and do
not necessarily express or reflect the views and / or opinions of Microsoft.

ShipWrecked said:
Since installing Service Pack 4, I'm now receiving the error message "STOP
0x0000001e (0xc0000005, 0x80496bd9, 0x00000001, 0x00000000)-ntoskernel.exe"
on a blue screen.
Additionally System Event shows:
The computer has rebooted from a bugcheck.
The bugcheck was: 0x0000001e (0xc0000005, 0x80496bd9, 0x00000001, 0x00000000).
Microsoft Windows 2000 [v15.2195].
A dump was saved in: C:\WINNT\Minidump\Mini052904-01.dmp.

It occurs randomly during normal system use and often disappears for days before re-appearing.

I've verified that all hardware is functioning properly, no thermal
issues, no running 3rd party drivers, no antivirus software.
 
G

Guest

Ran windbg on minidump last night. Here's the result
MinorVersion . . . . .219
DirectoryTableBase . .0x0ed8500
PfnDataBase. . . . . .0xffa5f00
PsLoadedModuleList . .0x8046e8f
PsActiveProcessHead. .0x8046e72
MachineImageType . . .i38
NumberProcessors . . .
BugCheckCode . . . . .0x0000001
BugCheckParameter1 . .0xc000000
BugCheckParameter2 . .0x80496bd
BugCheckParameter3 . .0x0000000
BugCheckParameter4 . .0x0000000

ExceptionCode. . . . .0x8000000
ExceptionFlags . . . .0x0000000
ExceptionAddress . . .0x8043099

**** could not load kernel debugger extenion dll [ kdextx86.dll

***************************************************************
** Symbol File Load Lo
***************************************************************

Module CheckSu
ntoskrnl.exe 001A56A
hal.dll 0001910
BOOTVID.DLL 0000D8A
ACPI.sys 0002930
WMILIB.SYS 00008BF
pci.sys 000143A
isapnp.sys 00016FF
compbatt.sys 0000756
BATTC.SYS 00010B4
pciide.sys 0000635
PCIIDEX.SYS 0000DE4
pcmcia.sys 0001CA5
ftdisk.sys 0001F7E
Diskperf.sys 000030D
dmload.sys 000070A
dmio.sys 00027E9
ACPIEC.sys 00009DB
PartMgr.sys 000057C
MountMgr.sys 0001408
atapi.sys 0001DF4
disk.sys 0000C31
CLASSPNP.SYS 0000E6F
KSecDD.sys 00016BE
Ntfs.sys 000852E
NDIS.sys 00036F8
**** Error: overlapping image conflict. Invalid dump file
Mup.sys 0002233
IPVNMon.sys 0001AC6
ALiAGP.sys 0000C1A
CmBatt.sys 0000C52
VIDEOPRT.SYS 0000CC2
tridxpm.sys 0003FFB
USBD.SYS 0000D0D
openhci.sys 0000FCF
ar5211.sys 0005A3C
i8042prt.sys 00015FE
KBFiltr.sys 0000C73
SynTP.sys 0003377
kbdclass.sys 0001287
mouclass.sys 0000845
fdc.sys 00011CA
parport.sys 0001278
serial.sys 0001425
serenum.sys 00007EC
KS.SYS 00022F6
portcls.sys 0002BA6
es198x.sys 0003516
es56cvmp.sys 0009BD6
Modem.SYS 00012EF
Cdr4_2K.SYS 0001059
cdrom.sys 0001467
redbook.sys 00012E8
Cdralw2k.SYS 0001357
audstub.sys 00008EF
rasl2tp.sys 00018F3
ndistapi.sys 00009EB
ndiswan.sys 0001794
TDI.SYS 0000E55
raspptp.sys 0000D07
ptilink.sys 000098F
raspti.sys 0000FED
parallel.sys 00016AF
swenum.sys 0000B91
update.sys 0002DBA
usbhub.sys 000174F
flpydisk.sys 00011A8
VETFDDNT.SYS 0001B69
MODEMCSA.sys 00007DA
NDProxy.SYS 000121C
EFS.SYS 00012FD
HIDPARSE.SYS 00011AF
HIDCLASS.SYS 0000617
hidusb.sys 0000C10
mouhid.sys 00008CB
Fs_Rec.SYS 000034B
VET-REC.SYS 000103B
VET-FILT.SYS 0001300
VETMONNT.SYS 0008CDD
Null.SYS 000023C
Beep.SYS 0000C54
vga.sys 0001047
mnmdd.SYS 0000F6C
Msfs.SYS 0000E5F
Npfs.SYS 00017E6
rasacd.sys 0000F36
msgpc.sys 000129D
tcpip.sys 0005E0F
wpsdrvnt.sys 000059A
wanarp.sys 00016EE
netbt.sys 00035C6
netbios.sys 0000B5C
rdbss.sys 0003671
mrxsmb.sys 0006DB4
gemwdm.sys 000050F
dump_WMILIB.SYS 00008BF
dump_atapi.sys 0001DF4
win32k.sys 001AC97
**** Error Loading Imag
Module: tridxp.dl
Image File: Non
Debug File: Non
CheckSum: 9AC0
Error: Incorrect Image Fil

afd.sys 000202D
wg3n.sys 00008F3
ParVdm.SYS 0000770
Fips.SYS 0001050
wdmaud.sys 0001EE8
sysaudio.sys 0000CF7
Cdfs.SYS 000164F
srv.sys 0004A34
Fastfat.SYS 0002C76
ipsec.sys 0001DED

***************************************************************
** driver
***************************************************************

Base Size CheckSum Image Nam
80400000 001a5540 001a56a3 ntoskrnl.ex
80062000 00010520 00019102 hal.dl
ed410000 00002a20 0000d8a2 BOOTVID.DL
bffd8000 00027c20 00029306 ACPI.sys
ed5c8000 00000f80 00008bfd WMILIB.SYS
ed000000 0000e6a0 000143a0 pci.sys
ed010000 0000b680 00016ffa isapnp.sys
ed414000 00002320 0000756e compbatt.sys
ed500000 00001b00 00010b43 BATTC.SYS
ed5c9000 00000b00 00006354 pciide.sys
ed280000 00005520 0000de43 PCIIDEX.SYS
bffbd000 0001ab00 0001ca57 pcmcia.sys
bffa0000 0001c220 0001f7e3 ftdisk.sys
ed502000 00001d20 000030d5 Diskperf.sys
ed504000 00001b80 000070ab dmload.sys
bff7e000 000219c0 00027e97 dmio.sys
ed418000 00002c00 00009db7 ACPIEC.sys
ed41c000 00002d00 000057c1 PartMgr.sys
ed288000 000074c0 00014085 MountMgr.sys
bff68000 00015180 0001df44 atapi.sys
ed290000 00007720 0000c312 disk.sys
ed020000 00008700 0000e6f3 CLASSPNP.SYS
bff56000 000117c0 00016be3 KSecDD.sys
bfed8000 0007d800 000852ec Ntfs.sys
bfeae000 00029aa0 00036f8f NDIS.sys
bfe92000 0001c000 0000ef5b Teefer.sys
bfe7c000 00015640 00022337 Mup.sys
bfe64000 00017640 0001ac67 IPVNMon.sys
ed298000 00005660 0000c1aa ALiAGP.sys
ed484000 000025a0 0000c524 CmBatt.sys
ed040000 0000c4c0 0000cc26 VIDEOPRT.SYS
bfdfd000 000352c0 0003ffb5 tridxpm.sys
ed2d8000 00004fc0 0000d0d3 USBD.SYS
ed2c0000 00005fc0 0000fcfc openhci.sys
bfdae000 0004e540 0005a3c6 ar5211.sys
ed060000 0000b680 00015fe7 i8042prt.sys
ed494000 00002300 0000c73e KBFiltr.sys
bfd52000 00033020 00033770 SynTP.sys
ed2f0000 00005ec0 00012871 kbdclass.sys
ed300000 00005400 00008454 mouclass.sys
ed310000 00000000 00011ca4 fdc.sys
ed320000 00006100 00012781 parport.sys
ed070000 0000f400 00014256 serial.sys
ed4a0000 00003640 00007ec0 serenum.sys
bfcde000 0001fd00 00022f68 KS.SYS
bfcfe000 000241e0 0002ba69 portcls.sys
bfd23000 0002e480 00035160 es198x.sys
bfc4a000 000931a0 0009bd6b es56cvmp.sys
ed350000 000070e0 00012ef3 Modem.SYS
ed080000 0000e180 0001059d Cdr4_2K.SYS
ed368000 00006c40 00014678 cdrom.sys
ed090000 00008900 00012e88 redbook.sys
ed378000 00005560 00013574 Cdralw2k.SYS
ed67f000 00000a40 00008ef7 audstub.sys
ed0b0000 0000ca80 00018f32 rasl2tp.sys
ed4b8000 000022e0 00009eb1 ndistapi.sys
bfc33000 00016ba0 00017941 ndiswan.sys
ed4c8000 00003e60 0000e55e TDI.SYS
ed0c0000 0000bc40 0000d074 raspptp.sys
ed398000 00004400 000098f4 ptilink.sys
ed3a8000 000040e0 0000fed0 raspti.sys
ed0d0000 0000ea20 00016afd parallel.sys
ed690000 00001000 0000b910 swenum.sys
bfc08000 0002a3a0 0002dba5 update.sys
ed0f0000 00009be0 000174fa usbhub.sys
ed3c0000 00004a60 00011a88 flpydisk.sys
bb7d0000 000171e0 0001b69b VETFDDNT.SYS
ed4d4000 00003e00 00007da7 MODEMCSA.sys
ed160000 00009ce0 000121c3 NDProxy.SYS
ed3d8000 00006a20 00012fd0 EFS.SYS
ed408000 00005900 00011af4 HIDPARSE.SYS
ed3f0000 00005fa0 00006174 HIDCLASS.SYS
ed4ec000 00003540 0000c106 hidusb.sys
ed4f4000 00002c60 00008cb7 mouhid.sys
ed510000 00001ca0 000034b4 Fs_Rec.SYS
ed488000 00003840 000103b5 VET-REC.SYS
ed2b8000 00004080 00013007 VET-FILT.SYS
bb738000 0006ffe0 0008cdd8 VETMONNT.SYS
ed6c4000 000009e0 000023ce Null.SYS
ed6c9000 00000ee0 0000c54f Beep.SYS
bfd9e000 00003580 0001047d vga.sys
ed6ce000 00000f80 0000f6c2 mnmdd.SYS
ed2f8000 00005240 0000e5fa Msfs.SYS
ed1c0000 00008fa0 00017e60 Npfs.SYS
ed516000 00001e40 0000f369 rasacd.sys
ed1d0000 00008680 000129d7 msgpc.sys
bb69e000 00051060 0005e0f0 tcpip.sys
ed338000 00008000 000059a5 wpsdrvnt.sys
ed340000 00007d00 00016ee6 wanarp.sys
bb676000 00027e00 00035c6b netbt.sys
ed1f0000 000081a0 0000b5c1 netbios.sys
bb64b000 0002a9c0 00036711 rdbss.sys
bb532000 00066240 0006db45 mrxsmb.sys
ed4c4000 00002cc0 000050fd gemwdm.sys
ed625000 00000f80 00008bfd dump_WMILIB.SYS
bb4f4000 00015180 0001df44 dump_atapi.sys
a0000000 001a3f20 001ac975 win32k.sys
bb469000 00000000 0009ac0e tridxp.dll
ba36b000 0001d4a0 000202d1 afd.sys
ba3f5000 00002ae0 00008f39 wg3n.sys
ed5ba000 00001860 0000770b ParVdm.SYS
bb5e9000 00008240 0001050b Fips.SYS
ba2e1000 00011f80 0001ee84 wdmaud.sys
bb599000 0000b8c0 0000cf78 sysaudio.sys
ba251000 0000efe0 000164f2 Cdfs.SYS
ba13d000 0003bbc0 0004a34f srv.sys
ba0cd000 000223c0 0002c763 Fastfat.SYS
b9d41000 00013ac0 0001ded4 ipsec.sys

****************************************************************
** Process
****************************************************************


****************************************************************
** Thread
****************************************************************

THREAD Cid 468.464 Teb: 7ffde000 Win32Thread: e24057e8 RUNNING
Owning Process f95db940
WaitTime (seconds) 54367
Context Switch Count 36404 LargeStack
Start Address 0x7c581ab4
Win32 Start Address 0x004034ef
Stack Init ed270000 Current ed26fc20 Base ed270000 Limit ed26b000 Call 0
Priority 10 BasePriority 8 PriorityDecrement 0 DecrementCount 0


****************************************************************
** Register Dump For Processor #0
****************************************************************

eax=ffdff13c ebx=0000001e ecx=ed26f7a0 edx=8046a601 esi=ed26fb9c edi=ed26fb48
eip=80430999 esp=ed26f770 ebp=ed26fb2c iopl=0 nv up di pl nz na pe nc
cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00000286
cr0=8001003b cr2=00000000 cr3=0ed85000 dr0=00000000 dr1=00000000 dr2=00000000
dr3=00000001 dr6=ffff0ff0 dr7=00000400 cr4=00000291
gdtr=80036000 gdtl=03ff idtr=80036400 idtl=07ff tr=0028 ldtr=0000


****************************************************************
** Stack Trace
****************************************************************

ChildEBP RetAddr Args to Child
ed26fb2c 80466a1b ed26fb48 00000000 ed26fb9c ntoskrnl!KeTerminateThread+0xb74
ed26fb9c 00000000 00000001 f9802da0 f95db940 ntoskrnl!Kei386EoiHelper+0x475



C:\Program Files\Support Tools> 0x0000001e (0xc0000005, 0x80496bd9, 0x00000001,
0x00000000) 0x0000001e (0xc0000005, 0x80496bd9, 0x00000001, 0x00000000) 0x000000
1e (0xc0000005, 0x80496bd9, 0x00000001, 0x00000000) 0x0000001e (0xc0000005, 0x80
496bd9, 0x00000001, 0x00000000) 0x0000001e (0xc0000005, 0x80496bd9, 0x00000001,
0x00000000) 0x0000001e (0xc0000005, 0x80496bd9, 0x00000001, 0x00000000)
 
G

Guest

Hi, this is Tony. I am having a similar problem. Maybe you can help me. I
don't know how to run a debug, so how do I debug my memory.dmp file?

Robert Mitchell said:
Hello Ship Wrecked,

The STOP 0x0000001e is a pretty common STOP. Please post the
Mini052904-01.dmp file so we can try to narrow things down a bit.

Thanks,

--
Robert Mitchell
Windows NT4&2000 MCSE
Microsoft Enterprise Support

Search our Knowledge Base at http://support.microsoft.com/directory
Visit the Windows 2000 Homepage at
http://www.microsoft.com/windows2000/default.asp
See the Windows NT Homepage at http://www.microsoft.com/ntserver/

NOTE: Please reply to the newsgroup and not directly to me. This allows
others to add to and benefit from these threads and also helps to ensure a
more timely response. Thank you!
This posting is provided "AS IS" without warranty either expressed or
implied, including, but not limited to, the implied warranties of
merchantability or fitness for a particular purpose.
The views and opinions expressed in this newsgroup posting are mine and do
not necessarily express or reflect the views and / or opinions of Microsoft.

ShipWrecked said:
Since installing Service Pack 4, I'm now receiving the error message "STOP
0x0000001e (0xc0000005, 0x80496bd9, 0x00000001, 0x00000000)-ntoskernel.exe"
on a blue screen.
Additionally System Event shows:
The computer has rebooted from a bugcheck.
The bugcheck was: 0x0000001e (0xc0000005, 0x80496bd9, 0x00000001, 0x00000000).
Microsoft Windows 2000 [v15.2195].
A dump was saved in: C:\WINNT\Minidump\Mini052904-01.dmp.

It occurs randomly during normal system use and often disappears for days before re-appearing.

I've verified that all hardware is functioning properly, no thermal
issues, no running 3rd party drivers, no antivirus software.
Any assistance with this problem would be greatly appreciated.
 
G

Guest

Ran debug and got the following:

*******************************************************************************
*
*
* Bugcheck Analysis
*
*

*******************************************************************************

IRQL_NOT_LESS_OR_EQUAL (a)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high. This is usually
caused by drivers using improper addresses.
If a kernel debugger is available get the stack backtrace.
Arguments:
Arg1: 00000204, memory referenced
Arg2: 00000002, IRQL
Arg3: 00000000, value 0 = read operation, 1 = write operation
Arg4: 8041153d, address which referenced memory

Debugging Details:
------------------


READ_ADDRESS: 00000204 Paged pool

CURRENT_IRQL: 2

FAULTING_IP:
nt!CcFindBcb+a7
8041153d 8b00 mov eax,[eax]

DEFAULT_BUCKET_ID: DRIVER_FAULT

BUGCHECK_STR: 0xA

LAST_CONTROL_TRANSFER: from 8041153d to 804690f3

STACK_TEXT:
bb83359c 8041153d 80416602 817c0988 bb8336e8 nt!KiTrap13+0xe8
bb833620 8040ed24 817c0988 bb8336e8 bb83367c nt!CcFindBcb+0xa7
bb8336a4 8041403b 817c5b78 bb8336e8 00000400 nt!CcPinFileData+0x14b
bb833718 bfea684f 817c5b78 bb83374c 00000400 nt!CcPinMappedData+0x79
bb83373c bfebe376 bb833ac0 817c5cc8 075d0400 Ntfs!NtfsCommonCreate+0x687
bb833808 bfe9bdf7 bb833ac0 e36750d8 e36750f8
Ntfs!NtfsCreateNonresidentWithValue+0x68
bb833a78 bfe9d0df bb833ac0 860f46c8 817c3020 Ntfs!NtfsCreateNewFile+0x7a4
bb833bf0 8041fbbb 817c3020 860f46c8 817c4438 Ntfs!NtfsCommonCleanup+0x1f00
bb833c78 804950ff f9f15760 ffa6cd00 00120196 nt!IoCancelIrp+0x86
bb833ca4 8044ffe5 f9f15760 f9df8094 f9df80a8 nt!NtReleaseMutant+0x10a
bb833d58 80465b91 00000908 00000000 00000000 nt!NtQuerySecurityObject+0x102
bb833d58 77f828d3 00000908 00000000 00000000 nt!KiGetTickCount+0xe1
0980f7a8 7c573d85 00000908 0980f920 630150a4
ntdll!RtlSetSaclSecurityDescriptor+0x53
0980f7b4 630150a4 00000908 00000000 02406dc0
KERNEL32!BaseGetVdmConfigInfo+0xcb
0980f920 6301504a 0245d510 0245d508 0245d518
WININET!CFsm_HttpReadData::`vftable'
0980fa6c 63013e41 00000055 0239e9b0 023f84a8 WININET!`string'+0x22
00000001 00000000 00000000 00000000 00000000
WININET!InternetTimeFromSystemTimeA+0x6e


FOLLOWUP_IP:
nt!CcFindBcb+a7
8041153d 8b00 mov eax,[eax]

SYMBOL_STACK_INDEX: 1

FOLLOWUP_NAME: MachineOwner

SYMBOL_NAME: nt!CcFindBcb+a7

MODULE_NAME: nt

IMAGE_NAME: ntoskrnl.exe

DEBUG_FLR_IMAGE_TIMESTAMP: 4047db83

STACK_COMMAND: kb

BUCKET_ID: 0xA_VFL_VRF_nt!CcFindBcb+a7

Followup: MachineOwner
---------
What does this tell me about the problem?

Tony said:
Hi, this is Tony. I am having a similar problem. Maybe you can help me. I
don't know how to run a debug, so how do I debug my memory.dmp file?

Robert Mitchell said:
Hello Ship Wrecked,

The STOP 0x0000001e is a pretty common STOP. Please post the
Mini052904-01.dmp file so we can try to narrow things down a bit.

Thanks,

--
Robert Mitchell
Windows NT4&2000 MCSE
Microsoft Enterprise Support

Search our Knowledge Base at http://support.microsoft.com/directory
Visit the Windows 2000 Homepage at
http://www.microsoft.com/windows2000/default.asp
See the Windows NT Homepage at http://www.microsoft.com/ntserver/

NOTE: Please reply to the newsgroup and not directly to me. This allows
others to add to and benefit from these threads and also helps to ensure a
more timely response. Thank you!
This posting is provided "AS IS" without warranty either expressed or
implied, including, but not limited to, the implied warranties of
merchantability or fitness for a particular purpose.
The views and opinions expressed in this newsgroup posting are mine and do
not necessarily express or reflect the views and / or opinions of Microsoft.

ShipWrecked said:
Since installing Service Pack 4, I'm now receiving the error message "STOP
0x0000001e (0xc0000005, 0x80496bd9, 0x00000001, 0x00000000)-ntoskernel.exe"
on a blue screen.
Additionally System Event shows:
The computer has rebooted from a bugcheck.
The bugcheck was: 0x0000001e (0xc0000005, 0x80496bd9, 0x00000001, 0x00000000).
Microsoft Windows 2000 [v15.2195].
A dump was saved in: C:\WINNT\Minidump\Mini052904-01.dmp.

It occurs randomly during normal system use and often disappears for days before re-appearing.

I've verified that all hardware is functioning properly, no thermal
issues, no running 3rd party drivers, no antivirus software.
Any assistance with this problem would be greatly appreciated.
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Similar Threads

BugCheck 1
event 1001 1
Stop 0x0000001E Error 2
STOP Error 3
Random Bugcheck Reboot 5
Bugcheck error code 1
Blue scrn stop 0x0000001e 3
Windows 2000 Pro restarts without warning 1

Top