I had my suspicions with Panda Antvirus. I tried to find a way to update it, but I couldn't do that without uninstalling. I have been using it successfully for about 4 years now. I have removed Panda from my system and included another minidump and the MEMORY.dmp file in the previously linked OneDrive location.
Atapi.sys BSOD
I have been fighting this for a long time. My PC keeps BSOD on me at random times both while in use and not in use. The BSOD error states Driver IQRL Not Less or Equal and the offending file is atapi.sys. I have updated every driver I can access. I have run memtest86 and the RAM checks out ok. I have run multiple scans on all my HDs and they check out ok. This is driving me insane and I cannot figure out how to fix it. It ran stable all day yesterday with no problems and today I will not even boot properly. I am writing this in safe mode. Any assistance would be more than appreciated.
System reliability give this bugcheck: 0x000000d1 (0x00000000dff41048, 0x0000000000000005, 0x0000000000000000, 0xfffff804b48d2344).
The minidump is below:
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
DRIVER_IRQL_NOT_LESS_OR_EQUAL (d1)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high. This is usually
caused by drivers using improper addresses.
If kernel debugger is available get stack backtrace.
Arguments:
Arg1: 00000000dff44048, memory referenced
Arg2: 0000000000000005, IRQL
Arg3: 0000000000000000, value 0 = read operation, 1 = write operation
Arg4: fffff80b2c1b2344, address which referenced memory
Debugging Details:
KEY_VALUES_STRING: 1
STACKHASH_ANALYSIS: 1
TIMELINE_ANALYSIS: 1
DUMP_CLASS: 1
DUMP_QUALIFIER: 400
BUILD_VERSION_STRING: 17134.1.amd64fre.rs4_release.180410-1804
DUMP_TYPE: 2
BUGCHECK_P1: dff44048
BUGCHECK_P2: 5
BUGCHECK_P3: 0
BUGCHECK_P4: fffff80b2c1b2344
READ_ADDRESS: fffff8037d2ef388: Unable to get MiVisibleState
Unable to get NonPagedPoolStart
Unable to get NonPagedPoolEnd
Unable to get PagedPoolStart
Unable to get PagedPoolEnd
00000000dff44048
CURRENT_IRQL: 5
FAULTING_IP:
atapi!AtapiSendAtaCommand+304
fffff80b`2c1b2344 498b7348 mov rsi,qword ptr [r11+48h]
CPU_COUNT: 4
CPU_MHZ: 906
CPU_VENDOR: AuthenticAMD
CPU_FAMILY: 10
CPU_MODEL: 2
CPU_STEPPING: 2
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
BUGCHECK_STR: AV
PROCESS_NAME: svchost.exe
ANALYSIS_SESSION_HOST: HATTON-DESKTOP
ANALYSIS_SESSION_TIME: 11-23-2018 10:48:47.0291
ANALYSIS_VERSION: 10.0.17763.132 amd64fre
TRAP_FRAME: ffffa00bd52adca0 -- (.trap 0xffffa00bd52adca0)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=00000000dff44000 rbx=0000000000000000 rcx=0000000000008008
rdx=0000000000008008 rsi=0000000000000000 rdi=0000000000000000
rip=fffff80b2c1b2344 rsp=ffffa00bd52ade30 rbp=ffffa90c07a841a0
r8=0000000000000001 r9=0000000000000000 r10=ffff8001f6b39000
r11=ffffa00bd52ade70 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei pl zr na po nc
atapi!AtapiSendAtaCommand+0x304:
fffff80b2c1b2344 498b7348 mov rsi,qword ptr [r11+48h] ds:ffffa00bd52adeb8=ffffa90c093cd780
Resetting default scope
LAST_CONTROL_TRANSFER: from fffff8037d05c269 to fffff8037d04b690
STACK_TEXT:
ffffa00bd52adb58 fffff8037d05c269 : 000000000000000a 00000000dff44048 0000000000000005 0000000000000000 : nt!KeBugCheckEx
ffffa00bd52adb60 fffff8037d058ee5 : 0000000000000000 0000000000000000 ffffa90c0aaabaf0 fffff8037cf7df83 : nt!KiBugCheckDispatch+0x69
ffffa00bd52adca0 fffff80b2c1b2344 : ffffa90c093cdb68 ffffa90c093cdbb0 ffffa90c093cdbb0 ffffa90c07a856a8 : nt!KiPageFault+0x425
ffffa00bd52ade30 fffff80b2c1b1e05 : ffffa00bd52ae050 ffffa90c093cdb68 ffffa90c07a841a0 ffffa90c093cd780 : atapi!AtapiSendAtaCommand+0x304
ffffa00bd52adea0 fffff80b2c1b15d8 : ffffa90c093cdb68 fffff8037ced9097 0000000000000001 fffff8037ce3d7e6 : atapi!AtapiHandleAtaCommand+0x45
ffffa00bd52aded0 fffff80b2c1c650b : 000000000000003c 0000000200000000 000000000000f000 ffffa90c07ae0878 : atapi!AtapiHwStartIo+0x68
ffffa00bd52adf00 fffff80b2c1cd09d : ffffa90c08fc58f0 ffffa90c083d9b20 000000000000003c ffffa90c093cd901 : ataport!CallMiniPortHwStartIo+0x127
ffffa00bd52adfa0 fffff8037d04c792 : ffffa90c093cd780 fffff80b2c1c201a ffffa90c07a98518 ffffa90c08e36930 : ataport!IdeStartCrbSynchronized+0x6d
ffffa00bd52adfd0 fffff80b2c1ccfef : ffffa90c07a89e80 fffff80b2c1cd030 ffffa90c093cd780 0000000000060000 : nt!KeSynchronizeExecution+0x42
ffffa00bd52ae010 fffff80b2c17115f : ffffa90c093cd988 0000000000000000 0000000000010000 ffffa00bd52ae190 : ataport!IdeStartIoCallBack+0x26f
ffffa00bd52ae0d0 fffff8037ce3c62f : ffffa90c093cd988 000000000000f000 0000000000001000 0000000000000000 : PCIIDEX!BmReceiveScatterGatherList+0x1f
ffffa00bd52ae100 fffff8037ce3c1eb : ffffa90c08e3d8c0 ffffa90c08e36930 0000000000000000 ffffa90c00000000 : hal!HalpAllocateAdapterCallbackV2+0x16f
ffffa00bd52ae190 fffff8037ce3bb83 : 0000000000010000 0000000000000010 ffffa90c093cd820 ffffa90c08e3d8c0 : hal!HalAllocateAdapterChannelV2+0x137
ffffa00bd52ae1e0 fffff8037ce3376e : 0000000000000000 ffffa90c08e3d8c0 0000000000000000 0000000000010000 : hal!HalAllocateAdapterChannel+0x33
ffffa00bd52ae220 fffff80b2c1710e1 : ffffa90c093cd780 ffffa90c08e3d8c0 ffffa90c000001c0 0000000000000000 : hal!HalBuildScatterGatherListV2+0x1a77e
ffffa00bd52ae2b0 fffff80b2c1cccf3 : ffffa90c093cd780 ffffa90c07a99750 0000000000000000 ffffd2ee94a1a7b5 : PCIIDEX!BmSetup+0x71
ffffa00bd52ae320 fffff80b2c1cb98c : ffffa90c07a841a0 ffffa90c093cd780 ffffa90c093cd780 ffffa90c093cd780 : ataport!IdeDispatchChannelRequest+0x113
ffffa00bd52ae350 fffff80b2c1cb8c7 : 0000000000000001 ffffa90c0c8efd78 0000000000226d14 fffff8037cfb5723 : ataport!IdeStartChannelRequest+0x48
ffffa00bd52ae380 fffff80b2c1ccb6f : ffffa90c07a99725 ffffa90c0c240000 ffffa90c0c2f0102 ffffa90c00010000 : ataport!IdeStartDeviceRequest+0x353
ffffa00bd52ae470 fffff80b2c1c8526 : ffffa90c0c2f94d0 ffffa90c093cd780 ffffa90c0c2f94d0 ffffa90c08e81760 : ataport!IdePortPdoDispatch+0xc3
ffffa00bd52ae4a0 fffff8037cedcef9 : 0000000000000000 0000000000000000 ffffa90c093a1408 fffff8037ceaaf76 : ataport!IdePortDispatch+0x16
ffffa00bd52ae4d0 fffff80b2bdd12b7 : ffffa90c0c2f94d0 fffff80b2c483a37 ffffa90c093a1408 ffffbe0500000000 : nt!IofCallDriver+0x59
ffffa00bd52ae510 fffff80b2bdd10b9 : ffffa90c0848a010 0000000000000007 ffffa90c0c2f9630 fffff8037cf26624 : ACPI!ACPIIrpDispatchDeviceControl+0x97
ffffa00bd52ae550 fffff8037cedcef9 : 0000000000000007 ffffa90c0c8f55e0 0000000000010000 ffffa90c08e81760 : ACPI!ACPIDispatchIrp+0xa9
ffffa00bd52ae5d0 fffff80b2ced3818 : ffffa90c0a6efa90 0000000000000001 ffffa90c0c8f55e0 0000000000010000 : nt!IofCallDriver+0x59
ffffa00bd52ae610 fffff80b2ced2f6e : 0000000000000000 0000000000000000 0000000000010000 ffffa90c0a6ef5d0 : CLASSPNP!SubmitTransferPacket+0x1f8
ffffa00bd52ae650 fffff80b2ced2c3f : ffffa90c00000000 ffffa90c0c8f55e0 0000000000000000 0000000000020000 : CLASSPNP!ServiceTransferRequest+0x27e
ffffa00bd52ae700 fffff80b2ced2ad4 : 000000000c8cf9ca 000000000c8d07fd ffffa90c0a6ef5d0 0000000000000000 : CLASSPNP!ClassReadWrite+0x15f
ffffa00bd52ae750 fffff8037cedcef9 : 0000000000000000 ffffa90c0c84e3f8 0000000000000001 0000000000000000 : CLASSPNP!ClassGlobalDispatch+0x24
ffffa00bd52ae780 fffff80b2d035088 : ffff6e71b74493b4 fffff78000000008 0000000002d9ced8 fffff8037cf243ee : nt!IofCallDriver+0x59
ffffa00bd52ae7c0 ffff6e71b74493b4 : fffff78000000008 0000000002d9ced8 fffff8037cf243ee 00000000000010da : bdisk+0x5088
ffffa00bd52ae7c8 fffff78000000008 : 0000000002d9ced8 fffff8037cf243ee 00000000000010da fffff8037cedcef9 : 0xffff6e71`b74493b4
ffffa00bd52ae7d0 0000000002d9ced8 : fffff8037cf243ee 00000000000010da fffff8037cedcef9 0000000000226d14 : 0xfffff780`00000008
ffffa00bd52ae7d8 fffff8037cf243ee : 00000000000010da fffff8037cedcef9 0000000000226d14 ffffa00bd4fbe258 : 0x2d9ced8
ffffa00bd52ae7e0 fffff80b2c011eaf : 0000000000000000 ffffa90c08f749d0 ffffa90c0a6ef5d0 0000000000000001 : nt!KeQueryUnbiasedInterruptTimePrecise+0x6e
ffffa00bd52ae830 fffff8037cedcef9 : 0000000100000001 0000000002da134d 0000000000000000 ffffa90c08fa0ad0 : partmgr!PmGlobalDispatch+0xff
ffffa00bd52ae8b0 fffff80b2c012598 : 0000000000000000 ffffa90c0c8d81f0 ffffbe05f2a5a960 0000000000000000 : nt!IofCallDriver+0x59
ffffa00bd52ae8f0 fffff80b2c011e16 : 0000000000000000 ffffa90c08fb7cb0 ffffa90c08fb7b60 ffffa90c0a6ef5d0 : partmgr!PartitionIo+0x178
ffffa00bd52ae980 fffff8037cedcef9 : ffffa90c08fe09f0 fffff80b2c013dfb 0000000000000000 ffffa90c08fb2dc0 : partmgr!PmGlobalDispatch+0x66
ffffa00bd52aea00 fffff80b2c0e1107 : ffffa90c08fb2dc0 0000000000000001 0000000002da134b 0000000000000000 : nt!IofCallDriver+0x59
ffffa00bd52aea40 fffff8037cedcef9 : ffffa00bd52aeb59 fffff80b2ccd1048 ffffa90c0a6ef5d0 fffff80b2ce842b7 : volmgr!VmReadWrite+0xf7
ffffa00bd52aea80 fffff80b2ccc56e0 : 0000000000000000 ffffa00bd52aeb59 ffffa90c0a6ef5d0 0000000000000000 : nt!IofCallDriver+0x59
ffffa00bd52aeac0 fffff80b2ccc4e47 : ffffa00bd52aed10 ffffa00bd52aed30 ffffa90c00010000 0000000000000000 : fvevol!FveFilterRundownReadWrite+0x880
ffffa00bd52aebc0 fffff8037cedcef9 : ffffa00bd52aec00 ffffa00bd52aec70 000100000bc23050 0000000000000000 : fvevol!FveFilterRundownRead+0x27
ffffa00bd52aebf0 fffff80b2ce840a9 : 0000000000000000 ffffa90c08faad90 ffffa00bd45efcc8 0000000000000000 : nt!IofCallDriver+0x59
ffffa00bd52aec30 fffff80b2ce852f2 : 0000000000000002 ffffa00bd52aed70 ffffa90c0a6ef5d0 fffff80300000001 : iorate!IoRateIssueAndRecordIo+0x79
ffffa00bd52aec70 fffff80b2ce82468 : 0000000000000000 0000000000120012 ffffbe05f2a56db4 0000000000000000 : iorate!IoRateProcessIrp+0x186
ffffa00bd52aedc0 fffff8037cedcef9 : 0000000000000000 0000000000000000 ffffa90c093a1180 ffffa00bd4fbe2a0 : iorate!IoRateDispatchReadWrite+0x1458
ffffa00bd52aee00 fffff80b2cd7102d : ffffa90c07a68bc0 fffff80b2cd8b9b2 0000000000000000 0000007300000003 : nt!IofCallDriver+0x59
ffffa00bd52aee40 fffff8037cedcef9 : ffffa90c090a1190 fffff80b2cdc6eec ffffa00bd4fbe200 ffffa00bd4fbe200 : volume!VolumePassThrough+0x1d
ffffa00bd52aee70 fffff80b2cd831ec : ffffa00bd52af000 ffffa00bd52a9000 0000025000000000 00000034464d85d4 : nt!IofCallDriver+0x59
ffffa00bd52aeeb0 fffff80b2cd817e9 : ffffa00bd45efcc8 0000000000000000 ffffbe0500120012 ffffbe05f2a56db4 : volsnap!VolSnapReadFilter+0x19ec
ffffa00bd52aeee0 fffff8037cedcef9 : 0000000000000000 ffffa00bd52af000 ffffa00bd4fbe1d8 0000000000000000 : volsnap!VolSnapRead+0x19
ffffa00bd52aef10 fffff80b2c3af546 : ffffa90c0bc23018 ffffa90c0c84e010 ffffa00bd4fbe200 ffffa90c0c8c0001 : nt!IofCallDriver+0x59
ffffa00bd52aef50 fffff8037d04eb87 : ffffa00bd4fbe1d8 0000000000000000 0000000000000000 0000000000000000 : Ntfs!NtfsStorageDriverCallout+0x16
ffffa00bd52aef80 fffff8037d04eb4d : 0000000000006000 ffffa90c0b905700 0000000000000004 fffff8037cf0275a : nt!KxSwitchKernelStackCallout+0x27
ffffa00bd45efae0 fffff8037cf0275a : 0000000000000012 0000000000000012 0000000000000000 fffff80b2c3994d2 : nt!KiSwitchKernelStackContinue
ffffa00bd45efb00 fffff8037cf0259e : fffff80b2c3af530 0000000000006000 0000000000000000 ffffa90c090a1040 : nt!KiExpandKernelStackAndCalloutOnStackSegment+0x12a
ffffa00bd45efb80 0000000000000000 : 0000000000000000 0000000000000000 0000000000000000 0000000000000000 : nt!KiExpandKernelStackAndCalloutSwitchStack+0x9e
THREAD_SHA1_HASH_MOD_FUNC: dc1a475e39a14088f12a79aa3f8b8c4abf881297
THREAD_SHA1_HASH_MOD_FUNC_OFFSET: afcfad58aeceb7511d968ffa5cfbdcee072d208a
THREAD_SHA1_HASH_MOD: e7e03b8cf381b23eaa6035417ceb69d065fe96da
FOLLOWUP_IP:
atapi!AtapiSendAtaCommand+304
fffff80b`2c1b2344 498b7348 mov rsi,qword ptr [r11+48h]
FAULT_INSTR_CODE: 48738b49
SYMBOL_STACK_INDEX: 3
SYMBOL_NAME: atapi!AtapiSendAtaCommand+304
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: atapi
IMAGE_NAME: atapi.sys
DEBUG_FLR_IMAGE_TIMESTAMP: 0
IMAGE_VERSION: 10.0.17093.1000
STACK_COMMAND: .thread ; .cxr ; kb
BUCKET_ID_FUNC_OFFSET: 304
FAILURE_BUCKET_ID: AV_atapi!AtapiSendAtaCommand
BUCKET_ID: AV_atapi!AtapiSendAtaCommand
PRIMARY_PROBLEM_CLASS: AV_atapi!AtapiSendAtaCommand
TARGET_TIME: 2018-11-23T16:16:51.000Z
OSBUILD: 17134
OSSERVICEPACK: 407
SERVICEPACK_NUMBER: 0
OS_REVISION: 0
SUITE_MASK: 272
PRODUCT_TYPE: 1
OSPLATFORM_TYPE: x64
OSNAME: Windows 10
OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS
OS_LOCALE:
USER_LCID: 0
OSBUILD_TIMESTAMP: 2018-11-01 01:56:19
BUILDDATESTAMP_STR: 180410-1804
BUILDLAB_STR: rs4_release
BUILDOSVER_STR: 10.0.17134.1.amd64fre.rs4_release.180410-1804
ANALYSIS_SESSION_ELAPSED_TIME: 21d0
ANALYSIS_SOURCE: KM
FAILURE_ID_HASH_STRING: km:av_atapi!atapisendatacommand
FAILURE_ID_HASH: {4104d1be-1784-5b87-60e8-584dea53eeb0}
Followup: MachineOwner
Windows for home | Windows 10 | Performance and system failures
Locked Question. This question was migrated from the Microsoft Support Community. You can vote on whether it's helpful, but you can't add comments or replies or follow the question.
51 answers
Sort by: Oldest
-
Anonymous
2018-11-23T21:21:08+00:00 -
Anonymous
2018-11-24T01:11:45+00:00 Whatever the issue is it appears to be related to an ATAPI device.
Can you provide the following information which may help determine any issue(s):
Windows Key + R > type msinfo32 in the "Open" box > OK > File > Save > then save as an .nfo file
Then make the resulting .nfo file available via OneDrive
Also, can you do the following:
Windows Key + R > type eventvwr in the "Open" box > OK > expand "Custom Views" and then right-click "Administrative Events" > select "Save all events in Custom View As" and save as an .evtx file
Then make the resulting .evtx file available via OneDrive.
-
Anonymous
2018-11-24T02:03:11+00:00 Requested files uploaded to OneDrive.
-
Anonymous
2018-11-24T05:02:57+00:00 To evaluate the BSOD please post logs for troubleshooting.
Using administrative command prompt copy and paste this whole command.
Make sure the default language is English so that the logs can be scanned and read.
Choose the applicable link for the operating system:
https://www.tenforums.com/tutorials/3813-language-add-remove-change-windows-10-a.html
https://www.eightforums.com/threads/language-add-or-remove-in-windows-8.5849/
https://www.sevenforums.com/tutorials/87317-display-language-change.html
The command will automatically collect the computer files and place them on the desktop.
Then use 7zip to organize the files and one drive or drop box to place share links into the thread for troubleshooting.
This command will automatically collect these files: msinfo32, mini dumps, drivers, hosts, install, uninstall, services, startup, event viewer files, etc.
Open administrative command prompt and copy and paste the whole command:
copy %SystemRoot%\minidump\*.dmp "%USERPROFILE%\Desktop"&dxdiag /t %Temp%\dxdiag.txt© %Temp%\dxdiag.txt "%USERPROFILE%\Desktop\SFdebugFiles"&type %SystemRoot%\System32\drivers\etc\hosts >> "%USERPROFILE%\Desktop\hosts.txt"&systeminfo > "%USERPROFILE%\Desktop\systeminfo.txt"&driverquery /v > "%USERPROFILE%\Desktop\drivers.txt" &msinfo32 /nfo "%USERPROFILE%\Desktop\msinfo32.nfo"&wevtutil qe System /f:text > "%USERPROFILE%\Desktop\eventlog.txt"® export HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall "%USERPROFILE%\Desktop\uninstall.txt"® export "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components" "%USERPROFILE%\Desktop\installed.txt"&net start > "%USERPROFILE%\Desktop\services.txt"&REM wmic startup list full /format:htable >"%USERPROFILE%\Desktop\startup.html"&wmic STARTUP GET Caption, Command, User >"%USERPROFILE%\Desktop\startup.txt"
There are two files for you to find manually:
a) C:\Windows\MEMORY.DMP
Use file explorer > this PC > local C: drive > right upper corner search enter the above to find results.
b) dxdiag:
In the left lower corner search type: dxdiag > When the DirectX Diagnostic Tool opens click on the next page button so that each tab is opened > click on save all information > save to desktop > post one drive or drop box share link into the thread
- Open administrative command prompt and type or copy and paste:
- sfc /scannow
- dism /online /cleanup-image /restorehealth
- chkdsk /scan
- When these have completed > right click on the top bar or title bar of the administrative command prompt box > left click on edit then select all > right click on the top bar again > left click on edit then copy > paste into the thread
- Make sure that there is no over clocking while troubleshooting.
- In the left lower corner search type: system or system control > open system control panel > on the left pane click advanced system settings
a) > on the advanced tab under startup and recovery > click settings > post an image of the startup and recovery into the thread.
b) > on the advanced tab under performance > click on settings > under performance options > click on the advanced tab > under virtual memory > click on change > post an image of the virtual memory tab into the thread
- If the computer has Ccleaner (do not install the software if it is not already installed) > click windows tab > scroll down to system and advanced > post an image into the thread
- Open device manager > click view > click show hidden devices > manually expand all rows > look for any row displaying a yellow triangle with black exclamation mark or unknown device > post images into the thread
- For any BSOD:
a) run the administrative command prompt command > post a new zip into the thread
b) open file explorer > this PC > C: > in the right upper corner search for: C:\windows,memory.dmp > if file size < 1.5 GB then zip > post a share link into the thread using one drive, drop box, or google drive
-
Anonymous
2018-11-24T09:53:05+00:00 Can you check for filter drivers on the optical drives:
Can you check the following registry key?:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Class{4D36E965-E325-11CE-BFC1-08002BE10318}
At that registry key, in the right window, is there, under "Name", either an UpperFilters or LowerFilters value?
If so, for each of the UpperFilters and/or LowerFilters value, what is listed under "Data"?