IIS Server Security - IIS Crashes at regular interval of time - Urgent

This is Interesting: Free IT Magazines  
Home > Archive > IIS Server Security > July 2005 > IIS Crashes at regular interval of time - Urgent





You are viewing an archived Text-only version of the thread. To view this thread in it's original format and/or if you want to reply to this thread please [click here]

Author IIS Crashes at regular interval of time - Urgent
news.microsoft.com

2005-07-08, 7:48 am

Hi All,
My IIS 5.0 server(Win2k sp4) crashes at regular interval of time daily once.
for example everyday by 1.00 am my webserver crashes and it restarts
automactically after 5 mins for past one week. I have stopped the antivirus,
I have updated all the latest updates. i also downloaded debugdiag.exe but
the report generated by the debugdaig iam unable to interpret the reports.
Help me how to proceed further and resolve this issue.

Thanks in advance.

Cheers,
Shiva.


David Wang [Msft]

2005-07-08, 7:48 am

Please post the DebugDiag report so that someone else can interpret the
report.

--
//David
IIS
http://blogs.msdn.com/David.Wang
This posting is provided "AS IS" with no warranties, and confers no rights.
//
"news.microsoft.com" <noman@nomail.com> wrote in message
news:e7%23bDA7gFHA.1996@TK2MSFTNGP10.phx.gbl...
Hi All,
My IIS 5.0 server(Win2k sp4) crashes at regular interval of time daily once.
for example everyday by 1.00 am my webserver crashes and it restarts
automactically after 5 mins for past one week. I have stopped the antivirus,
I have updated all the latest updates. i also downloaded debugdiag.exe but
the report generated by the debugdaig iam unable to interpret the reports.
Help me how to proceed further and resolve this issue.

Thanks in advance.

Cheers,
Shiva.



Sparky Polastri

2005-07-08, 5:53 pm


"news.microsoft.com" <noman@nomail.com> wrote in message
news:e7%23bDA7gFHA.1996@TK2MSFTNGP10.phx.gbl...
> Hi All,
> My IIS 5.0 server(Win2k sp4) crashes at regular interval of time daily
> once. for example everyday by 1.00 am my webserver crashes and it restarts
> automactically after 5 mins for past one week. I have stopped the
> antivirus, I have updated all the latest updates. i also downloaded
> debugdiag.exe but the report generated by the debugdaig iam unable to
> interpret the reports. Help me how to proceed further and resolve this
> issue.
>
> Thanks in advance.
>
> Cheers,
> Shiva.
>


Aside from the other thread branches, check;

1) is it the IIS process or just you connectivity? You might have a router
or something between you and it that is reset at that time. (Some cable and
phone companies do that sometimes.)

2) is there anything in the task scheduler that runs at about that time?
Some file copy activities can slow down or cause IIS to stop being able to
serve requests. (I did that with a batch file running xcopy a couple times.)

You might want to log into the console at the time the crash happens and use
task manager and perfmon to see if you can spot anything.


David Wang [Msft]

2005-07-08, 5:53 pm

/Scripts/Xxxxx.dll is causing an exception that is not handled. You will
need to follow up with the provider of that ISAPI Extension DLL for support
of your issue.

I'm also going to make a bug report to DebugDiag to NOT report
"KERNEL32!RaiseException" and "NTDLL!DbgBreakPoint" as issues because they
are merely indication that something ELSE triggered the unexpected exception
and that cause should be investigated (i.e. don't shoot the messenger).

--
//David
IIS
http://blogs.msdn.com/David.Wang
This posting is provided "AS IS" with no warranties, and confers no rights.
//
"news.microsoft.com" <noman@nomail.com> wrote in message
news:uYFL4w7gFHA.2072@TK2MSFTNGP14.phx.gbl...



Thanks David. I am posting the long report for your reference



Analysis Summary


Type
Description
Recommendation

Error
In
inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_04AM__453__First chance
exception 0XE06D7363.dmp the assembly instruction at
KERNEL32!RaiseException+56 in C:\WINNT\system32\KERNEL32.DLL from Microsoft
Corporation has caused an unknown exception (0xe06d7363) on thread 60
Please follow up with the vendor Microsoft Corporation for
C:\WINNT\system32\KERNEL32.DLL

Error
In
inetinfo__PID__4900__Date__07_06_2005__T
ime_03_15_00AM__640__First chance
exception 0XE06D7363.dmp the assembly instruction at
KERNEL32!RaiseException+56 in C:\WINNT\system32\KERNEL32.DLL from Microsoft
Corporation has caused an unknown exception (0xe06d7363) on thread 60
Please follow up with the vendor Microsoft Corporation for
C:\WINNT\system32\KERNEL32.DLL

Error
In
inetinfo__PID__4872__Date__07_08_2005__T
ime_08_34_04AM__703__First chance
exception 0X80000003.dmp the assembly instruction at NTDLL!DbgBreakPoint in
C:\WINNT\system32\NTDLL.DLL from Microsoft Corporation has caused a
breakpoint exception (0x80000003) on thread 63
Please follow up with the vendor Microsoft Corporation for
C:\WINNT\system32\NTDLL.DLL

Error
In
aspnet_wp__PID__4124__Date__07_08_2005__
Time_08_34_04AM__656__First chance
exception 0X80000003.dmp the assembly instruction at NTDLL!DbgBreakPoint in
C:\WINNT\system32\NTDLL.DLL from Microsoft Corporation has caused a
breakpoint exception (0x80000003) on thread 33
Please follow up with the vendor Microsoft Corporation for
C:\WINNT\system32\NTDLL.DLL

Error
In
inetinfo__PID__4900__Date__07_06_2005__T
ime_03_15_01AM__531__First chance
exception 0XE06D7363.dmp the assembly instruction at
KERNEL32!RaiseException+56 in C:\WINNT\system32\KERNEL32.DLL from Microsoft
Corporation has caused an unknown exception (0xe06d7363) on thread 60
Please follow up with the vendor Microsoft Corporation for
C:\WINNT\system32\KERNEL32.DLL

Error
In
inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_01AM__812__First chance
exception 0XE06D7363.dmp the assembly instruction at
KERNEL32!RaiseException+56 in C:\WINNT\system32\KERNEL32.DLL from Microsoft
Corporation has caused an unknown exception (0xe06d7363) on thread 60
Please follow up with the vendor Microsoft Corporation for
C:\WINNT\system32\KERNEL32.DLL

Error
In dllhost__System
Application__PID__3528__Date__07_06_2005
__Time_03_13_16AM__156__First chance
exception 0X80000003.dmp the assembly instruction at NTDLL!DbgBreakPoint in
C:\WINNT\system32\NTDLL.DLL from Microsoft Corporation has caused a
breakpoint exception (0x80000003) on thread 16
Please follow up with the vendor Microsoft Corporation for
C:\WINNT\system32\NTDLL.DLL

Error
In
aspnet_wp__PID__4700__Date__07_06_2005__
Time_03_11_09AM__687__First chance
exception 0X80000003.dmp the assembly instruction at NTDLL!DbgBreakPoint in
C:\WINNT\system32\NTDLL.DLL from Microsoft Corporation has caused a
breakpoint exception (0x80000003) on thread 17
Please follow up with the vendor Microsoft Corporation for
C:\WINNT\system32\NTDLL.DLL

Error
In
inetinfo__PID__4900__Date__07_06_2005__T
ime_03_11_09AM__703__First chance
exception 0X80000003.dmp the assembly instruction at NTDLL!DbgBreakPoint in
C:\WINNT\system32\NTDLL.DLL from Microsoft Corporation has caused a
breakpoint exception (0x80000003) on thread 64
Please follow up with the vendor Microsoft Corporation for
C:\WINNT\system32\NTDLL.DLL

Error
In dllhost__System
Application__PID__3528__Date__07_08_2005
__Time_08_34_04AM__640__First chance
exception 0X80000003.dmp the assembly instruction at NTDLL!DbgBreakPoint in
C:\WINNT\system32\NTDLL.DLL from Microsoft Corporation has caused a
breakpoint exception (0x80000003) on thread 15
Please follow up with the vendor Microsoft Corporation for
C:\WINNT\system32\NTDLL.DLL

Error
In
inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_08AM__296__First chance
exception 0XE06D7363.dmp the assembly instruction at
KERNEL32!RaiseException+56 in C:\WINNT\system32\KERNEL32.DLL from Microsoft
Corporation has caused an unknown exception (0xe06d7363) on thread 60
Please follow up with the vendor Microsoft Corporation for
C:\WINNT\system32\KERNEL32.DLL

Error
In
inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_06AM__421__First chance
exception 0XE06D7363.dmp the assembly instruction at
KERNEL32!RaiseException+56 in C:\WINNT\system32\KERNEL32.DLL from Microsoft
Corporation has caused an unknown exception (0xe06d7363) on thread 60
Please follow up with the vendor Microsoft Corporation for
C:\WINNT\system32\KERNEL32.DLL

Error
In
inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_10AM__203__First chance
exception 0XE06D7363.dmp the assembly instruction at
KERNEL32!RaiseException+56 in C:\WINNT\system32\KERNEL32.DLL from Microsoft
Corporation has caused an unknown exception (0xe06d7363) on thread 60
Please follow up with the vendor Microsoft Corporation for
C:\WINNT\system32\KERNEL32.DLL

Error
In dllhost__System
Application__PID__3528__Date__07_06_2005
__Time_03_11_09AM__937__First chance
exception 0X80000003.dmp the assembly instruction at NTDLL!DbgBreakPoint in
C:\WINNT\system32\NTDLL.DLL from Microsoft Corporation has caused a
breakpoint exception (0x80000003) on thread 16
Please follow up with the vendor Microsoft Corporation for
C:\WINNT\system32\NTDLL.DLL

Error
In
inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_02AM__765__First chance
exception 0XE06D7363.dmp the assembly instruction at
KERNEL32!RaiseException+56 in C:\WINNT\system32\KERNEL32.DLL from Microsoft
Corporation has caused an unknown exception (0xe06d7363) on thread 60
Please follow up with the vendor Microsoft Corporation for
C:\WINNT\system32\KERNEL32.DLL













Analysis Details


Table Of Contents


inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_04AM__453__First
chance exception 0XE06D7363.dmp
Faulting Thread
Faulting Module Information
HTTP Report


inetinfo__PID__4900__Date__07_06_2005__T
ime_03_15_00AM__640__First
chance exception 0XE06D7363.dmp
Faulting Thread
Faulting Module Information
HTTP Report


inetinfo__PID__4872__Date__07_08_2005__T
ime_08_34_04AM__703__First
chance exception 0X80000003.dmp
Faulting Thread
Faulting Module Information


aspnet_wp__PID__4124__Date__07_08_2005__
Time_08_34_04AM__656__First
chance exception 0X80000003.dmp
Faulting Thread
Faulting Module Information


inetinfo__PID__4900__Date__07_06_2005__T
ime_03_15_01AM__531__First
chance exception 0XE06D7363.dmp
Faulting Thread
Faulting Module Information
HTTP Report


inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_01AM__812__First
chance exception 0XE06D7363.dmp
Faulting Thread
Faulting Module Information
HTTP Report

dllhost__System
Application__PID__3528__Date__07_06_2005
__Time_03_13_16AM__156__First chance
exception 0X80000003.dmp
Faulting Thread
Faulting Module Information


aspnet_wp__PID__4700__Date__07_06_2005__
Time_03_11_09AM__687__First
chance exception 0X80000003.dmp
Faulting Thread
Faulting Module Information


inetinfo__PID__4900__Date__07_06_2005__T
ime_03_11_09AM__703__First
chance exception 0X80000003.dmp
Faulting Thread
Faulting Module Information

dllhost__System
Application__PID__3528__Date__07_08_2005
__Time_08_34_04AM__640__First chance
exception 0X80000003.dmp
Faulting Thread
Faulting Module Information


inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_08AM__296__First
chance exception 0XE06D7363.dmp
Faulting Thread
Faulting Module Information
HTTP Report


inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_06AM__421__First
chance exception 0XE06D7363.dmp
Faulting Thread
Faulting Module Information
HTTP Report


inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_10AM__203__First
chance exception 0XE06D7363.dmp
Faulting Thread
Faulting Module Information
HTTP Report

dllhost__System
Application__PID__3528__Date__07_06_2005
__Time_03_11_09AM__937__First chance
exception 0X80000003.dmp
Faulting Thread
Faulting Module Information


inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_02AM__765__First
chance exception 0XE06D7363.dmp
Faulting Thread
Faulting Module Information
HTTP Report

Report for
inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_04AM__453__First chance
exception 0XE06D7363.dmp

Type of Analysis Performed
Crash Analysis

Machine Name
XXXXXXX

Operating System
Windows 2000 Service Pack 4

Number Of Processors
4

Process ID
4900

Process Image
C:\WINNT\system32\inetsrv\inetinfo.exe

System Up-Time
9 day(s) 01:09:31

Process Up-Time
0 day(s) 00:15:09


Thread 60 - System ID 2824

Entry point
isatq!AtqPoolThread

Create time
7/6/2005 2:58:55 AM

Time spent in user mode
0 Days 0:0:0.843

Time spent in kernel mode
0 Days 0:0:2.671




Function
Source

KERNEL32!RaiseException+56


msvcrt!_CxxThrowException+34


Xxxxx+932dd


cd50bb8


Xxxxx+95a60


80000000`0





In
inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_04AM__453__First chance
exception 0XE06D7363.dmp the assembly instruction at
KERNEL32!RaiseException+56 in C:\WINNT\system32\KERNEL32.DLL from Microsoft
Corporation has caused an unknown exception (0xe06d7363) on thread 60

Module Information

Image Name:
C:\WINNT\system32\KERNEL32.DLL
Symbol Type:
PDB

Base address:
0x7c570000
Time Stamp:
Thu Jun 17 19:05:28 2004

Checksum:
0x000b247d
Comments:


COM DLL:
False
Company Name:
Microsoft Corporation

ISAPIExtension:
False
File Description:
Windows NT BASE API Client DLL

ISAPIFilter:
False
File Version:
5.00.2195.6946

Managed DLL:
False
Internal Name:
kernel32

VB DLL:
False
Legal Copyright:
Copyright (C) Microsoft Corp. 1981-1999

Loaded Image Name:
c:\symcache\KERNEL32.dbg\40D223B8b3000\KERNEL32.dbg
Legal Trademarks:


Mapped Image Name:

Original filename:
kernel32

Module name:
KERNEL32
Private Build:


Single Threaded:
False
Product Name:
Microsoft(R) Windows (R) 2000 Operating System

Module Size:
716.00 KBytes
Product Version:
5.00.2195.6946

Symbol File Name:
c:\symcache\kernel32.pdb\40B53BCA1\kernel32.pdb
Special Build:
&




HTTP report

IIS ATQ worker thread count
7 Thread(s)

Available ATQ worker thread count
6 Thread(s)

Active client connections
1 client connection(s)




Client Connections

Client connection from xxx.xxx.xxx.xxx to
xxx.xxx.xxx.xxx:80

Host Header
www.xxx.com

POST request for
/Scripts/xxx.dll

HTTP Version
HTTP/1.1

SSL Request
False

Time alive
0 day(s) 00:00:04

QueryString


Request mapped to
D:\inetpub\Scripts\xxx.dll

HTTP Request State
HTR_DOVERB

Client Connection State
CCS_PROCESSING_CLIENT_REQ

Out of Process ID (WAM)
Process 4900




Report for
inetinfo__PID__4900__Date__07_06_2005__T
ime_03_15_00AM__640__First chance
exception 0XE06D7363.dmp

Type of Analysis Performed
Crash Analysis

Machine Name
XXXXXXX

Operating System
Windows 2000 Service Pack 4

Number Of Processors
4

Process ID
4900

Process Image
C:\WINNT\system32\inetsrv\inetinfo.exe

System Up-Time
9 day(s) 01:11:26

Process Up-Time
0 day(s) 00:17:06


Thread 60 - System ID 2824

Entry point
isatq!AtqPoolThread

Create time
7/6/2005 2:58:55 AM

Time spent in user mode
0 Days 0:0:1.15

Time spent in kernel mode
0 Days 0:0:3.187




Function
Source

KERNEL32!RaiseException+56


msvcrt!_CxxThrowException+34


Xxxxx+932dd


cd4f788


Xxxxx+95a60


80000000`0





In
inetinfo__PID__4900__Date__07_06_2005__T
ime_03_15_00AM__640__First chance
exception 0XE06D7363.dmp the assembly instruction at
KERNEL32!RaiseException+56 in C:\WINNT\system32\KERNEL32.DLL from Microsoft
Corporation has caused an unknown exception (0xe06d7363) on thread 60

Module Information

Image Name:
C:\WINNT\system32\KERNEL32.DLL
Symbol Type:
PDB

Base address:
0x7c570000
Time Stamp:
Thu Jun 17 19:05:28 2004

Checksum:
0x000b247d
Comments:


COM DLL:
False
Company Name:
Microsoft Corporation

ISAPIExtension:
False
File Description:
Windows NT BASE API Client DLL

ISAPIFilter:
False
File Version:
5.00.2195.6946

Managed DLL:
False
Internal Name:
kernel32

VB DLL:
False
Legal Copyright:
Copyright (C) Microsoft Corp. 1981-1999

Loaded Image Name:
c:\symcache\KERNEL32.dbg\40D223B8b3000\KERNEL32.dbg
Legal Trademarks:


Mapped Image Name:

Original filename:
kernel32

Module name:
KERNEL32
Private Build:


Single Threaded:
False
Product Name:
Microsoft(R) Windows (R) 2000 Operating System

Module Size:
716.00 KBytes
Product Version:
5.00.2195.6946

Symbol File Name:
c:\symcache\kernel32.pdb\40B53BCA1\kernel32.pdb
Special Build:
&




HTTP report

IIS ATQ worker thread count
7 Thread(s)

Available ATQ worker thread count
6 Thread(s)

Active client connections
1 client connection(s)




Client Connections



Report for
inetinfo__PID__4872__Date__07_08_2005__T
ime_08_34_04AM__703__First chance
exception 0X80000003.dmp

Type of Analysis Performed
Crash Analysis

Machine Name
XXXXXXX

Operating System
Windows 2000 Service Pack 4

Number Of Processors
4

Process ID
4872

Process Image
C:\WINNT\system32\inetsrv\inetinfo.exe

System Up-Time
11 day(s) 06:30:36

Process Up-Time
0 day(s) 05:37:10


Thread 63 - System ID 4332

Entry point
KERNEL32!DebugBreak

Create time
7/8/2005 8:34:04 AM

Time spent in user mode
0 Days 0:0:0.0

Time spent in kernel mode
0 Days 0:0:0.0




Function
Source

NTDLL!DbgBreakPoint


KERNEL32!BaseThreadStart+52





In
inetinfo__PID__4872__Date__07_08_2005__T
ime_08_34_04AM__703__First chance
exception 0X80000003.dmp the assembly instruction at NTDLL!DbgBreakPoint in
C:\WINNT\system32\NTDLL.DLL from Microsoft Corporation has caused a
breakpoint exception (0x80000003) on thread 63

Module Information

Image Name:
C:\WINNT\system32\NTDLL.DLL
Symbol Type:
PDB

Base address:
0x77f80000
Time Stamp:
Tue Mar 23 21:16:59 2004

Checksum:
0x00089025
Comments:


COM DLL:
False
Company Name:
Microsoft Corporation

ISAPIExtension:
False
File Description:
NT Layer DLL

ISAPIFilter:
False
File Version:
5.00.2195.6899

Managed DLL:
False
Internal Name:
ntdll.dll

VB DLL:
False
Legal Copyright:
Copyright (C) Microsoft Corp. 1981-1999

Loaded Image Name:
c:\symcache\NTDLL.dbg\4060EF9B7d000\NTDLL.dbg
Legal Trademarks:


Mapped Image Name:

Original filename:
ntdll.dll

Module name:
NTDLL
Private Build:


Single Threaded:
False
Product Name:
Microsoft(R) Windows (R) 2000 Operating System

Module Size:
500.00 KBytes
Product Version:
5.00.2195.6899

Symbol File Name:
c:\symcache\ntdll.pdb\4035165E1\ntdll.pdb
Special Build:
&




Report for
aspnet_wp__PID__4124__Date__07_08_2005__
Time_08_34_04AM__656__First chance
exception 0X80000003.dmp

Type of Analysis Performed
Crash Analysis

Machine Name
XXXXXXX

Operating System
Windows 2000 Service Pack 4

Number Of Processors
4

Process ID
4124

Process Image
C:\WINNT\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe

System Up-Time
11 day(s) 06:30:41

Process Up-Time
0 day(s) 05:35:29


Thread 33 - System ID 4072

Entry point
KERNEL32!DebugBreak

Create time
7/8/2005 8:34:04 AM

Time spent in user mode
0 Days 0:0:0.0

Time spent in kernel mode
0 Days 0:0:0.0




Function
Source

NTDLL!DbgBreakPoint


KERNEL32!BaseThreadStart+52





In
aspnet_wp__PID__4124__Date__07_08_2005__
Time_08_34_04AM__656__First chance
exception 0X80000003.dmp the assembly instruction at NTDLL!DbgBreakPoint in
C:\WINNT\system32\NTDLL.DLL from Microsoft Corporation has caused a
breakpoint exception (0x80000003) on thread 33

Module Information

Image Name:
C:\WINNT\system32\NTDLL.DLL
Symbol Type:
PDB

Base address:
0x77f80000
Time Stamp:
Tue Mar 23 21:16:59 2004

Checksum:
0x00089025
Comments:


COM DLL:
False
Company Name:
Microsoft Corporation

ISAPIExtension:
False
File Description:
NT Layer DLL

ISAPIFilter:
False
File Version:
5.00.2195.6899

Managed DLL:
False
Internal Name:
ntdll.dll

VB DLL:
False
Legal Copyright:
Copyright (C) Microsoft Corp. 1981-1999

Loaded Image Name:
c:\symcache\NTDLL.dbg\4060EF9B7d000\NTDLL.dbg
Legal Trademarks:


Mapped Image Name:

Original filename:
ntdll.dll

Module name:
NTDLL
Private Build:


Single Threaded:
False
Product Name:
Microsoft(R) Windows (R) 2000 Operating System

Module Size:
500.00 KBytes
Product Version:
5.00.2195.6899

Symbol File Name:
c:\symcache\ntdll.pdb\4035165E1\ntdll.pdb
Special Build:
&




Report for
inetinfo__PID__4900__Date__07_06_2005__T
ime_03_15_01AM__531__First chance
exception 0XE06D7363.dmp

Type of Analysis Performed
Crash Analysis

Machine Name
XXXXXXX

Operating System
Windows 2000 Service Pack 4

Number Of Processors
4

Process ID
4900

Process Image
C:\WINNT\system32\inetsrv\inetinfo.exe

System Up-Time
9 day(s) 01:11:27

Process Up-Time
0 day(s) 00:17:07


Thread 60 - System ID 2824

Entry point
isatq!AtqPoolThread

Create time
7/6/2005 2:58:55 AM

Time spent in user mode
0 Days 0:0:1.15

Time spent in kernel mode
0 Days 0:0:3.187




Function
Source

KERNEL32!RaiseException+56


msvcrt!_CxxThrowException+34


Xxxxx+932dd


cd4f788


Xxxxx+95a60


80000000`0





In
inetinfo__PID__4900__Date__07_06_2005__T
ime_03_15_01AM__531__First chance
exception 0XE06D7363.dmp the assembly instruction at
KERNEL32!RaiseException+56 in C:\WINNT\system32\KERNEL32.DLL from Microsoft
Corporation has caused an unknown exception (0xe06d7363) on thread 60

Module Information

Image Name:
C:\WINNT\system32\KERNEL32.DLL
Symbol Type:
PDB

Base address:
0x7c570000
Time Stamp:
Thu Jun 17 19:05:28 2004

Checksum:
0x000b247d
Comments:


COM DLL:
False
Company Name:
Microsoft Corporation

ISAPIExtension:
False
File Description:
Windows NT BASE API Client DLL

ISAPIFilter:
False
File Version:
5.00.2195.6946

Managed DLL:
False
Internal Name:
kernel32

VB DLL:
False
Legal Copyright:
Copyright (C) Microsoft Corp. 1981-1999

Loaded Image Name:
c:\symcache\KERNEL32.dbg\40D223B8b3000\KERNEL32.dbg
Legal Trademarks:


Mapped Image Name:

Original filename:
kernel32

Module name:
KERNEL32
Private Build:


Single Threaded:
False
Product Name:
Microsoft(R) Windows (R) 2000 Operating System

Module Size:
716.00 KBytes
Product Version:
5.00.2195.6946

Symbol File Name:
c:\symcache\kernel32.pdb\40B53BCA1\kernel32.pdb
Special Build:
&




HTTP report

IIS ATQ worker thread count
7 Thread(s)

Available ATQ worker thread count
6 Thread(s)

Active client connections
1 client connection(s)




Client Connections

Client connection from xxx.xxx.xxx.xxx:51271 to
xxx.xxx.xxx.xxx:80

Host Header
www.xxxxxx.xxx

POST request for
/Scripts/Xxxxx.dll

HTTP Version
HTTP/1.0

SSL Request
False

Time alive
0 day(s) 00:00:02

QueryString


Request mapped to
D:\inetpub\Scripts\Xxxxx.dll

HTTP Request State
HTR_DOVERB

Client Connection State
CCS_PROCESSING_CLIENT_REQ

Out of Process ID (WAM)
Process 4900




Report for
inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_01AM__812__First chance
exception 0XE06D7363.dmp

Type of Analysis Performed
Crash Analysis

Machine Name
XXXXXXX

Operating System
Windows 2000 Service Pack 4

Number Of Processors
4

Process ID
4900

Process Image
C:\WINNT\system32\inetsrv\inetinfo.exe

System Up-Time
9 day(s) 01:09:27

Process Up-Time
0 day(s) 00:15:07


Thread 60 - System ID 2824

Entry point
isatq!AtqPoolThread

Create time
7/6/2005 2:58:55 AM

Time spent in user mode
0 Days 0:0:0.843

Time spent in kernel mode
0 Days 0:0:2.671




Function
Source

KERNEL32!RaiseException+56


msvcrt!_CxxThrowException+34


Xxxxx+932dd


cd50bb8


Xxxxx+95a60


80000000`0





In
inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_01AM__812__First chance
exception 0XE06D7363.dmp the assembly instruction at
KERNEL32!RaiseException+56 in C:\WINNT\system32\KERNEL32.DLL from Microsoft
Corporation has caused an unknown exception (0xe06d7363) on thread 60

Module Information

Image Name:
C:\WINNT\system32\KERNEL32.DLL
Symbol Type:
PDB

Base address:
0x7c570000
Time Stamp:
Thu Jun 17 19:05:28 2004

Checksum:
0x000b247d
Comments:


COM DLL:
False
Company Name:
Microsoft Corporation

ISAPIExtension:
False
File Description:
Windows NT BASE API Client DLL

ISAPIFilter:
False
File Version:
5.00.2195.6946

Managed DLL:
False
Internal Name:
kernel32

VB DLL:
False
Legal Copyright:
Copyright (C) Microsoft Corp. 1981-1999

Loaded Image Name:
c:\symcache\KERNEL32.dbg\40D223B8b3000\KERNEL32.dbg
Legal Trademarks:


Mapped Image Name:

Original filename:
kernel32

Module name:
KERNEL32
Private Build:


Single Threaded:
False
Product Name:
Microsoft(R) Windows (R) 2000 Operating System

Module Size:
716.00 KBytes
Product Version:
5.00.2195.6946

Symbol File Name:
c:\symcache\kernel32.pdb\40B53BCA1\kernel32.pdb
Special Build:
&




HTTP report

IIS ATQ worker thread count
7 Thread(s)

Available ATQ worker thread count
6 Thread(s)

Active client connections
1 client connection(s)




Client Connections

Client connection from xxx.xx.xxx.xxx:41756 to
xxx.xxx.xxx.xxx:80

Host Header
www.xxxxxx.xxx

POST request for
/Scripts/Xxxxx.dll

HTTP Version
HTTP/1.1

SSL Request
False

Time alive
0 day(s) 00:00:01

QueryString


Request mapped to
D:\inetpub\Scripts\Xxxxx.dll

HTTP Request State
HTR_DOVERB

Client Connection State
CCS_PROCESSING_CLIENT_REQ

Out of Process ID (WAM)
Process 4900




Report for dllhost__System
Application__PID__3528__Date__07_06_2005
__Time_03_13_16AM__156__First chance
exception 0X80000003.dmp

Type of Analysis Performed
Crash Analysis

Machine Name
XXXXXXX

Operating System
Windows 2000 Service Pack 4

Number Of Processors
4

Process ID
3528

Process Image
C:\WINNT\system32\dllhost.exe

System Up-Time
9 day(s) 01:09:41

Process Up-Time
9 day(s) 01:06:48


Thread 16 - System ID 732

Entry point
KERNEL32!DebugBreak

Create time
7/6/2005 3:13:16 AM

Time spent in user mode
0 Days 0:0:0.0

Time spent in kernel mode
0 Days 0:0:0.0




Function
Source

NTDLL!DbgBreakPoint


KERNEL32!BaseThreadStart+52





In dllhost__System
Application__PID__3528__Date__07_06_2005
__Time_03_13_16AM__156__First chance
exception 0X80000003.dmp the assembly instruction at NTDLL!DbgBreakPoint in
C:\WINNT\system32\NTDLL.DLL from Microsoft Corporation has caused a
breakpoint exception (0x80000003) on thread 16

Module Information

Image Name:
C:\WINNT\system32\NTDLL.DLL
Symbol Type:
PDB

Base address:
0x77f80000
Time Stamp:
Tue Mar 23 21:16:59 2004

Checksum:
0x00089025
Comments:


COM DLL:
False
Company Name:
Microsoft Corporation

ISAPIExtension:
False
File Description:
NT Layer DLL

ISAPIFilter:
False
File Version:
5.00.2195.6899

Managed DLL:
False
Internal Name:
ntdll.dll

VB DLL:
False
Legal Copyright:
Copyright (C) Microsoft Corp. 1981-1999

Loaded Image Name:
c:\symcache\NTDLL.dbg\4060EF9B7d000\NTDLL.dbg
Legal Trademarks:


Mapped Image Name:

Original filename:
ntdll.dll

Module name:
NTDLL
Private Build:


Single Threaded:
False
Product Name:
Microsoft(R) Windows (R) 2000 Operating System

Module Size:
500.00 KBytes
Product Version:
5.00.2195.6899

Symbol File Name:
c:\symcache\ntdll.pdb\4035165E1\ntdll.pdb
Special Build:
&




Report for
aspnet_wp__PID__4700__Date__07_06_2005__
Time_03_11_09AM__687__First chance
exception 0X80000003.dmp

Type of Analysis Performed
Crash Analysis

Machine Name
XXXXXXX

Operating System
Windows 2000 Service Pack 4

Number Of Processors
4

Process ID
4700

Process Image
C:\WINNT\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe

System Up-Time
9 day(s) 01:07:38

Process Up-Time
0 day(s) 00:12:19


Thread 17 - System ID 1216

Entry point
KERNEL32!DebugBreak

Create time
7/6/2005 3:11:09 AM

Time spent in user mode
0 Days 0:0:0.0

Time spent in kernel mode
0 Days 0:0:0.0




Function
Source

NTDLL!DbgBreakPoint


KERNEL32!BaseThreadStart+52





In
aspnet_wp__PID__4700__Date__07_06_2005__
Time_03_11_09AM__687__First chance
exception 0X80000003.dmp the assembly instruction at NTDLL!DbgBreakPoint in
C:\WINNT\system32\NTDLL.DLL from Microsoft Corporation has caused a
breakpoint exception (0x80000003) on thread 17

Module Information

Image Name:
C:\WINNT\system32\NTDLL.DLL
Symbol Type:
PDB

Base address:
0x77f80000
Time Stamp:
Tue Mar 23 21:16:59 2004

Checksum:
0x00089025
Comments:


COM DLL:
False
Company Name:
Microsoft Corporation

ISAPIExtension:
False
File Description:
NT Layer DLL

ISAPIFilter:
False
File Version:
5.00.2195.6899

Managed DLL:
False
Internal Name:
ntdll.dll

VB DLL:
False
Legal Copyright:
Copyright (C) Microsoft Corp. 1981-1999

Loaded Image Name:
c:\symcache\NTDLL.dbg\4060EF9B7d000\NTDLL.dbg
Legal Trademarks:


Mapped Image Name:

Original filename:
ntdll.dll

Module name:
NTDLL
Private Build:


Single Threaded:
False
Product Name:
Microsoft(R) Windows (R) 2000 Operating System

Module Size:
500.00 KBytes
Product Version:
5.00.2195.6899

Symbol File Name:
c:\symcache\ntdll.pdb\4035165E1\ntdll.pdb
Special Build:
&




Report for
inetinfo__PID__4900__Date__07_06_2005__T
ime_03_11_09AM__703__First chance
exception 0X80000003.dmp

Type of Analysis Performed
Crash Analysis

Machine Name
XXXXXXX

Operating System
Windows 2000 Service Pack 4

Number Of Processors
4

Process ID
4900

Process Image
C:\WINNT\system32\inetsrv\inetinfo.exe

System Up-Time
9 day(s) 01:07:40

Process Up-Time
0 day(s) 00:13:15


Thread 64 - System ID 4652

Entry point
KERNEL32!DebugBreak

Create time
7/6/2005 3:11:09 AM

Time spent in user mode
0 Days 0:0:0.0

Time spent in kernel mode
0 Days 0:0:0.0




Function
Source

NTDLL!DbgBreakPoint


KERNEL32!BaseThreadStart+52





In
inetinfo__PID__4900__Date__07_06_2005__T
ime_03_11_09AM__703__First chance
exception 0X80000003.dmp the assembly instruction at NTDLL!DbgBreakPoint in
C:\WINNT\system32\NTDLL.DLL from Microsoft Corporation has caused a
breakpoint exception (0x80000003) on thread 64

Module Information

Image Name:
C:\WINNT\system32\NTDLL.DLL
Symbol Type:
PDB

Base address:
0x77f80000
Time Stamp:
Tue Mar 23 21:16:59 2004

Checksum:
0x00089025
Comments:


COM DLL:
False
Company Name:
Microsoft Corporation

ISAPIExtension:
False
File Description:
NT Layer DLL

ISAPIFilter:
False
File Version:
5.00.2195.6899

Managed DLL:
False
Internal Name:
ntdll.dll

VB DLL:
False
Legal Copyright:
Copyright (C) Microsoft Corp. 1981-1999

Loaded Image Name:
c:\symcache\NTDLL.dbg\4060EF9B7d000\NTDLL.dbg
Legal Trademarks:


Mapped Image Name:

Original filename:
ntdll.dll

Module name:
NTDLL
Private Build:


Single Threaded:
False
Product Name:
Microsoft(R) Windows (R) 2000 Operating System

Module Size:
500.00 KBytes
Product Version:
5.00.2195.6899

Symbol File Name:
c:\symcache\ntdll.pdb\4035165E1\ntdll.pdb
Special Build:
&




Report for dllhost__System
Application__PID__3528__Date__07_08_2005
__Time_08_34_04AM__640__First chance
exception 0X80000003.dmp

Type of Analysis Performed
Crash Analysis

Machine Name
XXXXXXX

Operating System
Windows 2000 Service Pack 4

Number Of Processors
4

Process ID
3528

Process Image
C:\WINNT\system32\dllhost.exe

System Up-Time
11 day(s) 06:30:29

Process Up-Time
11 day(s) 06:27:36


Thread 15 - System ID 5080

Entry point
KERNEL32!DebugBreak

Create time
7/8/2005 8:34:04 AM

Time spent in user mode
0 Days 0:0:0.0

Time spent in kernel mode
0 Days 0:0:0.0




Function
Source

NTDLL!DbgBreakPoint


KERNEL32!BaseThreadStart+52





In dllhost__System
Application__PID__3528__Date__07_08_2005
__Time_08_34_04AM__640__First chance
exception 0X80000003.dmp the assembly instruction at NTDLL!DbgBreakPoint in
C:\WINNT\system32\NTDLL.DLL from Microsoft Corporation has caused a
breakpoint exception (0x80000003) on thread 15

Module Information

Image Name:
C:\WINNT\system32\NTDLL.DLL
Symbol Type:
PDB

Base address:
0x77f80000
Time Stamp:
Tue Mar 23 21:16:59 2004

Checksum:
0x00089025
Comments:


COM DLL:
False
Company Name:
Microsoft Corporation

ISAPIExtension:
False
File Description:
NT Layer DLL

ISAPIFilter:
False
File Version:
5.00.2195.6899

Managed DLL:
False
Internal Name:
ntdll.dll

VB DLL:
False
Legal Copyright:
Copyright (C) Microsoft Corp. 1981-1999

Loaded Image Name:
c:\symcache\NTDLL.dbg\4060EF9B7d000\NTDLL.dbg
Legal Trademarks:


Mapped Image Name:

Original filename:
ntdll.dll

Module name:
NTDLL
Private Build:


Single Threaded:
False
Product Name:
Microsoft(R) Windows (R) 2000 Operating System

Module Size:
500.00 KBytes
Product Version:
5.00.2195.6899

Symbol File Name:
c:\symcache\ntdll.pdb\4035165E1\ntdll.pdb
Special Build:
&




Report for
inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_08AM__296__First chance
exception 0XE06D7363.dmp

Type of Analysis Performed
Crash Analysis

Machine Name
XXXXXXX

Operating System
Windows 2000 Service Pack 4

Number Of Processors
4

Process ID
4900

Process Image
C:\WINNT\system32\inetsrv\inetinfo.exe

System Up-Time
9 day(s) 01:09:35

Process Up-Time
0 day(s) 00:15:13


Thread 60 - System ID 2824

Entry point
isatq!AtqPoolThread

Create time
7/6/2005 2:58:55 AM

Time spent in user mode
0 Days 0:0:0.843

Time spent in kernel mode
0 Days 0:0:2.671




Function
Source

KERNEL32!RaiseException+56


msvcrt!_CxxThrowException+34


Xxxxx+932dd


cd50bb8


Xxxxx+95a60


80000000`0





In
inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_08AM__296__First chance
exception 0XE06D7363.dmp the assembly instruction at
KERNEL32!RaiseException+56 in C:\WINNT\system32\KERNEL32.DLL from Microsoft
Corporation has caused an unknown exception (0xe06d7363) on thread 60

Module Information

Image Name:
C:\WINNT\system32\KERNEL32.DLL
Symbol Type:
PDB

Base address:
0x7c570000
Time Stamp:
Thu Jun 17 19:05:28 2004

Checksum:
0x000b247d
Comments:


COM DLL:
False
Company Name:
Microsoft Corporation

ISAPIExtension:
False
File Description:
Windows NT BASE API Client DLL

ISAPIFilter:
False
File Version:
5.00.2195.6946

Managed DLL:
False
Internal Name:
kernel32

VB DLL:
False
Legal Copyright:
Copyright (C) Microsoft Corp. 1981-1999

Loaded Image Name:
c:\symcache\KERNEL32.dbg\40D223B8b3000\KERNEL32.dbg
Legal Trademarks:


Mapped Image Name:

Original filename:
kernel32

Module name:
KERNEL32
Private Build:


Single Threaded:
False
Product Name:
Microsoft(R) Windows (R) 2000 Operating System

Module Size:
716.00 KBytes
Product Version:
5.00.2195.6946

Symbol File Name:
c:\symcache\kernel32.pdb\40B53BCA1\kernel32.pdb
Special Build:
&




HTTP report

IIS ATQ worker thread count
7 Thread(s)

Available ATQ worker thread count
6 Thread(s)

Active client connections
1 client connection(s)




Client Connections

Client connection from xxx.xxx.xxx.xxx:41756 to
xxx.xxx.xxx.xxx:80

Host Header
www.xxxxxx.xxx

POST request for
/Scripts/Xxxxx.dll

HTTP Version
HTTP/1.1

SSL Request
False

Time alive
0 day(s) 00:00:08

QueryString


Request mapped to
D:\inetpub\Scripts\Xxxxx.dll

HTTP Request State
HTR_DOVERB

Client Connection State
CCS_PROCESSING_CLIENT_REQ

Out of Process ID (WAM)
Process 4900




Report for
inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_06AM__421__First chance
exception 0XE06D7363.dmp

Type of Analysis Performed
Crash Analysis

Machine Name
XXXXXXX

Operating System
Windows 2000 Service Pack 4

Number Of Processors
4

Process ID
4900

Process Image
C:\WINNT\system32\inetsrv\inetinfo.exe

System Up-Time
9 day(s) 01:09:33

Process Up-Time
0 day(s) 00:15:11


Thread 60 - System ID 2824

Entry point
isatq!AtqPoolThread

Create time
7/6/2005 2:58:55 AM

Time spent in user mode
0 Days 0:0:0.843

Time spent in kernel mode
0 Days 0:0:2.671




Function
Source

KERNEL32!RaiseException+56


msvcrt!_CxxThrowException+34


Xxxxx+932dd


cd50bb8


Xxxxx+95a60


80000000`0





In
inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_06AM__421__First chance
exception 0XE06D7363.dmp the assembly instruction at
KERNEL32!RaiseException+56 in C:\WINNT\system32\KERNEL32.DLL from Microsoft
Corporation has caused an unknown exception (0xe06d7363) on thread 60

Module Information

Image Name:
C:\WINNT\system32\KERNEL32.DLL
Symbol Type:
PDB

Base address:
0x7c570000
Time Stamp:
Thu Jun 17 19:05:28 2004

Checksum:
0x000b247d
Comments:


COM DLL:
False
Company Name:
Microsoft Corporation

ISAPIExtension:
False
File Description:
Windows NT BASE API Client DLL

ISAPIFilter:
False
File Version:
5.00.2195.6946

Managed DLL:
False
Internal Name:
kernel32

VB DLL:
False
Legal Copyright:
Copyright (C) Microsoft Corp. 1981-1999

Loaded Image Name:
c:\symcache\KERNEL32.dbg\40D223B8b3000\KERNEL32.dbg
Legal Trademarks:


Mapped Image Name:

Original filename:
kernel32

Module name:
KERNEL32
Private Build:


Single Threaded:
False
Product Name:
Microsoft(R) Windows (R) 2000 Operating System

Module Size:
716.00 KBytes
Product Version:
5.00.2195.6946

Symbol File Name:
c:\symcache\kernel32.pdb\40B53BCA1\kernel32.pdb
Special Build:
&




HTTP report

IIS ATQ worker thread count
7 Thread(s)

Available ATQ worker thread count
6 Thread(s)

Active client connections
1 client connection(s)




Client Connections

Client connection from xxx.xxx.xxx.xxx:41756 to
xxx.xxx.xxx.xxx:80

Host Header
www.xxxxxx.xxx

POST request for
/Scripts/Xxxxx.dll

HTTP Version
HTTP/1.1

SSL Request
False

Time alive
0 day(s) 00:00:06

QueryString


Request mapped to
D:\inetpub\Scripts\Xxxxx.dll

HTTP Request State
HTR_DOVERB

Client Connection State
CCS_PROCESSING_CLIENT_REQ

Out of Process ID (WAM)
Process 4900




Report for
inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_10AM__203__First chance
exception 0XE06D7363.dmp

Type of Analysis Performed
Crash Analysis

Machine Name
XXXXXXX

Operating System
Windows 2000 Service Pack 4

Number Of Processors
4

Process ID
4900

Process Image
C:\WINNT\system32\inetsrv\inetinfo.exe

System Up-Time
9 day(s) 01:09:36

Process Up-Time
0 day(s) 00:15:15


Thread 60 - System ID 2824

Entry point
isatq!AtqPoolThread

Create time
7/6/2005 2:58:55 AM

Time spent in user mode
0 Days 0:0:0.843

Time spent in kernel mode
0 Days 0:0:2.671




Function
Source

KERNEL32!RaiseException+56


msvcrt!_CxxThrowException+34


Xxxxx+932dd


cd50bb8


Xxxxx+95a60


80000000`0





In
inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_10AM__203__First chance
exception 0XE06D7363.dmp the assembly instruction at
KERNEL32!RaiseException+56 in C:\WINNT\system32\KERNEL32.DLL from Microsoft
Corporation has caused an unknown exception (0xe06d7363) on thread 60

Module Information

Image Name:
C:\WINNT\system32\KERNEL32.DLL
Symbol Type:
PDB

Base address:
0x7c570000
Time Stamp:
Thu Jun 17 19:05:28 2004

Checksum:
0x000b247d
Comments:


COM DLL:
False
Company Name:
Microsoft Corporation

ISAPIExtension:
False
File Description:
Windows NT BASE API Client DLL

ISAPIFilter:
False
File Version:
5.00.2195.6946

Managed DLL:
False
Internal Name:
kernel32

VB DLL:
False
Legal Copyright:
Copyright (C) Microsoft Corp. 1981-1999

Loaded Image Name:
c:\symcache\KERNEL32.dbg\40D223B8b3000\KERNEL32.dbg
Legal Trademarks:


Mapped Image Name:

Original filename:
kernel32

Module name:
KERNEL32
Private Build:


Single Threaded:
False
Product Name:
Microsoft(R) Windows (R) 2000 Operating System

Module Size:
716.00 KBytes
Product Version:
5.00.2195.6946

Symbol File Name:
c:\symcache\kernel32.pdb\40B53BCA1\kernel32.pdb
Special Build:
&




HTTP report

IIS ATQ worker thread count
7 Thread(s)

Available ATQ worker thread count
6 Thread(s)

Active client connections
1 client connection(s)




Client Connections

Client connection from xxx.xxx.xxx.xxx:41756 to
xxx.xxx.xxx.xxx:80

Host Header
www.xxxxxx.xxx

POST request for
/Scripts/Xxxxx.dll

HTTP Version
HTTP/1.1

SSL Request
False

Time alive
0 day(s) 00:00:10

QueryString


Request mapped to
D:\inetpub\Scripts\Xxxxx.dll

HTTP Request State
HTR_DOVERB

Client Connection State
CCS_PROCESSING_CLIENT_REQ

Out of Process ID (WAM)
Process 4900




Report for dllhost__System
Application__PID__3528__Date__07_06_2005
__Time_03_11_09AM__937__First chance
exception 0X80000003.dmp

Type of Analysis Performed
Crash Analysis

Machine Name
XXXXXXX

Operating System
Windows 2000 Service Pack 4

Number Of Processors
4

Process ID
3528

Process Image
C:\WINNT\system32\dllhost.exe

System Up-Time
9 day(s) 01:07:35

Process Up-Time
9 day(s) 01:04:42


Thread 16 - System ID 2836

Entry point
KERNEL32!DebugBreak

Create time
7/6/2005 3:11:09 AM

Time spent in user mode
0 Days 0:0:0.0

Time spent in kernel mode
0 Days 0:0:0.0




Function
Source

NTDLL!DbgBreakPoint


KERNEL32!BaseThreadStart+52





In dllhost__System
Application__PID__3528__Date__07_06_2005
__Time_03_11_09AM__937__First chance
exception 0X80000003.dmp the assembly instruction at NTDLL!DbgBreakPoint in
C:\WINNT\system32\NTDLL.DLL from Microsoft Corporation has caused a
breakpoint exception (0x80000003) on thread 16

Module Information

Image Name:
C:\WINNT\system32\NTDLL.DLL
Symbol Type:
PDB

Base address:
0x77f80000
Time Stamp:
Tue Mar 23 21:16:59 2004

Checksum:
0x00089025
Comments:


COM DLL:
False
Company Name:
Microsoft Corporation

ISAPIExtension:
False
File Description:
NT Layer DLL

ISAPIFilter:
False
File Version:
5.00.2195.6899

Managed DLL:
False
Internal Name:
ntdll.dll

VB DLL:
False
Legal Copyright:
Copyright (C) Microsoft Corp. 1981-1999

Loaded Image Name:
c:\symcache\NTDLL.dbg\4060EF9B7d000\NTDLL.dbg
Legal Trademarks:


Mapped Image Name:

Original filename:
ntdll.dll

Module name:
NTDLL
Private Build:


Single Threaded:
False
Product Name:
Microsoft(R) Windows (R) 2000 Operating System

Module Size:
500.00 KBytes
Product Version:
5.00.2195.6899

Symbol File Name:
c:\symcache\ntdll.pdb\4035165E1\ntdll.pdb
Special Build:
&




Report for
inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_02AM__765__First chance
exception 0XE06D7363.dmp

Type of Analysis Performed
Crash Analysis

Machine Name
XXXXXXX

Operating System
Windows 2000 Service Pack 4

Number Of Processors
4

Process ID
4900

Process Image
C:\WINNT\system32\inetsrv\inetinfo.exe

System Up-Time
9 day(s) 01:09:29

Process Up-Time
0 day(s) 00:15:08


Thread 60 - System ID 2824

Entry point
isatq!AtqPoolThread

Create time
7/6/2005 2:58:55 AM

Time spent in user mode
0 Days 0:0:0.843

Time spent in kernel mode
0 Days 0:0:2.671




Function
Source

KERNEL32!RaiseException+56


msvcrt!_CxxThrowException+34


Xxxxx+932dd


cd50bb8


Xxxxx+95a60


80000000`0





In
inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_02AM__765__First chance
exception 0XE06D7363.dmp the assembly instruction at
KERNEL32!RaiseException+56 in C:\WINNT\system32\KERNEL32.DLL from Microsoft
Corporation has caused an unknown exception (0xe06d7363) on thread 60

Module Information

Image Name:
C:\WINNT\system32\KERNEL32.DLL
Symbol Type:
PDB

Base address:
0x7c570000
Time Stamp:
Thu Jun 17 19:05:28 2004

Checksum:
0x000b247d
Comments:


COM DLL:
False
Company Name:
Microsoft Corporation

ISAPIExtension:
False
File Description:
Windows NT BASE API Client DLL

ISAPIFilter:
False
File Version:
5.00.2195.6946

Managed DLL:
False
Internal Name:
kernel32

VB DLL:
False
Legal Copyright:
Copyright (C) Microsoft Corp. 1981-1999

Loaded Image Name:
c:\symcache\KERNEL32.dbg\40D223B8b3000\KERNEL32.dbg
Legal Trademarks:


Mapped Image Name:

Original filename:
kernel32

Module name:
KERNEL32
Private Build:


Single Threaded:
False
Product Name:
Microsoft(R) Windows (R) 2000 Operating System

Module Size:
716.00 KBytes
Product Version:
5.00.2195.6946

Symbol File Name:
c:\symcache\kernel32.pdb\40B53BCA1\kernel32.pdb
Special Build:
&




HTTP report

IIS ATQ worker thread count
7 Thread(s)

Available ATQ worker thread count
6 Thread(s)

Active client connections
1 client connection(s)




Client Connections

Client connection from xxx.xxx.xxx.xxx:41756 to
xxx.xxx.xxx.xxx:80

Host Header
www.xxxxxx.xxx

POST request for
/Scripts/Xxxxx.dll

HTTP Version
HTTP/1.1

SSL Request
False

Time alive
0 day(s) 00:00:02

QueryString


Request mapped to
D:\inetpub\Scripts\Xxxxx.dll

HTTP Request State
HTR_DOVERB

Client Connection State
CCS_PROCESSING_CLIENT_REQ

Out of Process ID (WAM)
Process 4900













Script Summary


Script Name
Status
Error Code
Error Source
Error Description
Source Line

IISAnalysis.asp
Completed







Thanks

Cheers,

Shiva.




news.microsoft.com

2005-07-11, 2:48 am

Thank you so much David.

cheers,
Shiva.
"David Wang [Msft]" <someone@online.microsoft.com> wrote in message
news:uA4gFHBhFHA.1044@tk2msftngp13.phx.gbl...
> /Scripts/Xxxxx.dll is causing an exception that is not handled. You will
> need to follow up with the provider of that ISAPI Extension DLL for
> support
> of your issue.
>
> I'm also going to make a bug report to DebugDiag to NOT report
> "KERNEL32!RaiseException" and "NTDLL!DbgBreakPoint" as issues because they
> are merely indication that something ELSE triggered the unexpected
> exception
> and that cause should be investigated (i.e. don't shoot the messenger).
>
> --
> //David
> IIS
> http://blogs.msdn.com/David.Wang
> This posting is provided "AS IS" with no warranties, and confers no
> rights.
> //
> "news.microsoft.com" <noman@nomail.com> wrote in message
> news:uYFL4w7gFHA.2072@TK2MSFTNGP14.phx.gbl...
>
>
>
> Thanks David. I am posting the long report for your reference
>
>
>
> Analysis Summary
>
>
> Type
> Description
> Recommendation
>
> Error
> In
> inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_04AM__453__First chance
> exception 0XE06D7363.dmp the assembly instruction at
> KERNEL32!RaiseException+56 in C:\WINNT\system32\KERNEL32.DLL from
> Microsoft
> Corporation has caused an unknown exception (0xe06d7363) on thread 60
> Please follow up with the vendor Microsoft Corporation for
> C:\WINNT\system32\KERNEL32.DLL
>
> Error
> In
> inetinfo__PID__4900__Date__07_06_2005__T
ime_03_15_00AM__640__First chance
> exception 0XE06D7363.dmp the assembly instruction at
> KERNEL32!RaiseException+56 in C:\WINNT\system32\KERNEL32.DLL from
> Microsoft
> Corporation has caused an unknown exception (0xe06d7363) on thread 60
> Please follow up with the vendor Microsoft Corporation for
> C:\WINNT\system32\KERNEL32.DLL
>
> Error
> In
> inetinfo__PID__4872__Date__07_08_2005__T
ime_08_34_04AM__703__First chance
> exception 0X80000003.dmp the assembly instruction at NTDLL!DbgBreakPoint
> in
> C:\WINNT\system32\NTDLL.DLL from Microsoft Corporation has caused a
> breakpoint exception (0x80000003) on thread 63
> Please follow up with the vendor Microsoft Corporation for
> C:\WINNT\system32\NTDLL.DLL
>
> Error
> In
> aspnet_wp__PID__4124__Date__07_08_2005__
Time_08_34_04AM__656__First chance
> exception 0X80000003.dmp the assembly instruction at NTDLL!DbgBreakPoint
> in
> C:\WINNT\system32\NTDLL.DLL from Microsoft Corporation has caused a
> breakpoint exception (0x80000003) on thread 33
> Please follow up with the vendor Microsoft Corporation for
> C:\WINNT\system32\NTDLL.DLL
>
> Error
> In
> inetinfo__PID__4900__Date__07_06_2005__T
ime_03_15_01AM__531__First chance
> exception 0XE06D7363.dmp the assembly instruction at
> KERNEL32!RaiseException+56 in C:\WINNT\system32\KERNEL32.DLL from
> Microsoft
> Corporation has caused an unknown exception (0xe06d7363) on thread 60
> Please follow up with the vendor Microsoft Corporation for
> C:\WINNT\system32\KERNEL32.DLL
>
> Error
> In
> inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_01AM__812__First chance
> exception 0XE06D7363.dmp the assembly instruction at
> KERNEL32!RaiseException+56 in C:\WINNT\system32\KERNEL32.DLL from
> Microsoft
> Corporation has caused an unknown exception (0xe06d7363) on thread 60
> Please follow up with the vendor Microsoft Corporation for
> C:\WINNT\system32\KERNEL32.DLL
>
> Error
> In dllhost__System
> Application__PID__3528__Date__07_06_2005
__Time_03_13_16AM__156__First
> chance
> exception 0X80000003.dmp the assembly instruction at NTDLL!DbgBreakPoint
> in
> C:\WINNT\system32\NTDLL.DLL from Microsoft Corporation has caused a
> breakpoint exception (0x80000003) on thread 16
> Please follow up with the vendor Microsoft Corporation for
> C:\WINNT\system32\NTDLL.DLL
>
> Error
> In
> aspnet_wp__PID__4700__Date__07_06_2005__
Time_03_11_09AM__687__First chance
> exception 0X80000003.dmp the assembly instruction at NTDLL!DbgBreakPoint
> in
> C:\WINNT\system32\NTDLL.DLL from Microsoft Corporation has caused a
> breakpoint exception (0x80000003) on thread 17
> Please follow up with the vendor Microsoft Corporation for
> C:\WINNT\system32\NTDLL.DLL
>
> Error
> In
> inetinfo__PID__4900__Date__07_06_2005__T
ime_03_11_09AM__703__First chance
> exception 0X80000003.dmp the assembly instruction at NTDLL!DbgBreakPoint
> in
> C:\WINNT\system32\NTDLL.DLL from Microsoft Corporation has caused a
> breakpoint exception (0x80000003) on thread 64
> Please follow up with the vendor Microsoft Corporation for
> C:\WINNT\system32\NTDLL.DLL
>
> Error
> In dllhost__System
> Application__PID__3528__Date__07_08_2005
__Time_08_34_04AM__640__First
> chance
> exception 0X80000003.dmp the assembly instruction at NTDLL!DbgBreakPoint
> in
> C:\WINNT\system32\NTDLL.DLL from Microsoft Corporation has caused a
> breakpoint exception (0x80000003) on thread 15
> Please follow up with the vendor Microsoft Corporation for
> C:\WINNT\system32\NTDLL.DLL
>
> Error
> In
> inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_08AM__296__First chance
> exception 0XE06D7363.dmp the assembly instruction at
> KERNEL32!RaiseException+56 in C:\WINNT\system32\KERNEL32.DLL from
> Microsoft
> Corporation has caused an unknown exception (0xe06d7363) on thread 60
> Please follow up with the vendor Microsoft Corporation for
> C:\WINNT\system32\KERNEL32.DLL
>
> Error
> In
> inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_06AM__421__First chance
> exception 0XE06D7363.dmp the assembly instruction at
> KERNEL32!RaiseException+56 in C:\WINNT\system32\KERNEL32.DLL from
> Microsoft
> Corporation has caused an unknown exception (0xe06d7363) on thread 60
> Please follow up with the vendor Microsoft Corporation for
> C:\WINNT\system32\KERNEL32.DLL
>
> Error
> In
> inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_10AM__203__First chance
> exception 0XE06D7363.dmp the assembly instruction at
> KERNEL32!RaiseException+56 in C:\WINNT\system32\KERNEL32.DLL from
> Microsoft
> Corporation has caused an unknown exception (0xe06d7363) on thread 60
> Please follow up with the vendor Microsoft Corporation for
> C:\WINNT\system32\KERNEL32.DLL
>
> Error
> In dllhost__System
> Application__PID__3528__Date__07_06_2005
__Time_03_11_09AM__937__First
> chance
> exception 0X80000003.dmp the assembly instruction at NTDLL!DbgBreakPoint
> in
> C:\WINNT\system32\NTDLL.DLL from Microsoft Corporation has caused a
> breakpoint exception (0x80000003) on thread 16
> Please follow up with the vendor Microsoft Corporation for
> C:\WINNT\system32\NTDLL.DLL
>
> Error
> In
> inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_02AM__765__First chance
> exception 0XE06D7363.dmp the assembly instruction at
> KERNEL32!RaiseException+56 in C:\WINNT\system32\KERNEL32.DLL from
> Microsoft
> Corporation has caused an unknown exception (0xe06d7363) on thread 60
> Please follow up with the vendor Microsoft Corporation for
> C:\WINNT\system32\KERNEL32.DLL
>
>
>
>
>
>
>
>
>
>
>
>
>
> Analysis Details
>
>
> Table Of Contents
>
>
> inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_04AM__453__First
> chance exception 0XE06D7363.dmp
> Faulting Thread
> Faulting Module Information
> HTTP Report
>
>
> inetinfo__PID__4900__Date__07_06_2005__T
ime_03_15_00AM__640__First
> chance exception 0XE06D7363.dmp
> Faulting Thread
> Faulting Module Information
> HTTP Report
>
>
> inetinfo__PID__4872__Date__07_08_2005__T
ime_08_34_04AM__703__First
> chance exception 0X80000003.dmp
> Faulting Thread
> Faulting Module Information
>
>
> aspnet_wp__PID__4124__Date__07_08_2005__
Time_08_34_04AM__656__First
> chance exception 0X80000003.dmp
> Faulting Thread
> Faulting Module Information
>
>
> inetinfo__PID__4900__Date__07_06_2005__T
ime_03_15_01AM__531__First
> chance exception 0XE06D7363.dmp
> Faulting Thread
> Faulting Module Information
> HTTP Report
>
>
> inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_01AM__812__First
> chance exception 0XE06D7363.dmp
> Faulting Thread
> Faulting Module Information
> HTTP Report
>
> dllhost__System
> Application__PID__3528__Date__07_06_2005
__Time_03_13_16AM__156__First
> chance
> exception 0X80000003.dmp
> Faulting Thread
> Faulting Module Information
>
>
> aspnet_wp__PID__4700__Date__07_06_2005__
Time_03_11_09AM__687__First
> chance exception 0X80000003.dmp
> Faulting Thread
> Faulting Module Information
>
>
> inetinfo__PID__4900__Date__07_06_2005__T
ime_03_11_09AM__703__First
> chance exception 0X80000003.dmp
> Faulting Thread
> Faulting Module Information
>
> dllhost__System
> Application__PID__3528__Date__07_08_2005
__Time_08_34_04AM__640__First
> chance
> exception 0X80000003.dmp
> Faulting Thread
> Faulting Module Information
>
>
> inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_08AM__296__First
> chance exception 0XE06D7363.dmp
> Faulting Thread
> Faulting Module Information
> HTTP Report
>
>
> inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_06AM__421__First
> chance exception 0XE06D7363.dmp
> Faulting Thread
> Faulting Module Information
> HTTP Report
>
>
> inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_10AM__203__First
> chance exception 0XE06D7363.dmp
> Faulting Thread
> Faulting Module Information
> HTTP Report
>
> dllhost__System
> Application__PID__3528__Date__07_06_2005
__Time_03_11_09AM__937__First
> chance
> exception 0X80000003.dmp
> Faulting Thread
> Faulting Module Information
>
>
> inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_02AM__765__First
> chance exception 0XE06D7363.dmp
> Faulting Thread
> Faulting Module Information
> HTTP Report
>
> Report for
> inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_04AM__453__First chance
> exception 0XE06D7363.dmp
>
> Type of Analysis Performed
> Crash Analysis
>
> Machine Name
> XXXXXXX
>
> Operating System
> Windows 2000 Service Pack 4
>
> Number Of Processors
> 4
>
> Process ID
> 4900
>
> Process Image
> C:\WINNT\system32\inetsrv\inetinfo.exe
>
> System Up-Time
> 9 day(s) 01:09:31
>
> Process Up-Time
> 0 day(s) 00:15:09
>
>
> Thread 60 - System ID 2824
>
> Entry point
> isatq!AtqPoolThread
>
> Create time
> 7/6/2005 2:58:55 AM
>
> Time spent in user mode
> 0 Days 0:0:0.843
>
> Time spent in kernel mode
> 0 Days 0:0:2.671
>
>
>
>
> Function
> Source
>
> KERNEL32!RaiseException+56
>
>
> msvcrt!_CxxThrowException+34
>
>
> Xxxxx+932dd
>
>
> cd50bb8
>
>
> Xxxxx+95a60
>
>
> 80000000`0
>
>
>
>
>
> In
> inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_04AM__453__First chance
> exception 0XE06D7363.dmp the assembly instruction at
> KERNEL32!RaiseException+56 in C:\WINNT\system32\KERNEL32.DLL from
> Microsoft
> Corporation has caused an unknown exception (0xe06d7363) on thread 60
>
> Module Information
>
> Image Name:
> C:\WINNT\system32\KERNEL32.DLL
> Symbol Type:
> PDB
>
> Base address:
> 0x7c570000
> Time Stamp:
> Thu Jun 17 19:05:28 2004
>
> Checksum:
> 0x000b247d
> Comments:
>
>
> COM DLL:
> False
> Company Name:
> Microsoft Corporation
>
> ISAPIExtension:
> False
> File Description:
> Windows NT BASE API Client DLL
>
> ISAPIFilter:
> False
> File Version:
> 5.00.2195.6946
>
> Managed DLL:
> False
> Internal Name:
> kernel32
>
> VB DLL:
> False
> Legal Copyright:
> Copyright (C) Microsoft Corp. 1981-1999
>
> Loaded Image Name:
> c:\symcache\KERNEL32.dbg\40D223B8b3000\KERNEL32.dbg
> Legal Trademarks:
>
>
> Mapped Image Name:
>
> Original filename:
> kernel32
>
> Module name:
> KERNEL32
> Private Build:
>
>
> Single Threaded:
> False
> Product Name:
> Microsoft(R) Windows (R) 2000 Operating System
>
> Module Size:
> 716.00 KBytes
> Product Version:
> 5.00.2195.6946
>
> Symbol File Name:
> c:\symcache\kernel32.pdb\40B53BCA1\kernel32.pdb
> Special Build:
> &
>
>
>
>
> HTTP report
>
> IIS ATQ worker thread count
> 7 Thread(s)
>
> Available ATQ worker thread count
> 6 Thread(s)
>
> Active client connections
> 1 client connection(s)
>
>
>
>
> Client Connections
>
> Client connection from xxx.xxx.xxx.xxx to
> xxx.xxx.xxx.xxx:80
>
> Host Header
> www.xxx.com
>
> POST request for
> /Scripts/xxx.dll
>
> HTTP Version
> HTTP/1.1
>
> SSL Request
> False
>
> Time alive
> 0 day(s) 00:00:04
>
> QueryString
>
>
> Request mapped to
> D:\inetpub\Scripts\xxx.dll
>
> HTTP Request State
> HTR_DOVERB
>
> Client Connection State
> CCS_PROCESSING_CLIENT_REQ
>
> Out of Process ID (WAM)
> Process 4900
>
>
>
>
> Report for
> inetinfo__PID__4900__Date__07_06_2005__T
ime_03_15_00AM__640__First chance
> exception 0XE06D7363.dmp
>
> Type of Analysis Performed
> Crash Analysis
>
> Machine Name
> XXXXXXX
>
> Operating System
> Windows 2000 Service Pack 4
>
> Number Of Processors
> 4
>
> Process ID
> 4900
>
> Process Image
> C:\WINNT\system32\inetsrv\inetinfo.exe
>
> System Up-Time
> 9 day(s) 01:11:26
>
> Process Up-Time
> 0 day(s) 00:17:06
>
>
> Thread 60 - System ID 2824
>
> Entry point
> isatq!AtqPoolThread
>
> Create time
> 7/6/2005 2:58:55 AM
>
> Time spent in user mode
> 0 Days 0:0:1.15
>
> Time spent in kernel mode
> 0 Days 0:0:3.187
>
>
>
>
> Function
> Source
>
> KERNEL32!RaiseException+56
>
>
> msvcrt!_CxxThrowException+34
>
>
> Xxxxx+932dd
>
>
> cd4f788
>
>
> Xxxxx+95a60
>
>
> 80000000`0
>
>
>
>
>
> In
> inetinfo__PID__4900__Date__07_06_2005__T
ime_03_15_00AM__640__First chance
> exception 0XE06D7363.dmp the assembly instruction at
> KERNEL32!RaiseException+56 in C:\WINNT\system32\KERNEL32.DLL from
> Microsoft
> Corporation has caused an unknown exception (0xe06d7363) on thread 60
>
> Module Information
>
> Image Name:
> C:\WINNT\system32\KERNEL32.DLL
> Symbol Type:
> PDB
>
> Base address:
> 0x7c570000
> Time Stamp:
> Thu Jun 17 19:05:28 2004
>
> Checksum:
> 0x000b247d
> Comments:
>
>
> COM DLL:
> False
> Company Name:
> Microsoft Corporation
>
> ISAPIExtension:
> False
> File Description:
> Windows NT BASE API Client DLL
>
> ISAPIFilter:
> False
> File Version:
> 5.00.2195.6946
>
> Managed DLL:
> False
> Internal Name:
> kernel32
>
> VB DLL:
> False
> Legal Copyright:
> Copyright (C) Microsoft Corp. 1981-1999
>
> Loaded Image Name:
> c:\symcache\KERNEL32.dbg\40D223B8b3000\KERNEL32.dbg
> Legal Trademarks:
>
>
> Mapped Image Name:
>
> Original filename:
> kernel32
>
> Module name:
> KERNEL32
> Private Build:
>
>
> Single Threaded:
> False
> Product Name:
> Microsoft(R) Windows (R) 2000 Operating System
>
> Module Size:
> 716.00 KBytes
> Product Version:
> 5.00.2195.6946
>
> Symbol File Name:
> c:\symcache\kernel32.pdb\40B53BCA1\kernel32.pdb
> Special Build:
> &
>
>
>
>
> HTTP report
>
> IIS ATQ worker thread count
> 7 Thread(s)
>
> Available ATQ worker thread count
> 6 Thread(s)
>
> Active client connections
> 1 client connection(s)
>
>
>
>
> Client Connections
>
>
>
> Report for
> inetinfo__PID__4872__Date__07_08_2005__T
ime_08_34_04AM__703__First chance
> exception 0X80000003.dmp
>
> Type of Analysis Performed
> Crash Analysis
>
> Machine Name
> XXXXXXX
>
> Operating System
> Windows 2000 Service Pack 4
>
> Number Of Processors
> 4
>
> Process ID
> 4872
>
> Process Image
> C:\WINNT\system32\inetsrv\inetinfo.exe
>
> System Up-Time
> 11 day(s) 06:30:36
>
> Process Up-Time
> 0 day(s) 05:37:10
>
>
> Thread 63 - System ID 4332
>
> Entry point
> KERNEL32!DebugBreak
>
> Create time
> 7/8/2005 8:34:04 AM
>
> Time spent in user mode
> 0 Days 0:0:0.0
>
> Time spent in kernel mode
> 0 Days 0:0:0.0
>
>
>
>
> Function
> Source
>
> NTDLL!DbgBreakPoint
>
>
> KERNEL32!BaseThreadStart+52
>
>
>
>
>
> In
> inetinfo__PID__4872__Date__07_08_2005__T
ime_08_34_04AM__703__First chance
> exception 0X80000003.dmp the assembly instruction at NTDLL!DbgBreakPoint
> in
> C:\WINNT\system32\NTDLL.DLL from Microsoft Corporation has caused a
> breakpoint exception (0x80000003) on thread 63
>
> Module Information
>
> Image Name:
> C:\WINNT\system32\NTDLL.DLL
> Symbol Type:
> PDB
>
> Base address:
> 0x77f80000
> Time Stamp:
> Tue Mar 23 21:16:59 2004
>
> Checksum:
> 0x00089025
> Comments:
>
>
> COM DLL:
> False
> Company Name:
> Microsoft Corporation
>
> ISAPIExtension:
> False
> File Description:
> NT Layer DLL
>
> ISAPIFilter:
> False
> File Version:
> 5.00.2195.6899
>
> Managed DLL:
> False
> Internal Name:
> ntdll.dll
>
> VB DLL:
> False
> Legal Copyright:
> Copyright (C) Microsoft Corp. 1981-1999
>
> Loaded Image Name:
> c:\symcache\NTDLL.dbg\4060EF9B7d000\NTDLL.dbg
> Legal Trademarks:
>
>
> Mapped Image Name:
>
> Original filename:
> ntdll.dll
>
> Module name:
> NTDLL
> Private Build:
>
>
> Single Threaded:
> False
> Product Name:
> Microsoft(R) Windows (R) 2000 Operating System
>
> Module Size:
> 500.00 KBytes
> Product Version:
> 5.00.2195.6899
>
> Symbol File Name:
> c:\symcache\ntdll.pdb\4035165E1\ntdll.pdb
> Special Build:
> &
>
>
>
>
> Report for
> aspnet_wp__PID__4124__Date__07_08_2005__
Time_08_34_04AM__656__First chance
> exception 0X80000003.dmp
>
> Type of Analysis Performed
> Crash Analysis
>
> Machine Name
> XXXXXXX
>
> Operating System
> Windows 2000 Service Pack 4
>
> Number Of Processors
> 4
>
> Process ID
> 4124
>
> Process Image
> C:\WINNT\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe
>
> System Up-Time
> 11 day(s) 06:30:41
>
> Process Up-Time
> 0 day(s) 05:35:29
>
>
> Thread 33 - System ID 4072
>
> Entry point
> KERNEL32!DebugBreak
>
> Create time
> 7/8/2005 8:34:04 AM
>
> Time spent in user mode
> 0 Days 0:0:0.0
>
> Time spent in kernel mode
> 0 Days 0:0:0.0
>
>
>
>
> Function
> Source
>
> NTDLL!DbgBreakPoint
>
>
> KERNEL32!BaseThreadStart+52
>
>
>
>
>
> In
> aspnet_wp__PID__4124__Date__07_08_2005__
Time_08_34_04AM__656__First chance
> exception 0X80000003.dmp the assembly instruction at NTDLL!DbgBreakPoint
> in
> C:\WINNT\system32\NTDLL.DLL from Microsoft Corporation has caused a
> breakpoint exception (0x80000003) on thread 33
>
> Module Information
>
> Image Name:
> C:\WINNT\system32\NTDLL.DLL
> Symbol Type:
> PDB
>
> Base address:
> 0x77f80000
> Time Stamp:
> Tue Mar 23 21:16:59 2004
>
> Checksum:
> 0x00089025
> Comments:
>
>
> COM DLL:
> False
> Company Name:
> Microsoft Corporation
>
> ISAPIExtension:
> False
> File Description:
> NT Layer DLL
>
> ISAPIFilter:
> False
> File Version:
> 5.00.2195.6899
>
> Managed DLL:
> False
> Internal Name:
> ntdll.dll
>
> VB DLL:
> False
> Legal Copyright:
> Copyright (C) Microsoft Corp. 1981-1999
>
> Loaded Image Name:
> c:\symcache\NTDLL.dbg\4060EF9B7d000\NTDLL.dbg
> Legal Trademarks:
>
>
> Mapped Image Name:
>
> Original filename:
> ntdll.dll
>
> Module name:
> NTDLL
> Private Build:
>
>
> Single Threaded:
> False
> Product Name:
> Microsoft(R) Windows (R) 2000 Operating System
>
> Module Size:
> 500.00 KBytes
> Product Version:
> 5.00.2195.6899
>
> Symbol File Name:
> c:\symcache\ntdll.pdb\4035165E1\ntdll.pdb
> Special Build:
> &
>
>
>
>
> Report for
> inetinfo__PID__4900__Date__07_06_2005__T
ime_03_15_01AM__531__First chance
> exception 0XE06D7363.dmp
>
> Type of Analysis Performed
> Crash Analysis
>
> Machine Name
> XXXXXXX
>
> Operating System
> Windows 2000 Service Pack 4
>
> Number Of Processors
> 4
>
> Process ID
> 4900
>
> Process Image
> C:\WINNT\system32\inetsrv\inetinfo.exe
>
> System Up-Time
> 9 day(s) 01:11:27
>
> Process Up-Time
> 0 day(s) 00:17:07
>
>
> Thread 60 - System ID 2824
>
> Entry point
> isatq!AtqPoolThread
>
> Create time
> 7/6/2005 2:58:55 AM
>
> Time spent in user mode
> 0 Days 0:0:1.15
>
> Time spent in kernel mode
> 0 Days 0:0:3.187
>
>
>
>
> Function
> Source
>
> KERNEL32!RaiseException+56
>
>
> msvcrt!_CxxThrowException+34
>
>
> Xxxxx+932dd
>
>
> cd4f788
>
>
> Xxxxx+95a60
>
>
> 80000000`0
>
>
>
>
>
> In
> inetinfo__PID__4900__Date__07_06_2005__T
ime_03_15_01AM__531__First chance
> exception 0XE06D7363.dmp the assembly instruction at
> KERNEL32!RaiseException+56 in C:\WINNT\system32\KERNEL32.DLL from
> Microsoft
> Corporation has caused an unknown exception (0xe06d7363) on thread 60
>
> Module Information
>
> Image Name:
> C:\WINNT\system32\KERNEL32.DLL
> Symbol Type:
> PDB
>
> Base address:
> 0x7c570000
> Time Stamp:
> Thu Jun 17 19:05:28 2004
>
> Checksum:
> 0x000b247d
> Comments:
>
>
> COM DLL:
> False
> Company Name:
> Microsoft Corporation
>
> ISAPIExtension:
> False
> File Description:
> Windows NT BASE API Client DLL
>
> ISAPIFilter:
> False
> File Version:
> 5.00.2195.6946
>
> Managed DLL:
> False
> Internal Name:
> kernel32
>
> VB DLL:
> False
> Legal Copyright:
> Copyright (C) Microsoft Corp. 1981-1999
>
> Loaded Image Name:
> c:\symcache\KERNEL32.dbg\40D223B8b3000\KERNEL32.dbg
> Legal Trademarks:
>
>
> Mapped Image Name:
>
> Original filename:
> kernel32
>
> Module name:
> KERNEL32
> Private Build:
>
>
> Single Threaded:
> False
> Product Name:
> Microsoft(R) Windows (R) 2000 Operating System
>
> Module Size:
> 716.00 KBytes
> Product Version:
> 5.00.2195.6946
>
> Symbol File Name:
> c:\symcache\kernel32.pdb\40B53BCA1\kernel32.pdb
> Special Build:
> &
>
>
>
>
> HTTP report
>
> IIS ATQ worker thread count
> 7 Thread(s)
>
> Available ATQ worker thread count
> 6 Thread(s)
>
> Active client connections
> 1 client connection(s)
>
>
>
>
> Client Connections
>
> Client connection from xxx.xxx.xxx.xxx:51271 to
> xxx.xxx.xxx.xxx:80
>
> Host Header
> www.xxxxxx.xxx
>
> POST request for
> /Scripts/Xxxxx.dll
>
> HTTP Version
> HTTP/1.0
>
> SSL Request
> False
>
> Time alive
> 0 day(s) 00:00:02
>
> QueryString
>
>
> Request mapped to
> D:\inetpub\Scripts\Xxxxx.dll
>
> HTTP Request State
> HTR_DOVERB
>
> Client Connection State
> CCS_PROCESSING_CLIENT_REQ
>
> Out of Process ID (WAM)
> Process 4900
>
>
>
>
> Report for
> inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_01AM__812__First chance
> exception 0XE06D7363.dmp
>
> Type of Analysis Performed
> Crash Analysis
>
> Machine Name
> XXXXXXX
>
> Operating System
> Windows 2000 Service Pack 4
>
> Number Of Processors
> 4
>
> Process ID
> 4900
>
> Process Image
> C:\WINNT\system32\inetsrv\inetinfo.exe
>
> System Up-Time
> 9 day(s) 01:09:27
>
> Process Up-Time
> 0 day(s) 00:15:07
>
>
> Thread 60 - System ID 2824
>
> Entry point
> isatq!AtqPoolThread
>
> Create time
> 7/6/2005 2:58:55 AM
>
> Time spent in user mode
> 0 Days 0:0:0.843
>
> Time spent in kernel mode
> 0 Days 0:0:2.671
>
>
>
>
> Function
> Source
>
> KERNEL32!RaiseException+56
>
>
> msvcrt!_CxxThrowException+34
>
>
> Xxxxx+932dd
>
>
> cd50bb8
>
>
> Xxxxx+95a60
>
>
> 80000000`0
>
>
>
>
>
> In
> inetinfo__PID__4900__Date__07_06_2005__T
ime_03_13_01AM__812__First chance
> exception 0XE06D7363.dmp the assembly instruction at
> KERNEL32!RaiseException+56 in C:\WINNT\system32\KERNEL32.DLL from
> Microsoft
> Corporation has caused an unknown exception (0xe06d7363) on thread 60
>
> Module Information
>
> Image Name:
> C:\WINNT\system32\KERNEL32.DLL
> Symbol Type:
> PDB
>
> Base address:
> 0x7c570000
> Time Stamp:
> Thu Jun 17 19:05:28 2004
>
> Checksum:
> 0x000b247d
> Comments:
>
>
> COM DLL:
> False
> Company Name:
> Microsoft Corporation
>
> ISAPIExtension:
> False
> File Description:
> Windows NT BASE API Client DLL
>
> ISAPIFilter:
> False
> File Version:
> 5.00.2195.6946
>
> Managed DLL:
> False
> Internal Name:
> kernel32
>
> VB DLL:
> False
> Legal Copyright:
> Copyright (C) Microsoft Corp. 1981-1999
>
> Loaded Image Name:
> c:\symcache\KERNEL32.dbg\40D223B8b3000\KERNEL32.dbg
> Legal Trademarks:
>
>
> Mapped Image Name:
>
> Original filename:
> kernel32
>
> Module name:
> KERNEL32
> Private Build:
>
>
> Single Threaded:
> False
> Product Name:
> Microsoft(R) Windows (R) 2000 Operating System
>
> Module Size:
> 716.00 KBytes
> Product Version:
> 5.00.2195.6946
>
> Symbol File Name:
> c:\symcache\kernel32.pdb\40B53BCA1\kernel32.pdb
> Special Build:
> &
>
>
>
>
> HTTP report
>
> IIS ATQ worker thread count
> 7 Thread(s)
>
> Available ATQ worker thread count
> 6 Thread(s)
>
> Active client connections
> 1 client connection(s)
>
>
>
>
> Client Connections
>
> Client connection from xxx.xx.xxx.xxx:41756 to
> xxx.xxx.xxx.xxx:80
>
> Host Header
> www.xxxxxx.xxx
>
> POST request for
> /Scripts/Xxxxx.dll
>
> HTTP Version
> HTTP/1.1
>
> SSL Request
> False
>
> Time alive
> 0 day(s) 00:00:01
>
> QueryString
>
>
> Request mapped to
> D:\inetpub\Scripts\Xxxxx.dll
>
> HTTP Request State
> HTR_DOVERB
>
> Client Connection State
> CCS_PROCESSING_CLIENT_REQ
>
> Out of Process ID (WAM)
> Process 4900
>
>
>
>
> Report for dllhost__System
> Application__PID__3528__Date__07_06_2005
__Time_03_13_16AM__156__First
> chance
> exception 0X80000003.dmp
>
> Type of Analysis Performed
> Crash Analysis
>
> Machine Name
> XXXXXXX
>
> Operating System
> Windows 2000 Service Pack 4
>
> Number Of Processors
> 4
>
> Process ID
> 3528
>
> Process Image
> C:\WINNT\system32\dllhost.exe
>
> System Up-Time
> 9 day(s) 01:09:41
>
> Process Up-Time
> 9 day(s) 01:06:48
>
>
> Thread 16 - System ID 732
>
> Entry point
> KERNEL32!DebugBreak
>
> Create time
> 7/6/2005 3:13:16 AM
>
> Time spent in user mode
> 0 Days 0:0:0.0
>
> Time spent in kernel mode
> 0 Days 0:0:0.0
>
>
>
>
> Function
> Source
>
> NTDLL!DbgBreakPoint
>
>
> KERNEL32!BaseThreadStart+52
>
>
>
>
>
> In dllhost__System
> Application__PID__3528__Date__07_06_2005
__Time_03_13_16AM__156__First
> chance
> exception 0X80000003.dmp the assembly instruction at NTDLL!DbgBreakPoint
> in
> C:\WINNT\system32\NTDLL.DLL from Microsoft Corporation has caused a
> breakpoint exception (0x80000003) on thread 16
>
> Module Information
>
> Image Name:
> C:\WINNT\system32\NTDLL.DLL
> Symbol Type:
> PDB
>
> Base address:
> 0x77f80000
> Time Stamp:
> Tue Mar 23 21:16:59 2004
>
> Checksum:
> 0x00089025
> Comments:
>
>
> COM DLL:
> False
> Company Name:
> Microsoft Corporation
>
> ISAPIExtension:
> False
> File Description:
> NT Layer DLL
>
> ISAPIFilter:
> False
> File Version:
> 5.00.2195.6899
>
> Managed DLL:
> False
> Internal Name:
> ntdll.dll
>
> VB DLL:
> False
> Legal Copyright:
> Copyright (C) Microsoft Corp. 1981-1999
>
> Loaded Image Name:
> c:\symcache\NTDLL.dbg\4060EF9B7d000\NTDLL.dbg
> Legal Trademarks:
>
>
> Mapped Image Name:
>
> Original filename:
> ntdll.dll
>
> Module name:
> NTDLL
> Private Build:
>
>
> Single Threaded:
> False
> Product Name:
> Microsoft(R) Windows (R) 2000 Operating System
>
> Module Size:
> 500.00 KBytes
> Product Version:
> 5.00.2195.6899
>
> Symbol File Name:
> c:\symcache\ntdll.pdb\4035165E1\ntdll.pdb
> Special Build:
> &
>
>
>
>
> Report for
> aspnet_wp__PID__4700__Date__07_06_2005__
Time_03_11_09AM__687__First chance
> exception 0X80000003.dmp
>
> Type of Analysis Performed
> Crash Analysis
>
> Machine Name
> XXXXXXX
>
> Operating System
> Windows 2000 Service Pack 4
>
> Number Of Processors
> 4
>
> Process ID
> 4700
>
> Process Image
> C:\WINNT\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe
>
> System Up-Time
> 9 day(s) 01:07:38
>
> Process Up-Time
> 0 day(s) 00:12:19
>
>
> Thread 17 - System ID 1216
>
> Entry point
> KERNEL32!DebugBreak
>
> Create time
> 7/6/2005 3:11:09 AM
>
> Time spent in user mode
> 0 Days 0:0:0.0
>
> Time spent in kernel mode
> 0 Days 0:0:0.0
>
>
>
>
> Function
> Source
>
> NTDLL!DbgBreakPoint
>
>
> KERNEL32!BaseThreadStart+52
>
>
>
>
>
> In
> aspnet_wp__PID__4700__Date__07_06_2005__
Time_03_11_09AM__687__First chance
> exception 0X80000003.dmp the assembly instruction at NTDLL!DbgBreakPoint
> in
> C:\WINNT\system32\NTDLL.DLL from Microsoft Corporation has caused a
> breakpoint exception (0x80000003) on thread 17
>
> Module Information
>
> Image Name:
> C:\WINNT\system32\NTDLL.DLL
> Symbol Type:
> PDB
>
> Base address:
> 0x77f80000
> Time Stamp:
> Tue Mar 23 21:16:59 2004
>
> Checksum:
> 0x00089025
> Comments:
>
>
> COM DLL:
> False
> Company Name:
> Microsoft Corporation
>
> ISAPIExtension:
> False
> File Description:
> NT Layer DLL
>
> ISAPIFilter:
> False
> File Version:
> 5.00.2195.6899
>
> Managed DLL:
> False
> Internal Name:
> ntdll.dll
>
> VB DLL:
> False
> Legal Copyright:
> Copyright (C) Microsoft Corp. 1981-1999
>
> Loaded Image Name:
> c:\symcache\NTDLL.dbg\4060EF9B7d000\NTDLL.dbg
> Legal Trademarks:
>
>
> Mapped Image Name:
>
> Original filename:
> ntdll.dll
>
> Module name:
> NTDLL
> Private Build:
>
>
> Single Threaded:
> False
> Product Name:
> Microsoft(R) Windows (R) 2000 Operating System
>
> Module Size:
> 500.00 KBytes
> Product Version:
> 5.00.2195.6899
>
> Symbol File Name:
> c:\symcache\ntdll.pdb\4035165E1\ntdll.pdb
> Special Build:
> &
>
>
>
>
> Report for
> inetinfo__PID__4900__Date__07_06_2005__T
ime_03_11_09AM__703__First chance
> exception 0X80000003.dmp
>
> Type of Analysis Performed
> Crash Analysis
>
> Machine Name
> XXXXXXX
>
> Operating System
> Windows 2000 Service Pack 4
>
> Number Of Processors
> 4
>
> Process ID
> 4900
>
> Process Image
> C:\WINNT\system32\inetsrv\inetinfo.exe
>
> System Up-Time
> 9 day(s) 01:07:40
>
> Process Up-Time
> 0 day(s) 00:13:15
>
>
> Thread 64 - System ID 4652
>
> Entry point
> KERNEL32!DebugBreak
>
> Create time
> 7/6/2005 3:11:09 AM
>
> Time spent in user mode
> 0 Days 0:0:0.0
>
> Time spent in kernel mode
> 0 Days 0:0:0.0
>
>
>
>
> Function
> Source
>
> NTDLL!DbgBreakPoint
>
>
> KERNEL32!BaseThreadStart+52
>
>
>
>
>
> In
> inetinfo__PID__4900__Date__07_06_2005__T
ime_03_11_09AM__703__First chance
> exception 0X80000003.dmp the assembly instruction at NTDLL!DbgBreakPoint
> in
> C:\WINNT\system32\NTDLL.DLL from Microsoft Corporation has caused a
> breakpoint exception (0x80000003) on thread 64
>
> Module Information
>
> Image Name:
> C:\WINNT\system32\NTDLL.DLL
> Symbol Type:
> PDB
>
> Base address:
> 0x77f80000
> Time Stamp:
> Tue Mar 23 21:16:59 2004
>
> Checksum:
> 0x00089025
> Comments:
>
>
> COM DLL:
> False
> Company Name:
> Microsoft Corporation
>
> ISAPIExtension:
> False
> File Description:
> NT Layer DLL
>
> ISAPIFilter:
> False
> File Version:
> 5.00.2195.6899
>
> Managed DLL:
> False
> Internal Name:
> ntdll.dll
>
> VB DLL:
> False
> Legal Copyright:
> Copyright (C) Microsoft Corp. 1981-1999
>
> Loaded Image Name:
> c:\symcache\NTDLL.dbg\4060EF9B7d000\NTDLL.dbg
> Legal Trademarks:
>
>
> Mapped Image Name:
>
> Original filename:
> ntdll.dll
>
> Module name:
> NTDLL
> Private Build:
>
>
> Single Threaded:
> False
> Product Name:
> Microsoft(R) Windows (R) 2000 Operating System
>
> Module Size:
> 500.00 KBytes
> Product Version:
> 5.00.2195.6899
>
> Symbol File Name:
> c:\symcache\ntdll.pdb\4035165E1\ntdll.pdb
> Special Build:
> &
>
>
>
>
> Report for dllhost__System
> Application__PID__3528__Date__07_08_2005
__Time_08_34_04AM__640__First
> chance
> exception 0X80000003.dmp
>
> Type of Analysis Performed
> Crash Analysis
>
> Machine Name
> XXXXXXX
>
> Operating System
> Windows 2000 Service Pack 4
>
> Number Of Processors
> 4
>
> Process ID
> 3528
>
> Process Image
> C:\WINNT\system32\dllhost.exe
>
> System Up-Time
> 11 day(s) 06:30:29
>
> Process Up-Time
> 11 day(s) 06:27:36
>
>
> Thread 15 - System ID 5080
>
> Entry point
> KERNEL32!DebugBreak
>
> Create time
> 7/8/2005 8:34:04 AM
>
> Time spent in user mode
> 0 Days 0:0:0.0
>
> Time spent in kernel mode
> 0 Days 0:0:0.0
>
>
>
>
> Function
> Source
>
> NTDLL!DbgBreakPoint
>
>
&