Have been following this thread for a while. Just disabled nested virtualization last week. Running Windows 11 (One Louder).
Some additional information from the windows OS running at the time this successful event was captured right before crash
During the subsequent boot these processes created errors in the event log
Jun 16 15:00:59 PVE QEMU[28320]: KVM: entry failed, hardware error 0x80000021
Jun 16 15:00:59 PVE QEMU[28320]: If you're running a guest on an Intel machine without unrestricted mode
Jun 16 15:00:59 PVE QEMU[28320]: support, the failure can be most likely due to the guest entering an invalid
Jun 16 15:00:59 PVE QEMU[28320]: state for Intel VT. For example, the guest maybe running in big real mode
Jun 16 15:00:59 PVE QEMU[28320]: which is not supported on less recent Intel processors.
Jun 16 15:00:59 PVE QEMU[28320]: EAX=000001ac EBX=00c33010 ECX=80002eb8 EDX=80002f1c
Jun 16 15:00:59 PVE QEMU[28320]: ESI=00000000 EDI=00c33010 EBP=59eba6d0 ESP=59eba650
Jun 16 15:00:59 PVE QEMU[28320]: EIP=00008000 EFL=00000002 [-------] CPL=0 II=0 A20=1 SMM=1 HLT=0
Jun 16 15:00:59 PVE QEMU[28320]: ES =0000 00000000 ffffffff 00809300
Jun 16 15:00:59 PVE QEMU[28320]: CS =c200 7ffc2000 ffffffff 00809300
Jun 16 15:00:59 PVE QEMU[28320]: SS =0000 00000000 ffffffff 00809300
Jun 16 15:00:59 PVE QEMU[28320]: DS =0000 00000000 ffffffff 00809300
Jun 16 15:00:59 PVE QEMU[28320]: FS =0000 00000000 ffffffff 00809300
Jun 16 15:00:59 PVE QEMU[28320]: GS =0000 00000000 ffffffff 00809300
Jun 16 15:00:59 PVE QEMU[28320]: LDT=0000 00000000 000fffff 00000000
Jun 16 15:00:59 PVE QEMU[28320]: TR =0040 e47e9000 00000067 00008b00
Jun 16 15:00:59 PVE QEMU[28320]: GDT= e47eafb0 00000057
Jun 16 15:00:59 PVE QEMU[28320]: IDT= 00000000 00000000
Jun 16 15:00:59 PVE QEMU[28320]: CR0=00050032 CR2=8f97dfe8 CR3=150c1000 CR4=00000000
Jun 16 15:00:59 PVE QEMU[28320]: DR0=0000000000000000 DR1=0000000000000000 DR2=0000000000000000 DR3=0000000000000000
Jun 16 15:00:59 PVE QEMU[28320]: DR6=00000000ffff0ff0 DR7=0000000000000400
Jun 16 15:00:59 PVE QEMU[28320]: EFER=0000000000000000
Jun 16 15:00:59 PVE QEMU[28320]: Code=kvm: ../hw/core/cpu-sysemu.c:77: cpu_asidx_from_attrs: Assertion `ret < cpu->num_ases && ret >= 0' failed.
Some additional information from the windows OS running at the time this successful event was captured right before crash
XML:
- <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
- <System>
<Provider Name="Microsoft-Windows-Security-Auditing" Guid="{54849625-5478-4994-a5ba-3e3b0328c30d}" />
<EventID>4672</EventID>
<Version>0</Version>
<Level>0</Level>
<Task>12548</Task>
<Opcode>0</Opcode>
<Keywords>0x8020000000000000</Keywords>
<TimeCreated SystemTime="2022-06-16T21:59:47.4646524Z" />
<EventRecordID>76064</EventRecordID>
<Correlation ActivityID="{be222f70-805b-0001-ee2f-22be5b80d801}" />
<Execution ProcessID="760" ThreadID="4680" />
<Channel>Security</Channel>
<Computer>Cappy</Computer>
<Security />
</System>
- <EventData>
<Data Name="SubjectUserSid">S-1-5-18</Data>
<Data Name="SubjectUserName">SYSTEM</Data>
<Data Name="SubjectDomainName">NT AUTHORITY</Data>
<Data Name="SubjectLogonId">0x3e7</Data>
<Data Name="PrivilegeList">SeAssignPrimaryTokenPrivilege SeTcbPrivilege SeSecurityPrivilege SeTakeOwnershipPrivilege SeLoadDriverPrivilege SeBackupPrivilege SeRestorePrivilege SeDebugPrivilege SeAuditPrivilege SeSystemEnvironmentPrivilege SeImpersonatePrivilege SeDelegateSessionUserImpersonatePrivilege</Data>
</EventData>
</Event>
XML:
- <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
- <System>
<Provider Name="EventLog" />
<EventID Qualifiers="32768">6008</EventID>
<Version>0</Version>
<Level>2</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2022-06-16T22:34:58.5483672Z" />
<EventRecordID>16147</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Cappy</Computer>
<Security />
</System>
- <EventData>
<Data>3:00:18 PM</Data>
<Data>6/16/2022</Data>
<Data />
<Data />
<Data>158366</Data>
<Data />
<Data />
<Binary>E6070600040010000F00000012005603E60706000400100016000000120056033C0000003C000000000000000000000000000000000000000100000000000000</Binary>
</EventData>
</Event>
XML:
- <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
- <System>
<Provider Name="Microsoft-Windows-Kernel-Power" Guid="{331c3b3a-2005-44c2-ac5e-77220c37d6b4}" />
<EventID>41</EventID>
<Version>8</Version>
<Level>1</Level>
<Task>63</Task>
<Opcode>0</Opcode>
<Keywords>0x8000400000000002</Keywords>
<TimeCreated SystemTime="2022-06-16T22:34:55.3127681Z" />
<EventRecordID>16158</EventRecordID>
<Correlation />
<Execution ProcessID="4" ThreadID="8" />
<Channel>System</Channel>
<Computer>Cappy</Computer>
<Security UserID="S-1-5-18" />
</System>
- <EventData>
<Data Name="BugcheckCode">0</Data>
<Data Name="BugcheckParameter1">0x0</Data>
<Data Name="BugcheckParameter2">0x0</Data>
<Data Name="BugcheckParameter3">0x0</Data>
<Data Name="BugcheckParameter4">0x0</Data>
<Data Name="SleepInProgress">0</Data>
<Data Name="PowerButtonTimestamp">0</Data>
<Data Name="BootAppStatus">0</Data>
<Data Name="Checkpoint">0</Data>
<Data Name="ConnectedStandbyInProgress">false</Data>
<Data Name="SystemSleepTransitionsToOn">0</Data>
<Data Name="CsEntryScenarioInstanceId">0</Data>
<Data Name="BugcheckInfoFromEFI">false</Data>
<Data Name="CheckpointStatus">0</Data>
<Data Name="CsEntryScenarioInstanceIdV2">0</Data>
<Data Name="LongPowerButtonPressDetected">false</Data>
</EventData>
</Event>
Last edited:
