Windows 7 BSOD persists

Jazzy9

New Member
Hello to all. First let me start by my system info:

CPU: AMD Phenom II X6 1055T

Motherboard: ASUS M4A87TD

GPU: NVidia Geforce GT240

RAM: 4GB (2X2GB)

OS: Windows 7 Professional 32bit

Sound: Focusrite Saffire 6 USB audio interface


The past 3-4 months I'd been getting various BSODs once every while until I started to get them very frequently and thus i proceeded to a windows clean install (without formatting the HD though). BSODs seem to be random and don't occur during a specific process. As a matter of fact I've been getting a few while the PC is idle.

I have installed all the latest drivers for my hardware, switched 3-4 antivirus programs, changed my PSU to a new one (previous one was a couple of years old) and already reinstalled windows 3 times. Let me also add that the onboard sound device of the mainboard is disabled while using the audio interface. I did however try to not use any sound device at all but that didn't make any difference. Saddly BSODs persist.

Windows' action center suggests it could be a RAM, Mainboard or CPU issue but I'd like to be sure before I go replacing anything else.

I am attaching the minidumps from the latest installation. I can also attach previous ones, if required, as old installation folders are still there.
 

Attachments

  • minidump.zip
    79.9 KB · Views: 316
Hi there,


SYSTEM_THREAD_EXCEPTION_NOT_HANDLED_M (1000007e)
ATTEMPTED_EXECUTE_OF_NOEXECUTE_MEMORY (fc)



1. Do update these drivers:

ASACPI.sys Fri Aug 13 05:52:52 2004
ATK0110 ACPI Utility (like Asus PCProbe and AISuite Utilities)
ASUSTeK Computer Inc.-Support-

AtiPcie.sys Tue May 05 18:00:16 2009
ATI PCIE Driver for ATI PCIE chipset
Global Provider of Innovative Graphics, Processors and Media Solutions | AMD





2. For troubleshooting purposes, uninstall McAfee and install MSE :

http://download.mcafee.com/products/licensed/cust_support_patches/MCPR.exe

Link Removed due to 404 Error





3. Run memtest overnight:

RAM - Test with Memtest86+ - Windows 7 Forums

Memtest86+ - Advanced Memory Diagnostic Tool










Code:
Microsoft (R) Windows Debugger Version 6.11.0001.404 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [F:\a\Minidump\092910-29390-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available

Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is: 
Windows 7 Kernel Version 7600 MP (6 procs) Free x86 compatible
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16385.x86fre.win7_rtm.090713-1255
Machine Name:
Kernel base = 0x82a54000 PsLoadedModuleList = 0x82b9c810
System Uptime: 0 days 0:15:43.012
Loading Kernel Symbols
...............................................................
................................................................
.........................
Loading User Symbols
Loading unloaded module list
........
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck 1000007E, {c0000005, 82ac1fcd, 986efc44, 986ef820}

Probably caused by : hardware ( ANALYSIS_INCONCLUSIVE )

Followup: MachineOwner
---------

4: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

SYSTEM_THREAD_EXCEPTION_NOT_HANDLED_M (1000007e)
This is a very common bugcheck.  Usually the exception address pinpoints
the driver/function that caused the problem.  Always note this address
as well as the link date of the driver/image that contains this address.
Some common problems are exception code 0x80000003.  This means a hard
coded breakpoint or assertion was hit, but this system was booted
/NODEBUG.  This is not supposed to happen as developers should never have
hardcoded breakpoints in retail code, but ...
If this happens, make sure a debugger gets connected, and the
system is booted /DEBUG.  This will let us see why this breakpoint is
happening.
Arguments:
Arg1: c0000005, The exception code that was not handled
Arg2: 82ac1fcd, The address that the exception occurred at
Arg3: 986efc44, Exception Record Address
Arg4: 986ef820, Context Record Address

Debugging Details:
------------------


EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - <Unable to get error code text>

FAULTING_IP: 
nt!ExpWorkerThread+1af
82ac1fcd 0081e100e000    add     byte ptr [ecx+0E000E1h],al

EXCEPTION_RECORD:  986efc44 -- (.exr 0xffffffff986efc44)
ExceptionAddress: 82ac1fcd (nt!ExpWorkerThread+0x000001af)
   ExceptionCode: c0000005 (Access violation)
  ExceptionFlags: 00000000
NumberParameters: 2
   Parameter[0]: 00000001
   Parameter[1]: 00e0a0e1
Attempt to write to address 00e0a0e1

CONTEXT:  986ef820 -- (.cxr 0xffffffff986ef820)
eax=00017087 ebx=82b8e580 ecx=0000a000 edx=00000002 esi=877c9709 edi=86299498
eip=82ac1fcd esp=986efd0c ebp=986efd50 iopl=0         ov dn ei pl nz na pe nc
cs=0008  ss=0010  ds=0023  es=0023  fs=0030  gs=0000             efl=00010e06
nt!ExpWorkerThread+0x1af:
82ac1fcd 0081e100e000    add     byte ptr [ecx+0E000E1h],al ds:0023:00e0a0e1=??
Resetting default scope

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT

PROCESS_NAME:  System

CURRENT_IRQL:  0

ERROR_CODE: (NTSTATUS) 0xc0000005 - <Unable to get error code text>

EXCEPTION_PARAMETER1:  00000001

EXCEPTION_PARAMETER2:  00e0a0e1

WRITE_ADDRESS: GetPointerFromAddress: unable to read from 82bbc718
Unable to read MiSystemVaType memory at 82b9c160
 00e0a0e1 

FOLLOWUP_IP: 
nt!ExpWorkerThread+1af
82ac1fcd 0081e100e000    add     byte ptr [ecx+0E000E1h],al

BUGCHECK_STR:  0x7E

MISALIGNED_IP: 
nt!ExpWorkerThread+1af
82ac1fcd 0081e100e000    add     byte ptr [ecx+0E000E1h],al

LAST_CONTROL_TRANSFER:  from 82c6266d to 82ac1fcd

STACK_TEXT:  
986efd50 82c6266d 80000000 b5865db1 00000000 nt!ExpWorkerThread+0x1af
986efd90 82b140d9 82ac1e1e 80000000 00000000 nt!PspSystemThreadStartup+0x9e
00000000 00000000 00000000 00000000 00000000 nt!KiThreadStartup+0x19


STACK_COMMAND:  kb

SYMBOL_NAME:  ANALYSIS_INCONCLUSIVE

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: hardware

IMAGE_NAME:  hardware

DEBUG_FLR_IMAGE_TIMESTAMP:  0

FAILURE_BUCKET_ID:  IP_MISALIGNED

BUCKET_ID:  IP_MISALIGNED

Followup: MachineOwner
---------

















Microsoft (R) Windows Debugger Version 6.11.0001.404 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [F:\a\Minidump\100110-22105-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available

Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is: 
Windows 7 Kernel Version 7600 MP (6 procs) Free x86 compatible
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16617.x86fre.win7_gdr.100618-1621
Machine Name:
Kernel base = 0x82e50000 PsLoadedModuleList = 0x82f98810
System Uptime: 0 days 0:58:18.000
Loading Kernel Symbols
...............................................................
................................................................
...........................
Loading User Symbols
Loading unloaded module list
......
2: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

ATTEMPTED_EXECUTE_OF_NOEXECUTE_MEMORY (fc)
An attempt was made to execute non-executable memory.  The guilty driver
is on the stack trace (and is typically the current instruction pointer).
When possible, the guilty driver's name (Unicode string) is printed on
the bugcheck screen and saved in KiBugCheckDriver.
Arguments:
Arg1: 8da41bf8, Virtual address for the attempted execute.
Arg2: 52fe9963, PTE contents.
Arg3: 8da41b5c, (reserved)
Arg4: 00000002, (reserved)

Debugging Details:
------------------


CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT

BUGCHECK_STR:  0xFC

PROCESS_NAME:  System

CURRENT_IRQL:  0

TRAP_FRAME:  8da41b5c -- (.trap 0xffffffff8da41b5c)
ErrCode = 00000011
eax=858c8a28 ebx=8da41bf8 ecx=00000006 edx=00000000 esi=8858e338 edi=858c8940
eip=8da41bf8 esp=8da41bd0 ebp=8da41be4 iopl=0         nv up ei pl nz ac pe nc
cs=0008  ss=0010  ds=0023  es=0023  fs=0030  gs=0000             efl=00010216
8da41bf8 004000          add     byte ptr [eax],al          ds:0023:858c8a28=??
Resetting default scope

LAST_CONTROL_TRANSFER:  from 82e96638 to 82ed5903

STACK_TEXT:  
8da41b44 82e96638 00000008 8da41bf8 00000000 nt!MmAccessFault+0x106
8da41b44 8da41bf8 00000008 8da41bf8 00000000 nt!KiTrap0E+0xdc
WARNING: Frame IP not in any known module. Following frames may be wrong.
8da41be4 8308616b 00a41bf8 00000000 858c8b1c 0x8da41bf8
8da41c40 82ec2c2b 00000000 858c8940 00000000 nt!EtwpRealtimeSendEmptyMarker+0x3b
8da41d08 83082a5a 858c8940 00000001 00000000 nt!EtwpFlushActiveBuffers+0x303
8da41d50 8305e6d3 858c8940 a07935ba 00000000 nt!EtwpLogger+0x2a1
8da41d90 82f100f9 830827b9 858c8940 00000000 nt!PspSystemThreadStartup+0x9e
00000000 00000000 00000000 00000000 00000000 nt!KiThreadStartup+0x19


STACK_COMMAND:  kb

FOLLOWUP_IP: 
nt!KiTrap0E+dc
82e96638 85c0            test    eax,eax

SYMBOL_STACK_INDEX:  1

SYMBOL_NAME:  nt!KiTrap0E+dc

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: nt

IMAGE_NAME:  ntkrpamp.exe

DEBUG_FLR_IMAGE_TIMESTAMP:  4c1c3fac

FAILURE_BUCKET_ID:  0xFC_nt!KiTrap0E+dc

BUCKET_ID:  0xFC_nt!KiTrap0E+dc

Followup: MachineOwner
---------

















Microsoft (R) Windows Debugger Version 6.11.0001.404 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [F:\a\Minidump\100210-19578-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available

Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is: 
Windows 7 Kernel Version 7600 MP (6 procs) Free x86 compatible
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16617.x86fre.win7_gdr.100618-1621
Machine Name:
Kernel base = 0x82e0f000 PsLoadedModuleList = 0x82f57810
System Uptime: 0 days 2:07:05.000
Loading Kernel Symbols
...............................................................
................................................................
...........................
Loading User Symbols
Loading unloaded module list
......
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck 1000007E, {c0000005, 82e98a2c, 8d9d7c28, 8d9d7800}

Probably caused by : hardware ( nt!MmOutSwapProcess+66 )

Followup: MachineOwner
---------

3: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

SYSTEM_THREAD_EXCEPTION_NOT_HANDLED_M (1000007e)
This is a very common bugcheck.  Usually the exception address pinpoints
the driver/function that caused the problem.  Always note this address
as well as the link date of the driver/image that contains this address.
Some common problems are exception code 0x80000003.  This means a hard
coded breakpoint or assertion was hit, but this system was booted
/NODEBUG.  This is not supposed to happen as developers should never have
hardcoded breakpoints in retail code, but ...
If this happens, make sure a debugger gets connected, and the
system is booted /DEBUG.  This will let us see why this breakpoint is
happening.
Arguments:
Arg1: c0000005, The exception code that was not handled
Arg2: 82e98a2c, The address that the exception occurred at
Arg3: 8d9d7c28, Exception Record Address
Arg4: 8d9d7800, Context Record Address

Debugging Details:
------------------


EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - <Unable to get error code text>

FAULTING_IP: 
nt!MmOutSwapProcess+66
82e98a2c 0200            add     al,byte ptr [eax]

EXCEPTION_RECORD:  8d9d7c28 -- (.exr 0xffffffff8d9d7c28)
ExceptionAddress: 82e98a2c (nt!MmOutSwapProcess+0x00000066)
   ExceptionCode: c0000005 (Access violation)
  ExceptionFlags: 00000000
NumberParameters: 2
   Parameter[0]: 00000000
   Parameter[1]: 00000000
Attempt to read from address 00000000

CONTEXT:  8d9d7800 -- (.cxr 0xffffffff8d9d7800)
eax=00000000 ebx=886715c8 ecx=8d8e103c edx=0000000c esi=88671550 edi=88671358
eip=82e98a2c esp=8d9d7cf0 ebp=8d9d7d20 iopl=0         nv up ei ng nz ac po cy
cs=0008  ss=0010  ds=0023  es=0023  fs=0030  gs=0000             efl=00010293
nt!MmOutSwapProcess+0x66:
82e98a2c 0200            add     al,byte ptr [eax]          ds:0023:00000000=??
Resetting default scope

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  NULL_DEREFERENCE

PROCESS_NAME:  System

CURRENT_IRQL:  0

ERROR_CODE: (NTSTATUS) 0xc0000005 - <Unable to get error code text>

EXCEPTION_PARAMETER1:  00000000

EXCEPTION_PARAMETER2:  00000000

READ_ADDRESS: GetPointerFromAddress: unable to read from 82f77718
Unable to read MiSystemVaType memory at 82f57160
 00000000 

FOLLOWUP_IP: 
nt!MmOutSwapProcess+66
82e98a2c 0200            add     al,byte ptr [eax]

BUGCHECK_STR:  0x7E

MISALIGNED_IP: 
nt!MmOutSwapProcess+66
82e98a2c 0200            add     al,byte ptr [eax]

LAST_CONTROL_TRANSFER:  from 82ea11a2 to 82e98a2c

STACK_TEXT:  
8d9d7d20 82ea11a2 00000000 858aed48 00000000 nt!MmOutSwapProcess+0x66
8d9d7d44 82e9affe 00000000 8d9d7d90 8301d6d3 nt!KiOutSwapProcesses+0xc5
8d9d7d50 8301d6d3 00000000 a042926b 00000000 nt!KeSwapProcessOrStack+0x53
8d9d7d90 82ecf0f9 82e9afab 00000000 00000000 nt!PspSystemThreadStartup+0x9e
00000000 00000000 00000000 00000000 00000000 nt!KiThreadStartup+0x19


SYMBOL_STACK_INDEX:  0

SYMBOL_NAME:  nt!MmOutSwapProcess+66

FOLLOWUP_NAME:  MachineOwner

DEBUG_FLR_IMAGE_TIMESTAMP:  0

STACK_COMMAND:  .cxr 0xffffffff8d9d7800 ; kb

IMAGE_NAME:  hardware

MODULE_NAME: hardware

FAILURE_BUCKET_ID:  IP_MISALIGNED

BUCKET_ID:  IP_MISALIGNED

Followup: MachineOwner
---------









80ba6000 80bae000   kdcom    kdcom.dll    Tue Jul 14 04:08:58 2009 (4A5BDAAA)
82e0f000 8321f000   nt       ntkrpamp.exe Sat Jun 19 06:55:24 2010 (4C1C3FAC)
8321f000 83256000   hal      halmacpi.dll Tue Jul 14 02:11:03 2009 (4A5BBF07)
83c00000 83c21000   VIDEOPRT VIDEOPRT.SYS Tue Jul 14 02:25:49 2009 (4A5BC27D)
83c21000 83c2e000   watchdog watchdog.sys Tue Jul 14 02:24:10 2009 (4A5BC21A)
83c35000 83c40000   mcupdate_AuthenticAMD mcupdate_AuthenticAMD.dll Tue Jul 14 02:13:13 2009 (4A5BBF89)
83c40000 83c51000   PSHED    PSHED.dll    Tue Jul 14 04:09:36 2009 (4A5BDAD0)
83c51000 83c59000   BOOTVID  BOOTVID.dll  Tue Jul 14 04:04:34 2009 (4A5BD9A2)
83c59000 83c9b000   CLFS     CLFS.SYS     Tue Jul 14 02:11:10 2009 (4A5BBF0E)
83c9b000 83d46000   CI       CI.dll       Tue Jul 14 04:09:28 2009 (4A5BDAC8)
83d46000 83db7000   Wdf01000 Wdf01000.sys Tue Jul 14 02:11:36 2009 (4A5BBF28)
83db7000 83dc5000   WDFLDR   WDFLDR.SYS   Tue Jul 14 02:11:25 2009 (4A5BBF1D)
83dc5000 83df7000   fvevol   fvevol.sys   Sat Sep 26 05:24:21 2009 (4ABD7B55)
83df7000 83dff000   rdprefmp rdprefmp.sys Tue Jul 14 03:01:41 2009 (4A5BCAE5)
83e00000 83e1f000   cdrom    cdrom.sys    Tue Jul 14 02:11:24 2009 (4A5BBF1C)
83e1f000 83e27000   RDPCDD   RDPCDD.sys   Tue Jul 14 03:01:40 2009 (4A5BCAE4)
83e28000 83e70000   ACPI     ACPI.sys     Tue Jul 14 02:11:11 2009 (4A5BBF0F)
83e70000 83e79000   WMILIB   WMILIB.SYS   Tue Jul 14 02:11:22 2009 (4A5BBF1A)
83e79000 83e81000   msisadrv msisadrv.sys Tue Jul 14 02:11:09 2009 (4A5BBF0D)
83e81000 83eab000   pci      pci.sys      Tue Jul 14 02:11:16 2009 (4A5BBF14)
83eab000 83eb6000   vdrvroot vdrvroot.sys Tue Jul 14 02:46:19 2009 (4A5BC74B)
83eb6000 83ec7000   partmgr  partmgr.sys  Tue Jul 14 02:11:35 2009 (4A5BBF27)
83ec7000 83ed7000   volmgr   volmgr.sys   Tue Jul 14 02:11:25 2009 (4A5BBF1D)
83ed7000 83f22000   volmgrx  volmgrx.sys  Tue Jul 14 02:11:41 2009 (4A5BBF2D)
83f22000 83f29000   pciide   pciide.sys   Tue Jul 14 02:11:19 2009 (4A5BBF17)
83f29000 83f37000   PCIIDEX  PCIIDEX.SYS  Tue Jul 14 02:11:15 2009 (4A5BBF13)
83f37000 83f4d000   mountmgr mountmgr.sys Tue Jul 14 02:11:27 2009 (4A5BBF1F)
83f4d000 83f56000   atapi    atapi.sys    Tue Jul 14 02:11:15 2009 (4A5BBF13)
83f56000 83f79000   ataport  ataport.SYS  Tue Jul 14 02:11:18 2009 (4A5BBF16)
83f79000 83f82000   amdxata  amdxata.sys  Tue May 19 20:57:35 2009 (4A12F30F)
83f82000 83fb6000   fltmgr   fltmgr.sys   Tue Jul 14 02:11:13 2009 (4A5BBF11)
83fb6000 83fc7000   fileinfo fileinfo.sys Tue Jul 14 02:21:51 2009 (4A5BC18F)
83fc7000 83ff4000   rdyboost rdyboost.sys Tue Jul 14 02:22:02 2009 (4A5BC19A)
83ff4000 83ffc000   rdpencdd rdpencdd.sys Tue Jul 14 03:01:39 2009 (4A5BCAE3)
8b800000 8b813000   ksecdd   ksecdd.sys   Tue Jul 14 02:11:56 2009 (4A5BBF3C)
8b813000 8b838000   CLASSPNP CLASSPNP.SYS Tue Jul 14 02:11:20 2009 (4A5BBF18)
8b83b000 8b897360   mfehidk  mfehidk.sys  Sat Aug 07 01:33:01 2010 (4C5C8D9D)
8b898000 8b9c7000   Ntfs     Ntfs.sys     Tue Jul 14 02:12:05 2009 (4A5BBF45)
8b9c7000 8b9f2000   msrpc    msrpc.sys    Tue Jul 14 02:11:59 2009 (4A5BBF3F)
8b9f2000 8b9fe000   vga      vga.sys      Tue Jul 14 02:25:50 2009 (4A5BC27E)
8ba11000 8ba18000   Null     Null.SYS     Tue Jul 14 02:11:12 2009 (4A5BBF10)
8ba18000 8ba1f000   Beep     Beep.SYS     Tue Jul 14 02:45:00 2009 (4A5BC6FC)
8ba1f000 8ba7c000   cng      cng.sys      Tue Jul 14 02:32:55 2009 (4A5BC427)
8ba7c000 8ba8a000   pcw      pcw.sys      Tue Jul 14 02:11:10 2009 (4A5BBF0E)
8ba8a000 8ba93000   Fs_Rec   Fs_Rec.sys   Tue Jul 14 02:11:14 2009 (4A5BBF12)
8ba93000 8bb4a000   ndis     ndis.sys     Tue Jul 14 02:12:24 2009 (4A5BBF58)
8bb4a000 8bb88000   NETIO    NETIO.SYS    Tue Jul 14 02:12:35 2009 (4A5BBF63)
8bb88000 8bbad000   ksecpkg  ksecpkg.sys  Fri Dec 11 06:04:22 2009 (4B21C4C6)
8bbad000 8bbec000   volsnap  volsnap.sys  Tue Jul 14 02:11:34 2009 (4A5BBF26)
8bbec000 8bbff000   rspndr   rspndr.sys   Tue Jul 14 02:53:20 2009 (4A5BC8F0)
8bc00000 8bc11000   disk     disk.sys     Tue Jul 14 02:11:28 2009 (4A5BBF20)
8bc11000 8bc19000   AtiPcie  AtiPcie.sys  Tue May 05 18:00:16 2009 (4A005480)
8bc28000 8bd71000   tcpip    tcpip.sys    Mon Jun 14 06:36:59 2010 (4C15A3DB)
8bd71000 8bda2000   fwpkclnt fwpkclnt.sys Tue Jul 14 02:12:03 2009 (4A5BBF43)
8bda2000 8bdc85a0   mfewfpk  mfewfpk.sys  Sat Aug 07 01:33:27 2010 (4C5C8DB7)
8bdc9000 8bdd4000   TDI      TDI.SYS      Tue Jul 14 02:12:12 2009 (4A5BBF4C)
8bdd4000 8bddc380   vmstorfl vmstorfl.sys Tue Jul 14 02:28:44 2009 (4A5BC32C)
8bddd000 8bde5000   spldr    spldr.sys    Mon May 11 19:13:47 2009 (4A084EBB)
8bde5000 8bdf5000   mup      mup.sys      Tue Jul 14 02:14:14 2009 (4A5BBFC6)
8bdf5000 8bdfd000   hwpolicy hwpolicy.sys Tue Jul 14 02:11:01 2009 (4A5BBF05)
90400000 90410000   lltdio   lltdio.sys   Tue Jul 14 02:53:18 2009 (4A5BC8EE)
9041c000 90427000   Msfs     Msfs.SYS     Tue Jul 14 02:11:26 2009 (4A5BBF1E)
90427000 90435000   Npfs     Npfs.SYS     Tue Jul 14 02:11:31 2009 (4A5BBF23)
90435000 9044c000   tdx      tdx.sys      Tue Jul 14 02:12:10 2009 (4A5BBF4A)
9044c000 9047e000   netbt    netbt.sys    Tue Jul 14 02:12:18 2009 (4A5BBF52)
9047e000 904d8000   afd      afd.sys      Tue Jul 14 02:12:34 2009 (4A5BBF62)
904d8000 904df000   wfplwf   wfplwf.sys   Tue Jul 14 02:53:51 2009 (4A5BC90F)
904df000 904fe000   pacer    pacer.sys    Tue Jul 14 02:53:58 2009 (4A5BC916)
904fe000 9050bf60   mfenlfk  mfenlfk.sys  Sat Aug 07 01:33:41 2010 (4C5C8DC5)
9050c000 9051a000   netbios  netbios.sys  Tue Jul 14 02:53:54 2009 (4A5BC912)
9051a000 90534000   serial   serial.sys   Tue Jul 14 02:45:33 2009 (4A5BC71D)
90534000 90547000   wanarp   wanarp.sys   Tue Jul 14 02:55:02 2009 (4A5BC956)
90547000 90557000   termdd   termdd.sys   Tue Jul 14 03:01:35 2009 (4A5BCADF)
90557000 90598000   rdbss    rdbss.sys    Tue Jul 14 02:14:26 2009 (4A5BBFD2)
90598000 905a2000   nsiproxy nsiproxy.sys Tue Jul 14 02:12:08 2009 (4A5BBF48)
905a2000 905ac000   mssmbios mssmbios.sys Tue Jul 14 02:19:25 2009 (4A5BC0FD)
905ac000 905b8000   discache discache.sys Tue Jul 14 02:24:04 2009 (4A5BC214)
905b8000 905cf000   rassstp  rassstp.sys  Tue Jul 14 02:54:57 2009 (4A5BC951)
905cf000 905dc000   mouclass mouclass.sys Tue Jul 14 02:11:15 2009 (4A5BBF13)
905dc000 905f7000   luafv    luafv.sys    Tue Jul 14 02:15:44 2009 (4A5BC020)
905f7000 90600000   Sftvollh Sftvollh.sys Fri Apr 23 21:18:31 2010 (4BD1E477)
90c00000 90c0a000   secdrv   secdrv.SYS   Wed Sep 13 16:18:32 2006 (45080528)
90c3d000 90cc2000   HTTP     HTTP.sys     Tue Jul 14 02:12:53 2009 (4A5BBF75)
90cc2000 90cdb000   bowser   bowser.sys   Tue Jul 14 02:14:21 2009 (4A5BBFCD)
90cdb000 90ced000   mpsdrv   mpsdrv.sys   Tue Jul 14 02:52:52 2009 (4A5BC8D4)
90ced000 90d10000   mrxsmb   mrxsmb.sys   Sat Feb 27 09:32:02 2010 (4B88CA72)
90d10000 90d4b000   mrxsmb10 mrxsmb10.sys Sat Feb 27 09:32:21 2010 (4B88CA85)
90d4b000 90d66000   mrxsmb20 mrxsmb20.sys Sat Feb 27 09:32:11 2010 (4B88CA7B)
90d66000 90dfd000   peauth   peauth.sys   Tue Jul 14 03:35:44 2009 (4A5BD2E0)
91000000 91018000   raspppoe raspppoe.sys Tue Jul 14 02:54:53 2009 (4A5BC94D)
91018000 9102f000   raspptp  raspptp.sys  Tue Jul 14 02:54:47 2009 (4A5BC947)
9102f000 91039000   rdpbus   rdpbus.sys   Tue Jul 14 03:02:40 2009 (4A5BCB20)
91039000 9109d000   csc      csc.sys      Tue Jul 14 02:15:08 2009 (4A5BBFFC)
9109d000 910b5000   dfsc     dfsc.sys     Tue Jul 14 02:14:16 2009 (4A5BBFC8)
910b5000 910c3000   blbdrive blbdrive.sys Tue Jul 14 02:23:04 2009 (4A5BC1D8)
910c3000 910e4000   tunnel   tunnel.sys   Tue Jul 14 02:54:03 2009 (4A5BC91B)
910e4000 910f5000   amdppm   amdppm.sys   Tue Jul 14 02:11:03 2009 (4A5BBF07)
910f5000 91140000   USBPORT  USBPORT.SYS  Tue Jul 14 02:51:13 2009 (4A5BC871)
91140000 9114d000   kbdclass kbdclass.sys Tue Jul 14 02:11:15 2009 (4A5BBF13)
9114d000 91190000   Rt86win7 Rt86win7.sys Mon May 31 06:46:23 2010 (4C03310F)
91190000 91199000   wmiacpi  wmiacpi.sys  Tue Jul 14 02:19:16 2009 (4A5BC0F4)
91199000 911a6000   CompositeBus CompositeBus.sys Tue Jul 14 02:45:26 2009 (4A5BC716)
911a6000 911b8000   AgileVpn AgileVpn.sys Tue Jul 14 02:55:00 2009 (4A5BC954)
911b8000 911d0000   rasl2tp  rasl2tp.sys  Tue Jul 14 02:54:33 2009 (4A5BC939)
911d0000 911db000   ndistapi ndistapi.sys Tue Jul 14 02:54:24 2009 (4A5BC930)
911db000 911fd000   ndiswan  ndiswan.sys  Tue Jul 14 02:54:34 2009 (4A5BC93A)
91c00000 91c0a000   serenum  serenum.sys  Tue Jul 14 02:45:27 2009 (4A5BC717)
91c0a000 91c0b420   ASACPI   ASACPI.sys   Fri Aug 13 05:52:52 2004 (411C2D04)
91c0c000 91c24000   i8042prt i8042prt.sys Tue Jul 14 02:11:23 2009 (4A5BBF1B)
91c24000 91c25380   swenum   swenum.sys   Tue Jul 14 02:45:08 2009 (4A5BC704)
91c28000 926a5dc0   nvlddmkm nvlddmkm.sys Sat Jul 10 00:15:14 2010 (4C379162)
926a6000 926a7040   nvBridge nvBridge.kmd Sat Jul 10 00:10:11 2010 (4C379033)
926a8000 9275f000   dxgkrnl  dxgkrnl.sys  Fri Oct 02 03:48:33 2009 (4AC54DE1)
9275f000 92798000   dxgmms1  dxgmms1.sys  Tue Jul 14 02:25:25 2009 (4A5BC265)
92798000 927b7000   HDAudBus HDAudBus.sys Tue Jul 14 02:50:55 2009 (4A5BC85F)
927b7000 927d9180   nusb3xhc nusb3xhc.sys Fri Jan 22 05:21:48 2010 (4B5919CC)
927da000 927db700   USBD     USBD.SYS     Tue Jul 14 02:51:05 2009 (4A5BC869)
927dc000 927e2000   usbfilter usbfilter.sys Wed Oct 07 10:43:57 2009 (4ACC46BD)
927e2000 927ec000   usbohci  usbohci.sys  Tue Jul 14 02:51:14 2009 (4A5BC872)
927ec000 927fb000   usbehci  usbehci.sys  Tue Jul 14 02:51:14 2009 (4A5BC872)
96600000 9660b000   hidusb   hidusb.sys   Tue Jul 14 02:51:04 2009 (4A5BC868)
9660b000 9661e000   HIDCLASS HIDCLASS.SYS Tue Jul 14 02:51:01 2009 (4A5BC865)
9661e000 96624480   HIDPARSE HIDPARSE.SYS Tue Jul 14 02:50:59 2009 (4A5BC863)
96625000 96630000   mouhid   mouhid.sys   Tue Jul 14 02:45:08 2009 (4A5BC704)
96631000 96665000   ks       ks.sys       Thu Mar 04 05:57:52 2010 (4B8F2FC0)
96665000 96673000   umbus    umbus.sys    Tue Jul 14 02:51:38 2009 (4A5BC88A)
96673000 96681a00   nusb3hub nusb3hub.sys Fri Jan 22 05:21:46 2010 (4B5919CA)
96682000 966c6000   usbhub   usbhub.sys   Tue Jul 14 02:52:06 2009 (4A5BC8A6)
966c6000 966d7000   NDProxy  NDProxy.SYS  Tue Jul 14 02:54:27 2009 (4A5BC933)
966d7000 966f4000   nvhda32v nvhda32v.sys Tue Jun 22 01:07:07 2010 (4C1FE28B)
966f4000 96723000   portcls  portcls.sys  Tue Jul 14 02:51:00 2009 (4A5BC864)
96723000 9673c000   drmk     drmk.sys     Tue Jul 14 03:36:05 2009 (4A5BD2F5)
9673c000 9675f7c0   mfeavfk  mfeavfk.sys  Sat Aug 07 01:34:10 2010 (4C5C8DE2)
96760000 967aa4c0   mfefirek mfefirek.sys Sat Aug 07 01:36:56 2010 (4C5C8E88)
967ab000 967b5000   Dxapi    Dxapi.sys    Tue Jul 14 02:25:25 2009 (4A5BC265)
967b5000 967c2000   crashdmp crashdmp.sys Tue Jul 14 02:45:50 2009 (4A5BC72E)
967c2000 967cd000   dump_dumpata dump_dumpata.sys Tue Jul 14 02:11:16 2009 (4A5BBF14)
967cd000 967d6000   dump_atapi dump_atapi.sys Tue Jul 14 02:11:15 2009 (4A5BBF13)
967d6000 967e7000   dump_dumpfve dump_dumpfve.sys Tue Jul 14 02:12:47 2009 (4A5BBF6F)
967e7000 967f2000   monitor  monitor.sys  Tue Jul 14 02:25:58 2009 (4A5BC286)
967f2000 967fe000   ffusbaudio ffusbaudio.sys Fri Mar 05 17:22:18 2010 (4B9121AA)
96e00000 96e8c000   Sftfslh  Sftfslh.sys  Fri Apr 23 21:18:40 2010 (4BD1E480)
96e8c000 96ec2000   Sftplaylh Sftplaylh.sys Fri Apr 23 21:19:38 2010 (4BD1E4BA)
96ec2000 96ee3000   srvnet   srvnet.sys   Tue Jun 22 05:47:09 2010 (4C20242D)
96ee3000 96ef0000   tcpipreg tcpipreg.sys Tue Jul 14 02:54:14 2009 (4A5BC926)
96f14000 96f63000   srv2     srv2.sys     Tue Jun 22 05:47:19 2010 (4C202437)
96f63000 96fb4000   srv      srv.sys      Tue Jun 22 05:47:32 2010 (4C202444)
96fb4000 96fbd000   Sftredirlh Sftredirlh.sys Fri Apr 23 21:19:31 2010 (4BD1E4B3)
96fbd000 96fd28e0   mfeapfk  mfeapfk.sys  Sat Aug 07 01:33:47 2010 (4C5C8DCB)
96fd3000 96fde000   mfebopk  mfebopk.sys  Sat Aug 07 01:34:22 2010 (4C5C8DEE)
96fde000 96fe9e80   cfwids   cfwids.sys   Sat Aug 07 01:38:06 2010 (4C5C8ECE)
98c90000 98eda000   win32k   win32k.sys   unavailable (00000000)
98ef0000 98ef9000   TSDDD    TSDDD.dll    unavailable (00000000)
98f20000 98f3e000   cdd      cdd.dll      unavailable (00000000)
a5629000 a5693000   spsys    spsys.sys    Mon May 11 19:37:10 2009 (4A085436)

Unloaded modules:
96ef0000 96f14000   mfeavfk01.sy
    Timestamp: unavailable (00000000)
    Checksum:  00000000
90d66000 90d7e000   parport.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
8bc19000 8bc26000   crashdmp.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
8bbec000 8bbf7000   dump_ataport
    Timestamp: unavailable (00000000)
    Checksum:  00000000
8bbf7000 8bc00000   dump_atapi.s
    Timestamp: unavailable (00000000)
    Checksum:  00000000
8ba00000 8ba11000   dump_dumpfve
    Timestamp: unavailable (00000000)
    Checksum:  00000000
 
Last edited:
Yes, it is correct that the ASACPI.sys driver does belong to the mentioned utilities.

In 9 out of 10 though, users have it because of the ATK0110 entry in the device manager without those utilities even present. Installing those utilities would update the driver so that is also correct.

Here is the the ATK0110 driver itself to update, from ASUS, which is best and simplest to do:

Link Removed - Invalid URL
 
First of all, thank you both for your quick answers.

Now here's what I did in the meantime:

1. Updated the driver via the link TorrentG provided. As far as the ATI PCIE driver, I can't find a specific one on ATI's page. As a matter of fact, the only drivers I can find for my chipset are from ASUS download section for my MB.

2. Haven't uninstalled McAfee yet. Will try it next although as I said in my OP, I've already tried 3 different antivirus software (Norton Internet security 2010, Panda Internet Security 2011, McAfee Total Protection) and it made no difference.

3. Ran Memtest overnight. It ran for something more than 8 hours and found no errors at all.

In the meantime, last night I got a new BSOD mentioning IRQ_NOT_LESS_OR_EQUAL. I'm attaching the minidump.
 

Attachments

  • 100310-21028-01.zip
    26.3 KB · Views: 231
You have a definite network driver problem caused by McAfee. Forget about ATI PCI-e as that's fine and latest.

Remove it in safe mode using the tool found here:

AV Uninstallers - Windows 7 Forums

Reboot and replace with MSE.

Code:
STACK_TEXT:  
8df88a28 8c0d67e7 badb0d00 8c12af44 8df88a60 nt!KiTrap0E+0x2cf
8df88ae0 8c0b7c9c 866c2db0 00000004 00000006 tcpip!TcpTimerMppTimeoutHandler+0x86
8df88b38 82ea204d 866c2e38 00000004 c962fde2 tcpip!TcpPeriodicTimeoutHandler+0x363
8df88b7c 82ea1ff1 8df6c120 8df88ca8 00000001 nt!KiProcessTimerDpcTable+0x50
8df88c68 82ea1eae 8df6c120 8df88ca8 00000000 nt!KiProcessExpiredTimerList+0x101
8df88cdc 82ea020e 00004847 858a8d48 8df71800 nt!KiTimerExpiration+0x25c
8df88d20 82ea0038 00000000 0000000e 00000000 nt!KiRetireDpcList+0xcb
8df88d24 00000000 0000000e 00000000 00000000 nt!KiIdleLoop+0x38
Then uninstall notorious Daemon Tools. Use this uninstaller to remove sptd.sys after and not to update it:

AV Uninstallers - Windows 7 Forums

Replace that with PowerISO which will never crash:

PowerISO - Create, Edit, Compress, Encrypt, Split, Mount, Extract ISO file, ISO/BIN converter, Virtual Drive

Install this latest Realtek network driver:

RTL8111
 
Did everything you said except uninstalling daemon tools which I have never installed in the first place. Instead I uninstalled a freeware iso burner I had, which was responsible for the sptd.sys file, since it asked me before installing it.

I'll give it a few days and see how those changes affect my PC.

Thanks again.
 
Since your memory tested fine, if you removed sptd.sys, McAfee and updated your network driver, no less than 100% guaranteed success.

Enjoy! :) You're welcome.
 
Sadly one more BSOD occurred today while i was listening to music on Windows Media Player. Here's the minidump again.
 

Attachments

  • 100410-20950-01.zip
    26.1 KB · Views: 249
I got an IRQ_NOT_LESS_OR_EQUAL bsod today. I'm starting to feel desperate. Any idea what might be causing it this time?

I'm thiking to roll back to XP....
 

Attachments

  • 101010-19156-01.zip
    28.4 KB · Views: 261
Have you run memtest and prime95?

RAM - Test with Memtest86+ - Windows 7 Forums

CPU - Stress Test with Prime95 - Windows 7 Forums




Update or uninstall:

sptd.sys Sun Oct 11 23:54:02 2009
Daemon, Alcohol, Duplex Secure


Update:

AtiPcie.sys Tue May 05 18:00:16 2009
ATI PCIE Driver for ATI PCIE chipset





Code:
Microsoft (R) Windows Debugger Version 6.11.0001.404 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [F:\a\Minidump\D M P\101010-19156-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available

Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is: 
Windows 7 Kernel Version 7600 MP (6 procs) Free x86 compatible
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16617.x86fre.win7_gdr.100618-1621
Machine Name:
Kernel base = 0x82e3b000 PsLoadedModuleList = 0x82f83810
Debug session time: Sun Oct 10 12:52:49.682 2010 (GMT-5)
System Uptime: 0 days 4:06:41.899
Loading Kernel Symbols
...............................................................
................................................................
...............................
Loading User Symbols
Loading unloaded module list
......
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck A, {c000cc10, 0, 0, 82e78146}

Probably caused by : win32k.sys ( win32k!UpdateHungThreadTime+40 )

Followup: MachineOwner
---------

0: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

IRQL_NOT_LESS_OR_EQUAL (a)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high.  This is usually
caused by drivers using improper addresses.
If a kernel debugger is available get the stack backtrace.
Arguments:
Arg1: c000cc10, memory referenced
Arg2: 00000000, IRQL
Arg3: 00000000, bitfield :
    bit 0 : value 0 = read operation, 1 = write operation
    bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status)
Arg4: 82e78146, address which referenced memory

Debugging Details:
------------------


READ_ADDRESS: GetPointerFromAddress: unable to read from 82fa3718
Unable to read MiSystemVaType memory at 82f83160
 c000cc10 

CURRENT_IRQL:  0

FAULTING_IP: 
nt!MiLockProtoPoolPage+19
82e78146 8b1f            mov     ebx,dword ptr [edi]

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT

BUGCHECK_STR:  0xA

PROCESS_NAME:  plugin-contain

TRAP_FRAME:  a123bc94 -- (.trap 0xffffffffa123bc94)
ErrCode = 00000000
eax=fe3af4f8 ebx=9811c325 ecx=00000000 edx=00e1dbe1 esi=00000000 edi=00000003
eip=9810a6fe esp=a123bd08 ebp=a123bd0c iopl=0         nv up ei pl nz na pe nc
cs=0008  ss=0010  ds=0023  es=0023  fs=0030  gs=0000             efl=00010206
win32k!UpdateHungThreadTime+0x40:
9810a6fe 8b88c4000000    mov     ecx,dword ptr [eax+0C4h] ds:0023:fe3af5bc=????????
Resetting default scope

LAST_CONTROL_TRANSFER:  from 82e78146 to 82e8182b

STACK_TEXT:  
a123baec 82e78146 badb0d00 00000001 82f64d20 nt!KiTrap0E+0x2cf
a123bb84 82ecb8f2 a123bbe4 87d34330 8f860d70 nt!MiLockProtoPoolPage+0x19
a123bbf0 82ec1d76 fe3af5bc 00000000 8f860d70 nt!MiDispatchFault+0x5b2
a123bc7c 82e81638 00000000 fe3af5bc 00000000 nt!MmAccessFault+0x157c
a123bc7c 9810a6fe 00000000 fe3af5bc 00000000 nt!KiTrap0E+0xdc
a123bd0c 980faafc fe3af4f8 0108fd14 9811c340 win32k!UpdateHungThreadTime+0x40
a123bd18 9811c340 00000003 0108fd14 a123bd34 win32k!xxxClearWakeMask+0xf
a123bd28 82e7e44a 00000003 0108fd4c 773364f4 win32k!NtUserCallNoParam+0x1b
a123bd28 773364f4 00000003 0108fd4c 773364f4 nt!KiFastCallEntry+0x12a
WARNING: Frame IP not in any known module. Following frames may be wrong.
0108fd4c 00000000 00000000 00000000 00000000 0x773364f4


STACK_COMMAND:  kb

FOLLOWUP_IP: 
win32k!UpdateHungThreadTime+40
9810a6fe 8b88c4000000    mov     ecx,dword ptr [eax+0C4h]

SYMBOL_STACK_INDEX:  5

SYMBOL_NAME:  win32k!UpdateHungThreadTime+40

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: win32k

IMAGE_NAME:  win32k.sys

DEBUG_FLR_IMAGE_TIMESTAMP:  4c1c425a

FAILURE_BUCKET_ID:  0xA_win32k!UpdateHungThreadTime+40

BUCKET_ID:  0xA_win32k!UpdateHungThreadTime+40

Followup: MachineOwner
start    end        module name
80bd2000 80bda000   kdcom    kdcom.dll    Tue Jul 14 04:08:58 2009 (4A5BDAAA)
82e04000 82e3b000   hal      halmacpi.dll Tue Jul 14 02:11:03 2009 (4A5BBF07)
82e3b000 8324b000   nt       ntkrpamp.exe Sat Jun 19 06:55:24 2010 (4C1C3FAC)
8b400000 8b41a000   serial   serial.sys   Tue Jul 14 02:45:33 2009 (4A5BC71D)
8b41f000 8b42a000   mcupdate_AuthenticAMD mcupdate_AuthenticAMD.dll Tue Jul 14 02:13:13 2009 (4A5BBF89)
8b42a000 8b43b000   PSHED    PSHED.dll    Tue Jul 14 04:09:36 2009 (4A5BDAD0)
8b43b000 8b443000   BOOTVID  BOOTVID.dll  Tue Jul 14 04:04:34 2009 (4A5BD9A2)
8b443000 8b485000   CLFS     CLFS.SYS     Tue Jul 14 02:11:10 2009 (4A5BBF0E)
8b485000 8b530000   CI       CI.dll       Tue Jul 14 04:09:28 2009 (4A5BDAC8)
8b530000 8b5a1000   Wdf01000 Wdf01000.sys Tue Jul 14 02:11:36 2009 (4A5BBF28)
8b5a1000 8b5af000   WDFLDR   WDFLDR.SYS   Tue Jul 14 02:11:25 2009 (4A5BBF1D)
8b5af000 8b5fa000   volmgrx  volmgrx.sys  Tue Jul 14 02:11:41 2009 (4A5BBF2D)
8b600000 8b609000   atapi    atapi.sys    Tue Jul 14 02:11:15 2009 (4A5BBF13)
8b60b000 8b6fe000   sptd     sptd.sys     Sun Oct 11 23:54:02 2009 (4AD245EA)
8b6fe000 8b707000   WMILIB   WMILIB.SYS   Tue Jul 14 02:11:22 2009 (4A5BBF1A)
8b707000 8b72d000   SCSIPORT SCSIPORT.SYS Tue Jul 14 02:45:55 2009 (4A5BC733)
8b72d000 8b775000   ACPI     ACPI.sys     Tue Jul 14 02:11:11 2009 (4A5BBF0F)
8b775000 8b77d000   msisadrv msisadrv.sys Tue Jul 14 02:11:09 2009 (4A5BBF0D)
8b77d000 8b788000   vdrvroot vdrvroot.sys Tue Jul 14 02:46:19 2009 (4A5BC74B)
8b788000 8b7b2000   pci      pci.sys      Tue Jul 14 02:11:16 2009 (4A5BBF14)
8b7b2000 8b7c3000   partmgr  partmgr.sys  Tue Jul 14 02:11:35 2009 (4A5BBF27)
8b7c3000 8b7d3000   volmgr   volmgr.sys   Tue Jul 14 02:11:25 2009 (4A5BBF1D)
8b7d3000 8b7da000   pciide   pciide.sys   Tue Jul 14 02:11:19 2009 (4A5BBF17)
8b7da000 8b7e8000   PCIIDEX  PCIIDEX.SYS  Tue Jul 14 02:11:15 2009 (4A5BBF13)
8b7e8000 8b7fe000   mountmgr mountmgr.sys Tue Jul 14 02:11:27 2009 (4A5BBF1F)
8b800000 8b813000   ksecdd   ksecdd.sys   Tue Jul 14 02:11:56 2009 (4A5BBF3C)
8b823000 8b846000   ataport  ataport.SYS  Tue Jul 14 02:11:18 2009 (4A5BBF16)
8b846000 8b84f000   amdxata  amdxata.sys  Tue May 19 20:57:35 2009 (4A12F30F)
8b84f000 8b883000   fltmgr   fltmgr.sys   Tue Jul 14 02:11:13 2009 (4A5BBF11)
8b883000 8b894000   fileinfo fileinfo.sys Tue Jul 14 02:21:51 2009 (4A5BC18F)
8b894000 8b9c3000   Ntfs     Ntfs.sys     Tue Jul 14 02:12:05 2009 (4A5BBF45)
8b9c3000 8b9ee000   msrpc    msrpc.sys    Tue Jul 14 02:11:59 2009 (4A5BBF3F)
8ba00000 8ba32000   fvevol   fvevol.sys   Sat Sep 26 05:24:21 2009 (4ABD7B55)
8ba33000 8ba90000   cng      cng.sys      Tue Jul 14 02:32:55 2009 (4A5BC427)
8ba90000 8ba9e000   pcw      pcw.sys      Tue Jul 14 02:11:10 2009 (4A5BBF0E)
8ba9e000 8baa7000   Fs_Rec   Fs_Rec.sys   Tue Jul 14 02:11:14 2009 (4A5BBF12)
8baa7000 8bb5e000   ndis     ndis.sys     Tue Jul 14 02:12:24 2009 (4A5BBF58)
8bb5e000 8bb9c000   NETIO    NETIO.SYS    Tue Jul 14 02:12:35 2009 (4A5BBF63)
8bb9c000 8bbc1000   ksecpkg  ksecpkg.sys  Fri Dec 11 06:04:22 2009 (4B21C4C6)
8bbc1000 8bbd1000   mup      mup.sys      Tue Jul 14 02:14:14 2009 (4A5BBFC6)
8bbd1000 8bbd9000   hwpolicy hwpolicy.sys Tue Jul 14 02:11:01 2009 (4A5BBF05)
8bbd9000 8bbea000   disk     disk.sys     Tue Jul 14 02:11:28 2009 (4A5BBF20)
8bbea000 8bbf8000   netbios  netbios.sys  Tue Jul 14 02:53:54 2009 (4A5BC912)
8bc00000 8bc08000   spldr    spldr.sys    Mon May 11 19:13:47 2009 (4A084EBB)
8bc08000 8bc35000   rdyboost rdyboost.sys Tue Jul 14 02:22:02 2009 (4A5BC19A)
8bc37000 8bd80000   tcpip    tcpip.sys    Mon Jun 14 06:36:59 2010 (4C15A3DB)
8bd80000 8bdb1000   fwpkclnt fwpkclnt.sys Tue Jul 14 02:12:03 2009 (4A5BBF43)
8bdb1000 8bdb9380   vmstorfl vmstorfl.sys Tue Jul 14 02:28:44 2009 (4A5BC32C)
8bdba000 8bdf9000   volsnap  volsnap.sys  Tue Jul 14 02:11:34 2009 (4A5BBF26)
8be00000 8be1f000   pacer    pacer.sys    Tue Jul 14 02:53:58 2009 (4A5BC916)
8be24000 8be49000   CLASSPNP CLASSPNP.SYS Tue Jul 14 02:11:20 2009 (4A5BBF18)
8be49000 8be51000   AtiPcie  AtiPcie.sys  Tue May 05 18:00:16 2009 (4A005480)
8be51000 8be62000   dump_dumpfve dump_dumpfve.sys Tue Jul 14 02:12:47 2009 (4A5BBF6F)
8be62000 8be6d000   monitor  monitor.sys  Tue Jul 14 02:25:58 2009 (4A5BC286)
8be6d000 8be79000   ffusbaudio ffusbaudio.sys Fri Mar 05 17:22:18 2010 (4B9121AA)
8be79000 8be82600   dc3d     dc3d.sys     Thu Jul 01 13:07:37 2010 (4C2C68E9)
8be83000 8bea2000   cdrom    cdrom.sys    Tue Jul 14 02:11:24 2009 (4A5BBF1C)
8bea2000 8bec5000   MpFilter MpFilter.sys Sat Mar 20 06:03:26 2010 (4BA4490E)
8bec5000 8becc000   Null     Null.SYS     Tue Jul 14 02:11:12 2009 (4A5BBF10)
8becc000 8bed3000   Beep     Beep.SYS     Tue Jul 14 02:45:00 2009 (4A5BC6FC)
8bed3000 8bedf000   vga      vga.sys      Tue Jul 14 02:25:50 2009 (4A5BC27E)
8bedf000 8bf00000   VIDEOPRT VIDEOPRT.SYS Tue Jul 14 02:25:49 2009 (4A5BC27D)
8bf00000 8bf0d000   watchdog watchdog.sys Tue Jul 14 02:24:10 2009 (4A5BC21A)
8bf0d000 8bf15000   RDPCDD   RDPCDD.sys   Tue Jul 14 03:01:40 2009 (4A5BCAE4)
8bf15000 8bf1d000   rdpencdd rdpencdd.sys Tue Jul 14 03:01:39 2009 (4A5BCAE3)
8bf1d000 8bf25000   rdprefmp rdprefmp.sys Tue Jul 14 03:01:41 2009 (4A5BCAE5)
8bf25000 8bf30000   Msfs     Msfs.SYS     Tue Jul 14 02:11:26 2009 (4A5BBF1E)
8bf30000 8bf3e000   Npfs     Npfs.SYS     Tue Jul 14 02:11:31 2009 (4A5BBF23)
8bf3e000 8bf55000   tdx      tdx.sys      Tue Jul 14 02:12:10 2009 (4A5BBF4A)
8bf55000 8bf60000   TDI      TDI.SYS      Tue Jul 14 02:12:12 2009 (4A5BBF4C)
8bf60000 8bf92000   netbt    netbt.sys    Tue Jul 14 02:12:18 2009 (4A5BBF52)
8bf92000 8bfec000   afd      afd.sys      Tue Jul 14 02:12:34 2009 (4A5BBF62)
8bfec000 8bff3000   wfplwf   wfplwf.sys   Tue Jul 14 02:53:51 2009 (4A5BC90F)
8bff3000 8bffe000   hidusb   hidusb.sys   Tue Jul 14 02:51:04 2009 (4A5BC868)
8f632000 8f645000   HIDCLASS HIDCLASS.SYS Tue Jul 14 02:51:01 2009 (4A5BC865)
8f645000 8f650000   mouhid   mouhid.sys   Tue Jul 14 02:45:08 2009 (4A5BC704)
8f650000 8f658800   point32  point32.sys  Tue Jun 29 11:54:24 2010 (4C29B4C0)
8f659000 8f674000   luafv    luafv.sys    Tue Jul 14 02:15:44 2009 (4A5BC020)
8f674000 8f67d000   Sftvollh Sftvollh.sys Fri Apr 23 21:18:31 2010 (4BD1E477)
8f67d000 8f697000   WudfPf   WudfPf.sys   Tue Jul 14 02:50:13 2009 (4A5BC835)
8f697000 8f6a7000   lltdio   lltdio.sys   Tue Jul 14 02:53:18 2009 (4A5BC8EE)
8f6a7000 8f6ba000   rspndr   rspndr.sys   Tue Jul 14 02:53:20 2009 (4A5BC8F0)
8f6ba000 8f73f000   HTTP     HTTP.sys     Tue Jul 14 02:12:53 2009 (4A5BBF75)
8f73f000 8f758000   bowser   bowser.sys   Tue Jul 14 02:14:21 2009 (4A5BBFCD)
8f758000 8f76a000   mpsdrv   mpsdrv.sys   Tue Jul 14 02:52:52 2009 (4A5BC8D4)
8f76a000 8f78d000   mrxsmb   mrxsmb.sys   Sat Feb 27 09:32:02 2010 (4B88CA72)
8f78d000 8f7c8000   mrxsmb10 mrxsmb10.sys Sat Feb 27 09:32:21 2010 (4B88CA85)
8f7c8000 8f7e3000   mrxsmb20 mrxsmb20.sys Sat Feb 27 09:32:11 2010 (4B88CA7B)
90600000 9062f000   portcls  portcls.sys  Tue Jul 14 02:51:00 2009 (4A5BC864)
9062f000 9063a000   dump_dumpata dump_dumpata.sys Tue Jul 14 02:11:16 2009 (4A5BBF14)
9063c000 9064f000   wanarp   wanarp.sys   Tue Jul 14 02:55:02 2009 (4A5BC956)
9064f000 9065f000   termdd   termdd.sys   Tue Jul 14 03:01:35 2009 (4A5BCADF)
9065f000 906a0000   rdbss    rdbss.sys    Tue Jul 14 02:14:26 2009 (4A5BBFD2)
906a0000 906aa000   nsiproxy nsiproxy.sys Tue Jul 14 02:12:08 2009 (4A5BBF48)
906aa000 906b4000   mssmbios mssmbios.sys Tue Jul 14 02:19:25 2009 (4A5BC0FD)
906b4000 906c0000   discache discache.sys Tue Jul 14 02:24:04 2009 (4A5BC214)
906c0000 90724000   csc      csc.sys      Tue Jul 14 02:15:08 2009 (4A5BBFFC)
90724000 9073c000   dfsc     dfsc.sys     Tue Jul 14 02:14:16 2009 (4A5BBFC8)
9073c000 9074a000   blbdrive blbdrive.sys Tue Jul 14 02:23:04 2009 (4A5BC1D8)
9074a000 9076b000   tunnel   tunnel.sys   Tue Jul 14 02:54:03 2009 (4A5BC91B)
9076b000 9077c000   amdppm   amdppm.sys   Tue Jul 14 02:11:03 2009 (4A5BBF07)
9077c000 907c7000   USBPORT  USBPORT.SYS  Tue Jul 14 02:51:13 2009 (4A5BC871)
907c7000 907d4000   kbdclass kbdclass.sys Tue Jul 14 02:11:15 2009 (4A5BBF13)
907d4000 907ed000   drmk     drmk.sys     Tue Jul 14 03:36:05 2009 (4A5BD2F5)
907ed000 907fa000   crashdmp crashdmp.sys Tue Jul 14 02:45:50 2009 (4A5BC72E)
91200000 9121d000   nvhda32v nvhda32v.sys Tue Jun 22 01:07:07 2010 (4C1FE28B)
9121d000 91227000   Dxapi    Dxapi.sys    Tue Jul 14 02:25:25 2009 (4A5BC265)
91227000 9126d000   Rt86win7 Rt86win7.sys Fri Sep 03 08:58:33 2010 (4C808E89)
9126d000 91276000   wmiacpi  wmiacpi.sys  Tue Jul 14 02:19:16 2009 (4A5BC0F4)
91276000 91283000   CompositeBus CompositeBus.sys Tue Jul 14 02:45:26 2009 (4A5BC716)
91283000 91295000   AgileVpn AgileVpn.sys Tue Jul 14 02:55:00 2009 (4A5BC954)
91295000 912ad000   rasl2tp  rasl2tp.sys  Tue Jul 14 02:54:33 2009 (4A5BC939)
912ad000 912b8000   ndistapi ndistapi.sys Tue Jul 14 02:54:24 2009 (4A5BC930)
912b8000 912da000   ndiswan  ndiswan.sys  Tue Jul 14 02:54:34 2009 (4A5BC93A)
912da000 912f2000   raspppoe raspppoe.sys Tue Jul 14 02:54:53 2009 (4A5BC94D)
912f2000 91309000   raspptp  raspptp.sys  Tue Jul 14 02:54:47 2009 (4A5BC947)
91309000 91320000   rassstp  rassstp.sys  Tue Jul 14 02:54:57 2009 (4A5BC951)
91320000 9132a000   rdpbus   rdpbus.sys   Tue Jul 14 03:02:40 2009 (4A5BCB20)
9132a000 91337000   mouclass mouclass.sys Tue Jul 14 02:11:15 2009 (4A5BBF13)
91337000 91338380   swenum   swenum.sys   Tue Jul 14 02:45:08 2009 (4A5BC704)
91339000 9136d000   ks       ks.sys       Thu Mar 04 05:57:52 2010 (4B8F2FC0)
9136d000 9136f900   lgbtbus  lgbtbus.sys  Tue Sep 29 14:41:19 2009 (4AC1F25F)
91370000 9137e000   umbus    umbus.sys    Tue Jul 14 02:51:38 2009 (4A5BC88A)
9137e000 9138ca00   nusb3hub nusb3hub.sys Fri Jan 22 05:21:46 2010 (4B5919CA)
9138d000 913d1000   usbhub   usbhub.sys   Tue Jul 14 02:52:06 2009 (4A5BC8A6)
913d1000 913e2000   NDProxy  NDProxy.SYS  Tue Jul 14 02:54:27 2009 (4A5BC933)
913e2000 913e5280   lgvmodem lgvmodem.sys Tue Sep 29 14:41:19 2009 (4AC1F25F)
913e6000 913f3000   modem    modem.sys    Tue Jul 14 02:55:24 2009 (4A5BC96C)
913f3000 913f5f80   lgbtport lgbtport.sys Tue Sep 29 14:41:20 2009 (4AC1F260)
913f6000 913ff000   dump_atapi dump_atapi.sys Tue Jul 14 02:11:15 2009 (4A5BBF13)
91e00000 91e18000   i8042prt i8042prt.sys Tue Jul 14 02:11:23 2009 (4A5BBF1B)
91e1a000 92897dc0   nvlddmkm nvlddmkm.sys Sat Jul 10 00:15:14 2010 (4C379162)
92898000 92899040   nvBridge nvBridge.kmd Sat Jul 10 00:10:11 2010 (4C379033)
9289a000 92951000   dxgkrnl  dxgkrnl.sys  Fri Oct 02 03:48:33 2009 (4AC54DE1)
92951000 9298a000   dxgmms1  dxgmms1.sys  Tue Jul 14 02:25:25 2009 (4A5BC265)
9298a000 929a9000   HDAudBus HDAudBus.sys Tue Jul 14 02:50:55 2009 (4A5BC85F)
929a9000 929cb180   nusb3xhc nusb3xhc.sys Fri Jan 22 05:21:48 2010 (4B5919CC)
929cc000 929cd700   USBD     USBD.SYS     Tue Jul 14 02:51:05 2009 (4A5BC869)
929ce000 929d4000   usbfilter usbfilter.sys Wed Oct 07 10:43:57 2009 (4ACC46BD)
929d4000 929de000   usbohci  usbohci.sys  Tue Jul 14 02:51:14 2009 (4A5BC872)
929de000 929ed000   usbehci  usbehci.sys  Tue Jul 14 02:51:14 2009 (4A5BC872)
929ed000 929f7000   serenum  serenum.sys  Tue Jul 14 02:45:27 2009 (4A5BC717)
929f7000 929f86c0   ASACPI   ASACPI.sys   Wed May 13 14:11:32 2009 (4A0AAAE4)
929f9000 929ff480   HIDPARSE HIDPARSE.SYS Tue Jul 14 02:50:59 2009 (4A5BC863)
98050000 9829a000   win32k   win32k.sys   Sat Jun 19 07:06:50 2010 (4C1C425A)
982b0000 982b9000   TSDDD    TSDDD.dll    unavailable (00000000)
982e0000 982fe000   cdd      cdd.dll      Tue Jul 14 04:04:18 2009 (4A5BD992)
98300000 9834d000   ATMFD    ATMFD.DLL    Thu May 27 06:49:36 2010 (4BFDEBD0)
9fc3b000 9fcd2000   peauth   peauth.sys   Tue Jul 14 03:35:44 2009 (4A5BD2E0)
9fcd2000 9fcdc000   secdrv   secdrv.SYS   Wed Sep 13 16:18:32 2006 (45080528)
9fcdc000 9fd68000   Sftfslh  Sftfslh.sys  Fri Apr 23 21:18:40 2010 (4BD1E480)
9fd68000 9fd9e000   Sftplaylh Sftplaylh.sys Fri Apr 23 21:19:38 2010 (4BD1E4BA)
9fd9e000 9fdbf000   srvnet   srvnet.sys   Tue Jun 22 05:47:09 2010 (4C20242D)
9fdbf000 9fdc7e00   MpNWMon  MpNWMon.sys  Sat Mar 20 06:03:24 2010 (4BA4490C)
9fdc8000 9fdd5000   tcpipreg tcpipreg.sys Tue Jul 14 02:54:14 2009 (4A5BC926)
a1e3c000 a1e8b000   srv2     srv2.sys     Tue Jun 22 05:47:19 2010 (4C202437)
a1e8b000 a1edc000   srv      srv.sys      Tue Jun 22 05:47:32 2010 (4C202444)
a1edc000 a1ee5000   Sftredirlh Sftredirlh.sys Fri Apr 23 21:19:31 2010 (4BD1E4B3)
a1f4f000 a1f58000   asyncmac asyncmac.sys Tue Jul 14 02:54:46 2009 (4A5BC946)

Unloaded modules:
a1ee5000 a1f4f000   spsys.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
8f7e3000 8f7fb000   parport.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
8be51000 8be5e000   crashdmp.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
8be5e000 8be69000   dump_ataport
    Timestamp: unavailable (00000000)
    Checksum:  00000000
8be69000 8be72000   dump_atapi.s
    Timestamp: unavailable (00000000)
    Checksum:  00000000
8be72000 8be83000   dump_dumpfve
    Timestamp: unavailable (00000000)
    Checksum:  00000000
 
I got an IRQ_NOT_LESS_OR_EQUAL bsod today. I'm starting to feel desperate. Any idea what might be causing it this time?

I'm thiking to roll back to XP....

XP isn't going to help you at all. If 7 isn't going to work well (and you follow our advice), XP definitely will not either.

Uninstall Daemon Tools then use this uninstaller that will remove sptd.sys. Be careful to remove and not update instead:

DuplexSecure - Downloads

----------

There is no update to ATIPcie.sys and that's fine.

------------

Update this NEC USB 3.0 driver from motherboard manufacturer's site:

nusb3hub nusb3hub.sys Thu Jan 21 22:21:46 2010
 
Thanks for your reply.

Here's what I have done so far:

Memtest: I have ran it overnight. No error occured

CPU Stress Test: Haven't tried it yet. Will do asap and get back to you.

sptd.sys: I have already uninstalled a freeware iso burner that had placed the file there. Apparently it's still there. BSODs were happening even before I had installed the burner though. Nevertheless, is there a way to completely remove the file from my system?

AtiPcie.sys: I have already updated this one from a link TorrentG posted earlier in this thread.


Torrent G I just saw your post. Latest and only usb 3 driver in ASUS downloads is the one I have already installed.
 
Last edited:
Don't worry about CPU stress test. That's not the problem.

Highly suggest to check C:\Windows\System32\drivers for sptd.sys. If it is still there, then remove it with the uninstaller I linked to. Be careful to use it to remove and not update instead.

If you have further bsods, please post them and we will be that much closer to a final conclusion to resolve this.

If your memory tested clean, then there is a definite driver issue or you may need to test modules one at a time.

A new crash dump with sptd.sys will tell the whole story (or so will it too if none happen after.)
 
Ok here's what just happened. Just downloaded the sptd.sys uninstaller, ran it and uninstalled the file. System asked to reboot and I did. IRQ_NOT_LESS_OR_EQUAL BSOD occurs a couple of seconds after windows desktop was loaded following the reboot. Here's the dump again.

P.S. Don't know if it's rellevant but BSODs occuring after I uninstalled all antivirus software and installed Microsoft Security Essentials, don't cause my PC to restart anymore rather than display the blue screen untill I cause a hardware restart myself.
 

Attachments

  • 101010-16832-01.zip
    23.2 KB · Views: 228
Great...

Your issue is now 100% involving networking. You have the latest Realtek driver and that is not the problem.

You'll want to uninstall Microsoft Application Virtualization SystemGuard.
 
You'll want to uninstall Microsoft Application Virtualization SystemGuard.

How do I do that? Doesn't appear in windows features (turn windows features on/off) or in installed programs.
 
You have this installed:

http://www.microsoft.com/systemcenter/appv/default.mspx

Uninstall it. There is a likely a misconfiguration on your part involving this.


Here's your crash dump showing the tcp/ip stop and the drivers of concern to remove are the ones beginning with Sft and date of April 23, 2010.

Google if you have to or manually remove them or whatnot:

Code:
Microsoft (R) Windows Debugger Version 6.12.0002.633 X86
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [E:\Temp\Rar$DI04.640\101010-16832-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available

Symbol search path is: SRV*C:\SymCache*http://msdl.microsoft.com/download/symbols
Executable search path is: 
Windows 7 Kernel Version 7600 MP (6 procs) Free x86 compatible
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16617.x86fre.win7_gdr.100618-1621
Machine Name:
Kernel base = 0x82e14000 PsLoadedModuleList = 0x82f5c810
Debug session time: Sun Oct 10 14:00:24.448 2010 (UTC - 4:00)
System Uptime: 0 days 0:01:27.666
Loading Kernel Symbols
...............................................................
................................................................
............................
Loading User Symbols
Loading unloaded module list
.....
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck D1, {1c5acdeb, 2, 8, 1c5acdeb}

Probably caused by : tcpip.sys ( tcpip!TcpMppEventHandler+99 )

Followup: MachineOwner
---------

4: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

DRIVER_IRQL_NOT_LESS_OR_EQUAL (d1)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high.  This is usually
caused by drivers using improper addresses.
If kernel debugger is available get stack backtrace.
Arguments:
Arg1: 1c5acdeb, memory referenced
Arg2: 00000002, IRQL
Arg3: 00000008, value 0 = read operation, 1 = write operation
Arg4: 1c5acdeb, address which referenced memory

Debugging Details:
------------------


READ_ADDRESS: GetPointerFromAddress: unable to read from 82f7c718
Unable to read MiSystemVaType memory at 82f5c160
 1c5acdeb 

CURRENT_IRQL:  2

FAULTING_IP: 
+654e2faf00acddc8
1c5acdeb ??              ???

PROCESS_NAME:  System

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT

BUGCHECK_STR:  0xD1

TRAP_FRAME:  8d9889c4 -- (.trap 0xffffffff8d9889c4)
ErrCode = 00000010
eax=00000000 ebx=00000001 ecx=00000000 edx=8bcf6f84 esi=8d988a6c edi=00000000
eip=1c5acdeb esp=8d988a38 ebp=8d988a38 iopl=0         nv up ei pl zr na pe nc
cs=0008  ss=0010  ds=0023  es=0023  fs=0030  gs=0000             efl=00010246
1c5acdeb ??              ???
Resetting default scope

LAST_CONTROL_TRANSFER:  from 1c5acdeb to 82e5a82b

FAILED_INSTRUCTION_ADDRESS: 
+654e2faf00acddc8
1c5acdeb ??              ???

STACK_TEXT:  
8d9889c4 1c5acdeb badb0d00 8bcf6f84 00000000 nt!KiTrap0E+0x2cf
WARNING: Frame IP not in any known module. Following frames may be wrong.
8d988a34 8d988a60 8bca41e4 00000000 00000000 0x1c5acdeb
8d988a38 8bca41e4 00000000 00000000 00000001 0x8d988a60
8d988a60 8bca42e5 8bcf6f10 00000000 00000004 tcpip!TcpMppEventHandler+0x99
8d988a80 8bca2794 8628beb8 8628bebc 8628be30 tcpip!TcpMppQueryTcbKillRate+0x20
8d988ae0 8bc83c9c 8628bdb0 00000004 00000006 tcpip!TcpTimerMppTimeoutHandler+0x33
8d988b38 82e7e04d 8628be38 00000004 034d6992 tcpip!TcpPeriodicTimeoutHandler+0x363
8d988b7c 82e7dff1 8d96c120 8d988ca8 00000001 nt!KiProcessTimerDpcTable+0x50
8d988c68 82e7deae 8d96c120 8d988ca8 00000000 nt!KiProcessExpiredTimerList+0x101
8d988cdc 82e7c20e 000015f3 881aa320 8d971800 nt!KiTimerExpiration+0x25c
8d988d20 82e7c038 00000000 0000000e 00000000 nt!KiRetireDpcList+0xcb
8d988d24 00000000 0000000e 00000000 00000000 nt!KiIdleLoop+0x38


STACK_COMMAND:  kb

FOLLOWUP_IP: 
tcpip!TcpMppEventHandler+99
8bca41e4 84c0            test    al,al

SYMBOL_STACK_INDEX:  3

SYMBOL_NAME:  tcpip!TcpMppEventHandler+99

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: tcpip

IMAGE_NAME:  tcpip.sys

DEBUG_FLR_IMAGE_TIMESTAMP:  4c15a3db

FAILURE_BUCKET_ID:  0xD1_CODE_AV_BAD_IP_tcpip!TcpMppEventHandler+99

BUCKET_ID:  0xD1_CODE_AV_BAD_IP_tcpip!TcpMppEventHandler+99

Followup: MachineOwner
---------

4: kd> lmsmtn
start    end        module name
8b5b0000 8b5f8000   ACPI     ACPI.sys     Mon Jul 13 19:11:11 2009 (4A5BBF0F)
90e46000 90ea0000   afd      afd.sys      Mon Jul 13 19:12:34 2009 (4A5BBF62)
92523000 92535000   AgileVpn AgileVpn.sys Mon Jul 13 19:55:00 2009 (4A5BC954)
90e00000 90e11000   amdppm   amdppm.sys   Mon Jul 13 19:11:03 2009 (4A5BBF07)
8b711000 8b71a000   amdxata  amdxata.sys  Tue May 19 13:57:35 2009 (4A12F30F)
924a0000 924a16c0   ASACPI   ASACPI.sys   Wed May 13 07:11:32 2009 (4A0AAAE4)
8b6e5000 8b6ee000   atapi    atapi.sys    Mon Jul 13 19:11:15 2009 (4A5BBF13)
8b6ee000 8b711000   ataport  ataport.SYS  Mon Jul 13 19:11:18 2009 (4A5BBF16)
8bbad000 8bbb5000   AtiPcie  AtiPcie.sys  Tue May 05 11:00:16 2009 (4A005480)
980f0000 9813d000   ATMFD    ATMFD.DLL    unavailable (00000000)
8bbee000 8bbf5000   Beep     Beep.SYS     Mon Jul 13 19:45:00 2009 (4A5BC6FC)
90fee000 90ffc000   blbdrive blbdrive.sys Mon Jul 13 19:23:04 2009 (4A5BC1D8)
8b43c000 8b444000   BOOTVID  BOOTVID.dll  Mon Jul 13 21:04:34 2009 (4A5BD9A2)
96e9c000 96eb5000   bowser   bowser.sys   Mon Jul 13 19:14:21 2009 (4A5BBFCD)
980d0000 980ee000   cdd      cdd.dll      unavailable (00000000)
8b9c2000 8b9e1000   cdrom    cdrom.sys    Mon Jul 13 19:11:24 2009 (4A5BBF1C)
8b486000 8b531000   CI       CI.dll       Mon Jul 13 21:09:28 2009 (4A5BDAC8)
8bb88000 8bbad000   CLASSPNP CLASSPNP.SYS Mon Jul 13 19:11:20 2009 (4A5BBF18)
8b444000 8b486000   CLFS     CLFS.SYS     Mon Jul 13 19:11:10 2009 (4A5BBF0E)
8b75f000 8b7bc000   cng      cng.sys      Mon Jul 13 19:32:55 2009 (4A5BC427)
92516000 92523000   CompositeBus CompositeBus.sys Mon Jul 13 19:45:26 2009 (4A5BC716)
92cea000 92cf7000   crashdmp crashdmp.sys Mon Jul 13 19:45:50 2009 (4A5BC72E)
90f72000 90fd6000   csc      csc.sys      Mon Jul 13 19:15:08 2009 (4A5BBFFC)
92d33000 92d3c600   dc3d     dc3d.sys     Thu Jul 01 06:07:37 2010 (4C2C68E9)
90fd6000 90fee000   dfsc     dfsc.sys     Mon Jul 13 19:14:16 2009 (4A5BBFC8)
90f66000 90f72000   discache discache.sys Mon Jul 13 19:24:04 2009 (4A5BC214)
8bb77000 8bb88000   disk     disk.sys     Mon Jul 13 19:11:28 2009 (4A5BBF20)
92cc7000 92ce0000   drmk     drmk.sys     Mon Jul 13 20:36:05 2009 (4A5BD2F5)
92d02000 92d0b000   dump_atapi dump_atapi.sys Mon Jul 13 19:11:15 2009 (4A5BBF13)
92cf7000 92d02000   dump_dumpata dump_dumpata.sys Mon Jul 13 19:11:16 2009 (4A5BBF14)
92d0b000 92d1c000   dump_dumpfve dump_dumpfve.sys Mon Jul 13 19:12:47 2009 (4A5BBF6F)
92ce0000 92cea000   Dxapi    Dxapi.sys    Mon Jul 13 19:25:25 2009 (4A5BC265)
96cba000 96d71000   dxgkrnl  dxgkrnl.sys  Thu Oct 01 20:48:33 2009 (4AC54DE1)
96d71000 96daa000   dxgmms1  dxgmms1.sys  Mon Jul 13 19:25:25 2009 (4A5BC265)
92d27000 92d33000   ffusbaudio ffusbaudio.sys Fri Mar 05 10:22:18 2010 (4B9121AA)
8b74e000 8b75f000   fileinfo fileinfo.sys Mon Jul 13 19:21:51 2009 (4A5BC18F)
8b71a000 8b74e000   fltmgr   fltmgr.sys   Mon Jul 13 19:11:13 2009 (4A5BBF11)
8b9b9000 8b9c2000   Fs_Rec   Fs_Rec.sys   Mon Jul 13 19:11:14 2009 (4A5BBF12)
8bb45000 8bb77000   fvevol   fvevol.sys   Fri Sep 25 22:24:21 2009 (4ABD7B55)
8bd49000 8bd7a000   fwpkclnt fwpkclnt.sys Mon Jul 13 19:12:03 2009 (4A5BBF43)
83224000 8325b000   hal      halmacpi.dll Mon Jul 13 19:11:03 2009 (4A5BBF07)
96daa000 96dc9000   HDAudBus HDAudBus.sys Mon Jul 13 19:50:55 2009 (4A5BC85F)
92d4f000 92d62000   HIDCLASS HIDCLASS.SYS Mon Jul 13 19:51:01 2009 (4A5BC865)
92d3d000 92d43480   HIDPARSE HIDPARSE.SYS Mon Jul 13 19:50:59 2009 (4A5BC863)
92d44000 92d4f000   hidusb   hidusb.sys   Mon Jul 13 19:51:04 2009 (4A5BC868)
96e17000 96e9c000   HTTP     HTTP.sys     Mon Jul 13 19:12:53 2009 (4A5BBF75)
8bdf7000 8bdff000   hwpolicy hwpolicy.sys Mon Jul 13 19:11:01 2009 (4A5BBF05)
924a2000 924ba000   i8042prt i8042prt.sys Mon Jul 13 19:11:23 2009 (4A5BBF1B)
924ba000 924c7000   kbdclass kbdclass.sys Mon Jul 13 19:11:15 2009 (4A5BBF13)
80bb6000 80bbe000   kdcom    kdcom.dll    Mon Jul 13 21:08:58 2009 (4A5BDAAA)
92400000 92434000   ks       ks.sys       Wed Mar 03 22:57:52 2010 (4B8F2FC0)
8b998000 8b9ab000   ksecdd   ksecdd.sys   Mon Jul 13 19:11:56 2009 (4A5BBF3C)
8bb10000 8bb35000   ksecpkg  ksecpkg.sys  Thu Dec 10 23:04:22 2009 (4B21C4C6)
92434000 92436900   lgbtbus  lgbtbus.sys  Tue Sep 29 07:41:19 2009 (4AC1F25F)
92c78000 92c7af80   lgbtport lgbtport.sys Tue Sep 29 07:41:20 2009 (4AC1F260)
92c67000 92c6a280   lgvmodem lgvmodem.sys Tue Sep 29 07:41:19 2009 (4AC1F25F)
92db4000 92dc4000   lltdio   lltdio.sys   Mon Jul 13 19:53:18 2009 (4A5BC8EE)
92d76000 92d91000   luafv    luafv.sys    Mon Jul 13 19:15:44 2009 (4A5BC020)
8b420000 8b42b000   mcupdate_AuthenticAMD mcupdate_AuthenticAMD.dll Mon Jul 13 19:13:13 2009 (4A5BBF89)
92c6b000 92c78000   modem    modem.sys    Mon Jul 13 19:55:24 2009 (4A5BC96C)
92d1c000 92d27000   monitor  monitor.sys  Mon Jul 13 19:25:58 2009 (4A5BC286)
925ca000 925d7000   mouclass mouclass.sys Mon Jul 13 19:11:15 2009 (4A5BBF13)
92d62000 92d6d000   mouhid   mouhid.sys   Mon Jul 13 19:45:08 2009 (4A5BC704)
8b6cf000 8b6e5000   mountmgr mountmgr.sys Mon Jul 13 19:11:27 2009 (4A5BBF1F)
8b800000 8b823000   MpFilter MpFilter.sys Sat Mar 20 00:03:26 2010 (4BA4490E)
96f58000 96f60e00   MpNWMon  MpNWMon.sys  Sat Mar 20 00:03:24 2010 (4BA4490C)
96eb5000 96ec7000   mpsdrv   mpsdrv.sys   Mon Jul 13 19:52:52 2009 (4A5BC8D4)
96ec7000 96eea000   mrxsmb   mrxsmb.sys   Sat Feb 27 02:32:02 2010 (4B88CA72)
96eea000 96f25000   mrxsmb10 mrxsmb10.sys Sat Feb 27 02:32:21 2010 (4B88CA85)
96f25000 96f40000   mrxsmb20 mrxsmb20.sys Sat Feb 27 02:32:11 2010 (4B88CA7B)
8b833000 8b83e000   Msfs     Msfs.SYS     Mon Jul 13 19:11:26 2009 (4A5BBF1E)
8b409000 8b411000   msisadrv msisadrv.sys Mon Jul 13 19:11:09 2009 (4A5BBF0D)
8b96d000 8b998000   msrpc    msrpc.sys    Mon Jul 13 19:11:59 2009 (4A5BBF3F)
90f5c000 90f66000   mssmbios mssmbios.sys Mon Jul 13 19:19:25 2009 (4A5BC0FD)
8bb35000 8bb45000   mup      mup.sys      Mon Jul 13 19:14:14 2009 (4A5BBFC6)
8ba1b000 8bad2000   ndis     ndis.sys     Mon Jul 13 19:12:24 2009 (4A5BBF58)
9254d000 92558000   ndistapi ndistapi.sys Mon Jul 13 19:54:24 2009 (4A5BC930)
92558000 9257a000   ndiswan  ndiswan.sys  Mon Jul 13 19:54:34 2009 (4A5BC93A)
92c56000 92c67000   NDProxy  NDProxy.SYS  Mon Jul 13 19:54:27 2009 (4A5BC933)
90ec6000 90ed4000   netbios  netbios.sys  Mon Jul 13 19:53:54 2009 (4A5BC912)
90e14000 90e46000   netbt    netbt.sys    Mon Jul 13 19:12:18 2009 (4A5BBF52)
8bad2000 8bb10000   NETIO    NETIO.SYS    Mon Jul 13 19:12:35 2009 (4A5BBF63)
8b9e1000 8b9ef000   Npfs     Npfs.SYS     Mon Jul 13 19:11:31 2009 (4A5BBF23)
90f52000 90f5c000   nsiproxy nsiproxy.sys Mon Jul 13 19:12:08 2009 (4A5BBF48)
82e14000 83224000   nt       ntkrpamp.exe Fri Jun 18 23:55:24 2010 (4C1C3FAC)
8b83e000 8b96d000   Ntfs     Ntfs.sys     Mon Jul 13 19:12:05 2009 (4A5BBF45)
8bbe7000 8bbee000   Null     Null.SYS     Mon Jul 13 19:11:12 2009 (4A5BBF10)
925e7000 925f5a00   nusb3hub nusb3hub.sys Thu Jan 21 22:21:46 2010 (4B5919CA)
96dc9000 96deb180   nusb3xhc nusb3xhc.sys Thu Jan 21 22:21:48 2010 (4B5919CC)
96cb8000 96cb9040   nvBridge nvBridge.kmd Fri Jul 09 17:10:11 2010 (4C379033)
92c7b000 92c98000   nvhda32v nvhda32v.sys Mon Jun 21 18:07:07 2010 (4C1FE28B)
9623a000 96cb7dc0   nvlddmkm nvlddmkm.sys Fri Jul 09 17:15:14 2010 (4C379162)
90ea7000 90ec6000   pacer    pacer.sys    Mon Jul 13 19:53:58 2009 (4A5BC916)
8b64e000 8b65f000   partmgr  partmgr.sys  Mon Jul 13 19:11:35 2009 (4A5BBF27)
8b624000 8b64e000   pci      pci.sys      Mon Jul 13 19:11:16 2009 (4A5BBF14)
8b6ba000 8b6c1000   pciide   pciide.sys   Mon Jul 13 19:11:19 2009 (4A5BBF17)
8b6c1000 8b6cf000   PCIIDEX  PCIIDEX.SYS  Mon Jul 13 19:11:15 2009 (4A5BBF13)
8b9ab000 8b9b9000   pcw      pcw.sys      Mon Jul 13 19:11:10 2009 (4A5BBF0E)
96f61000 96ff8000   peauth   peauth.sys   Mon Jul 13 20:35:44 2009 (4A5BD2E0)
92d6d000 92d75800   point32  point32.sys  Tue Jun 29 04:54:24 2010 (4C29B4C0)
92c98000 92cc7000   portcls  portcls.sys  Mon Jul 13 19:51:00 2009 (4A5BC864)
8b42b000 8b43c000   PSHED    PSHED.dll    Mon Jul 13 21:09:36 2009 (4A5BDAD0)
92535000 9254d000   rasl2tp  rasl2tp.sys  Mon Jul 13 19:54:33 2009 (4A5BC939)
9257a000 92592000   raspppoe raspppoe.sys Mon Jul 13 19:54:53 2009 (4A5BC94D)
92592000 925a9000   raspptp  raspptp.sys  Mon Jul 13 19:54:47 2009 (4A5BC947)
925a9000 925c0000   rassstp  rassstp.sys  Mon Jul 13 19:54:57 2009 (4A5BC951)
90f11000 90f52000   rdbss    rdbss.sys    Mon Jul 13 19:14:26 2009 (4A5BBFD2)
925c0000 925ca000   rdpbus   rdpbus.sys   Mon Jul 13 20:02:40 2009 (4A5BCB20)
8bbf5000 8bbfd000   RDPCDD   RDPCDD.sys   Mon Jul 13 20:01:40 2009 (4A5BCAE4)
8b823000 8b82b000   rdpencdd rdpencdd.sys Mon Jul 13 20:01:39 2009 (4A5BCAE3)
8b82b000 8b833000   rdprefmp rdprefmp.sys Mon Jul 13 20:01:41 2009 (4A5BCAE5)
8bdca000 8bdf7000   rdyboost rdyboost.sys Mon Jul 13 19:22:02 2009 (4A5BC19A)
92dc4000 92dd7000   rspndr   rspndr.sys   Mon Jul 13 19:53:20 2009 (4A5BC8F0)
924c7000 9250d000   Rt86win7 Rt86win7.sys Fri Sep 03 01:58:33 2010 (4C808E89)
96e00000 96e0a000   secdrv   secdrv.SYS   Wed Sep 13 09:18:32 2006 (45080528)
92496000 924a0000   serenum  serenum.sys  Mon Jul 13 19:45:27 2009 (4A5BC717)
90ed4000 90eee000   serial   serial.sys   Mon Jul 13 19:45:33 2009 (4A5BC71D)
a040c000 a0498000   Sftfslh  Sftfslh.sys  Fri Apr 23 14:18:40 2010 (4BD1E480)
a0498000 a04ce000   Sftplaylh Sftplaylh.sys Fri Apr 23 14:19:38 2010 (4BD1E4BA)
a059c000 a05a5000   Sftredirlh Sftredirlh.sys Fri Apr 23 14:19:31 2010 (4BD1E4B3)
92d91000 92d9a000   Sftvollh Sftvollh.sys Fri Apr 23 14:18:31 2010 (4BD1E477)
8bdc2000 8bdca000   spldr    spldr.sys    Mon May 11 12:13:47 2009 (4A084EBB)
a054b000 a059c000   srv      srv.sys      Mon Jun 21 22:47:32 2010 (4C202444)
a04fc000 a054b000   srv2     srv2.sys     Mon Jun 21 22:47:19 2010 (4C202437)
a04ce000 a04ef000   srvnet   srvnet.sys   Mon Jun 21 22:47:09 2010 (4C20242D)
925d7000 925d8380   swenum   swenum.sys   Mon Jul 13 19:45:08 2009 (4A5BC704)
8bc00000 8bd49000   tcpip    tcpip.sys    Sun Jun 13 23:36:59 2010 (4C15A3DB)
a04ef000 a04fc000   tcpipreg tcpipreg.sys Mon Jul 13 19:54:14 2009 (4A5BC926)
8b9ef000 8b9fa000   TDI      TDI.SYS      Mon Jul 13 19:12:12 2009 (4A5BBF4C)
8b7dd000 8b7f4000   tdx      tdx.sys      Mon Jul 13 19:12:10 2009 (4A5BBF4A)
90f01000 90f11000   termdd   termdd.sys   Mon Jul 13 20:01:35 2009 (4A5BCADF)
980a0000 980a9000   TSDDD    TSDDD.dll    unavailable (00000000)
8b600000 8b621000   tunnel   tunnel.sys   Mon Jul 13 19:54:03 2009 (4A5BC91B)
925d9000 925e7000   umbus    umbus.sys    Mon Jul 13 19:51:38 2009 (4A5BC88A)
96dec000 96ded700   USBD     USBD.SYS     Mon Jul 13 19:51:05 2009 (4A5BC869)
92487000 92496000   usbehci  usbehci.sys  Mon Jul 13 19:51:14 2009 (4A5BC872)
96dee000 96df4000   usbfilter usbfilter.sys Wed Oct 07 03:43:57 2009 (4ACC46BD)
92c12000 92c56000   usbhub   usbhub.sys   Mon Jul 13 19:52:06 2009 (4A5BC8A6)
96df4000 96dfe000   usbohci  usbohci.sys  Mon Jul 13 19:51:14 2009 (4A5BC872)
9243c000 92487000   USBPORT  USBPORT.SYS  Mon Jul 13 19:51:13 2009 (4A5BC871)
8b411000 8b41c000   vdrvroot vdrvroot.sys Mon Jul 13 19:46:19 2009 (4A5BC74B)
8ba00000 8ba0c000   vga      vga.sys      Mon Jul 13 19:25:50 2009 (4A5BC27E)
8b7bc000 8b7dd000   VIDEOPRT VIDEOPRT.SYS Mon Jul 13 19:25:49 2009 (4A5BC27D)
8bd7a000 8bd82380   vmstorfl vmstorfl.sys Mon Jul 13 19:28:44 2009 (4A5BC32C)
8b65f000 8b66f000   volmgr   volmgr.sys   Mon Jul 13 19:11:25 2009 (4A5BBF1D)
8b66f000 8b6ba000   volmgrx  volmgrx.sys  Mon Jul 13 19:11:41 2009 (4A5BBF2D)
8bd83000 8bdc2000   volsnap  volsnap.sys  Mon Jul 13 19:11:34 2009 (4A5BBF26)
90eee000 90f01000   wanarp   wanarp.sys   Mon Jul 13 19:55:02 2009 (4A5BC956)
8ba0c000 8ba19000   watchdog watchdog.sys Mon Jul 13 19:24:10 2009 (4A5BC21A)
8b531000 8b5a2000   Wdf01000 Wdf01000.sys Mon Jul 13 19:11:36 2009 (4A5BBF28)
8b5a2000 8b5b0000   WDFLDR   WDFLDR.SYS   Mon Jul 13 19:11:25 2009 (4A5BBF1D)
90ea0000 90ea7000   wfplwf   wfplwf.sys   Mon Jul 13 19:53:51 2009 (4A5BC90F)
97e40000 9808a000   win32k   win32k.sys   unavailable (00000000)
9250d000 92516000   wmiacpi  wmiacpi.sys  Mon Jul 13 19:19:16 2009 (4A5BC0F4)
8b400000 8b409000   WMILIB   WMILIB.SYS   Mon Jul 13 19:11:22 2009 (4A5BBF1A)
92d9a000 92db4000   WudfPf   WudfPf.sys   Mon Jul 13 19:50:13 2009 (4A5BC835)

Unloaded modules:
96f40000 96f58000   parport.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  00018000
8bbb5000 8bbc2000   crashdmp.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  0000D000
8bbc2000 8bbcd000   dump_ataport
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  0000B000
8bbcd000 8bbd6000   dump_atapi.s
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  00009000
8bbd6000 8bbe7000   dump_dumpfve
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  00011000
Quick question: I don't see any wireless adapter drivers or 3rd party firewalls - it is true there are none of these, correct?
 
Last edited:
In addition to my determination, here is a better resource to look at why that particular software is causing your issues. The following sentence tells you everything you need to know:

"Application virtualization is at the heart of Microsoft Application Virtualization (App-V). It decouples applications from the operating system and enables them to run as network services." (Bold emphasis added by me.)


Microsoft Application Virtualization Technical Overview
 
Quick question: I don't see any wireless adapter drivers or 3rd party firewalls - it is true there are none of these, correct?


Definetely no wireless adapters. As far as firewalls are concerned, only if anything was left from uninstalling Panda Internet Security and Mcafee Total Protection. (both were uninstalled via windows add/remove first and then using the specific tool downloaded from their sites)

Now my quick question: I've been getting quite frequent internet connection disconnects for the past 4-5 months. I relate them to my ISP. Could they have anything to do with my network issues?
 
Back
Top