Being Logged Out with Windows 10 v1803

Page 1 of 7 123 ... LastLast

  1. Posts : 305
    Windows 10 Pro for Workstations
       #1

    Being Logged Out with Windows 10 v1803


    This isn't really a BSOD I'm getting, but twice over the past 2 days, I've left my computer unattended while going to see a patient only to return to have had Windows log me out. When I sign in, it's as if the computer has rebooted.

    The following processes were running when this occurs (both times):

    • iTunes 12.7.4.83 (music was actively playing)
    • Philips Device Control Center 4.0.400.22 (for my SpeechMike Microphone)
    • Nuance Dragon Medical Practice Edition 4 (based on Dragon Professional 15.10.350.049)
    • Citrix Receiver 4.11.0.17061 (to connect to hospital electronic medical record system)
    • Outlook 2016 64-bit v1804
    • Google Chrome 66.0.3359.139
    • Malwarebytes Premium 3.4.5
    • Cisco AnyConnect 3.1.06079 (no active connection)
    • OpenVPN 11.10.0.0 (no active connection)
    • Dropbox 48.4.58
    • Carbonite 6.3.3 built 7602
    • OneDrive 2018 18.065.0329.0002


    Those are pretty much the active programs other than drivers.

    I have a hunch it's iTunes causing the problem, but curious if something else is causing it (hardware problems, Dragon, etc.).

    Thanks for any help you guys can provide.
      My Computer


  2. Posts : 15
    Windows 10 - 64 - 1803
       #2

    So, yeah, this is odd. I have no idea why this is happening but what does the log tell you? Check the log and specifically the stuff it writes around the times this happens. Could be ITunes, could also be a collaborative effort. Any new drivers installed recently? You could check for updates for each app you have installed, new drivers often helps as well.
      My Computer


  3. Posts : 15
    Windows 10 - 64 - 1803
       #3

    For some reason I can't open your attachment... Will check when I am back by the pc.
      My Computer


  4. Posts : 305
    Windows 10 Pro for Workstations
    Thread Starter
       #4

    I had opened the log and was in the process of cutting and pasting the log file here, but then I got a BSOD (at 1810). The original crash this morning occurred around 0445. (I noticed it around 5am.)

    This one was witnessed. Had a BSOD with Windows collecting info. There was a QR code that was displayed.

    I've attached an updated log file. Again, today's error occurred around 1810.
      My Computer


  5. Posts : 305
    Windows 10 Pro for Workstations
    Thread Starter
       #5

    Error 05/06/2018 06:10:31 PM BugCheck 1001 None
    Information 05/06/2018 06:10:28 PM TPM-WMI 1025 None
    Information 05/06/2018 06:10:22 PM Kernel-General 16 None
    Information 05/06/2018 06:10:21 PM Service Control Manager 7045 None
    Information 05/06/2018 06:10:18 PM Service Control Manager 7045 None
    Error 05/06/2018 06:10:16 PM DistributedCOM 10016 None
    Error 05/06/2018 06:10:16 PM DistributedCOM 10016 None
    Error 05/06/2018 06:10:16 PM DistributedCOM 10016 None
    Error 05/06/2018 06:10:16 PM DistributedCOM 10016 None
    Information 05/06/2018 06:10:15 PM Winlogon 7001 (1101)
    Information 05/06/2018 06:10:14 PM TPM 18 None
    Information 05/06/2018 06:10:14 PM Service Control Manager 7026 None
    Information 05/06/2018 06:10:11 PM WLAN-AutoConfig 4000 None
    Information 05/06/2018 06:10:10 PM DHCPv6-Client 51046 Service State Event
    Information 05/06/2018 06:10:10 PM Dhcp-Client 50103 Service State Event
    Information 05/06/2018 06:10:10 PM Dhcp-Client 50036 Service State Event
    Information 05/06/2018 06:10:09 PM FilterManager 6 None
    Information 05/06/2018 06:10:09 PM FilterManager 6 None
    Information 05/06/2018 06:10:09 PM FilterManager 6 None
    Information 05/06/2018 06:10:09 PM FilterManager 1 None
    Information 05/06/2018 06:10:09 PM FilterManager 6 None
    Information 05/06/2018 06:10:09 PM FilterManager 6 None
    Information 05/06/2018 06:10:09 PM FilterManager 6 None
    Information 05/06/2018 06:10:09 PM UserModePowerService 12 (10)
    Information 05/06/2018 06:10:09 PM UserModePowerService 12 (10)
    Information 05/06/2018 06:10:09 PM UserModePowerService 12 (10)
    Information 05/06/2018 06:10:09 PM WudfUsbccidDrv 105 Driver
    Information 05/06/2018 06:10:09 PM WudfUsbccidDrv 104 Driver
    Information 05/06/2018 06:10:09 PM WudfUsbccidDrv 105 Driver
    Information 05/06/2018 06:10:09 PM WudfUsbccidDrv 104 Driver
    Information 05/06/2018 06:10:09 PM Directory-Services-SAM 16962 None
    Information 05/06/2018 06:10:09 PM Wininit 13 None
    Information 05/06/2018 06:10:09 PM IsolatedUserMode 1 None
    Information 05/06/2018 06:10:09 PM Wininit 14 None
    Information 05/06/2018 06:10:07 PM Subsys-SMSS 17 None
    Warning 05/06/2018 06:10:06 PM Kernel-PnP 219 (212)
    Information 05/06/2018 06:10:06 PM DriverFrameworks-UserMode 10118 Startup of the UMDF reflector
    Warning 05/06/2018 06:10:06 PM Kernel-PnP 219 (212)
    Information 05/06/2018 06:10:06 PM DriverFrameworks-UserMode 10118 Startup of the UMDF reflector
    Information 05/06/2018 06:10:06 PM BTHUSB 18 None
    Warning 05/06/2018 06:10:06 PM Kernel-PnP 219 (212)
    Information 05/06/2018 06:10:06 PM DriverFrameworks-UserMode 10118 Startup of the UMDF reflector
    Warning 05/06/2018 06:10:06 PM Kernel-PnP 219 (212)
    Information 05/06/2018 06:10:06 PM DriverFrameworks-UserMode 10118 Startup of the UMDF reflector
    Warning 05/06/2018 06:10:05 PM e1dexpress 27 None
    Information 05/06/2018 06:10:02 PM MEIx64 2 None
    Information 05/06/2018 06:10:01 PM Kernel-Power 521 (220)
    Information 05/06/2018 06:10:01 PM Kernel-Power 521 (220)
    Information 05/06/2018 06:10:01 PM Kernel-Processor-Power (Microsoft-Windows-Kernel-Processor-Power) 55 (47)
    Information 05/06/2018 06:10:01 PM Kernel-Processor-Power (Microsoft-Windows-Kernel-Processor-Power) 55 (47)
    Information 05/06/2018 06:10:01 PM Kernel-Processor-Power (Microsoft-Windows-Kernel-Processor-Power) 55 (47)
    Information 05/06/2018 06:10:01 PM Kernel-Processor-Power (Microsoft-Windows-Kernel-Processor-Power) 55 (47)
    Information 05/06/2018 06:10:01 PM Kernel-Processor-Power (Microsoft-Windows-Kernel-Processor-Power) 55 (47)
    Information 05/06/2018 06:10:01 PM Kernel-Processor-Power (Microsoft-Windows-Kernel-Processor-Power) 55 (47)
    Information 05/06/2018 06:10:01 PM Kernel-Processor-Power (Microsoft-Windows-Kernel-Processor-Power) 55 (47)
    Information 05/06/2018 06:10:01 PM Kernel-Processor-Power (Microsoft-Windows-Kernel-Processor-Power) 55 (47)
    Warning 05/06/2018 06:10:01 PM Kernel-PnP 219 (212)
    Information 05/06/2018 06:10:01 PM DriverFrameworks-UserMode 10118 Startup of the UMDF reflector
    Warning 05/06/2018 06:10:00 PM Kernel-PnP 219 (212)
    Information 05/06/2018 06:10:00 PM DriverFrameworks-UserMode 10118 Startup of the UMDF reflector
    Information 05/06/2018 06:10:00 PM Kernel-Power 172 (203)
    Critical 05/06/2018 06:10:00 PM Kernel-Power 41 (63)
    Information 05/06/2018 06:10:00 PM FilterManager 6 None
    Information 05/06/2018 06:10:00 PM FilterManager 6 None
    Information 05/06/2018 06:09:59 PM Ntfs (Microsoft-Windows-Ntfs) 98 None
    Information 05/06/2018 06:09:59 PM Ntfs (Microsoft-Windows-Ntfs) 98 None
    Information 05/06/2018 06:09:59 PM FilterManager 6 None
    Information 05/06/2018 06:09:59 PM FilterManager 6 None
    Information 05/06/2018 06:09:59 PM FilterManager 6 None
    Information 05/06/2018 06:09:58 PM IsolatedUserMode 3 None
    Information 05/06/2018 06:09:58 PM Hyper-V-Hypervisor 129 None
    Information 05/06/2018 06:09:58 PM Hyper-V-Hypervisor 2 None
    Information 05/06/2018 06:09:58 PM Hyper-V-Hypervisor 1 None
    Information 05/06/2018 06:09:58 PM Kernel-Boot 30 (21)
    Information 05/06/2018 06:09:58 PM Kernel-Boot 25 (32)
    Information 05/06/2018 06:09:58 PM Kernel-Boot 27 (33)
    Information 05/06/2018 06:09:58 PM Kernel-Boot 20 (31)
    Information 05/06/2018 06:09:58 PM Kernel-Boot 32 (58)
    Information 05/06/2018 06:09:58 PM Kernel-Boot 18 (57)
    Information 05/06/2018 06:09:58 PM Kernel-Boot 153 (62)
    Information 05/06/2018 06:09:58 PM Kernel-General 12 (1)
    Information 05/06/2018 06:10:10 PM EventLog 6013 None
    Information 05/06/2018 06:10:10 PM EventLog 6005 None
    Information 05/06/2018 06:10:10 PM EventLog 6009 None
    Error 05/06/2018 06:10:10 PM EventLog 6008 None
      My Computer


  6. Posts : 305
    Windows 10 Pro for Workstations
    Thread Starter
       #6

    No crashes last night with iTunes not running (was painful not to have music in the background).
      My Computer


  7. Posts : 41,459
    windows 10 professional version 1607 build 14393.969 64 bit
       #7

    1) Run the BETA log collector and post a zip into this thread:
    https://www.tenforums.com/attachment...-v2-beta10.zip
    (extract > open)
    Use the text and images in this link in case there are any problems using the beta log collector: (post #5)
    DM Log tool problem Solved - Windows 10 Forums

    2) Open file explorer > this PC > C: > in the right upper corner search for C:\windows\memory.dmp > zip > post a one drive or drop box share link into the thread
      My Computer


  8. Posts : 305
    Windows 10 Pro for Workstations
    Thread Starter
       #8

    @zbook Thank you for helping with this.

    The memory.dmp file is at Microsoft OneDrive - Access files anywhere. Create docs with free Office Online.

    EDIT: It may take a bit to upload it. Didn't realize it was >1 GB. Too bad symmetrical DOCSIS 3.1 isn't here yet!

    I've attached the beta log dump file to this response.

    Thanks again!
      My Computer


  9. Posts : 41,459
    windows 10 professional version 1607 build 14393.969 64 bit
       #9

    There was one mini and memory dump with bugcheck A.
    Prior BSOD dumps had bugchecks:
    A
    6B

    1) Open Ccleaner > click windows tab > scroll down to system and advanced > post an image into the thread

    2) In the left lower corner search type: system or system control > open system control panel > on the left pane click advanced system settings
    a) > on the advanced tab under startup and recovery > click settings > post an image of the startup and recovery into the thread.
    b) > on the advanced tab under performance > click on settings > under performance options > click on the advanced tab > under virtual memory > click on change > post an image of the virtual memory tab into the thread

    3) Open administrative command prompt and type or copy and paste:
    4) sfc /scannow
    5) dism /online /cleanup-image /restorehealth
    6) chkdsk /scan
    7) When these have completed > right click on the top bar or title bar of the administrative command prompt box > left click on edit then select all > right click on the top bar again > left click on edit then copy > paste into the thread

    3) Run HD Tune: (free edition)
    http://www.hdtune.com/
    Post images of the test results for these tabs:
    a) Health (SMART)
    b) Benchmark
    c) Full error scan

    4) Open device manager > click view > show hidden devices > expand all rows > look for any row that displays an unknown device or an icon that is a yellow triangle with a black exclamation mark > post an image into the thread

    5) For each BSOD run the beta log collector and post new zips into the thread

    6) For each BSOD use file explorer to find c:\windows\memory.dmp > zip > post share links into the thread

    7) Uninstall Malwarebytes:
    Malwarebytes Cleanup Utility download and instr... | Official Malwarebytes Support
    Uninstall Malwarebytes software from my Windows... | Official Malwarebytes Support
    Malwarebytes Cleanup Utility FAQs | Official Malwarebytes Support

    8) Uninstall Drop box > reinstall drop box





    Code:
    Cisco AnyConnect Secure Mobility Client Virtual Miniport Adapter for Windows x64    ROOT\NET\0001    This device is disabled.
    Code:
    Event[4713]:  Log Name: System
      Source: Disk
      Date: 2018-05-01T01:51:35.214
      Event ID: 11
      Task: N/A
      Level: Error
      Opcode: N/A
      Keyword: Classic
      User: N/A
      User Name: N/A
      Computer: DESKTOP-VFSHM7E
      Description: 
    The driver detected a controller error on \Device\Harddisk2\DR2.
    Code:
    Event[4705]:  Log Name: System
      Source: Disk
      Date: 2018-05-01T01:44:45.198
      Event ID: 51
      Task: N/A
      Level: Warning
      Opcode: N/A
      Keyword: Classic
      User: N/A
      User Name: N/A
      Computer: DESKTOP-VFSHM7E
      Description: 
    An error was detected on device \Device\Harddisk1\DR4 during a paging operation.
    Code:
    Event[14027]:
    Log Name: System
    Source: Service Control Manager
    Date: 2018-05-07T19:59:34.254
    Event ID: 7000
    Task: N/A
    Level: Error
    Opcode: N/A
    Keyword: Classic
    User: N/A
    User Name: N/A
    Computer: NIXWORKSTATION
    Description: 
    The Malwarebytes Anti-Exploit service failed to start due to the following error: 
    Malwarebytes Anti-Exploit is not a valid Win32 application.
    Code:
    Event[9603]:  Log Name: Application
      Source: DbxSvc
      Date: 2018-05-07T20:12:01.541
      Event ID: 300
      Task: N/A
      Level: Error
      Opcode: N/A
      Keyword: Classic
      User: N/A
      User Name: N/A
      Computer: NIXWORKSTATION
      Description: 
    ReadEventLog failed: (1500) The event log file is corrupted.
    Code:
    Name    Intel Chipset SATA RAID ControllerManufacturer    Intel Corporation
    Status    OK
    PNP Device ID    PCI\VEN_8086&DEV_2822&SUBSYS_07A91028&REV_31\3&11583659&0&B8
    Memory Address    0xED1C0000-0xED1C7FFF
    Memory Address    0xED1D9000-0xED1D90FF
    I/O Port    0x0000F090-0x0000F097
    I/O Port    0x0000F080-0x0000F083
    I/O Port    0x0000F060-0x0000F07F
    Memory Address    0xED100000-0xED17FFFF
    IRQ Channel    IRQ 4294967294
    IRQ Channel    IRQ 4294967293
    IRQ Channel    IRQ 4294967292
    IRQ Channel    IRQ 4294967291
    IRQ Channel    IRQ 4294967290
    IRQ Channel    IRQ 4294967289
    IRQ Channel    IRQ 4294967288
    IRQ Channel    IRQ 4294967287
    IRQ Channel    IRQ 4294967286
    Driver    c:\windows\system32\drivers\iastoravc.sys (15.44.0.1010, 864.40 KB (885,144 bytes), 04/11/2018 07:33 PM)
    Code:
    iastoravc    Intel Chipset SATA RAID Controller    c:\windows\system32\drivers\iastoravc.sys    Kernel Driver    Yes    Boot    Running    OK    Normal    No    Yes
    Code:
    05/06/2018 11:01 PM    Windows Error Reporting    Fault bucket , type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 0
    
    Problem signature:
    P1: 6b
    P2: ffffffffc000000d
    P3: 3
    P4: 0
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 256_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\Windows\Minidump\050618-10625-01.dmp
    \\?\C:\Windows\TEMP\WER-27890-0.sysdata.xml
    \\?\C:\Windows\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER8174.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER8185.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER8193.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER81C3.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_6b_7c6bd5891255ea14e1d17f858e14278d7513_00000000_cab_038881c2
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: d9c569f6-d3de-494e-903c-5b0800b94f17
    Report Status: 4
    Hashed bucket: 
    Cab Guid: 005/06/2018 10:10 PM    Windows Error Reporting    Fault bucket , type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 0
    
    Problem signature:
    P1: a
    P2: ffff97cbc0000000
    P3: 2
    P4: 0
    P5: fffff8002ec4d700
    P6: 10_0_17134
    P7: 0_0
    P8: 256_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\Windows\Minidump\050618-14531-01.dmp
    \\?\C:\Windows\TEMP\WER-37015-0.sysdata.xml
    \\?\C:\Windows\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERA8E2.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERA902.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERA911.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERA931.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_a_f1ad3d49c85326f4f96d43d49fd296f72bd0c4_00000000_cab_0398a930
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: e568f28a-d04d-4736-86bd-d04fc1b71268
    Report Status: 4
    Hashed bucket: 
    Cab Guid: 0
    05/06/2018 08:45 AM    Windows Error Reporting    Fault bucket , type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 0
    
    Problem signature:
    P1: a
    P2: ffffdc6e00000000
    P3: 2
    P4: 0
    P5: fffff8026c4d3700
    P6: 10_0_17134
    P7: 0_0
    P8: 256_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\Windows\Minidump\050618-10296-01.dmp
    \\?\C:\Windows\TEMP\WER-18062-0.sysdata.xml
    \\?\C:\Windows\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER5747.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER5758.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER5767.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER5777.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_a_3129bf2e09f47c76a2c4e8fd3d4f9a2ea48dc_00000000_cab_03685786
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 1cae06b1-8e33-4136-a4d7-afdcabbf28bd
    Report Status: 4
    Hashed bucket: 
    Cab Guid: 0
    05/06/2018 08:46 AM    Windows Error Reporting    Fault bucket , type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 0
    
    Problem signature:
    P1: a
    P2: ffffdc6e00000000
    P3: 2
    P4: 0
    P5: fffff8026c4d3700
    P6: 10_0_17134
    P7: 0_0
    P8: 256_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\Windows\Minidump\050618-10296-01.dmp
    \\?\C:\Windows\TEMP\WER-18062-0.sysdata.xml
    \\?\C:\Windows\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER5747.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER5758.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER5767.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER5777.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_a_3129bf2e09f47c76a2c4e8fd3d4f9a2ea48dc_00000000_cab_03685786
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 1cae06b1-8e33-4136-a4d7-afdcabbf28bd
    Report Status: 6
    Hashed bucket: 
    Cab Guid: 0
    05/07/2018 11:58 PM    Windows Error Reporting    Fault bucket , type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 0
    
    Problem signature:
    P1: a
    P2: ffffe20000000000
    P3: 2
    P4: 0
    P5: fffff801a66ec700
    P6: 10_0_17134
    P7: 0_0
    P8: 256_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\Windows\Minidump\050718-14687-01.dmp
    \\?\C:\Windows\TEMP\WER-25375-0.sysdata.xml
    \\?\C:\Windows\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER77B0.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER77C1.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER77CF.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER77E0.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_a_13aa19c95ce75923546f1921ccb338c8ce44740_00000000_cab_039877ef
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: fe8365c4-766a-45ee-8872-4165316c6c11
    Report Status: 4
    Hashed bucket: 
    Cab Guid: 0
    05/05/2018 04:30 AM    Windows Error Reporting    Fault bucket , type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 0
    
    Problem signature:
    P1: a
    P2: ffffe3f1c0000000
    P3: 2
    P4: 0
    P5: fffff801eeeeb700
    P6: 10_0_17134
    P7: 0_0
    P8: 256_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\Windows\Minidump\050518-10281-01.dmp
    \\?\C:\Windows\TEMP\WER-18250-0.sysdata.xml
    \\?\C:\Windows\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER57E4.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER57F4.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER5803.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER5813.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_a_41c184b233bf293721716d236394dba1a7b39d_00000000_cab_03605812
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: b85ecbca-0706-4a71-85ee-d328532e98e6
    Report Status: 4
    Hashed bucket: 
    Cab Guid: 0
    05/04/2018 10:30 PM    Windows Error Reporting    Fault bucket , type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 0
    
    Problem signature:
    P1: a
    P2: fffffa0000000000
    P3: 2
    P4: 0
    P5: fffff8029c043700
    P6: 10_0_17134
    P7: 0_0
    P8: 256_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\Windows\Minidump\050418-11500-01.dmp
    \\?\C:\Windows\TEMP\WER-20968-0.sysdata.xml
    \\?\C:\Windows\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER6EF6.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER6F06.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER6F15.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER6F74.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_a_8fe884db6a2d72246380e2d81161d9dae799f24_00000000_cab_03886f73
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 75f75d69-93a5-4599-bcda-472b1e7b45c0
    Report Status: 4
    Hashed bucket: 
    Cab Guid: 0
    Code:
    05/06/2018 11:01 PM    Windows Error Reporting    Fault bucket 0x6B_nt!IoInitSystemPreDrivers, type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 5e53d8d6-1d42-4a86-a1aa-d34417e3f4f3
    
    Problem signature:
    P1: 6b
    P2: ffffffffc000000d
    P3: 3
    P4: 0
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 256_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\Windows\Minidump\050618-10625-01.dmp
    \\?\C:\Windows\TEMP\WER-27890-0.sysdata.xml
    \\?\C:\Windows\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER8174.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER8185.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER8193.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER81C3.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_6b_7c6bd5891255ea14e1d17f858e14278d7513_00000000_cab_35ac947f
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: d9c569f6-d3de-494e-903c-5b0800b94f17
    Report Status: 268435456
    Hashed bucket: 
    Cab Guid: 0
    Code:
    05/05/2018 04:30 AM    Windows Error Reporting    Fault bucket AV_nt!MmFreeContiguousMemory, type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 2c079a0a-72cb-4235-a95e-ef14f2244654
    
    Problem signature:
    P1: a
    P2: ffffe3f1c0000000
    P3: 2
    P4: 0
    P5: fffff801eeeeb700
    P6: 10_0_17134
    P7: 0_0
    P8: 256_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\Windows\Minidump\050518-10281-01.dmp
    \\?\C:\Windows\TEMP\WER-18250-0.sysdata.xml
    \\?\C:\Windows\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER57E4.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER57F4.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER5803.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER5813.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_a_41c184b233bf293721716d236394dba1a7b39d_00000000_cab_23b88e55
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: b85ecbca-0706-4a71-85ee-d328532e98e6
    Report Status: 268435456
    Hashed bucket: 
    Cab Guid: 005/07/2018 11:58 PM    Windows Error Reporting    Fault bucket AV_nt!MmFreeContiguousMemory, type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 6821be1d-6b36-4d2b-bbed-407e31182caa
    
    Problem signature:
    P1: a
    P2: ffffe20000000000
    P3: 2
    P4: 0
    P5: fffff801a66ec700
    P6: 10_0_17134
    P7: 0_0
    P8: 256_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\Windows\Minidump\050718-14687-01.dmp
    \\?\C:\Windows\TEMP\WER-25375-0.sysdata.xml
    \\?\C:\Windows\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER77B0.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER77C1.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER77CF.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER77E0.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_a_13aa19c95ce75923546f1921ccb338c8ce44740_00000000_cab_27689971
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: fe8365c4-766a-45ee-8872-4165316c6c11
    Report Status: 268435456
    Hashed bucket: 
    Cab Guid: 0
    05/06/2018 10:10 PM    Windows Error Reporting    Fault bucket AV_nt!MmFreeContiguousMemory, type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 80122cba-bd85-47d8-add1-8869b4c91b73
    
    Problem signature:
    P1: a
    P2: ffff97cbc0000000
    P3: 2
    P4: 0
    P5: fffff8002ec4d700
    P6: 10_0_17134
    P7: 0_0
    P8: 256_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\Windows\Minidump\050618-14531-01.dmp
    \\?\C:\Windows\TEMP\WER-37015-0.sysdata.xml
    \\?\C:\Windows\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERA8E2.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERA902.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERA911.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERA931.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_a_f1ad3d49c85326f4f96d43d49fd296f72bd0c4_00000000_cab_3b34db3d
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: e568f28a-d04d-4736-86bd-d04fc1b71268
    Report Status: 268435456
    Hashed bucket: 
    Cab Guid: 0
    05/04/2018 10:30 PM    Windows Error Reporting    Fault bucket AV_nt!MmFreeContiguousMemory, type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: dbbcf43d-4a4e-4433-89cb-9e94ead74512
    
    Problem signature:
    P1: a
    P2: fffffa0000000000
    P3: 2
    P4: 0
    P5: fffff8029c043700
    P6: 10_0_17134
    P7: 0_0
    P8: 256_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\Windows\Minidump\050418-11500-01.dmp
    \\?\C:\Windows\TEMP\WER-20968-0.sysdata.xml
    \\?\C:\Windows\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER6EF6.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER6F06.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER6F15.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER6F74.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_a_8fe884db6a2d72246380e2d81161d9dae799f24_00000000_cab_25a099de
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 75f75d69-93a5-4599-bcda-472b1e7b45c0
    Report Status: 268435456
    Hashed bucket: 
    Cab Guid: 0
    05/06/2018 08:54 AM    Windows Error Reporting    Fault bucket AV_nt!MmFreeContiguousMemory, type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: f0ec9885-5fac-42d8-8281-d141b79491bd
    
    Problem signature:
    P1: a
    P2: ffffdc6e00000000
    P3: 2
    P4: 0
    P5: fffff8026c4d3700
    P6: 10_0_17134
    P7: 0_0
    P8: 256_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\Windows\Minidump\050618-10296-01.dmp
    \\?\C:\Windows\TEMP\WER-18062-0.sysdata.xml
    \\?\C:\Windows\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER5747.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER5758.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER5767.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER5777.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_a_3129bf2e09f47c76a2c4e8fd3d4f9a2ea48dc_00000000_cab_1aac3afe
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 1cae06b1-8e33-4136-a4d7-afdcabbf28bd
    Report Status: 268435462
    Hashed bucket: 
    Cab Guid: 0
    Last edited by zbook; 07 May 2018 at 23:42.
      My Computer


  10. Posts : 305
    Windows 10 Pro for Workstations
    Thread Starter
       #10

    @zbook I think I've done everything. Thanks again for helping with this. Words cannot express my gratitude for helping me figure out what is going on.

    See attached images.

    sfc, dism, and chkdsk are listed below.

    Dropbox was uninstalled and reinstalled. Malwarebytes was clean uninstalled using the Malwarebytes utility. (This has been giving me some trouble since enabling core memory protection).

    Regarding the device manager, I didn't have any devices that were unknown or that had warning triangles.

    Code:
    Microsoft Windows [Version 10.0.17134.1]
    (c) 2018 Microsoft Corporation. All rights reserved.
    
    
    C:\Windows\system32>sfc /scannow
    
    
    Beginning system scan.  This process will take some time.
    
    
    Beginning verification phase of system scan.
    Verification 100% complete.
    
    
    Windows Resource Protection did not find any integrity violations.
    
    
    C:\Windows\system32>dism /online /cleanup-image /restorehealth
    
    
    Deployment Image Servicing and Management tool
    Version: 10.0.17134.1
    
    
    Image Version: 10.0.17134.1
    
    
    [==========================100.0%==========================] The restore operation completed successfully.
    The operation completed successfully.
    
    
    C:\Windows\system32>chkdsk /scan
    The type of the file system is NTFS.
    
    
    Stage 1: Examining basic file system structure ...
      203264 file records processed.
    File verification completed.
      4385 large file records processed.
      0 bad file records processed.
    
    
    Stage 2: Examining file name linkage ...
      654 reparse records processed.
      290346 index entries processed.
    Index verification completed.
      0 unindexed files scanned.
      0 unindexed files recovered to lost and found.
      654 reparse records processed.
    
    
    Stage 3: Examining security descriptors ...
    Security descriptor verification completed.
      43542 data files processed.
    CHKDSK is verifying Usn Journal...
      34326720 USN bytes processed.
    Usn Journal verification completed.
    
    
    Windows has scanned the file system and found no problems.
    No further action is required.
    
    
     498144255 KB total disk space.
     147521840 KB in 155671 files.
        101016 KB in 43543 indexes.
             0 KB in bad sectors.
        321603 KB in use by the system.
         65536 KB occupied by the log file.
     350199796 KB available on disk.
    
    
          4096 bytes in each allocation unit.
     124536063 total allocation units on disk.
      87549949 allocation units available on disk.
    
    
    C:\Windows\system32>
    Attachment 187796
    Attachment 187797

    Attachment 187798

    Attachment 187799

    Attachment 187800

    Attachment 187801
      My Computer


 

  Related Discussions
Our Sites
Site Links
About Us
Windows 10 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 10" and related materials are trademarks of Microsoft Corp.

© Designer Media Ltd
All times are GMT -5. The time now is 22:19.
Find Us




Windows 10 Forums