Quantcast
Channel: Windows 8.1 Networking forum
Viewing all articles
Browse latest Browse all 3899

System Freeze for seconds every serveral minutes

$
0
0

Hi,

 

I am using Windows 8 64-bit and recently I found the system freeze for seconds every serveral minutes (the mouse and sound shutters).  After struggle to debug for a long time, I use the process monitor from Microsoft to see what happen inside.  Everytime the system freeze, i found that there are over thousands of lines of below appear in the process monitor.  I found that that is related to the system write huge data to the registry repeatly at a very very short time such that make my system freeze. 

 

3:27:43.8673634 AM System 4 RegCreateKey HKLM\System\CurrentControlSet\Control\Nsi\{eb004a01-9b1a-11d4-9123-0050047759bc}\28 REPARSE Desired Access: Read/Write
3:27:43.8674222 AM System 4 RegCreateKey HKLM\System\CurrentControlSet\Control\Nsi\{eb004a01-9b1a-11d4-9123-0050047759bc}\28 SUCCESS Desired Access: Read/Write
3:27:43.8675532 AM System 4 RegSetValue HKLM\System\CurrentControlSet\Control\Nsi\{eb004a01-9b1a-11d4-9123-0050047759bc}\28\e41de5b068e28d43a41bf78d2cb819ca SUCCESS Type: REG_BINARY, Length: 96,064, Data: E8 03 00 00 00 00 00 00 FC 6B C8 AF FF 95 CE 01
3:27:43.8675996 AM System 4 RegCreateKey HKLM\System\CurrentControlSet\Control\Nsi\{eb004a01-9b1a-11d4-9123-0050047759bc}\28 REPARSE Desired Access: Read/Write
3:27:43.8676714 AM System 4 RegCreateKey HKLM\System\CurrentControlSet\Control\Nsi\{eb004a01-9b1a-11d4-9123-0050047759bc}\28 SUCCESS Desired Access: Read/Write
3:27:43.8679204 AM System 4 RegSetValue HKLM\System\CurrentControlSet\Control\Nsi\{eb004a01-9b1a-11d4-9123-0050047759bc}\28\e41de5b068e28d43a41bf78d2cb819ca SUCCESS Type: REG_BINARY, Length: 96,064, Data: E8 03 00 00 00 00 00 00 FC 6B C8 AF FF 95 CE 01
3:27:43.8680395 AM System 4 RegCreateKey HKLM\System\CurrentControlSet\Control\Nsi\{eb004a01-9b1a-11d4-9123-0050047759bc}\28 REPARSE Desired Access: Read/Write

The call stack for each of the event of registry written:

0 ntoskrnl.exe PsGetProcessExitProcessCalled + 0x20bc 0xfffff800bc16580cC:\Windows\system32\ntoskrnl.exe

1 ntoskrnl.exe PoDeletePowerRequest + 0x17b5 0xfffff800bc08a781 C:\Windows\system32\ntoskrnl.exe
2 ntoskrnl.exe KeSaveStateForHibernate + 0x2a33 0xfffff800bbce3453 C:\Windows\system32\ntoskrnl.exe
3 ntoskrnl.exe ZwUpdateWnfStateData + 0x170 0xfffff800bbce8630 C:\Windows\system32\ntoskrnl.exe
4 NETIO.SYS ConvertInterfaceLuidToGuid + 0x3b7 0xfffff88001a187e7C:\Windows\system32\drivers\NETIO.SYS
5 NETIO.SYS NsiSetAllParametersEx + 0x19c 0xfffff88001a13abc C:\Windows\system32\drivers\NETIO.SYS
6 NETIO.SYS NsiSetAllParameters + 0x7b 0xfffff88001a1429b C:\Windows\system32\drivers\NETIO.SYS
7 tcpip.sys tcpip.sys + 0x103872 0xfffff88001f7c872 C:\Windows\System32\drivers\tcpip.sys
8 tcpip.sys tcpip.sys + 0x154b18 0xfffff88001fcdb18 C:\Windows\System32\drivers\tcpip.sys
9 ntoskrnl.exe IoBuildPartialMdl + 0x15d7 0xfffff800bbd32b77 C:\Windows\system32\ntoskrnl.exe
10 ntoskrnl.exe ExEnterCriticalRegionAndAcquireResourceExclusive + 0x171 0xfffff800bbd222a1C:\Windows\system32\ntoskrnl.exe
11 ntoskrnl.exe RtlTimeFieldsToTime + 0x299 0xfffff800bbcb6fd9 C:\Windows\system32\ntoskrnl.exe

12 ntoskrnl.exe RtlImageNtHeader + 0x39e 0xfffff800bbd6b7e6 C:\Windows\system32\ntoskrnl.exe

What some main points I had tried to resolve but failed:

system restore to 1 weeks before
full virus scan
windows update
isolate foreground application test
disable original on-board LAN and add another LAN card
disable IP6
direct connect PC to broadband modem instead of router
disable wake on LAN
change power plan to hi performance
disable swap file
safe mode with network
clean boot (disable all non-microsoft service and startup task)
disable some microsoft unnecessary network services


Viewing all articles
Browse latest Browse all 3899

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>