![]() process working sets – clears the memory used by the current running applications and processes.Empty Standby ListĮmpty Standby List is a command line tool for Windows that frees up the memory in 4 different ways. We’ve covered 4 pretty good tools that optimize the memory usage to improve the performance before and here are 2 more options to add to that list. And that’s why most of the System Tuning Utilities still provide options to clean up the RAM to make your PC run more efficiently. This guide is applicable both for Windows Server 2019/2016/2012R and desktop Windows 10/8.1.In most of the times, Windows manages the memory usage quite efficiently but there are still rooms to improve. Open the Task Manager, go to the Details tab, add the NP Pool column and look for processes with a large memory size in the non-paged pool. If your search does not return any results, check if the memory leak was caused by a user-mode process. On Windows Server you can disable the Hyper-V role with the PowerShell command:ĭisable-WindowsOptionalFeature -Online -FeatureName Microsoft-Hyper-V-All If you don’t need this role, we recommend to disable it. In some cases, the installed Hyper-V role is causing a memory leak to the non-paged pool. If the problem is solved, disable automatic driver update. Try to roll back to the previous driver version and see if the problem persists. If the automatic driver update is enabled in Windows, check to see if problems started after installing new drivers. Try to download and install the latest driver versions for your network adapters from the vendor’s website. Install the Latest Versions of Network Adapter Drivers After getting the driver tag, find the driver file using findstr or strings.exe as described above.Check the contents of the pool with the command (results will be sorted by non-paged pool usage): !poolused 2.If the NonPagedPool Usage value is greater than NonPagedPool Max, it means that the non-paged pool is exhausted.Load a memory dump into the Windbg debugger.If a memory leak resulted in a BSOD, you can identify the problematic driver in a memory dump file. Now you can try to uninstall/update/reinstall the problem driver or service. The tool returns the name, description, and version of the driver or Windows component. Sigcheck C:\Windows\System32\drivers\rdyboost.sys To do it, you can use the sigcheck tool from Sysinternals. Now you have to identify what drivers and system components these files refer to by their names. So we have got the list of driver files that may cause the problem. Note that the driver name is now displayed in the Mapped_driver column. You should check drivers for found tags using the strings.exe tool (from Sysinternals), using the built-in findstr command, or using PowerShell. In our example, you can see that most of the RAM in the non-paged pool is used by drivers with tags Nr22, ConT, and smNp. Your task is to identify the driver file using this tag. Then press the B key to sort the driver list by the Bytes column. The second column will display the tags of the processes that use non-paged memory (the Nonp attribute). Then start the Poolmon.exe (in case of WDK for Windows 10, the tool is located in C:\Program Files (x86)\Windows Kits\10\Tools\ folder).Īfter you have started the tool, press P. Download and install the WDK for your Windows version from Microsoft. ![]() To do this, we need the Poolmoon.exe console tool included in the Windows Driver Kit (WDK). You can try to identify the driver that caused the memory leak in the non-paged pool. Using PoolMon to Find a Kernel-Mode Memory Leak Change the value of the Start parameter to 4.Īfter making changes, you need to restart your computer.Go to registry key HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Ndu\.Open the Registry Editor ( regedit.exe). ![]()
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |