BSOD's on Wdf01000.sys Win 7 Ultimate 64bit

Anonymous
2009-12-23T02:57:17+00:00

G'day, I am getting random blue screens every couple of hours. no particular pattern to it. more occur when bubbles screensaver is running, but many occur typically just after I have clicked on something in ie8, windows explorer or Microsoft Word.

I have run memtest v4 overnight, no errors. sfc /scannow, no errors. Also updated every possible driver particularly including mouse and keyboard as this seems to be a related driver.

The problem started about 3-4 weeks ago, although I have run CCleaner so only have the 22 minidumps from the last week. BlueScreenView has Wdf01000.sys as the main culprit for all but 5 which it blames dxgmms1.sys for. In all but 2 it also adds ntoskrnl.exe to the dud list. Also dxgkrnl.sys is added as part of the failure causes once.

This is a QX9650 Core2 3GHz quad running on an ASUS Maximus Extreme (BIOS AMI 1302) with 2x2Gb 1600DDR3 Corsair memory sticks and an MSI ATI HD3870x2-1Gb graphics card. HID is a Logitech wave Y-UV90 and a Razer Copperhead 2000dpi laser mouse. Also a Microsoft LifeCam VX-3000. This is in a CoolerMaster Stacker 832 case with a 1kWSilverstone ST1000 supply. Viewsonic VP912b and VX2233WM monitors on digital connections.

Can you give me a clue what to do next? I am thinking ditching the board for a Gigabyte GA-EP45T-Extreme could be a good step to any answer (and have ordered it). The ASUS board has ridiculous issues trying to populate all 4 ddr3 slots, but I have discovered this over time and had been running rock solid for some months with just the two sticks in. I don't overclock anything as I am only looking for fast and reliable and am happy to accept whatever the manufacturers were thinking was good at the time, without needing to go pushing things. Thank you.

Windows for home | Previous Windows versions | Performance and system failures

Locked Question. This question was migrated from the Microsoft Support Community. You can vote on whether it's helpful, but you can't add comments or replies or follow the question.

0 comments No comments
Answer accepted by question author
Anonymous
2009-12-31T06:01:19+00:00

I have installed the new board, a Gigabyte GA-EP45T-Extreme. Put back the ser2at64.sys 3.3.7.131 driver. After about an hour got a bsod. Put back the old version driver then problem went away as per before. So I am thinking that says the new driver is faulty. The only thing I can see that "might" be different on my set-up is the ATEN UC232A device is plugged into a Swann USB 2.0 4 port powered hub. It has SW-U-4ph20 on it. The problem is solved as far as I am concerned. If anyone wants to do more diagnostic work on this please email me vsunter followed by an at calsun dot and a com and an au with a dot before as the reply notifications of responses from this board don't get through, which is a very rare event in my experience.

The Gigabyte board has a com port termination on it. When silly season ends I will get the plug to terminate this in the case and put the ATEN device out to pasture. I am, working my way through the device software updates above, limited to two a day, plus memory delays! Happy New Year!!!

Was this answer helpful?

0 comments No comments
Answer accepted by question author
Anonymous
2009-12-25T01:27:40+00:00

Merry Christmas to you too.

From the "Hardware Ids" the driver for the ATEN USB to Serial device was installed via Windows Update.

You can see the driver package here (you have to install the ActiveX control to see):

http://catalog.update.microsoft.com/v7/site/Search.aspx?q=USB%5CVID_0557%26PID_2008%20windows%207

It's Version 3.3.7.131 dated October 15, 2009.

The driver is listed as compatible with Windows 7 x64/x86.

The driver should work but is having issues in your setup.

In the Device Manager, for the ATEN device, under the "Driver tab" is there an option to "roll back" the driver?

Was this answer helpful?

0 comments No comments
Answer accepted by question author
Anonymous
2009-12-24T04:06:06+00:00

Many of the minidump files, analyzed with WinDbg of the Debugging Tools for Windows, referenced the ser2at64.sys as causing the BSODs such as

SYSTEM_THREAD_EXCEPTION_NOT_HANDLED_M and DRIVER_IRQL_NOT_LESS_OR_EQUAL.

So the ser2at64.sys is having an issue on your system.

If you check the "STACK_TEXT" field of one the crashes you can see the ser2at64.sys is accessing and probably corrupting memory ahead of the  Wdf01000.sys:

*******************************************************************************

*                                                                             *

*                        Bugcheck Analysis                                    *

*                                                                             *

*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck D1, {8, 2, 0, fffff88000e62946}

Unable to load image \SystemRoot\system32\DRIVERS\ser2at64.sys, Win32 error 0n2

*** WARNING: Unable to verify timestamp for ser2at64.sys

*** ERROR: Module load completed but symbols could not be loaded for ser2at64.sys

Probably caused by : ser2at64.sys ( ser2at64+99b7 )

Followup: MachineOwner


2: kd> !analyze -v

*******************************************************************************

*                                                                             *

*                        Bugcheck Analysis                                    *

*                                                                             *

*******************************************************************************

DRIVER_IRQL_NOT_LESS_OR_EQUAL (d1)

An attempt was made to access a pageable (or completely invalid) address at an

interrupt request level (IRQL) that is too high.  This is usually

caused by drivers using improper addresses.

If kernel debugger is available get stack backtrace.

Arguments:

Arg1: 0000000000000008, memory referenced

Arg2: 0000000000000002, IRQL

Arg3: 0000000000000000, value 0 = read operation, 1 = write operation

Arg4: fffff88000e62946, address which referenced memory

Debugging Details:


READ_ADDRESS: GetPointerFromAddress: unable to read from fffff800032c30e0

 0000000000000008

CURRENT_IRQL:  2

FAULTING_IP:

Wdf01000!imp_WdfObjectGetTypedContextWorker+1e

fffff880`00e62946 4c8b5110        mov     r10,qword ptr [rcx+10h]

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT

BUGCHECK_STR:  0xD1

PROCESS_NAME:  heavy weather.

TRAP_FRAME:  fffff88003192be0 -- (.trap 0xfffff88003192be0)

NOTE: The trap frame does not contain all registers.

Some register values may be zeroed or incorrect.

rax=0000000000000000 rbx=0000000000000000 rcx=fffffffffffffff8

rdx=0000000000000000 rsi=0000000000000000 rdi=0000000000000000

rip=fffff88000e62946 rsp=fffff88003192d70 rbp=fffff88003192e88

 r8=fffff88004c47190  r9=0000057ffac47101 r10=fffffa80053b8e88

r11=00000000c0000120 r12=0000000000000000 r13=0000000000000000

r14=0000000000000000 r15=0000000000000000

iopl=0         nv up ei pl zr na po nc

Wdf01000!imp_WdfObjectGetTypedContextWorker+0x1e:

fffff88000e62946 4c8b5110        mov     r10,qword ptr [rcx+10h] ds:0000000000000008=????????????????

Resetting default scope

LAST_CONTROL_TRANSFER:  from fffff8000308c469 to fffff8000308cf00

STACK_TEXT: 

fffff88003192a98 fffff8000308c469 : 000000000000000a 0000000000000008 0000000000000002 0000000000000000 : nt!KeBugCheckEx

fffff88003192aa0 fffff8000308b0e0 : 00000000000007ff fffffa80053b8fb0 fffffa800808ba40 fffffa8004c86b30 : nt!KiBugCheckDispatch+0x69

fffff88003192be0 fffff88000e62946 : 0000000000000002 0000057ffa2a0468 0000000000000000 0000000000000000 : nt!KiPageFault+0x260

fffff88003192d70 fffff88004c3b9b7 : 0000057ffac471d8 0000057ffac471d8 0000000000000001 0000057ffac47101 : Wdf01000!imp_WdfObjectGetTypedContextWorker+0x1e

fffff88003192dc0 0000057ffac471d8 : 0000057ffac471d8 0000000000000001 0000057ffac47101 fffffa8005d82c60 : ser2at64+0x99b7

fffff88003192dc8 0000057ffac471d8 : 0000000000000001 0000057ffac47101 fffffa8005d82c60 fffff88004c39f65 : 0x57f`fac471d8

fffff88003192dd0 0000000000000001 : 0000057ffac47101 fffffa8005d82c60 fffff88004c39f65 0000000075982450 : 0x57f`fac471d8

fffff88003192dd8 0000057ffac47101 : fffffa8005d82c60 fffff88004c39f65 0000000075982450 0000000000000022 : 0x1

fffff88003192de0 fffffa8005d82c60 : fffff88004c39f65 0000000075982450 0000000000000022 0000000000000001 : 0x57f`fac47101

fffff88003192de8 fffff88004c39f65 : 0000000075982450 0000000000000022 0000000000000001 0000000000000000 : 0xfffffa80`05d82c60

fffff88003192df0 0000000075982450 : 0000000000000022 0000000000000001 0000000000000000 fffffa8005d82c60 : ser2at64+0x7f65

fffff88003192df8 0000000000000022 : 0000000000000001 0000000000000000 fffffa8005d82c60 fffff88004c39dd5 : 0x75982450

fffff88003192e00 0000000000000001 : 0000000000000000 fffffa8005d82c60 fffff88004c39dd5 fffffa80053b8fb0 : 0x22

fffff88003192e08 0000000000000000 : fffffa8005d82c60 fffff88004c39dd5 fffffa80053b8fb0 0000000000000000 : 0x1

STACK_COMMAND:  kb

FOLLOWUP_IP:

ser2at64+99b7

fffff880`04c3b9b7 ??              ???

SYMBOL_STACK_INDEX:  4

SYMBOL_NAME:  ser2at64+99b7

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: ser2at64

IMAGE_NAME:  ser2at64.sys

DEBUG_FLR_IMAGE_TIMESTAMP:  4ad6e7c6

FAILURE_BUCKET_ID:  X64_0xD1_ser2at64+99b7

BUCKET_ID:  X64_0xD1_ser2at64+99b7

Followup: MachineOwner


I've bolded the  ser2at64.sys and the Wdf01000.sys.

The Wdf01000.sys is getting "blamed" for some of the crashes but it appears the ser2at64.sys is the root of the problem.

The  ser2at64.sys appears to be a USB to Serial port driver and has a timestamp of "Thu Oct 15 05:13:42 2009"

Can you obtain an updated version of this driver or roll back to a previous stable version? 

Also, it is the process "Heavy Weather" that is crashing in many of the BSODs.

Was this answer helpful?

0 comments No comments

46 additional answers

Sort by: Oldest
  1. Anonymous
    2010-01-03T13:10:59+00:00

    Here is the analysis of the minidump file you provided:

    *******************************************************************************

    *                                                                             *

    *                        Bugcheck Analysis                                    *

    *                                                                             *

    *******************************************************************************

    Use !analyze -v to get detailed debugging information.

    BugCheck 50, {fffffffff66c0000, 0, fffff88000ef2fea, 2}

    Unable to load image \SystemRoot\system32\DRIVERS\mafw.sys, Win32 error 0n2

    *** WARNING: Unable to verify timestamp for mafw.sys*** ERROR: Module load completed but symbols could not be loaded for mafw.sys

    Could not read faulting driver name

    Probably caused by : 1394ohci.sys ( 1394ohci!IoWorkers::Create+41f )

    Followup: MachineOwner


    0: kd> !analyze -v

    *******************************************************************************

    *                                                                             *

    *                        Bugcheck Analysis                                    *

    *                                                                             *

    *******************************************************************************

    PAGE_FAULT_IN_NONPAGED_AREA (50)

    Invalid system memory was referenced.  This cannot be protected by try-except,

    it must be protected by a Probe.  Typically the address is just plain bad or it

    is pointing at freed memory.

    Arguments:

    Arg1: fffffffff66c0000, memory referenced.

    Arg2: 0000000000000000, value 0 = read operation, 1 = write operation.

    Arg3: fffff88000ef2fea, If non-zero, the instruction address which referenced the bad memory

     address.

    Arg4: 0000000000000002, (reserved)

    Debugging Details:


    Could not read faulting driver name

    READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80002ef60e0

     fffffffff66c0000

    FAULTING_IP:

    Wdf01000!imp_WdfObjectDelete+66

    fffff880`00ef2fea 66394108        cmp     word ptr [rcx+8],ax

    MM_INTERNAL_CODE:  2

    DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT

    BUGCHECK_STR:  0x50

    PROCESS_NAME:  audiodg.exe

    CURRENT_IRQL:  0

    TRAP_FRAME:  fffff8800e1f1500 -- (.trap 0xfffff8800e1f1500)

    NOTE: The trap frame does not contain all registers.

    Some register values may be zeroed or incorrect.

    rax=0000000000001000 rbx=0000000000000000 rcx=fffffffff66bfff8

    rdx=0000000000000000 rsi=0000000000000000 rdi=0000000000000000

    rip=fffff88000ef2fea rsp=fffff8800e1f1690 rbp=00000000c000009a

     r8=0000000000000000  r9=00000000000001e0 r10=fffff80002e3a1e0

    r11=fffffa8007f15670 r12=0000000000000000 r13=0000000000000000

    r14=0000000000000000 r15=0000000000000000

    iopl=0         nv up ei pl zr na po nc

    Wdf01000!imp_WdfObjectDelete+0x66:

    fffff88000ef2fea 66394108        cmp     word ptr [rcx+8],ax ds:5680:fffffffff66c0000=????

    Resetting default scope

    LAST_CONTROL_TRANSFER:  from fffff80002d3dbc2 to fffff80002cbff00

    STACK_TEXT: 

    fffff8800e1f1398 fffff80002d3dbc2 : 0000000000000050 fffffffff66c0000 0000000000000000 fffff8800e1f1500 : nt!KeBugCheckEx

    fffff8800e1f13a0 fffff80002cbdfee : 0000000000000000 0000000009940000 0000000000000000 000000000000384b : nt! ?? ::FNODOBFM::`string'+0x40f90

    fffff8800e1f1500 fffff88000ef2fea : 0000057ff80ea978 00000000c000009a 0000000000000000 fffffa8005f32820 : nt!KiPageFault+0x16e

    fffff8800e1f1690 fffff8800428e67f : fffffa8007f15680 fffffa80061192c8 0000000000000001 fffffa8006119250 : Wdf01000!imp_WdfObjectDelete+0x66

    fffff8800e1f16e0 fffff88004298f40 : 0000057ff825b5c8 0000000000000006 0000000000000006 fffff88000000000 : 1394ohci!IoWorkers::Create+0x41f

    fffff8800e1f17a0 fffff880042912d4 : 0000000000000000 0000000000000002 0000000000000002 0000000000000000 : 1394ohci!IsochTx::Create+0x364

    fffff8800e1f18d0 fffff88004290cf5 : 0000057ff89f1468 0000057ffa083618 0000057ff849f868 0000000000000028 : 1394ohci!Isoch::HandleIsochAllocateResources+0x264

    fffff8800e1f1980 fffff88000edf047 : fffffa800760eb90 fffffa8005f32820 fffffa8005f32820 0000000000000000 : 1394ohci!Isoch::WdfEvtIoInternalDeviceControl+0x131

    fffff8800e1f19f0 fffff88000ede99f : fffffa8005f7c9e0 fffffa800760eb90 fffffa8005f7c9e0 fffffa800760ec00 : Wdf01000!FxIoQueue::DispatchRequestToDriver+0x56f

    fffff8800e1f1a70 fffff88000ede1ab : fffffa8005f7c9e0 0000000000000000 0000000000000000 0000000000000000 : Wdf01000!FxIoQueue::DispatchEvents+0x4df

    fffff8800e1f1ae0 fffff88000edcf1e : 0000000000000000 fffffa8005f748d0 fffffa8005f7c9e0 fffffa800760ecb8 : Wdf01000!FxIoQueue::QueueRequestFromForward+0x1f7

    fffff8800e1f1b40 fffff88000edd555 : 8100001203000700 8100001517010046 fffffa8005f748d0 0004bb4ed4000006 : Wdf01000!FxIoQueue::ForwardRequestWorker+0x17a

    fffff8800e1f1bb0 fffff88000ebacd6 : 0004aad031300000 fffffa8005f32820 0000000000000000 0000000000000000 : Wdf01000!FxIoQueue::ForwardRequest+0x185

    fffff8800e1f1c20 fffff8800428d440 : fffffa8005f7c9e0 0000057ff89f1468 fffffa800760eb90 fffffa8005f74c80 : Wdf01000!imp_WdfRequestForwardToIoQueue+0x12e

    fffff8800e1f1c70 fffff8800428d181 : 0000057ff89f1468 0000057ffa08b728 0000000000000028 fffffa8005f74c80 : 1394ohci!Dispatch::DispatchIrbRequest+0xa8

    fffff8800e1f1cc0 fffff88000edf047 : fffffa800760eb90 fffffa8005f32820 fffffa8005f32820 0000000000000000 : 1394ohci!Dispatch::WdfEvtIoInternalDeviceControl+0x131

    fffff8800e1f1d30 fffff88000ede99f : fffffa800760eb90 fffffa800760eb90 fffffa8005f748d0 fffffa8005f748d0 : Wdf01000!FxIoQueue::DispatchRequestToDriver+0x56f

    fffff8800e1f1db0 fffff88000eddf98 : 0000000000000000 0000000000000000 0000000000000000 fffffa800760ece2 : Wdf01000!FxIoQueue::DispatchEvents+0x4df

    fffff8800e1f1e20 fffff88000ee3558 : fffffa8007740b00 fffffa800760eb90 fffffa80077409e0 fffffa800760eb90 : Wdf01000!FxIoQueue::QueueRequest+0x2bc

    fffff8800e1f1e90 fffff88000ecd245 : fffffa800760eb90 0000000000000000 0000000000000000 0000057ffab7bd48 : Wdf01000!FxPkgIo::Dispatch+0x37c

    fffff8800e1f1f10 fffff88000eb96d0 : 0000000000000000 0000000000000000 0000057ffab7bd48 fffff8800e1f1fc0 : Wdf01000!FxDevice::Dispatch+0xa9

    fffff8800e1f1f40 fffff8800428ad0c : fffffa8005f32970 fffffa80054842b0 fffffa8006ae9a20 fffffa8006ae7fc0 : Wdf01000!imp_WdfRequestSend+0x37c

    fffff8800e1f1f90 fffff8800428af2b : fffffa8007f30580 0000057ffab7bd48 0000057ffab7bd48 0000057ff95163a8 : 1394ohci!ChildDevice::DispatchIrbRequest+0x60

    fffff8800e1f1fe0 fffff88004289f0d : 0000057ffab7bd48 0000057ff95163a8 0000000000000028 fffffa8006ae7fc0 : 1394ohci!ChildDevice::HandleIrbRequest+0x1c3

    fffff8800e1f2020 fffff88000edf047 : fffffa80054842b0 fffffa8005f32820 fffffa8005f32820 fffff8800533c110 : 1394ohci!ChildDevice::WdfEvtIoInternalDeviceControl+0x141

    fffff8800e1f2090 fffff88000ede99f : 0000000000000000 fffffa80054842b0 fffffa8006ae9c50 fffffa8006ae9c50 : Wdf01000!FxIoQueue::DispatchRequestToDriver+0x56f

    fffff8800e1f2110 fffff88000eddf98 : 0000000000000000 0000000000000000 0000000000000000 fffffa8005484402 : Wdf01000!FxIoQueue::DispatchEvents+0x4df

    fffff8800e1f2180 fffff88000ee3558 : fffffa8007740b00 fffffa80054842b0 fffffa80077409e0 fffffa80054842b0 : Wdf01000!FxIoQueue::QueueRequest+0x2bc

    fffff8800e1f21f0 fffff88000ecd245 : fffffa80054842b0 fffffa80077409e0 fffffa8007f30580 fffffa8006d82000 : Wdf01000!FxPkgIo::Dispatch+0x37c

    fffff8800e1f2270 fffff8800697d50d : 0000000000000000 fffff80002e4d888 0000000000000000 fffff80002ccf0a1 : Wdf01000!FxDevice::Dispatch+0xa9

    fffff8800e1f22a0 0000000000000000 : fffff80002e4d888 0000000000000000 fffff80002ccf0a1 fffff88000000000 : **mafw+**0xc50d

    STACK_COMMAND:  kb

    FOLLOWUP_IP:

    1394ohci!IoWorkers::Create+41f

    fffff880`0428e67f 4883c318        add     rbx,18h

    SYMBOL_STACK_INDEX:  4

    SYMBOL_NAME:  1394ohci!IoWorkers::Create+41f

    FOLLOWUP_NAME:  MachineOwner

    MODULE_NAME: 1394ohci

    IMAGE_NAME:  1394ohci.sys

    DEBUG_FLR_IMAGE_TIMESTAMP:  4a5bcc30

    FAILURE_BUCKET_ID:  X64_0x50_1394ohci!IoWorkers::Create+41f

    BUCKET_ID:  X64_0x50_1394ohci!IoWorkers::Create+41f

    Followup: MachineOwner


    I've bolded where the mafw.sys is referenced.

    In the STACK_TEXT field I've bolded the mafw driver which is the first driver listed and accesses memory ahead of the Wdf01000.sys and the 1394ohci.sys thus the mafw.sys is probably causing the issue.

    Was this answer helpful?

    0 comments No comments
  2. Anonymous
    2010-01-22T21:36:23+00:00

    Here is the analysis of the minidump file you provided:

    *******************************************************************************

    *                                                                             *

    *                        Bugcheck Analysis                                    *

    *                                                                             *

    *******************************************************************************

    Use !analyze -v to get detailed debugging information.

    BugCheck 50, {fffffffff66c0000, 0, fffff88000ef2fea, 2}

    Unable to load image \SystemRoot\system32\DRIVERS\mafw.sys, Win32 error 0n2

    *** WARNING: Unable to verify timestamp for mafw.sys*** ERROR: Module load completed but symbols could not be loaded for mafw.sys

    Could not read faulting driver name

    Probably caused by : 1394ohci.sys ( 1394ohci!IoWorkers::Create+41f )

    Followup: MachineOwner


    0: kd> !analyze -v

    *******************************************************************************

    *                                                                             *

    *                        Bugcheck Analysis                                    *

    *                                                                             *

    *******************************************************************************

    PAGE_FAULT_IN_NONPAGED_AREA (50)

    Invalid system memory was referenced.  This cannot be protected by try-except,

    it must be protected by a Probe.  Typically the address is just plain bad or it

    is pointing at freed memory.

    Arguments:

    Arg1: fffffffff66c0000, memory referenced.

    Arg2: 0000000000000000, value 0 = read operation, 1 = write operation.

    Arg3: fffff88000ef2fea, If non-zero, the instruction address which referenced the bad memory

     address.

    Arg4: 0000000000000002, (reserved)

    Debugging Details:


    Could not read faulting driver name

    READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80002ef60e0

     fffffffff66c0000

    FAULTING_IP:

    Wdf01000!imp_WdfObjectDelete+66

    fffff880`00ef2fea 66394108        cmp     word ptr [rcx+8],ax

    MM_INTERNAL_CODE:  2

    DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT

    BUGCHECK_STR:  0x50

    PROCESS_NAME:  audiodg.exe

    CURRENT_IRQL:  0

    TRAP_FRAME:  fffff8800e1f1500 -- (.trap 0xfffff8800e1f1500)

    NOTE: The trap frame does not contain all registers.

    Some register values may be zeroed or incorrect.

    rax=0000000000001000 rbx=0000000000000000 rcx=fffffffff66bfff8

    rdx=0000000000000000 rsi=0000000000000000 rdi=0000000000000000

    rip=fffff88000ef2fea rsp=fffff8800e1f1690 rbp=00000000c000009a

     r8=0000000000000000  r9=00000000000001e0 r10=fffff80002e3a1e0

    r11=fffffa8007f15670 r12=0000000000000000 r13=0000000000000000

    r14=0000000000000000 r15=0000000000000000

    iopl=0         nv up ei pl zr na po nc

    Wdf01000!imp_WdfObjectDelete+0x66:

    fffff88000ef2fea 66394108        cmp     word ptr [rcx+8],ax ds:5680:fffffffff66c0000=????

    Resetting default scope

    LAST_CONTROL_TRANSFER:  from fffff80002d3dbc2 to fffff80002cbff00

    STACK_TEXT: 

    fffff8800e1f1398 fffff80002d3dbc2 : 0000000000000050 fffffffff66c0000 0000000000000000 fffff8800e1f1500 : nt!KeBugCheckEx

    fffff8800e1f13a0 fffff80002cbdfee : 0000000000000000 0000000009940000 0000000000000000 000000000000384b : nt! ?? ::FNODOBFM::`string'+0x40f90

    fffff8800e1f1500 fffff88000ef2fea : 0000057ff80ea978 00000000c000009a 0000000000000000 fffffa8005f32820 : nt!KiPageFault+0x16e

    fffff8800e1f1690 fffff8800428e67f : fffffa8007f15680 fffffa80061192c8 0000000000000001 fffffa8006119250 : Wdf01000!imp_WdfObjectDelete+0x66

    fffff8800e1f16e0 fffff88004298f40 : 0000057ff825b5c8 0000000000000006 0000000000000006 fffff88000000000 : 1394ohci!IoWorkers::Create+0x41f

    fffff8800e1f17a0 fffff880042912d4 : 0000000000000000 0000000000000002 0000000000000002 0000000000000000 : 1394ohci!IsochTx::Create+0x364

    fffff8800e1f18d0 fffff88004290cf5 : 0000057ff89f1468 0000057ffa083618 0000057ff849f868 0000000000000028 : 1394ohci!Isoch::HandleIsochAllocateResources+0x264

    fffff8800e1f1980 fffff88000edf047 : fffffa800760eb90 fffffa8005f32820 fffffa8005f32820 0000000000000000 : 1394ohci!Isoch::WdfEvtIoInternalDeviceControl+0x131

    fffff8800e1f19f0 fffff88000ede99f : fffffa8005f7c9e0 fffffa800760eb90 fffffa8005f7c9e0 fffffa800760ec00 : Wdf01000!FxIoQueue::DispatchRequestToDriver+0x56f

    fffff8800e1f1a70 fffff88000ede1ab : fffffa8005f7c9e0 0000000000000000 0000000000000000 0000000000000000 : Wdf01000!FxIoQueue::DispatchEvents+0x4df

    fffff8800e1f1ae0 fffff88000edcf1e : 0000000000000000 fffffa8005f748d0 fffffa8005f7c9e0 fffffa800760ecb8 : Wdf01000!FxIoQueue::QueueRequestFromForward+0x1f7

    fffff8800e1f1b40 fffff88000edd555 : 8100001203000700 8100001517010046 fffffa8005f748d0 0004bb4ed4000006 : Wdf01000!FxIoQueue::ForwardRequestWorker+0x17a

    fffff8800e1f1bb0 fffff88000ebacd6 : 0004aad031300000 fffffa8005f32820 0000000000000000 0000000000000000 : Wdf01000!FxIoQueue::ForwardRequest+0x185

    fffff8800e1f1c20 fffff8800428d440 : fffffa8005f7c9e0 0000057ff89f1468 fffffa800760eb90 fffffa8005f74c80 : Wdf01000!imp_WdfRequestForwardToIoQueue+0x12e

    fffff8800e1f1c70 fffff8800428d181 : 0000057ff89f1468 0000057ffa08b728 0000000000000028 fffffa8005f74c80 : 1394ohci!Dispatch::DispatchIrbRequest+0xa8

    fffff8800e1f1cc0 fffff88000edf047 : fffffa800760eb90 fffffa8005f32820 fffffa8005f32820 0000000000000000 : 1394ohci!Dispatch::WdfEvtIoInternalDeviceControl+0x131

    fffff8800e1f1d30 fffff88000ede99f : fffffa800760eb90 fffffa800760eb90 fffffa8005f748d0 fffffa8005f748d0 : Wdf01000!FxIoQueue::DispatchRequestToDriver+0x56f

    fffff8800e1f1db0 fffff88000eddf98 : 0000000000000000 0000000000000000 0000000000000000 fffffa800760ece2 : Wdf01000!FxIoQueue::DispatchEvents+0x4df

    fffff8800e1f1e20 fffff88000ee3558 : fffffa8007740b00 fffffa800760eb90 fffffa80077409e0 fffffa800760eb90 : Wdf01000!FxIoQueue::QueueRequest+0x2bc

    fffff8800e1f1e90 fffff88000ecd245 : fffffa800760eb90 0000000000000000 0000000000000000 0000057ffab7bd48 : Wdf01000!FxPkgIo::Dispatch+0x37c

    fffff8800e1f1f10 fffff88000eb96d0 : 0000000000000000 0000000000000000 0000057ffab7bd48 fffff8800e1f1fc0 : Wdf01000!FxDevice::Dispatch+0xa9

    fffff8800e1f1f40 fffff8800428ad0c : fffffa8005f32970 fffffa80054842b0 fffffa8006ae9a20 fffffa8006ae7fc0 : Wdf01000!imp_WdfRequestSend+0x37c

    fffff8800e1f1f90 fffff8800428af2b : fffffa8007f30580 0000057ffab7bd48 0000057ffab7bd48 0000057ff95163a8 : 1394ohci!ChildDevice::DispatchIrbRequest+0x60

    fffff8800e1f1fe0 fffff88004289f0d : 0000057ffab7bd48 0000057ff95163a8 0000000000000028 fffffa8006ae7fc0 : 1394ohci!ChildDevice::HandleIrbRequest+0x1c3

    fffff8800e1f2020 fffff88000edf047 : fffffa80054842b0 fffffa8005f32820 fffffa8005f32820 fffff8800533c110 : 1394ohci!ChildDevice::WdfEvtIoInternalDeviceControl+0x141

    fffff8800e1f2090 fffff88000ede99f : 0000000000000000 fffffa80054842b0 fffffa8006ae9c50 fffffa8006ae9c50 : Wdf01000!FxIoQueue::DispatchRequestToDriver+0x56f

    fffff8800e1f2110 fffff88000eddf98 : 0000000000000000 0000000000000000 0000000000000000 fffffa8005484402 : Wdf01000!FxIoQueue::DispatchEvents+0x4df

    fffff8800e1f2180 fffff88000ee3558 : fffffa8007740b00 fffffa80054842b0 fffffa80077409e0 fffffa80054842b0 : Wdf01000!FxIoQueue::QueueRequest+0x2bc

    fffff8800e1f21f0 fffff88000ecd245 : fffffa80054842b0 fffffa80077409e0 fffffa8007f30580 fffffa8006d82000 : Wdf01000!FxPkgIo::Dispatch+0x37c

    fffff8800e1f2270 fffff8800697d50d : 0000000000000000 fffff80002e4d888 0000000000000000 fffff80002ccf0a1 : Wdf01000!FxDevice::Dispatch+0xa9

    fffff8800e1f22a0 0000000000000000 : fffff80002e4d888 0000000000000000 fffff80002ccf0a1 fffff88000000000 : mafw+ 0xc50d

    STACK_COMMAND:  kb

    FOLLOWUP_IP:

    1394ohci!IoWorkers::Create+41f

    fffff880`0428e67f 4883c318        add     rbx,18h

    SYMBOL_STACK_INDEX:  4

    SYMBOL_NAME:  1394ohci!IoWorkers::Create+41f

    FOLLOWUP_NAME:  MachineOwner

    MODULE_NAME: 1394ohci

    IMAGE_NAME:  1394ohci.sys

    DEBUG_FLR_IMAGE_TIMESTAMP:  4a5bcc30

    FAILURE_BUCKET_ID:  X64_0x50_1394ohci!IoWorkers::Create+41f

    BUCKET_ID:  X64_0x50_1394ohci!IoWorkers::Create+41f

    Followup: MachineOwner


    I've bolded where the mafw.sys is referenced.

    In the STACK_TEXT field I've bolded the mafw driver which is the first driver listed and accesses memory ahead of the Wdf01000.sys and the 1394ohci.sys thus the mafw.sys is probably causing the issue.

    The above dump is really, really cool.  BUT, WOULD YOU PLEASE FIX THE PROBLEM.  BSOD ON INSTRUCTION

    IRQL_NOT_EQUAL_OR_LESS.  Can't you people debug you own software. How about fixing this. It seems a large

    number of people are experiencing this problem.  Man, I gotta BUY A MAC!!!!!!!!!!!!!!!!!!

    Was this answer helpful?

    0 comments No comments