windbg无法下载符号文件
symbol file path: srv*d:\symbolslocal*http://msdl.microsoft.com/download/symbols
即使设置是对的,但我用.reload,却仍无法下载符号
Microsoft (R) Windows Debugger Version 10.0.14321.1024 AMD64
Copyright (c) Microsoft Corporation. All rights reserved. Opened \\.\pipe\kd_Win7x86
Waiting to reconnect...
Connected to Windows x86 compatible target at (Fri Dec ::03.022 (UTC + :)), ptr64 FALSE
Kernel Debugger connection established. ************* Symbol Path validation summary **************
Response Time (ms) Location
Deferred srv*d:\symbolslocal*http://msdl.microsoft.com/download/symbols
Symbol search path is: srv*d:\symbolslocal*http://msdl.microsoft.com/download/symbols
Executable search path is:
*** ERROR: Symbol file could not be found. Defaulted to export symbols for ntkrpamp.exe -
Windows Kernel Version MP ( procs) Free x86 compatible
Built by: 7601.17514.x86fre.win7sp1_rtm.-
Machine Name:
Kernel base = 0x83e09000 PsLoadedModuleList = 0x83f53850
System Uptime: not available
*** ERROR: Symbol file could not be found. Defaulted to export symbols for ntkrpamp.exe -
nt!DbgLoadImageSymbols+0x47:
83e21578 cc int
kd> .reload /o
Connected to Windows x86 compatible target at (Fri Dec ::10.054 (UTC + :)), ptr64 FALSE
*** ERROR: Symbol file could not be found. Defaulted to export symbols for ntkrpamp.exe -
Loading Kernel Symbols
.....................................................
Loading User Symbols Loading unloaded module list
Unable to enumerate kernel-mode unloaded modules, HRESULT 0x80004005 ************* Symbol Loading Error Summary **************
Module name Error
ntkrpamp The system cannot find the file specified You can troubleshoot most symbol related issues by turning on symbol loading diagnostics (!sym noisy) and repeating the command that caused symbols to be loaded.
You should also verify that your symbol search path (.sympath) is correct.
kd> !sym noisy
noisy mode - symbol prompts on
kd> .reload /o
Connected to Windows x86 compatible target at (Fri Dec ::37.843 (UTC + :)), ptr64 FALSE
SYMSRV: BYINDEX: 0x4
d:\symbolslocal*http://msdl.microsoft.com/download/symbols
ntkrpamp.pdb
684DA42A30CC450F81C535B4D18944B12
SYMSRV: d:\symbolslocal\ntkrpamp.pdb\684DA42A30CC450F81C535B4D18944B12\ntkrpamp.pdb - file not found
SYMSRV: HTTPGET: /download/symbols/ntkrpamp.pdb/684DA42A30CC450F81C535B4D18944B12/ntkrpamp.pdb
SYMSRV: HttpSendRequest: - ERROR_INTERNET_CANNOT_CONNECT
SYMSRV: d:\symbolslocal\ntkrpamp.pdb\684DA42A30CC450F81C535B4D18944B12\ntkrpamp.pdb not found
SYMSRV: http://msdl.microsoft.com/download/symbols/ntkrpamp.pdb/684DA42A30CC450F81C535B4D18944B12/ntkrpamp.pdb not found
DBGHELP: ntkrpamp.pdb - file not found
*** ERROR: Symbol file could not be found. Defaulted to export symbols for ntkrpamp.exe -
DBGHELP: nt - export symbols
Loading Kernel Symbols
.....................................................
Loading User Symbols Loading unloaded module list
Unable to enumerate kernel-mode unloaded modules, HRESULT 0x80004005 ************* Symbol Loading Error Summary **************
Module name Error
ntkrpamp The system cannot find the file specified
The SYMSRV client failed to find a file in the UNC store, or there
is an invalid UNC store (an invalid path or the pingme.txt file is
not present in the root directory), or the file is present in the
symbol server exclusion list. kd> g
KDTARGET: Refreshing KD connection
Break instruction exception - code (first chance)
*******************************************************************************
* *
* You are seeing this message because you pressed either *
* CTRL+C (if you run console kernel debugger) or, *
* CTRL+BREAK (if you run GUI kernel debugger), *
* on your debugger machine's keyboard. *
* *
* THIS IS NOT A BUG OR A SYSTEM CRASH *
* *
* If you did not intend to break into the debugger, press the "g" key, then *
* press the "Enter" key now. This message might immediately reappear. If it *
* does, press "g" and "Enter" again. *
* *
*******************************************************************************
SYMSRV: BYINDEX: 0x5
d:\symbolslocal*http://msdl.microsoft.com/download/symbols
ntdll.dll
4CE7B96E13c000
SYMSRV: d:\symbolslocal\ntdll.dll\4CE7B96E13c000\ntdll.dll - file not found
SYMSRV: HTTPGET: /download/symbols/ntdll.dll/4CE7B96E13c000/ntdll.dll
SYMSRV: HttpSendRequest: - ERROR_INTERNET_CANNOT_CONNECT
SYMSRV: d:\symbolslocal\ntdll.dll\4CE7B96E13c000\ntdll.dll not found
SYMSRV: http://msdl.microsoft.com/download/symbols/ntdll.dll/4CE7B96E13c000/ntdll.dll not found
DBGHELP: E:\Program Files (x86)\Windows Kits\\Debuggers\x64\ntdll.dll - file not found
DBGHELP: E:\Program Files (x86)\Windows Kits\\Debuggers\x64\ntdll.dll - file not found
DBGENG: ntdll.dll - Image mapping disallowed by non-local path.
DBGHELP: No debug info for ntdll.dll. Searching for dbg file
SYMSRV: BYINDEX: 0x6
d:\symbolslocal*http://msdl.microsoft.com/download/symbols
ntdll.dbg
4CE7B96E13c000
SYMSRV: d:\symbolslocal\ntdll.dbg\4CE7B96E13c000\ntdll.dbg - file not found
SYMSRV: HTTPGET: /download/symbols/ntdll.dbg/4CE7B96E13c000/ntdll.dbg
SYMSRV: HttpSendRequest: - ERROR_INTERNET_CANNOT_CONNECT
SYMSRV: d:\symbolslocal\ntdll.dbg\4CE7B96E13c000\ntdll.dbg not found
SYMSRV: http://msdl.microsoft.com/download/symbols/ntdll.dbg/4CE7B96E13c000/ntdll.dbg not found
DBGHELP: .\ntdll.dbg - file not found
DBGHELP: .\dll\ntdll.dbg - path not found
DBGHELP: .\symbols\dll\ntdll.dbg - path not found
DBGHELP: ntdll.dll missing debug info. Searching for pdb anyway
DBGHELP: Can't use symbol server for ntdll.pdb - no header information available
DBGHELP: ntdll.pdb - file not found
*** ERROR: Module load completed but symbols could not be loaded for ntdll.dll
DBGHELP: ntdll - no symbols loaded
SYMSRV: BYINDEX: 0x7
d:\symbolslocal*http://msdl.microsoft.com/download/symbols
halmacpi.pdb
AE605D6C59454802AE1D485E0B089A571
SYMSRV: d:\symbolslocal\halmacpi.pdb\AE605D6C59454802AE1D485E0B089A571\halmacpi.pdb - file not found
SYMSRV: HTTPGET: /download/symbols/halmacpi.pdb/AE605D6C59454802AE1D485E0B089A571/halmacpi.pdb
SYMSRV: HttpSendRequest: - ERROR_INTERNET_CANNOT_CONNECT
SYMSRV: d:\symbolslocal\halmacpi.pdb\AE605D6C59454802AE1D485E0B089A571\halmacpi.pdb not found
SYMSRV: http://msdl.microsoft.com/download/symbols/halmacpi.pdb/AE605D6C59454802AE1D485E0B089A571/halmacpi.pdb not found
DBGHELP: halmacpi.pdb - file not found
*** ERROR: Symbol file could not be found. Defaulted to export symbols for halmacpi.dll -
DBGHELP: hal - export symbols
nt!DbgBreakPointWithStatus+0x4:
83e84110 cc int
: kd> g
Shutdown occurred at (Fri Dec ::16.454 (UTC + :))...unloading all symbol tables. ************* Symbol Path validation summary **************
Response Time (ms) Location
Deferred srv*d:\symbolslocal*http://msdl.microsoft.com/download/symbols
Waiting to reconnect...
SYMSRV: HttpSendRequest: 12029 - ERROR_INTERNET_CANNOT_CONNECT, 看到了这一行,想到了:
1\防火墙或者杀毒软件给他屏蔽了,但不可能,因为我根本没开过
2\我的IE一直是不能上网的,用的是CHROME,以前有些软件内部需要用IE打开网页的也全部失败,,然后我就想到是不是因为这个原因.
之后我找到了http://blog.csdn.net/z15872384393/article/details/52822284
按他说的做了,之后,成功了
SYMSRV: BYINDEX: 0x43
d:\symbolslocal*http://msdl.microsoft.com/download/symbols
acpi.pdb
E7300A0CC3524834A4E1E55773C1901E1
SYMSRV: d:\symbolslocal\acpi.pdb\E7300A0CC3524834A4E1E55773C1901E1\acpi.pdb - file not found
SYMSRV: HTTPGET: /download/symbols/acpi.pdb/E7300A0CC3524834A4E1E55773C1901E1/acpi.pdb
SYMSRV: HttpQueryInfo: - HTTP_STATUS_NOT_FOUND
SYMSRV: HTTPGET: /download/symbols/acpi.pdb/E7300A0CC3524834A4E1E55773C1901E1/acpi.pd_
SYMSRV: HttpQueryInfo: - HTTP_STATUS_OK
SYMSRV: d:\symbolslocal\acpi.pdb\E7300A0CC3524834A4E1E55773C1901E1\acpi.pdb - file not found
SYMSRV: acpi.pdb from http://msdl.microsoft.com/download/symbols: 131749 bytes - copied SYMSRV: PATH: d:\symbolslocal\acpi.pdb\E7300A0CC3524834A4E1E55773C1901E1\acpi.pdb
不会再ERROR_CANNOT_CONNECT_INTERNET(错误_不能_连接_因特网)了
windbg无法下载符号文件的更多相关文章
- windbg自行下载的sos.dll存放路径“..\SOS_x86_x86_4.7.3132.00.dll\5B5543296ee000\”里的“5B5543296ee000”是什么?
问题的引出 我在调试某个崩溃问题时,要跟踪clr的栈,于是,我先执行了指令.loadby sos clrjit,没有报错,然后我又执行!clrstack,结果却有如下输出:0:000:x86> ...
- WinDbg下载符号文件
设置添加系统环境变量_NT_SYMBOL_PATH 的值为:srv*c:\symbols*http://msdl.microsoft.com/download/symbols 这样启动WinDbg的时 ...
- Windbg 双机代码同步调试设置
Windbg的设置 Windbg的设置 Windbg本身可以直接从微软的网站上下载下载地址:http://www.microsoft.com/whdc/devtools/debugging/defau ...
- 【旧文章搬运】Windbg+Vmware驱动调试入门(一)---Windbg的设置
原文发表于百度空间,2009-01-08========================================================================== Windb ...
- 关于windbg报错"No symbols for ntdll. Cannot continue."问题
最近我写个例子程序研究下某个异常情况,故意制造了个崩溃.然后分析dmp文件. 当我执行!address -summary命令想观察下进程当前内存情况时,去报如下错误: 0:000> !addre ...
- OD: Vulnerabilities Analyze Skills
第五篇了,漏洞分析案例 漏洞利用的灵活程度让这门技术变得似乎没有什么原则可言,只有实践后总结提高才能挥洒自如. 漏洞分析方法 目标:弄清攻击原理.评估潜在利用方式及风险等级.扎实的漏洞利用技术是进行漏 ...
- 【旧文章搬运】关于windbg搜索符号文件的一点说明
原文发表于百度空间,2010-09-07========================================================================== 本来只是打 ...
- windbg是如何搜索符号文件的?
来个样例 我的符号目录设置是: 用我们在windows下调试必须用到的ntdll.dll模块来讲下windbg加载符号文件的过程.windbg加载符号文件时,会首先根据配置的符号目录信息,在本地符号目 ...
- Windows XP sp3 系统安装 Windbg 符号文件 Symbols 时微软失去支持的解决方案
0x01 前言 Windbg 是微软的正宗调试器,在正常的情况下调试一些程序并没有什么问题,但是如果需要调试分析程序的堆栈,或者是一些特殊的功能时则需要微软的符号文件的支持,所以符号文件是非常重要的, ...
随机推荐
- [Machine-Learning] 熟悉 Matlab 中的 map
概述 map 的意思是映射,即将一个变量映射到另一个变量. 比如将一个字符串映射为一个数值,那个字符串就是map 的键值(key),数值就是map的数据(value). 由此可以把map理解为一个哈希 ...
- Spring获取bean的工具类
package com.tech.jin.util; import org.springframework.context.ApplicationContext; import org.springf ...
- Unity2D 里的场景缩放实现
闲时以 Unity2D 练手时想实现端游里的场景缩放功能,而网上的代码几乎全是 3D 场景缩放相关,所以我自己编写了个 2D 场景缩放脚本(C#). 代码如下: using UnityEngine; ...
- Chapter 1: 随机事件及其概率
1. 随机试验,样本点,样本空间 若试验具有下列特点: 在相同条件下可重复进行 每次试验的可能结果不止一个,且所有可能结果在实验前是已知的 实验前不能确定哪一个结果会发生 则称该试验为随机试验,常记为 ...
- linux下给网卡加VLAN标签和私网地址
1.加载8021q协议 moprobe 8021q 2.安装必要的包 yum -y groupinstall base linux 3.添加私网地址(写到开机启动项) vconfig add bond ...
- php数据类型及转换
- web项目总结——通过jsp+servlet实现对oracle的增删改查功能
1.DAO模式 分包:依次建立 entity:实体包,放的是跟oracle数据库中表结构相对应的对象的属性,也就是这个对象有什么 dao:增删改查接口,实现增删改查的具体方法 service:同dao ...
- Xcode 7免证书真机调试
在Xcode 7中,苹果改变了自己在许可权限上的策略,此前Xcode只开放给注册开发者下载,但Xcode 7改变了这种惯有的做法,无需注册开发者账号,仅使用普通的Apple ID就能下载和上手体验.此 ...
- Mac上配置Privoxy
此文档适用于走Shadowsocks代理,想利用Privoxy将主机作为代理服务器的用户. 0.安装完Privoxy后,打开终端命令. 1.打开Privoxy的配置文件config: cd /usr/ ...
- Top命令 -转
Windows下的任务管理器虽然不好用(个人更喜欢Process Explorer些),但也算方便,可以方便的查看进程,CPU,内存...也可以很容易的结束进程 没有图形化界面下的Linux,也有命令 ...