CDFS_FILE_SYSTEM
Code: 0x26 (38)
As HRESULT:- S: 0 (Success)
- C: 0 (Microsoft-defined)
- N: 0 (Not an NTSTATUS value)
- Facility: 0x000 (FACILITY_NULL: Default)
- Code: 0x0026 (38)
- Sev: 0 (STATUS_SEVERITY_SUCCESS)
- C: 0 (Microsoft-defined)
- Facility: 0x000 (Default)
- Code: 0x0026 (38)
Parameters
| Parameter | Description |
|---|---|
| 1 | Specifies source file and line number information. The high 16 bits (the first four hexadecimal digits after the "0x") identify the source file by its identifier number. The low 16 bits identify the source line in the file where the bug check occurred. |
| 2 | If CdExceptionFilter is on the stack, this parameter specifies the address of the exception record. |
| 3 | If CdExceptionFilter is on the stack, this parameter specifies the address of the context record. |
| 4 | Reserved |
Description
The CDFS_FILE_SYSTEM bug check has a value of 0x00000026. This indicates that a problem occurred in the CD file system.
Important
This article is for programmers. If you're a customer who has received a blue screen error code while using your computer, see Troubleshoot blue screen errors.
Cause
One possible cause of this bug check is disk corruption. Corruption in the file system or bad blocks (sectors) on the disk can induce this error. Corrupted SCSI and IDE drivers can also adversely affect the system's ability to read and write to the disk, thus causing the error.
Another possible cause is depletion of nonpaged pool memory. If the nonpaged pool memory is completely depleted, this error can stop the system. However, during the indexing process, if the amount of available nonpaged pool memory is very low, another kernel-mode driver requiring nonpaged pool memory can also trigger this error.
Resolution
To debug this problem: Use the .cxr (Display Context Record) command with Parameter 3, and then use kb (Display Stack Backtrace).
To resolve a disk corruption problem: Check Event Viewer for error messages from SCSI and FASTFAT (System Log) or Autochk (Application Log) that might help pinpoint the device or driver that is causing the error. Try disabling any virus scanners, backup programs, or disk defragmenter tools that continually monitor the system. You should also run hardware diagnostics supplied by the system manufacturer. For details on these procedures, see the owner's manual for your computer. Run Chkdsk /f /r to detect and resolve any file system structural corruption. You must restart the system before the disk scan begins on a system partition.
To resolve a nonpaged pool memory depletion problem: Add new physical memory to the computer. This will increase the quantity of nonpaged pool memory available to the kernel.
Article text from the Windows driver documentation (opens in a new tab), by Microsoft, under the CC BY 4.0 (opens in a new tab) licence.
Associated Modules
| Module | Code | Found in | Description |
|---|---|---|---|
| EventCreate.exe | 0x26 | 78.11011 | %1 |
| KernelBase.dll | 0x26 | 78.1 | Reached the end of the file. |
| VSSVC.exe | 0x26 | 1011 | Volume Shadow Copy Service error: Either the COM+ Event System service (EventSystem) or the COM+ System Application service (COMSysApp) is disabled. Enable the service and try again. %1 |
| cipher.exe | 0x26 | 78.11011 | Overwrite %1? (Yes/No): |
| compact.exe | 0x26 | 1011 | Compact.exe doesn't understand the system's compact state. |
| dsreg.dll | 0x26 | 1011 | %1 |
| dssec.dll | 0x26 | 78.11011 | Receive dead letter |
| ehepgres.dll | 0x26 | 7 | %1 |
| hvloader.dll | 0x26 | 11 | Hyper-V launch failed; at least one of the processors in the system was unable to launch the hypervisor (status %1). |
| hvservice.sys | 0x26 | 10 | Hyper-V launch failed; at least one of the processors in the system was unable to launch the hypervisor (status %1). |
| kernel32.dll | 0x26 | 78.11011 | Reached the end of the file. |
| nslookup.exe | 0x26 | 78.11011 | nslookup: WSAStartup: |
| powershell.exe | 0x26 | 1011 | Copyright (C) 2015 Microsoft Corporation. All rights reserved. |
| powershell.exe | 0x26 | 8.1 | Copyright (C) 2014 Microsoft Corporation. All rights reserved. |
| reagentc.exe | 0x26 | 8.11011 | %1: Windows RE is disabled. |
| sc.exe | 0x26 | 78.11011 | IsLocked : TRUE |
| w32time.dll | 0x26 | 1011 | The time provider NtpClient has not received response from server %1. |
| webservices.dll | 0x26 | 78.11011 | The operation requires a server channel. |
| wecutil.exe | 0x26 | 78.11011 | Subscription %1!s! already exists. |
| wevtutil.exe | 0x26 | 78.11011 | Windows Events Command Line Utility. Enables you to retrieve information about event logs and publishers, install and uninstall event manifests, run queries, and export, archive, and clear logs. Usage: You can use either the short (for example, ep /uni) or long (for example, enum-publishers /unicode) version of the command and option names. Commands, options and option values are not case-sensitive. Variables are noted in all upper-case. wevtutil COMMAND [ARGUMENT [ARGUMENT] ...] [/OPTION:VALUE [/OPTION:VALUE] ...] Commands: el | enum-logs List log names. gl | get-log Get log configuration information. sl | set-log Modify configuration of a log. ep | enum-publishers List event publishers. gp | get-publisher Get publisher configuration information. im | install-manifest Install event publishers and logs from manifest. um | uninstall-manifest Uninstall event publishers and logs from manifest. qe | query-events Query events from a log or log file. gli | get-log-info Get log status information. epl | export-log Export a log. al | archive-log Archive an exported log. cl | clear-log Clear a log. Common options: /{r | remote}:VALUE If specified, run the command on a remote computer. VALUE is the remote computer name. Options /im and /um do not support remote operations. /{u | username}:VALUE Specify a different user to log on to the remote computer. VALUE is a user name in the form domain\user or user. Only applicable when option /r is specified. /{p | password}:VALUE Password for the specified user. If not specified, or if VALUE is "*", the user will be prompted to enter a password. Only applicable when the /u option is specified. /{a | authentication}:[Default|Negotiate|Kerberos|NTLM] Authentication type for connecting to remote computer. The default is Negotiate. /{uni | unicode}:[true|false] Display output in Unicode. If true, then output is in Unicode. To learn more about a specific command, type the following: wevtutil COMMAND /? |
| whealogr.dll | 0x26 | 7 | A fatal hardware error has occurred. Reported by component: Processor Core Error Source: %1 Error Type: %2 CPU APIC ID: %3 The details view of this entry contains further information. |
| win32k.sys | 0x26 | 78.1 | WindowFrame |
| win32kbase.sys | 0x26 | 1011 | WindowFrame |
| 23 entries | |||