praveenz
asked on
Stop error 0x8E on XP shutdown
Stop error 0X8E on XP shutdown -
I get a stop error on XP shutdown ONLY and it resembles always a BCCode : 1000008e BCP1 : C0000005 For ex :
BCCode : 1000008e BCP1 : C0000005 BCP2 : 00000000 BCP3 : A97ECB5C
BCP4 : 00000000 OSVer : 5_1_2600 SP : 1_0 Product : 256_1
My system restarts automatically and I have to put my laptop to sleep always. I tried all driver updates, BIOS updates and repairing the OS but to no avail. The OS is XP SP1.
Please help me fix this shutdown problem and of course this stop error on shutdown.
I get a stop error on XP shutdown ONLY and it resembles always a BCCode : 1000008e BCP1 : C0000005 For ex :
BCCode : 1000008e BCP1 : C0000005 BCP2 : 00000000 BCP3 : A97ECB5C
BCP4 : 00000000 OSVer : 5_1_2600 SP : 1_0 Product : 256_1
My system restarts automatically and I have to put my laptop to sleep always. I tried all driver updates, BIOS updates and repairing the OS but to no avail. The OS is XP SP1.
Please help me fix this shutdown problem and of course this stop error on shutdown.
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Although you have accepted my answer, I want to find out the culprit of your problem and it is the reason why I am here. Have you resolved your problem yet? From your latest information, I find your windows crashes at least 5 time on 27th November. You only supply one system crash information which is insufficient to diagnostic the problem. If you supply all the system record 1001, I will find out the root cause of your problem. Let me know if youn don't want to proceed any more.
ASKER
Here you go -
The computer has rebooted from a bugcheck. The bugcheck was: 0x1000008e (0xc0000005, 0x00000000, 0xa982fb5c, 0x00000000). A dump was saved in: C:\WINDOWS\Minidump\Mini11 2704-04.dm p.
The computer has rebooted from a bugcheck. The bugcheck was: 0x1000008e (0xc0000005, 0x00000000, 0xa96f0b5c, 0x00000000). A dump was saved in: C:\WINDOWS\Minidump\Mini11 2704-03.dm p.
The computer has rebooted from a bugcheck. The bugcheck was: 0x1000008e (0xc0000005, 0x00000000, 0xa9238b5c, 0x00000000). A dump was saved in: C:\WINDOWS\Minidump\Mini11 2704-02.dm p.
The computer has rebooted from a bugcheck. The bugcheck was: 0x1000008e (0xc0000005, 0x00000000, 0xa97dcb5c, 0x00000000). A dump was saved in: C:\WINDOWS\Minidump\Mini11 2704-01.dm p.
No the problem is not yet solved - I thought if I had to proceed with debugging I had to accept your answer so I clicked on accept - I am fine with your debugging though. Let me know what you can make out of the above 1001 events. Thanks.
The computer has rebooted from a bugcheck. The bugcheck was: 0x1000008e (0xc0000005, 0x00000000, 0xa982fb5c, 0x00000000). A dump was saved in: C:\WINDOWS\Minidump\Mini11
The computer has rebooted from a bugcheck. The bugcheck was: 0x1000008e (0xc0000005, 0x00000000, 0xa96f0b5c, 0x00000000). A dump was saved in: C:\WINDOWS\Minidump\Mini11
The computer has rebooted from a bugcheck. The bugcheck was: 0x1000008e (0xc0000005, 0x00000000, 0xa9238b5c, 0x00000000). A dump was saved in: C:\WINDOWS\Minidump\Mini11
The computer has rebooted from a bugcheck. The bugcheck was: 0x1000008e (0xc0000005, 0x00000000, 0xa97dcb5c, 0x00000000). A dump was saved in: C:\WINDOWS\Minidump\Mini11
No the problem is not yet solved - I thought if I had to proceed with debugging I had to accept your answer so I clicked on accept - I am fine with your debugging though. Let me know what you can make out of the above 1001 events. Thanks.
All of your failing instruction address is 0x00000000 and it implies one of the register get the null value. Windows does not allow read and write to the first 64K (ie 0x00000000 to 0x0000FFFF). Hence windows crashes with 0xc0000005 (ie this is NT status code and it stands for access violation because of Windows low memory protection).
There have two possibility that Windows get null pointer? Software logic error or faulty RAM. A device driver load a null vaule into a register and I have no idea which module as we don't have sufficient information. It may be display card driver. BTW what display card that you are using.
Another possibility is the faulty ram. Your ram gets intermitant problem and windows cannot fetch the correct information from the ram and load a null value. Consequently windows crashes when it refers the low memory address. If I were you, I will download memtest to test the memory. http://www.memtest86.com
The faulty ram may be cache memory of CPU or mother board. If you don't find any error at memtest, try Prime 95 to test the CPU http://www.mersenne.org/freesoft.htm
After you run memtest and prime 95 and no errors is found. Attach the minidump to any webspace and I will study the dump and find out more diagnostic information.
There have two possibility that Windows get null pointer? Software logic error or faulty RAM. A device driver load a null vaule into a register and I have no idea which module as we don't have sufficient information. It may be display card driver. BTW what display card that you are using.
Another possibility is the faulty ram. Your ram gets intermitant problem and windows cannot fetch the correct information from the ram and load a null value. Consequently windows crashes when it refers the low memory address. If I were you, I will download memtest to test the memory. http://www.memtest86.com
The faulty ram may be cache memory of CPU or mother board. If you don't find any error at memtest, try Prime 95 to test the CPU http://www.mersenne.org/freesoft.htm
After you run memtest and prime 95 and no errors is found. Attach the minidump to any webspace and I will study the dump and find out more diagnostic information.
ASKER
display - Mine uses RADEON IGP 345 M. I would try the memtests and get back to you.
For problem isolation, it is worthwhile to upgrade ATI Radeon Display Card Driver. You can use add/remove to uninstall the new ATI display card driver.
Hope it can help you
Hope it can help you
ASKER
I tried the uninstall/install of the driver sometime back and ran into a wild goose chase for the correct driver for my PC and I have one right now and it does not pop up a ATI control panel not found upon computer restart. so I am of the opinion to stay put !!! the memtest did not reveal any errors - I am kinda surprised why you want me to go through the prime number search !!!! ??? Are you serious abt the prime 95 search ? how long would that take ? Thanks.
This utility is recommended by Microsoft Web Site to stress test CPU, memory and cache. Prime 95 will display "possible hardware error" in the result files, if it finds an error. I would stress test the windows for at least an hour.
ASKER
Here is the dump check output -
Loading dump file Mini112804-01.dmp
----- 32 bit Kernel Mini Dump Analysis
DUMP_HEADER32:
MajorVersion 0000000f
MinorVersion 00000a28
DirectoryTableBase 061d4000
PfnDataBase 81053000
PsLoadedModuleList 8054d4b0
PsActiveProcessHead 8054f4c8
MachineImageType 0000014c
NumberProcessors 00000001
BugCheckCode 1000008e
BugCheckParameter1 c0000005
BugCheckParameter2 00000000
BugCheckParameter3 a9697b5c
BugCheckParameter4 00000000
PaeEnabled 00000000
KdDebuggerDataBlock 8053f460
MiniDumpFields 00000dff
TRIAGE_DUMP32:
ServicePackBuild 00000100
SizeOfDump 00010000
ValidOffset 0000fffc
ContextOffset 00000320
ExceptionOffset 000007d0
MmOffset 00001068
UnloadedDriversOffset 000010a0
PrcbOffset 00001878
ProcessOffset 000024c8
ThreadOffset 00002720
CallStackOffset 00002978
SizeOfCallStack 00000430
DriverListOffset 00003038
DriverCount 00000092
StringPoolOffset 00005b90
StringPoolSize 00001438
BrokenDriverOffset 00000000
TriageOptions 00000041
TopOfStack a9697bd0
DebuggerDataOffset 00002da8
DebuggerDataSize 00000290
DataBlocksOffset 00006fc8
DataBlocksCount 00000005
Windows XP Kernel Version 2600 (Service Pack 1) UP Free x86 compatible
Kernel base = 0x804d4000 PsLoadedModuleList = 0x8054d4b0
Debug session time: Sun Nov 28 11:42:32 2004
System Uptime: 0 days 13:55:33
start end module name
804d4000 806c8e00 nt Checksum: 001F904D Timestamp: Thu Jun 17 12:
21:58 2004 (40D1D336)
Unloaded modules:
a8861000 a8888000 kmixer.sys Timestamp: unavailable (00000000)
a8861000 a8888000 kmixer.sys Timestamp: unavailable (00000000)
a884b000 a8861000 hiber_atapi. Timestamp: unavailable (00000000)
a8928000 a894f000 kmixer.sys Timestamp: unavailable (00000000)
a8b2f000 a8b56000 kmixer.sys Timestamp: unavailable (00000000)
a8b43000 a8b6a000 kmixer.sys Timestamp: unavailable (00000000)
a8d22000 a8d49000 kmixer.sys Timestamp: unavailable (00000000)
a8b54000 a8b6a000 hiber_atapi. Timestamp: unavailable (00000000)
a96fb000 a9722000 kmixer.sys Timestamp: unavailable (00000000)
f7b9f000 f7ba0000 drmkaud.sys Timestamp: unavailable (00000000)
a9858000 a9865000 DMusic.sys Timestamp: unavailable (00000000)
a9868000 a9876000 swmidi.sys Timestamp: unavailable (00000000)
a9735000 a9758000 aec.sys Timestamp: unavailable (00000000)
f7af5000 f7af7000 splitter.sys Timestamp: unavailable (00000000)
f7aa7000 f7aa9000 wmiacpi.sys Timestamp: unavailable (00000000)
f772d000 f773d000 serial.sys Timestamp: unavailable (00000000)
f78d5000 f78da000 Cdaudio.SYS Timestamp: unavailable (00000000)
f7a0d000 f7a10000 Sfloppy.SYS Timestamp: unavailable (00000000)
Finished dump check
Also I would try it out - prime 95 for an hour and let you know ...Thank you for your patience.
Loading dump file Mini112804-01.dmp
----- 32 bit Kernel Mini Dump Analysis
DUMP_HEADER32:
MajorVersion 0000000f
MinorVersion 00000a28
DirectoryTableBase 061d4000
PfnDataBase 81053000
PsLoadedModuleList 8054d4b0
PsActiveProcessHead 8054f4c8
MachineImageType 0000014c
NumberProcessors 00000001
BugCheckCode 1000008e
BugCheckParameter1 c0000005
BugCheckParameter2 00000000
BugCheckParameter3 a9697b5c
BugCheckParameter4 00000000
PaeEnabled 00000000
KdDebuggerDataBlock 8053f460
MiniDumpFields 00000dff
TRIAGE_DUMP32:
ServicePackBuild 00000100
SizeOfDump 00010000
ValidOffset 0000fffc
ContextOffset 00000320
ExceptionOffset 000007d0
MmOffset 00001068
UnloadedDriversOffset 000010a0
PrcbOffset 00001878
ProcessOffset 000024c8
ThreadOffset 00002720
CallStackOffset 00002978
SizeOfCallStack 00000430
DriverListOffset 00003038
DriverCount 00000092
StringPoolOffset 00005b90
StringPoolSize 00001438
BrokenDriverOffset 00000000
TriageOptions 00000041
TopOfStack a9697bd0
DebuggerDataOffset 00002da8
DebuggerDataSize 00000290
DataBlocksOffset 00006fc8
DataBlocksCount 00000005
Windows XP Kernel Version 2600 (Service Pack 1) UP Free x86 compatible
Kernel base = 0x804d4000 PsLoadedModuleList = 0x8054d4b0
Debug session time: Sun Nov 28 11:42:32 2004
System Uptime: 0 days 13:55:33
start end module name
804d4000 806c8e00 nt Checksum: 001F904D Timestamp: Thu Jun 17 12:
21:58 2004 (40D1D336)
Unloaded modules:
a8861000 a8888000 kmixer.sys Timestamp: unavailable (00000000)
a8861000 a8888000 kmixer.sys Timestamp: unavailable (00000000)
a884b000 a8861000 hiber_atapi. Timestamp: unavailable (00000000)
a8928000 a894f000 kmixer.sys Timestamp: unavailable (00000000)
a8b2f000 a8b56000 kmixer.sys Timestamp: unavailable (00000000)
a8b43000 a8b6a000 kmixer.sys Timestamp: unavailable (00000000)
a8d22000 a8d49000 kmixer.sys Timestamp: unavailable (00000000)
a8b54000 a8b6a000 hiber_atapi. Timestamp: unavailable (00000000)
a96fb000 a9722000 kmixer.sys Timestamp: unavailable (00000000)
f7b9f000 f7ba0000 drmkaud.sys Timestamp: unavailable (00000000)
a9858000 a9865000 DMusic.sys Timestamp: unavailable (00000000)
a9868000 a9876000 swmidi.sys Timestamp: unavailable (00000000)
a9735000 a9758000 aec.sys Timestamp: unavailable (00000000)
f7af5000 f7af7000 splitter.sys Timestamp: unavailable (00000000)
f7aa7000 f7aa9000 wmiacpi.sys Timestamp: unavailable (00000000)
f772d000 f773d000 serial.sys Timestamp: unavailable (00000000)
f78d5000 f78da000 Cdaudio.SYS Timestamp: unavailable (00000000)
f7a0d000 f7a10000 Sfloppy.SYS Timestamp: unavailable (00000000)
Finished dump check
Also I would try it out - prime 95 for an hour and let you know ...Thank you for your patience.
Since the failing instuction address is 0 and the information from the minidumps cannot determine the culprit. Most likely it is related to faulty ram, faulty cache at CPU or motherboard.
You can download windbg from http://www.microsoft.com/whdc/devtools/debugging/default.mspx
ASKER
Thank you for keeping on top of this. I ran the memtest and the prime 95 stress test ( 1 hr 10 mins) - both ran fine and reported no errors ! I am at my wit's end now.
ASKER
I have downloaded the Windbg and am waiting as to what needs to be done now ?
Change the dump option to take full dump. If it crashes again, a full dump is taken. Use Windbg to process the dump.
Subcommand
!analyze -v
!process (display the current process)
kb (display the stack trace)
lm t n (display the load module)
Post the output here.
Subcommand
!analyze -v
!process (display the current process)
kb (display the stack trace)
lm t n (display the load module)
Post the output here.
ASKER
Traced it back to a smart card driver ! It shuts down okay now and starts too .... :-)
Before I went to debug the dump - I repaired the OS - would that do any unwanted stuff ? I am concerned abt the hotfixes too - would I have to reapply if I have repaired the OS ! ?
I am still getting out of this bitter experience - thanks a ton on the debug !
My network connection with my SBC Yahoo DSL is still not okay !! :-(
Before I went to debug the dump - I repaired the OS - would that do any unwanted stuff ? I am concerned abt the hotfixes too - would I have to reapply if I have repaired the OS ! ?
I am still getting out of this bitter experience - thanks a ton on the debug !
My network connection with my SBC Yahoo DSL is still not okay !! :-(
Which is the name of your smart card driver? Which hotfixes do you want to apply?
ASKER
Smart card is Activcard - any consequent installs of my smart card is getting me in the same problem - the 8E stop error !! Dunno what to do - I need the smart card to VPN into my network !! :-( any help ????
This is the software problem of ActivCard driver as their code set the null value and branch to address 0. Send the minidump to ActivCard and ask for solution.
ASKER
The computer has rebooted from a bugcheck. The bugcheck was: 0x1000008e (0xc0000005, 0x00000000, 0xa96a6b5c, 0x00000000). A dump was saved in: C:\WINDOWS\Minidump\Mini11
Here is the program groups -
Accessories Default User:Accessories Default User
Accessories All Users:Accessories All Users
Accessories NT AUTHORITY\SYSTEM:Accessori
Accessories SHAKTIMAA\Administrator:Ac
Accessories\Accessibility Default User:Accessories\Accessibi
Accessories\Accessibility All Users:Accessories\Accessib
Accessories\Accessibility NT AUTHORITY\SYSTEM:Accessori
Accessories\Accessibility SHAKTIMAA\Administrator:Ac
Accessories\Communications
Accessories\Entertainment Default User:Accessories\Entertain
Accessories\Entertainment All Users:Accessories\Entertai
Accessories\Entertainment NT AUTHORITY\SYSTEM:Accessori
Accessories\Entertainment SHAKTIMAA\Administrator:Ac
Accessories\Microsoft Interactive Training All Users:Accessories\Microsof
Accessories\System Tools All Users:Accessories\System Tools All Users
ActivCard All Users:ActivCard All Users
ActivCard\ActivCard Gold All Users:ActivCard\ActivCard Gold All Users
Administrative Tools All Users:Administrative Tools All Users
Games All Users:Games All Users
Hewlett-Packard All Users:Hewlett-Packard All Users
Java Web Start All Users:Java Web Start All Users
MUSICMATCH All Users:MUSICMATCH All Users
Microsoft Office All Users:Microsoft Office All Users
Microsoft Office Tools All Users:Microsoft Office Tools All Users
Microsoft Office\Microsoft Office Tools All Users:Microsoft Office\Microsoft Office Tools All Users
Microsoft Works All Users:Microsoft Works All Users
Multimedia All Users:Multimedia All Users
Multimedia\DVD Player All Users:Multimedia\DVD Player All Users
Online Services Default User:Online Services Default User
Online Services All Users:Online Services All Users
Online Services NT AUTHORITY\SYSTEM:Online Services NT AUTHORITY\SYSTEM
Online Services SHAKTIMAA\Administrator:On
Oracle - OraDb10g_home1 All Users:Oracle - OraDb10g_home1 All Users
Oracle - OraDb10g_home1\Application
Oracle - OraDb10g_home1\Configurati
Oracle - OraDb10g_home1\Integrated Management Tools All Users:Oracle - OraDb10g_home1\Integrated Management Tools All Users
Oracle - OraDb10g_home1\Oracle Installation Products All Users:Oracle - OraDb10g_home1\Oracle Installation Products All Users
Picture Package All Users:Picture Package All Users
Picture Package\Handycam Tools All Users:Picture Package\Handycam Tools All Users
Picture Package\Picture Package Auto Slide All Users:Picture Package\Picture Package Auto Slide All Users
Picture Package\Picture Package Auto Video All Users:Picture Package\Picture Package Auto Video All Users
Picture Package\Picture Package CD Backup All Users:Picture Package\Picture Package CD Backup All Users
Picture Package\Picture Package Menu All Users:Picture Package\Picture Package Menu All Users
Picture Package\Picture Package VCD Maker All Users:Picture Package\Picture Package VCD Maker All Users
Picture Package\Picture Package Viewer All Users:Picture Package\Picture Package Viewer All Users
PrintMe Internet Printing All Users:PrintMe Internet Printing All Users
Roxio Easy CD and DVD Creator 6 All Users:Roxio Easy CD and DVD Creator 6 All Users
Startup Default User:Startup Default User
Startup All Users:Startup All Users
Startup NT AUTHORITY\SYSTEM:Startup NT AUTHORITY\SYSTEM
Startup SHAKTIMAA\Administrator:St
Sygate Security Agent All Users:Sygate Security Agent All Users
Symantec Client Security All Users:Symantec Client Security All Users
Utilities All Users:Utilities All Users
Utilities\One-Touch All Users:Utilities\One-Touch All Users
WinZip All Users:WinZip All Users
Yahoo! Messenger All Users:Yahoo! Messenger All Users
Zone.com Deluxe Games All Users:Zone.com Deluxe Games All Users
Zone.com Deluxe Games SHAKTIMAA\Administrator:Zo
Zone.com Deluxe Games\Collapse! Deluxe SHAKTIMAA\Administrator:Zo
Zone.com Deluxe Games\Cubis Deluxe All Users:Zone.com Deluxe Games\Cubis Deluxe All Users
Zone.com Deluxe Games\Mah Jong Tiles Deluxe SHAKTIMAA\Administrator:Zo
Zone.com Deluxe Games\TextTwist Deluxe SHAKTIMAA\Administrator:Zo
Zone.com Deluxe Games\Word Mojo Deluxe All Users:Zone.com Deluxe Games\Word Mojo Deluxe All Users