CDFS_FILE_SYSTEM

Code: 0x26 (38)

As HRESULT:As NTSTATUS:

Parameters

ParameterDescription
1Specifies source file and line number information. The high 16 bits (the first four hexadecimal digits after the "0x") identify the source file by its identifier number. The low 16 bits identify the source line in the file where the bug check occurred.
2If CdExceptionFilter is on the stack, this parameter specifies the address of the exception record.
3If CdExceptionFilter is on the stack, this parameter specifies the address of the context record.
4Reserved

Description

The CDFS_FILE_SYSTEM bug check has a value of 0x00000026. This indicates that a problem occurred in the CD file system.

Important

This article is for programmers. If you're a customer who has received a blue screen error code while using your computer, see Troubleshoot blue screen errors.

Cause

One possible cause of this bug check is disk corruption. Corruption in the file system or bad blocks (sectors) on the disk can induce this error. Corrupted SCSI and IDE drivers can also adversely affect the system's ability to read and write to the disk, thus causing the error.

Another possible cause is depletion of nonpaged pool memory. If the nonpaged pool memory is completely depleted, this error can stop the system. However, during the indexing process, if the amount of available nonpaged pool memory is very low, another kernel-mode driver requiring nonpaged pool memory can also trigger this error.

Resolution

To debug this problem: Use the .cxr (Display Context Record) command with Parameter 3, and then use kb (Display Stack Backtrace).

To resolve a disk corruption problem: Check Event Viewer for error messages from SCSI and FASTFAT (System Log) or Autochk (Application Log) that might help pinpoint the device or driver that is causing the error. Try disabling any virus scanners, backup programs, or disk defragmenter tools that continually monitor the system. You should also run hardware diagnostics supplied by the system manufacturer. For details on these procedures, see the owner's manual for your computer. Run Chkdsk /f /r to detect and resolve any file system structural corruption. You must restart the system before the disk scan begins on a system partition.

To resolve a nonpaged pool memory depletion problem: Add new physical memory to the computer. This will increase the quantity of nonpaged pool memory available to the kernel.

Article text from the Windows driver documentation (opens in a new tab), by Microsoft, under the CC BY 4.0 (opens in a new tab) licence.

Associated Modules

ModuleCodeFound inDescription
EventCreate.exe0x2678.11011%1
KernelBase.dll0x2678.1Reached the end of the file.
VSSVC.exe0x261011Volume Shadow Copy Service error: Either the COM+ Event System service (EventSystem) or the COM+ System Application service (COMSysApp) is disabled. Enable the service and try again. %1
cipher.exe0x2678.11011Overwrite %1? (Yes/No):
compact.exe0x261011Compact.exe doesn't understand the system's compact state.
dsreg.dll0x261011%1
dssec.dll0x2678.11011Receive dead letter
ehepgres.dll0x267%1
hvloader.dll0x2611Hyper-V launch failed; at least one of the processors in the system was unable to launch the hypervisor (status %1).
hvservice.sys0x2610Hyper-V launch failed; at least one of the processors in the system was unable to launch the hypervisor (status %1).
kernel32.dll0x2678.11011Reached the end of the file.
nslookup.exe0x2678.11011nslookup: WSAStartup:
powershell.exe0x261011Copyright (C) 2015 Microsoft Corporation. All rights reserved.
powershell.exe0x268.1Copyright (C) 2014 Microsoft Corporation. All rights reserved.
reagentc.exe0x268.11011%1: Windows RE is disabled.
sc.exe0x2678.11011IsLocked : TRUE
w32time.dll0x261011The time provider NtpClient has not received response from server %1.
webservices.dll0x2678.11011The operation requires a server channel.
wecutil.exe0x2678.11011Subscription %1!s! already exists.
wevtutil.exe0x2678.11011Windows Events Command Line Utility. Enables you to retrieve information about event logs and publishers, install and uninstall event manifests, run queries, and export, archive, and clear logs. Usage: You can use either the short (for example, ep /uni) or long (for example, enum-publishers /unicode) version of the command and option names. Commands, options and option values are not case-sensitive. Variables are noted in all upper-case. wevtutil COMMAND [ARGUMENT [ARGUMENT] ...] [/OPTION:VALUE [/OPTION:VALUE] ...] Commands: el | enum-logs List log names. gl | get-log Get log configuration information. sl | set-log Modify configuration of a log. ep | enum-publishers List event publishers. gp | get-publisher Get publisher configuration information. im | install-manifest Install event publishers and logs from manifest. um | uninstall-manifest Uninstall event publishers and logs from manifest. qe | query-events Query events from a log or log file. gli | get-log-info Get log status information. epl | export-log Export a log. al | archive-log Archive an exported log. cl | clear-log Clear a log. Common options: /{r | remote}:VALUE If specified, run the command on a remote computer. VALUE is the remote computer name. Options /im and /um do not support remote operations. /{u | username}:VALUE Specify a different user to log on to the remote computer. VALUE is a user name in the form domain\user or user. Only applicable when option /r is specified. /{p | password}:VALUE Password for the specified user. If not specified, or if VALUE is "*", the user will be prompted to enter a password. Only applicable when the /u option is specified. /{a | authentication}:[Default|Negotiate|Kerberos|NTLM] Authentication type for connecting to remote computer. The default is Negotiate. /{uni | unicode}:[true|false] Display output in Unicode. If true, then output is in Unicode. To learn more about a specific command, type the following: wevtutil COMMAND /?
whealogr.dll0x267A fatal hardware error has occurred. Reported by component: Processor Core Error Source: %1 Error Type: %2 CPU APIC ID: %3 The details view of this entry contains further information.
win32k.sys0x2678.1WindowFrame
win32kbase.sys0x261011WindowFrame
23 entries