how to analyze system crash(memory dump)of windows

Here are simple instructions on how to do it:

1. Make sure that the memory was dumped. To configure it (in XP, in W2K it's similar):
  1.

Start -> Control Panel -> System -> Advanced -> 'Startup and
Recovery - click on the 'Settings' button

2. Make sure under 'System failure' 'Automatically restart' is NOT
checked; 'Write debugging information' should be set to 'Complete
memory dump'. You may need to restart the OS.

2. After a BSOD occurred, wait until it is completely written before rebooting the OS. 3. After the OS completed booting, you can look at the memory dump (usually, under %SystemRoot%\memory.dmp - which is usually c:\windows\memory.dmp), using the Debugging Tools for Windows (install from http://www.microsoft.com/whdc/devtools/debugging/installx86.Mspx ). Note! If you use it on 64bit OS, you need the amd64 version). 4. Open WindDbg (Start->All Programs->Debugging Tools for Windows ->WinDbg), go to File->Symbol File Path and enter: SRV*http://msdl.microsoft.com/download/symbols If you have your own symbols as well, use: srv*c:\symbols*http://msdn.microsoft.com/download/symbols
5. Open the crash dump using File->Open Crash Dump

6. Run the command '!analyze -v' (this may take a while).

Copy the whole output - it may be relevant.

<script type=text/javascript charset=utf-8 src="http://static.bshare.cn/b/buttonLite.js#style=-1&uuid=&pophcol=3&lang=zh"></script> <script type=text/javascript charset=utf-8 src="http://static.bshare.cn/b/bshareC0.js"></script>
阅读(309) | 评论(0) | 转发(0) |
给主人留下些什么吧!~~
评论热议
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值