Dr. Watson di Windows  ncuptea blog

Dr. Watson di Windows

Sedikit gambaran tentang Dr Watson

Dr Watson adalah untuk Windows dan suatu debugger kesalahan program di Windows, jadi kita berbicara yang dimana Dr. Watson ini bukan nama orang atau selebriti yah.
Informasi yang diperoleh dan dicatat oleh Dr Watson adalah informasi yang dibutuhkan oleh kelompok-kelompok teknis support untuk mendiagnosa kesalahan program untuk komputer yang menjalankan Operasi Sistem Windows, kalian juga bisa mentroubleshooting permasalahan tersebut jika merasa mampu tanpa harus menunggu dari tim teknis support. Sebuah file teks (Drwtsn32.log) dibuat setiap kali kesalahan atau error terdeteksi, dan dapat disampaikan untuk mendukung personel teknis support dengan metode yang mereka inginkan. Kalian juga memiliki pilihan untuk membuat file crash dump, yang berupa file biner yang seorang programmer dapat memuat ke debugger.

Jika kesalahan program terjadi, Dr Watson akan jalan secara otomatis. Untuk memulai Dr Watson secara manual sesuai waktu yang kalian inginkan, klik Run lalu kemudian ketikan drwtsn32. Dan untuk memulai Dr Watson dari command prompt, pindah ke direktori root, kemudian ketik drwtsn32 lalu enter.

Sedikit tentang menggunakan dan membaca log file Dr.Warson

Seperti sudah dibahas di atas, dimana jika suatu program terjadi error di Windows, Dr.Watson akan menghasilkan file log yang bernama Drwtsn32.log. Log file tersebut akan selalu mulai dengan berisikan beberapa baris sebagai berikut :

Application exception occurred:
     App: C:\Program Files\Windows Media Player\wmplayer.exe (pid=196)
     When: 6/2/2012 @ 12:07:46.203
     Exception number: c0000005 (access violation)
  • Warna Merah ialah program yang mengalami error.
  • Warna Biru ialah tanggal dan waktu kejadian program tersebut error.
  • Warna Pink ialah istilah error dalam bahasa manusia dan kode error-nya.


*----> System Information <----*
        Computer Name: CHAOS
        User Name: ut
        Terminal Session Id: 0
        Number of Processors: 1
        Processor Type: x86 Family 15 Model 44 Stepping 2
        Windows Version: 5.1
        Current Build: 2600
        Service Pack: 2
        Current Type: Uniprocessor Free
        Registered Organization: citeureup foundation team
        Registered Owner: ncuptea
Pada baris seperti diatas ini ialah informasi umum tentang komputer kalian yang dimana program tersebut mengalami error.


*----> Task List <----*
   0 System Process
   4 System
 576 smss.exe
 640 csrss.exe
 664 winlogon.exe
 708 services.exe
 720 lsass.exe
 864 svchost.exe
 924 svchost.exe
 964 svchost.exe
1008 svchost.exe
1132 svchost.exe
1324 Explorer.EXE
1420 spoolsv.exe
1540 apache.exe
1576 nSvcLog.exe
1596 nvsvc32.exe
1640 SupServ.exe
1772 ctfmon.exe
1832 nSvcIp.exe
 224 apache.exe
1064 alg.exe
 196 wmplayer.exe
2008 RTHDCPL.EXE
2800 drwtsn32.exe
Diatas ini ialah Taks List, yang sebelah kiri (angka) adalah nilai PID (Proses Identifikasi) dan yang sebelah kanan (yang kita lihat huruf) adalah nama prosses servicenya. List-list Task yang di catat oleh file log Dr. Watson seperti di atas juga ialah list task imbas atau dampaknya dari program yang error, sehingga jangan bingung jika taks list di komputer kalian berbeda dan lebih banyak seperti contoh diatas.



Dan berikut beberapa potongan file log yang sudah akan masuk ke bahasa mesin dibawah ini yang dikarenakan sudah melewati porsi penulis maka silahkan kalian artikan sendiri.

*----> Module List <----*
(0000000000c50000 - 0000000000f15000: C:\WINDOWS\system32\xpsp2res.dll
(0000000001000000 - 0000000001012000: C:\Program Files\Windows Media Player\wmplayer.exe
(0000000001870000 - 0000000001887000: C:\WINDOWS\system32\odbcint.dll
(0000000001910000 - 000000000195f000: C:\WINDOWS\system32\DRMClien.DLL
(000000000ffd0000 - 000000000fff8000: C:\WINDOWS\system32\rsaenh.dll
(0000000010000000 - 0000000010007000: C:\Program Files\Internet Download Manager\idmmkb.dll
(0000000020000000 - 00000000202ce000: C:\WINDOWS\system32\wmploc.dll
(000000004b0d0000 - 000000004b12b000: C:\PROGRA~1\WINDOW~2\mpvis.dll
(000000004b320000 - 000000004b349000: C:\WINDOWS\system32\wmidx.dll
(000000004b5b0000 - 000000004ba59000: C:\WINDOWS\system32\wmp.dll
(000000004d4f0000 - 000000004d548000: C:\WINDOWS\system32\WINHTTP.dll
(000000004f230000 - 000000004f337000: C:\WINDOWS\system32\wmnetmgr.dll
(0000000058390000 - 000000005841a000: C:\WINDOWS\system32\l3codeca.acm
(0000000059a10000 - 0000000059a4c000: C:\WINDOWS\system32\WMASF.DLL
(000000005ad70000 - 000000005ada8000: C:\WINDOWS\system32\UxTheme.dll
(000000005b860000 - 000000005b8b4000: C:\WINDOWS\system32\NETAPI32.dll
(000000005cad0000 - 000000005caf7000: C:\WINDOWS\system32\shmedia.dll
(000000005cb70000 - 000000005cb96000: C:\WINDOWS\system32\ShimEng.dll
(0000000060560000 - 0000000060593000: C:\WINDOWS\system32\AcSignIcon.dll
(0000000060610000 - 0000000060671000: C:\Program Files\Common Files\Autodesk Shared\AcSignCore16.dll
(000000006f880000 - 000000006fa4a000: C:\WINDOWS\AppPatch\AcGenral.DLL
(0000000071aa0000 - 0000000071aa8000: C:\WINDOWS\system32\WS2HELP.dll
(0000000071ab0000 - 0000000071ac7000: C:\WINDOWS\system32\WS2_32.dll
(0000000071ad0000 - 0000000071ad9000: C:\WINDOWS\system32\WSOCK32.dll
(0000000071b20000 - 0000000071b32000: C:\WINDOWS\system32\MPR.dll
(0000000071bf0000 - 0000000071c03000: C:\WINDOWS\System32\SAMLIB.dll
(0000000071c10000 - 0000000071c1e000: C:\WINDOWS\System32\ntlanman.dll
(0000000071c80000 - 0000000071c87000: C:\WINDOWS\System32\NETRAP.dll
(0000000071c90000 - 0000000071cd0000: C:\WINDOWS\System32\NETUI1.dll
(0000000071cd0000 - 0000000071ce7000: C:\WINDOWS\System32\NETUI0.dll
(00000000722b0000 - 00000000722b5000: C:\WINDOWS\system32\sensapi.dll
(0000000072d10000 - 0000000072d18000: C:\WINDOWS\system32\msacm32.drv
(0000000072d20000 - 0000000072d29000: C:\WINDOWS\system32\wdmaud.drv
(0000000073000000 - 0000000073026000: C:\WINDOWS\system32\WINSPOOL.DRV
(00000000736b0000 - 00000000736b7000: C:\WINDOWS\system32\msdmo.dll
(0000000073760000 - 00000000737a9000: C:\WINDOWS\system32\ddraw.dll
(0000000073b50000 - 0000000073b67000: C:\WINDOWS\system32\AVIFIL32.dll
(0000000073bc0000 - 0000000073bc6000: C:\WINDOWS\system32\DCIMAN32.dll
(0000000073ee0000 - 0000000073ee4000: C:\WINDOWS\system32\KsUser.dll
(0000000073f10000 - 0000000073f6c000: C:\WINDOWS\system32\DSOUND.DLL
(0000000074320000 - 000000007435d000: C:\WINDOWS\system32\ODBC32.dll
(0000000074380000 - 000000007438f000: C:\WINDOWS\system32\wdigest.dll
(0000000074720000 - 000000007476b000: C:\WINDOWS\system32\MSCTF.dll
(0000000074810000 - 000000007497d000: C:\WINDOWS\system32\quartz.dll
(00000000754d0000 - 0000000075550000: C:\WINDOWS\system32\CRYPTUI.dll
(0000000075970000 - 0000000075a67000: C:\WINDOWS\system32\MSGINA.dll
(0000000075a70000 - 0000000075a91000: C:\WINDOWS\system32\MSVFW32.dll
(0000000075c50000 - 0000000075cbe000: C:\WINDOWS\system32\jscript.dll
(0000000075cf0000 - 0000000075d81000: C:\WINDOWS\system32\mlang.dll
(0000000075e90000 - 0000000075f40000: C:\WINDOWS\system32\SXS.DLL
(0000000075f40000 - 0000000075f51000: C:\WINDOWS\system32\devenum.dll
(0000000075f60000 - 0000000075f67000: C:\WINDOWS\System32\drprov.dll
(0000000075f70000 - 0000000075f79000: C:\WINDOWS\System32\davclnt.dll
(0000000075f80000 - 000000007607c000: C:\WINDOWS\system32\browseui.dll
(0000000076360000 - 0000000076370000: C:\WINDOWS\system32\WINSTA.dll
(0000000076380000 - 0000000076385000: C:\WINDOWS\system32\msimg32.dll
(00000000763b0000 - 00000000763f9000: C:\WINDOWS\system32\comdlg32.dll
(0000000076600000 - 000000007661d000: C:\WINDOWS\System32\CSCDLL.dll
(0000000076980000 - 0000000076988000: C:\WINDOWS\system32\LINKINFO.dll
(0000000076990000 - 00000000769b5000: C:\WINDOWS\system32\ntshrui.dll
(00000000769c0000 - 0000000076a73000: C:\WINDOWS\system32\USERENV.dll
(0000000076b20000 - 0000000076b31000: C:\WINDOWS\system32\ATL.DLL
(0000000076b40000 - 0000000076b6d000: C:\WINDOWS\system32\WINMM.dll
(0000000076c30000 - 0000000076c5e000: C:\WINDOWS\system32\WINTRUST.dll
(0000000076c90000 - 0000000076cb8000: C:\WINDOWS\system32\IMAGEHLP.dll
(0000000076d60000 - 0000000076d79000: C:\WINDOWS\system32\iphlpapi.dll
(0000000076e80000 - 0000000076e8e000: C:\WINDOWS\system32\rtutils.dll
(0000000076e90000 - 0000000076ea2000: C:\WINDOWS\system32\rasman.dll
(0000000076eb0000 - 0000000076edf000: C:\WINDOWS\system32\TAPI32.dll
(0000000076ee0000 - 0000000076f1c000: C:\WINDOWS\system32\RASAPI32.DLL
(0000000076f60000 - 0000000076f8c000: C:\WINDOWS\system32\WLDAP32.dll
(0000000076fd0000 - 000000007704f000: C:\WINDOWS\system32\CLBCATQ.DLL
(0000000077050000 - 0000000077115000: C:\WINDOWS\system32\COMRes.dll
(0000000077120000 - 00000000771ac000: C:\WINDOWS\system32\OLEAUT32.dll
(00000000771b0000 - 0000000077256000: C:\WINDOWS\system32\WININET.dll
(0000000077260000 - 00000000772fc000: C:\WINDOWS\system32\urlmon.dll
(00000000773d0000 - 00000000774d2000: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll
(00000000774e0000 - 000000007761c000: C:\WINDOWS\system32\ole32.dll
(0000000077760000 - 00000000778cc000: C:\WINDOWS\system32\shdocvw.dll
(0000000077920000 - 0000000077a13000: C:\WINDOWS\system32\setupapi.dll
(0000000077a20000 - 0000000077a74000: C:\WINDOWS\System32\cscui.dll
(0000000077a80000 - 0000000077b14000: C:\WINDOWS\system32\CRYPT32.dll
(0000000077b20000 - 0000000077b32000: C:\WINDOWS\system32\MSASN1.dll
(0000000077b40000 - 0000000077b62000: C:\WINDOWS\system32\appHelp.dll
(0000000077bd0000 - 0000000077bd7000: C:\WINDOWS\system32\midimap.dll
(0000000077be0000 - 0000000077bf5000: C:\WINDOWS\system32\MSACM32.dll
(0000000077c00000 - 0000000077c08000: C:\WINDOWS\system32\VERSION.dll
(0000000077c10000 - 0000000077c68000: C:\WINDOWS\system32\msvcrt.dll
(0000000077c70000 - 0000000077c93000: C:\WINDOWS\system32\msv1_0.dll
(0000000077d40000 - 0000000077dd0000: C:\WINDOWS\system32\USER32.dll
(0000000077dd0000 - 0000000077e6b000: C:\WINDOWS\system32\ADVAPI32.dll
(0000000077e70000 - 0000000077f01000: C:\WINDOWS\system32\RPCRT4.dll
(0000000077f10000 - 0000000077f56000: C:\WINDOWS\system32\GDI32.dll
(0000000077f60000 - 0000000077fd6000: C:\WINDOWS\system32\SHLWAPI.dll
(0000000077fe0000 - 0000000077ff1000: C:\WINDOWS\system32\Secur32.dll
(000000007c800000 - 000000007c8f4000: C:\WINDOWS\system32\kernel32.dll
(000000007c900000 - 000000007c9b0000: C:\WINDOWS\system32\ntdll.dll
(000000007c9c0000 - 000000007d1d4000: C:\WINDOWS\system32\SHELL32.dll
(000000007d790000 - 000000007d99a000: C:\WINDOWS\system32\wmvcore.dll


*----> State Dump for Thread Id 0x7cc <----*

eax=5f00b883 ebx=00000000 ecx=00ab1d48 edx=00aa214b esi=00a7bd40 edi=02e97004
eip=4b8c07c9 esp=0007b4e0 ebp=0007b4e8 iopl=0         nv up ei ng nz na po cy
cs=001b  ss=0023  ds=0023  es=0023  fs=003b  gs=0000             efl=00000287


*----> Stack Back Trace <----*
WARNING: Stack unwind information not available. Following frames may be wrong.
*** ERROR: Symbol file could not be found.  Defaulted to export symbols for C:\WINDOWS\system32\USER32.dll - 
*** ERROR: Symbol file could not be found.  Defaulted to export symbols for C:\WINDOWS\system32\ntdll.dll - 
*** ERROR: Module load completed but symbols could not be loaded for C:\Program Files\Windows Media Player\wmplayer.exe
*** ERROR: Symbol file could not be found.  Defaulted to export symbols for C:\WINDOWS\system32\kernel32.dll - 
ChildEBP RetAddr  Args to Child              
0007b4e8 4b8c4e8a 009f004c 0007bdfc 00a3d00c wmp+0x3107c9
0007b4fc 4b8c3d4f 0007bdfc 00000001 009f0d40 wmp+0x314e8a
0007b794 4b8bee3a 0007bdfc 00000000 76b44e5b wmp+0x313d4f
0007bdc0 4b5cb28c 009f0d40 0007bdfc 120104be wmp+0x30ee3a
0007bdd8 4b5cb2ba 00a0b958 0007bdfc 120104be wmp!Ordinal3996+0x1b28c
0007ce30 4b725bc0 0007cf2c 0007ce9c 00a1c1f0 wmp!Ordinal3996+0x1b2ba
0007ce48 4b726e1c 0007ce60 120104be 00a06468 wmp!Ordinal3000+0x71b9b
0007ce9c 4b7273d6 00000001 ffffffff 00000000 wmp!Ordinal3000+0x72df7
0007cec4 4b726e59 00a1c2cc 00000001 ffffffff wmp!Ordinal3000+0x733b1
0007cefc 4b5f0150 00a06468 120104be 0007cf2c wmp!Ordinal3000+0x72e34
0007cf44 4b7270f3 0185000f 7f010bb9 0007cf9c wmp!Ordinal3996+0x40150
0007cff0 4b726f5f 00000000 7f010bb9 ffffff5c wmp!Ordinal3000+0x730ce
0007d0a4 4b726bf6 00000000 7f010bb9 ffffff5c wmp!Ordinal3000+0x72f3a
0007d12c 4b726d70 0007d174 0007d1b0 00367d60 wmp!Ordinal3000+0x72bd1
0007d15c 4b726e1c 0007d174 003675e0 4b9ab4e0 wmp!Ordinal3000+0x72d4b
0007d1b0 4b726e97 00000001 ffffffff 00000000 wmp!Ordinal3000+0x72df7
0007d1d8 4b726e59 00367e3c 00000001 ffffffff wmp!Ordinal3000+0x72e72
0007d210 4b5cb4ea 003689d8 7f010bb9 00000000 wmp!Ordinal3000+0x72e34
0007d2ac 4b5cb37d 0000000f 00000000 00000000 wmp!Ordinal3996+0x1b4ea
0007d2d0 4b5b1e5e 0017013c 0000000f 00000000 wmp!Ordinal3996+0x1b37d
0007d318 77d48709 003675e0 0000000f 00000000 wmp!Ordinal3996+0x1e5e
0007d344 77d487eb 003a0fc0 0017013c 0000000f USER32!GetDC+0x72
0007d3ac 77d4b368 00000000 003a0fc0 0017013c USER32!GetDC+0x154
0007d400 77d4b3b4 00545f90 0000000f 00000000 USER32!DefWindowProcW+0x183
0007d428 7c90eae3 0007d438 00000018 00545f90 USER32!DefWindowProcW+0x1cf
0007d494 77d489e8 0007d4f4 00000000 0007d4c4 ntdll!KiUserCallbackDispatcher+0x13
0007d4a4 4b5b246e 0007d4f4 4b5f15ac 0007d684 USER32!DispatchMessageW+0xf
0007d4c4 4b5b2380 00000200 4b9c03c8 00000000 wmp!Ordinal3996+0x246e
0007fecc 4b6b40d1 00020670 00000001 4b5b0000 wmp!Ordinal3996+0x2380
0007fef4 010012d7 01000000 00020670 00000001 wmp!Ordinal3000+0xac
0007ffc0 7c816d4f 00b2dd60 7c90e1fe 7ffde000 wmplayer+0x12d7
0007fff0 00000000 010010c5 00000000 78746341 kernel32!RegisterWaitForInputIdle+0x49


*----> Raw Stack Dump <----*
000000000007b4e0  0c d0 a3 00 00 00 00 00 - fc b4 07 00 8a 4e 8c 4b  .............N.K
000000000007b4f0  4c 00 9f 00 fc bd 07 00 - 0c d0 a3 00 94 b7 07 00  L...............
000000000007b500  4f 3d 8c 4b fc bd 07 00 - 01 00 00 00 40 0d 9f 00  O=.K........@...
000000000007b510  00 00 00 00 a6 18 81 7c - 18 ee 90 7c b0 4c 91 7c  .......|...|.L.|
000000000007b520  00 00 00 00 6a b7 07 00 - 02 00 00 00 00 00 00 00  ....j...........
000000000007b530  3a 00 00 00 4c b5 07 00 - 9e 04 42 77 08 90 37 01  :...L.....Bw..7.
000000000007b540  40 79 2c 01 1d 00 02 00 - 95 02 52 45 00 00 ff ff  @y,.......RE....
000000000007b550  94 02 52 45 64 88 00 00 - 84 b5 07 00 09 87 d4 77  ..REd..........w
000000000007b560  c4 00 0c 00 4e 00 00 00 - 00 00 00 00 30 b8 07 00  ....N.......0...
000000000007b570  9e 04 42 77 cd ab ba dc - 00 00 00 00 c0 b5 07 00  ..Bw............
000000000007b580  9e 04 42 77 ec b5 07 00 - b1 8b d4 77 00 d0 fd 7f  ..Bw.......w....
000000000007b590  ec b5 07 00 32 88 d4 77 - ac b5 07 00 ff 87 d4 77  ....2..w.......w
000000000007b5a0  4e 00 00 00 9e 04 42 77 - 9c b6 07 00 14 00 00 00  N.....Bw........
000000000007b5b0  01 00 00 00 f4 b5 07 00 - 30 67 12 00 c2 21 93 7c  ........0g...!.|
000000000007b5c0  d8 b5 07 00 c8 0d 30 01 - 00 00 00 00 00 00 0a 00  ......0.........
000000000007b5d0  11 00 6b 00 18 c6 00 00 - 10 00 1d 00 17 c6 00 00  ..k.............
000000000007b5e0  94 04 d7 77 01 00 00 00 - 68 0a 30 01 ff 87 d4 77  ...w....h.0....w
000000000007b5f0  40 70 2c 01 b8 b6 07 00 - 6d 05 91 7c 00 00 00 00  @p,.....m..|....
000000000007b600  c8 0d 30 01 c8 0d 30 01 - 30 b8 07 00 00 00 00 00  ..0...0.0.......
000000000007b610  00 00 00 00 82 00 00 00 - ec bc a5 00 3c b6 07 00  ............<...

No comments:

Facebook Blogger Plugin: Brought to by CITEUREUP FOUNDATION Enhanced by ncuptea

Post a Comment

Berkomentarlah dengan bijak untuk pengembangan dan sekaligus menjadi pembelajaran kita bersama.

Pilih Name/Url untuk mempermudah memasukan id anda!