BSOD KERNEL_SECURITY_CHECK_FAILURE when ejecting hard drives from dock


  1. Posts : 4
    Windows 10
       #1

    BSOD KERNEL_SECURITY_CHECK_FAILURE when ejecting hard drives from dock


    I'm at my wit's end on this one, have been trying to solve for months. I have a lot of data stored on internal SATA hard drives that I use a USB 3.0 dock to access. Whenever I properly eject a drive from the dock (using the remove USB device function in Windows) or just straight up pull it out, I get a BSOD. Sometimes it will eject, but mostly it returns a BSOD.

    I've analyzed log files using any program I can, and mostly they just say the error was KERNEL_SECURITY_CHECK_FAILURE and list the offending module as ntsokrnl.exe, but since I uninstalled my antivirus program (to see if there was some conflict with it), it's been returning DPC_WATCHDOG_VIOLATION errors and listing hal.dll in addition to ntoskrnl.exe.

    I've tried everything I can think of to fix it. System File Checker only fixed a broken shortcut to OneDrive in my start menu.

    I'm using a Lenovo AMD desktop with the latest build of Windows 10.

    Anyway, my zip file is attached which contains the latest minidump, hopefully someone has some sort of advice.

    Attachment 197426
      My Computer


  2. Posts : 41,479
    windows 10 professional version 1607 build 14393.969 64 bit
       #2

    Hi snowpeck ,

    Welcome to the Ten Forums BSOD forum.

    1) Update the system specs in the "My Computer" section
    System Specs - Fill in at Ten Forums:
    System Specs - Fill in at Ten Forums | Windows 10 Tutorials
    In the left corner below in your post you find 'My System Specs'.
    After clicking it you can find a link a little below that says 'Update your System Spec', click on this link to get to the page where you can fill in your system specs.
    System Info - See Your System Specs - Windows 7 Help Forums

    Include PSU. cooler, case, peripherals and anything attached to the computer by wired or wireless (mouse, keyboard, headset, printer, xbox, USB wireless network card, etc.)

    2) There are two log collectors: DM and BETA. The BETA log collector will collect more useful information.
    Please run the BETA log collector and post a new zip into the thread.
    See the bottom of this web page:
    BSOD - Posting Instructions - Windows 10 Forums

    After each BSOD please run the BETA log collector and post a new zip into the thread

    3) Open file explorer > this PC > C: > in the right upper corner search for C:\windows\memory.dmp > zip > post a one drive or drop box share link into the thread

    4) The RAM modules are mismatched. How long have each of the modules been in use?

    5) Open administrative command prompt and type or copy and paste:
    6) sfc /scannow
    7) dism /online /cleanup-image /restorehealth
    8) When these have completed > right click on the top bar or title bar of the administrative command prompt box > left click on edit then select all > right click on the top bar again > left click on edit then copy > paste into the thread

    9) chkdsk /r /v (run this command on all drives)
    Use the syntax chkdsk /r /v C: or chkdsk /r /v D: changing the drive letter to the applicable drive

    C:\WINDOWS\system32>chkdsk /r /v
    The type of the file system is NTFS.
    Cannot lock current drive.

    Chkdsk cannot run because the volume is in use by another
    process. Would you like to schedule this volume to be
    checked the next time the system restarts? (Y/N)

    Type: Y
    reboot

    10) Use the text and images in this link to find the chkdsk reports in the event viewer > copy and paste to notepad > post one drive or drop box share links into the thread

    11) Turn off Windows fast startup
    Turn On or Off Fast Startup in Windows 10 | Windows 10 Tutorials

    12) Run memtest86+ version 5.01 for at least 8 passes.
    Memtest86+ - Advanced Memory Diagnostic Tool
    This may take hours so plan to run it overnight.
    a) Please make sure you use the Memtest86+ version 5.01 with the link below.
    Memtest86+ - Advanced Memory Diagnostic Tool
    The testing is done not by time but by passes.
    The more passes the better.
    There are a significant number of false negatives if fewer than 8 passes are made.
    A false negative is a test pass when there is malfunctioning RAM.
    There is 12 GB of RAM on the computer.
    Memtest86+ version 5.01 testing takes approximately 1 - 2 hours /GB RAM
    Just 1 error is a fail and you can abort testing.
    Then test 1 RAM module at a time in the same DIMM each for 8 or more passes.
    b) When Memtest86+ version 5.01 has completed 8 or more passes use a camera or smart phone camera to take a picture and post an image into the thread.
    Memory problems. - Microsoft Community
    MemTest86+ - Test RAM | Windows 10 Tutorials

    13) Make sure that there is no over clocking during the troubleshooting process

    14) Make a backup image using Macrium:
    Macrium Software | Your Image is Everything
    15) Save the backup image to another drive or to the cloud
    16) Make a brand new restore point
    17) The BIOS: Version/Date LENOVO IRKT54AUS, 8/20/2015
    Upgrade the BIOS: Error
    18) Reset the BIOS:

    How to Clear Your Computers CMOS to Reset BIOS Settings:
    How to Clear Your Computers CMOS to Reset BIOS Settings
    3 Ways to Reset Your BIOS - wikiHow:
    3 Ways to Reset Your BIOS - wikiHow

    19) Please do not use Windows driver verifier unless it is communicated in the thread

    20) List all of the third party antivirus software in use on the computer (always on and manual)







    Code:
    Event[5232]:
      Log Name: System
      Source: Microsoft-Windows-Ntfs
      Date: 2018-07-27T13:50:48.890
      Event ID: 140
      Task: N/A
      Level: Warning
      Opcode: Info
      Keyword: N/A
      User: S-1-5-18
      User Name: NT AUTHORITY\SYSTEM
      Computer: MBStation1
      Description: 
    The system failed to flush data to the transaction log. Corruption may occur in VolumeId: E:, DeviceName: \Device\HarddiskVolume12.
    Code:
    Event[3772]:
      Log Name: System
      Source: Microsoft-Windows-Kernel-PnP
      Date: 2018-07-27T00:37:32.749
      Event ID: 219
      Task: N/A
      Level: Warning
      Opcode: Info
      Keyword: N/A
      User: S-1-5-18
      User Name: NT AUTHORITY\SYSTEM
      Computer: MBStation1
      Description: 
    The driver \Driver\USB28xxOEM failed to load for the device USB\VID_2040&PID_026D\0011521089.
    Code:
    USB28xxOEM   USB 28xx OEM Filter    USB 28xx OEM Filter    Kernel        Manual     Running    OK         TRUE        FALSE        1,664             865,536     0          9/10/2017 10:38:43 PM  C:\WINDOWS\system32\DRIVERS\emOEM64.sys
    Code:
    Event[4770]:
      Log Name: System
      Source: Microsoft-Windows-Kernel-Boot
      Date: 2018-07-27T12:11:06.788
      Event ID: 29
      Task: N/A
      Level: Error
      Opcode: Info
      Keyword: N/A
      User: S-1-5-18
      User Name: NT AUTHORITY\SYSTEM
      Computer: MBStation1
      Description: 
    Windows failed fast startup with error status 0xC00000D4.
    Code:
    Event[749]:
      Log Name: System
      Source: cdrom
      Date: 2018-05-30T14:23:07.613
      Event ID: 11
      Task: N/A
      Level: Error
      Opcode: N/A
      Keyword: Classic
      User: N/A
      User Name: N/A
      Computer: MBStation1
      Description: 
    The driver detected a controller error on \Device\CdRom0.
    Code:
    7/27/2018 5:18 PM	Windows Error Reporting	Fault bucket CORRUPT_MODULELIST_0x139, type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 8f71eca8-2ad6-4f9e-aaf9-4d01deaf10b9
    
    Problem signature:
    P1: 139
    P2: 3
    P3: fffff80058069ad0
    P4: fffff80058069a28
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072718-39828-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-178687-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER40C3.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER40E3.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER4150.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER418F.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_139_7c8e19ce166632754769a36825c1125719b214_00000000_cab_2cdf563f
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 889a7857-206d-4a86-b97d-4dd25d29e306
    Report Status: 268435456
    Hashed bucket: 
    Cab Guid: 0
    7/27/2018 2:20 AM	Windows Error Reporting	Fault bucket AV_CODE_AV_Fastboot!unknown_function, type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: fd97d1d1-5ad8-4c3b-b760-931cbbb2356d
    
    Problem signature:
    P1: a
    P2: 60001
    P3: ff
    P4: c3
    P5: fffff800eebab549
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072618-44546-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-262500-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER6369.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER6399.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER6406.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER6455.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_a_db94d5603e61714c7124538f9440a0fcd8ac75_00000000_cab_17c4923a
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: bf158eaa-b946-4afc-9c7c-982b1ab636d2
    Report Status: 268435456
    Hashed bucket: 
    Cab Guid: 0
    6/18/2018 12:10 AM	Windows Error Reporting	Fault bucket AV_CMUSBDAC!unknown_function, type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: a3d670fc-665c-4e79-9179-4dd0d179498f
    
    Problem signature:
    P1: 1000007e
    P2: ffffffffc0000005
    P3: fffff80131457047
    P4: ffffef8a25df7028
    P5: ffffef8a25df6870
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\061718-35812-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-388734-0.sysdata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER58A2.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER58C2.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER595D.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER59AC.tmp.txt
    \\?\C:\Windows\Temp\WER85AE.tmp.WERDataCollectionStatus.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_1000007e_ec1d89e08628d27afd8b51bf8dd69b5355939f52_00000000_cab_2b6a89c4
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 41dcbd78-359a-4331-8d1e-d49adfce1fcb
    Report Status: 268435456
    Hashed bucket: 
    Cab Guid: 0
    Code:
    7/27/2018 4:55 AM	Windows Error Reporting	Fault bucket 0xc4_2005_VRF_nt!MmLoadSystemImageEx, type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: a8121486-88e7-4de7-9705-470ebbef0556
    
    Problem signature:
    P1: c4
    P2: 2005
    P3: ffff8701c63dfeb8
    P4: fffff80fe33a01d8
    P5: fffff98f56bc6060
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072718-22843-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-122171-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER3F80.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER3FFE.tmp.xml
    \\?\C:\Windows\Temp\WERB28E.tmp.WERDataCollectionStatus.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_c4_ad5450d399bf988feef1dc3fe52845b664a07b_00000000_cab_13373013
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 743742c7-5a13-4698-b965-14059ffb1a61
    Report Status: 268435456
    Hashed bucket: 
    Cab Guid: 0
    7/27/2018 6:05 AM	Windows Error Reporting	Fault bucket 0x139_3_CORRUPT_LIST_ENTRY_KTIMER_LIST_CORRUPTION_nt!KiProcessExpiredTimerList, type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: fef838cc-fc42-4a35-aaf5-6650237ed9f0
    
    Problem signature:
    P1: 139
    P2: 3
    P3: fffff803894627d0
    P4: fffff80389462728
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072718-47250-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-251921-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER3DFF.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER3E1F.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER3E8C.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER3EEB.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_139_9f59bbbee8a41b22123ebfb21b3a6763f1f2e_00000000_cab_2c9877fb
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 7c2fef58-7f67-4ef5-8147-0bb0f9425267
    Report Status: 268435456
    Hashed bucket: 
    Cab Guid: 0
    7/27/2018 12:35 AM	Windows Error Reporting	Fault bucket 0x139_3_CORRUPT_LIST_ENTRY_KTIMER_LIST_CORRUPTION_nt!KiProcessExpiredTimerList, type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: f2ff8cb5-4a09-4b8e-803b-502eb3cc7834
    
    Problem signature:
    P1: 139
    P2: 3
    P3: fffff80238662780
    P4: fffff802386626d8
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072618-47312-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-299500-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER4F9.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER529.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER602.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER651.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_139_178828215f65951f6211f06460833a20e58c835_00000000_cab_30dd294a
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: fb1db3af-733a-41d2-8710-7130eee42ee9
    Report Status: 268435456
    Hashed bucket: 
    Cab Guid: 0
    7/26/2018 5:33 PM	Windows Error Reporting	Fault bucket 0x139_3_CORRUPT_LIST_ENTRY_KTIMER_LIST_CORRUPTION_nt!KiProcessExpiredTimerList, type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: ec743703-6980-4e6d-b520-7771324e9324
    
    Problem signature:
    P1: 139
    P2: 3
    P3: fffff8006fa62780
    P4: fffff8006fa626d8
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072618-43375-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-385546-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER48A4.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER48D4.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER499E.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER49FD.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_139_bfbf858d46b9e67a77fee089859cfa828bad93_00000000_cab_34266c68
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 33390ecf-4ec6-4622-a404-f773a93b2cbc
    Report Status: 268435456
    Hashed bucket: 
    Cab Guid: 0
    7/26/2018 6:42 AM	Windows Error Reporting	Fault bucket 0x139_3_CORRUPT_LIST_ENTRY_KTIMER_LIST_CORRUPTION_nt!KiProcessExpiredTimerList, type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: df8597a9-747e-4810-94d0-7618bf950bbe
    
    Problem signature:
    P1: 139
    P2: 3
    P3: fffff802608627d0
    P4: fffff80260862728
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072618-41234-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-295921-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WEREB56.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WEREB67.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WEREC21.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WEREC80.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_139_52e23e37d216d349234ffb36f5586132debaf72_00000000_cab_294d488a
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 9c063c10-7e9a-4ea4-99a8-95b00df09259
    Report Status: 268435456
    Hashed bucket: 
    Cab Guid: 0
    5/26/2018 5:47 AM	Windows Error Reporting	Fault bucket 0x139_3_CORRUPT_LIST_ENTRY_KTIMER_LIST_CORRUPTION_nt!KiProcessExpiredTimerList, type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: de0e7292-0b15-4c8b-ba45-cb7fb22450f2
    
    Problem signature:
    P1: 139
    P2: 3
    P3: fffff801b5469b20
    P4: fffff801b5469a78
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\052618-54593-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-522921-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER8DF1.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER8E20.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER8F48.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER8F88.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_139_29cfc70c04685f1563a4238aaa189a07a748a41_00000000_cab_2c30cc13
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 113c6d20-378c-44ff-81ed-d84459e02b7b
    Report Status: 268435456
    Hashed bucket: 
    Cab Guid: 0
    7/26/2018 6:32 PM	Windows Error Reporting	Fault bucket 0x139_3_CORRUPT_LIST_ENTRY_KTIMER_LIST_CORRUPTION_nt!KiProcessExpiredTimerList, type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: dd9e8772-7b6d-4bff-8a56-6738048cf8e3
    
    Problem signature:
    P1: 139
    P2: 3
    P3: fffff800b8c69b20
    P4: fffff800b8c69a78
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072618-38078-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-263640-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER701B.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER703C.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER70C7.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER7116.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_139_126e31915f62f627a0dc935e1b4f90e7b4331a42_00000000_cab_2dcc9d75
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 431ef92e-1abd-4be4-b979-43b598fac46b
    Report Status: 268435456
    Hashed bucket: 
    Cab Guid: 0
    7/26/2018 6:40 AM	Windows Error Reporting	Fault bucket 0x139_3_CORRUPT_LIST_ENTRY_KTIMER_LIST_CORRUPTION_nt!KiProcessExpiredTimerList, type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: c3ae328b-9481-4616-bfac-cab50ee559f2
    
    Problem signature:
    P1: 139
    P2: 3
    P3: fffff8029b869ad0
    P4: fffff8029b869a28
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072618-44421-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-312531-0.sysdata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER2A82.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER2AA2.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER2B8C.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER2BEA.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_139_62ac4264778d5f01af914bc8d05abf1e6161e_00000000_cab_1a8fd5b0
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 3df431d2-1f07-4a33-a88c-f81505c3092e
    Report Status: 268435456
    Hashed bucket: 
    Cab Guid: 0
    7/27/2018 4:30 PM	Windows Error Reporting	Fault bucket 0x139_3_CORRUPT_LIST_ENTRY_KTIMER_LIST_CORRUPTION_nt!KiProcessExpiredTimerList, type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: c206fd83-3b1e-480b-9839-9542940ff1c4
    
    Problem signature:
    P1: 139
    P2: 3
    P3: fffff8030a669b20
    P4: fffff8030a669a78
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072718-47343-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-237828-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER6D2.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER6F2.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER740.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER77F.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_139_4ec815aefe59ffe82ce89f4de0f7d952f1569a5_00000000_cab_2e2866a5
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: f48164ba-ae4a-4e7f-8b4e-b04cc0f13573
    Report Status: 268435456
    Hashed bucket: 
    Cab Guid: 0
    7/27/2018 2:32 AM	Windows Error Reporting	Fault bucket 0x139_3_CORRUPT_LIST_ENTRY_KTIMER_LIST_CORRUPTION_nt!KiProcessExpiredTimerList, type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: a96fcbd9-5d42-47a6-aba3-c399d86bfe97
    
    Problem signature:
    P1: 139
    P2: 3
    P3: fffff800a04627d0
    P4: fffff800a0462728
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072618-41453-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-238046-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER51D.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER53D.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER5C9.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER627.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_139_257a279cde95214a83e90551a9dd0ed7ed2574f_00000000_cab_1690276a
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: c89a33a6-5280-4cce-bcc2-07302367e581
    Report Status: 268435456
    Hashed bucket: 
    Cab Guid: 0
    7/27/2018 5:28 PM	Windows Error Reporting	Fault bucket 0x139_3_CORRUPT_LIST_ENTRY_KTIMER_LIST_CORRUPTION_nt!KiProcessExpiredTimerList, type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 901d157b-7886-49a3-aabb-2cb13368d058
    
    Problem signature:
    P1: 139
    P2: 3
    P3: fffff800d4c627d0
    P4: fffff800d4c62728
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072718-40453-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-234343-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERF761.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERF781.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERF7FD.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERF84C.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_139_e9749a68dbbe685e3540319138c6ce788df0f_00000000_cab_25b81c6d
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: b9cabf22-c286-4cd4-8764-7ad1e25429bc
    Report Status: 268435456
    Hashed bucket: 
    Cab Guid: 0
    5/23/2018 4:43 AM	Windows Error Reporting	Fault bucket 0x139_3_CORRUPT_LIST_ENTRY_KTIMER_LIST_CORRUPTION_nt!KiProcessExpiredTimerList, type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 8c347a6d-0062-4576-8de7-2f3a267a6696
    
    Problem signature:
    P1: 139
    P2: 3
    P3: fffff8020fa627d0
    P4: fffff8020fa62728
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\052318-60546-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-240343-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERE8A2.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERE8F1.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WEREA29.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WEREA68.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_139_3f1aefbdf31459b132dfe6b9be34fa786152c0b_00000000_cab_2dae696b
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: eba4a0e9-71d7-4ce3-a400-2246a28ff55f
    Report Status: 268435456
    Hashed bucket: 
    Cab Guid: 0
    7/26/2018 8:46 PM	Windows Error Reporting	Fault bucket 0x139_3_CORRUPT_LIST_ENTRY_KTIMER_LIST_CORRUPTION_nt!KiProcessExpiredTimerList, type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 6d50a826-e8c5-4d4c-af6b-3a2d11173ee0
    
    Problem signature:
    P1: 139
    P2: 3
    P3: fffff802a6c69b20
    P4: fffff802a6c69a78
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072618-45953-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-234906-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER5D8.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER5F8.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER694.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER6D3.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_139_86a65034d6e2565fb4f74cba8f8a7aa681eb2bc2_00000000_cab_32144ce4
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 4c6d670a-b327-40f5-825d-8015669ef1a5
    Report Status: 268435456
    Hashed bucket: 
    Cab Guid: 0
    6/12/2018 5:11 AM	Windows Error Reporting	Fault bucket 0x139_3_CORRUPT_LIST_ENTRY_KTIMER_LIST_CORRUPTION_nt!KiProcessExpiredTimerList, type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 5ce8af23-af49-426b-9162-301fdb6f30c4
    
    Problem signature:
    P1: 139
    P2: 3
    P3: fffff80028469ad0
    P4: fffff80028469a28
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\061218-37765-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-274953-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER9C1D.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER9C4D.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER9CC9.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER9CF9.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_139_39b9539fe09597421d217fd9b35b3ec67f58eb0_00000000_cab_2d30c88c
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 7636dca8-de11-4008-8f9f-75e2a438d168
    Report Status: 268435456
    Hashed bucket: 
    Cab Guid: 0
    7/27/2018 4:25 AM	Windows Error Reporting	Fault bucket 0x139_3_CORRUPT_LIST_ENTRY_KTIMER_LIST_CORRUPTION_nt!KiProcessExpiredTimerList, type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 4fc65052-58a9-42c9-81e1-3a9e630031d7
    
    Problem signature:
    P1: 139
    P2: 3
    P3: fffff8001fc62780
    P4: fffff8001fc626d8
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072718-30765-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-364546-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERCB4.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERCD5.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERD41.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERDA0.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_139_102162a38eeb2f3ef961f06f2a9facc32bfec63d_00000000_cab_21765287
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 3ee76d4d-e8d2-4981-a7db-a3319fb1f878
    Report Status: 268435456
    Hashed bucket: 
    Cab Guid: 0
    7/27/2018 6:04 PM	Windows Error Reporting	Fault bucket 0x139_3_CORRUPT_LIST_ENTRY_KTIMER_LIST_CORRUPTION_nt!KiProcessExpiredTimerList, type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 25b6ebb7-0c86-4f68-8400-e23cea354a37
    
    Problem signature:
    P1: 139
    P2: 3
    P3: fffff803bb262780
    P4: fffff803bb2626d8
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072718-49156-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-256078-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER48DC.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER490C.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER494A.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER4989.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_139_d6259f11272d67e4ec14f24552973826b5de2dc_00000000_cab_30cc9aa6
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 95b80241-688c-4211-a1a8-fa7c2e86d972
    Report Status: 268435456
    Hashed bucket: 
    Cab Guid: 0
    6/11/2018 3:42 PM	Windows Error Reporting	Fault bucket 0x139_3_CORRUPT_LIST_ENTRY_KTIMER_LIST_CORRUPTION_nt!KiProcessExpiredTimerList, type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 17dc614f-f627-445b-be29-39dc9348faa8
    
    Problem signature:
    P1: 139
    P2: 3
    P3: fffff8013be69b20
    P4: fffff8013be69a78
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\061118-46000-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-361078-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERDA2B.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERDA4B.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERDAB7.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERDB16.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_139_bda25e181a2dddc1a2a83221e5fb8e983feb747_00000000_cab_19b219b4
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 8402b46c-a133-40ca-9ff3-e5c8747f90f6
    Report Status: 268435456
    Hashed bucket: 
    Cab Guid: 0
    7/27/2018 7:23 AM	Windows Error Reporting	Fault bucket 0x139_3_CORRUPT_LIST_ENTRY_KTIMER_LIST_CORRUPTION_nt!KiProcessExpiredTimerList, type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 1762fe58-3a1f-4145-99d2-37543909dc45
    
    Problem signature:
    P1: 139
    P2: 3
    P3: fffff801d1e627d0
    P4: fffff801d1e62728
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072718-54750-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-243328-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER1847.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER1867.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER18A5.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER18E4.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_139_2f56831f78d0aa41f1e1398199285ffe68ab9_00000000_cab_2c783e2e
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 3c78e5c1-e6e9-460f-817d-5c6ecc226c54
    Report Status: 268435456
    Hashed bucket: 
    Cab Guid: 0
    7/28/2018 2:36 AM	Windows Error Reporting	Fault bucket 0x133_ISR_nt!KiUpdateRunTime, type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: d50fcd1c-2b36-46fb-8c59-98984b986074
    
    Problem signature:
    P1: 133
    P2: 1
    P3: 1e00
    P4: fffff801afafc378
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072718-29984-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-230828-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERDE4B.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERDE5C.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERDF45.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERDF85.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_133_b827a8e62c642e96b3aebf42d6e88f1f2a7e62_00000000_cab_1e200da8
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 2b796c2c-a951-4bf1-a3ac-685947b4a34b
    Report Status: 268435456
    Hashed bucket: 
    Cab Guid: 0
    7/27/2018 10:53 PM	Windows Error Reporting	Fault bucket 0x133_ISR_nt!KiUpdateRunTime, type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 8f5dc0f3-81e4-4f8b-8b3a-3da7ac60dd33
    
    Problem signature:
    P1: 133
    P2: 1
    P3: 1e00
    P4: fffff8015486e378
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072718-31515-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-253640-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER3C59.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER3C89.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER3D34.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER3D64.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_133_5d16f2c49f87792b4e9a2d9b7d6ffbf865b4c49_00000000_cab_248c775f
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 9058c0cc-41f2-4810-ab28-0af6d31cf650
    Report Status: 268435456
    Hashed bucket: 
    Cab Guid: 0
    7/28/2018 12:43 AM	Windows Error Reporting	Fault bucket 0x133_ISR_nt!KiUpdateRunTime, type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 749d325d-363c-4cbf-ae37-78b594d3ef57
    
    Problem signature:
    P1: 133
    P2: 1
    P3: 1e00
    P4: fffff8003d868378
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072718-31875-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-243906-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER174D.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER175E.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER1818.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER1858.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_133_2540f566c7b88f6ca8b5bc175589601d5169db30_00000000_cab_2b5052a0
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: ba2e8cdd-32c5-4227-b490-8502f6d132d0
    Report Status: 268435456
    Hashed bucket: 
    Cab Guid: 0
    Code:
    7/27/2018 4:39 AM	Windows Error Reporting	Fault bucket , type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 0
    
    Problem signature:
    P1: c4
    P2: 2005
    P3: ffff8701c63dfeb8
    P4: fffff80fe33a01d8
    P5: fffff98f56bc6060
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072718-22843-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-122171-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER3F80.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER3FFE.tmp.xml
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_c4_ad5450d399bf988feef1dc3fe52845b664a07b_00000000_cab_031a3ffd
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 743742c7-5a13-4698-b965-14059ffb1a61
    Report Status: 4
    Hashed bucket: 
    Cab Guid: 0
    7/27/2018 2:19 AM	Windows Error Reporting	Fault bucket , type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 0
    
    Problem signature:
    P1: a
    P2: 60001
    P3: ff
    P4: c3
    P5: fffff800eebab549
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072618-44546-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-262500-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER6369.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER6399.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER6406.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER6455.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_a_db94d5603e61714c7124538f9440a0fcd8ac75_00000000_cab_03ec6454
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: bf158eaa-b946-4afc-9c7c-982b1ab636d2
    Report Status: 4
    Hashed bucket: 
    Cab Guid: 0
    7/27/2018 6:04 PM	Windows Error Reporting	Fault bucket , type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 0
    
    Problem signature:
    P1: 139
    P2: 3
    P3: fffff803bb262780
    P4: fffff803bb2626d8
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072718-49156-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-256078-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER48DC.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER490C.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER494A.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER4989.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_139_d6259f11272d67e4ec14f24552973826b5de2dc_00000000_cab_03b84998
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 95b80241-688c-4211-a1a8-fa7c2e86d972
    Report Status: 4
    Hashed bucket: 
    Cab Guid: 0
    7/27/2018 6:04 AM	Windows Error Reporting	Fault bucket , type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 0
    
    Problem signature:
    P1: 139
    P2: 3
    P3: fffff803894627d0
    P4: fffff80389462728
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072718-47250-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-251921-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER3DFF.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER3E1F.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER3E8C.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER3EEB.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_139_9f59bbbee8a41b22123ebfb21b3a6763f1f2e_00000000_cab_03f43eea
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 7c2fef58-7f67-4ef5-8147-0bb0f9425267
    Report Status: 4
    Hashed bucket: 
    Cab Guid: 0
    7/27/2018 4:29 PM	Windows Error Reporting	Fault bucket , type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 0
    
    Problem signature:
    P1: 139
    P2: 3
    P3: fffff8030a669b20
    P4: fffff8030a669a78
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072718-47343-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-237828-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER6D2.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER6F2.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER740.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER77F.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_139_4ec815aefe59ffe82ce89f4de0f7d952f1569a5_00000000_cab_03b8078e
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: f48164ba-ae4a-4e7f-8b4e-b04cc0f13573
    Report Status: 4
    Hashed bucket: 
    Cab Guid: 0
    7/26/2018 8:46 PM	Windows Error Reporting	Fault bucket , type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 0
    
    Problem signature:
    P1: 139
    P2: 3
    P3: fffff802a6c69b20
    P4: fffff802a6c69a78
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072618-45953-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-234906-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER5D8.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER5F8.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER694.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER6D3.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_139_86a65034d6e2565fb4f74cba8f8a7aa681eb2bc2_00000000_cab_03ec06f1
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 4c6d670a-b327-40f5-825d-8015669ef1a5
    Report Status: 4
    Hashed bucket: 
    Cab Guid: 0
    7/26/2018 6:42 AM	Windows Error Reporting	Fault bucket , type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 0
    
    Problem signature:
    P1: 139
    P2: 3
    P3: fffff802608627d0
    P4: fffff80260862728
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072618-41234-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-295921-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WEREB56.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WEREB67.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WEREC21.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WEREC80.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_139_52e23e37d216d349234ffb36f5586132debaf72_00000000_cab_03fcec7f
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 9c063c10-7e9a-4ea4-99a8-95b00df09259
    Report Status: 4
    Hashed bucket: 
    Cab Guid: 0
    7/27/2018 12:34 AM	Windows Error Reporting	Fault bucket , type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 0
    
    Problem signature:
    P1: 139
    P2: 3
    P3: fffff80238662780
    P4: fffff802386626d8
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072618-47312-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-299500-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER4F9.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER529.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER602.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER651.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_139_178828215f65951f6211f06460833a20e58c835_00000000_cab_03e50650
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: fb1db3af-733a-41d2-8710-7130eee42ee9
    Report Status: 4
    Hashed bucket: 
    Cab Guid: 0
    5/23/2018 4:42 AM	Windows Error Reporting	Fault bucket , type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 0
    
    Problem signature:
    P1: 139
    P2: 3
    P3: fffff8020fa627d0
    P4: fffff8020fa62728
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\052318-60546-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-240343-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERE8A2.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERE8F1.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WEREA29.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WEREA68.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_139_3f1aefbdf31459b132dfe6b9be34fa786152c0b_00000000_cab_03c1eab5
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: eba4a0e9-71d7-4ce3-a400-2246a28ff55f
    Report Status: 4
    Hashed bucket: 
    Cab Guid: 0
    7/27/2018 7:23 AM	Windows Error Reporting	Fault bucket , type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 0
    
    Problem signature:
    P1: 139
    P2: 3
    P3: fffff801d1e627d0
    P4: fffff801d1e62728
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072718-54750-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-243328-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER1847.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER1867.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER18A5.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER18E4.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_139_2f56831f78d0aa41f1e1398199285ffe68ab9_00000000_cab_03b818e3
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 3c78e5c1-e6e9-460f-817d-5c6ecc226c54
    Report Status: 4
    Hashed bucket: 
    Cab Guid: 0
    5/26/2018 5:47 AM	Windows Error Reporting	Fault bucket , type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 0
    
    Problem signature:
    P1: 139
    P2: 3
    P3: fffff801b5469b20
    P4: fffff801b5469a78
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\052618-54593-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-522921-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER8DF1.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER8E20.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER8F48.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER8F88.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_139_29cfc70c04685f1563a4238aaa189a07a748a41_00000000_cab_03ac8fa6
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 113c6d20-378c-44ff-81ed-d84459e02b7b
    Report Status: 4
    Hashed bucket: 
    Cab Guid: 0
    6/11/2018 3:42 PM	Windows Error Reporting	Fault bucket , type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 0
    
    Problem signature:
    P1: 139
    P2: 3
    P3: fffff8013be69b20
    P4: fffff8013be69a78
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\061118-46000-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-361078-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERDA2B.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERDA4B.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERDAB7.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERDB16.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_139_bda25e181a2dddc1a2a83221e5fb8e983feb747_00000000_cab_016ddb15
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 8402b46c-a133-40ca-9ff3-e5c8747f90f6
    Report Status: 4
    Hashed bucket: 
    Cab Guid: 0
    7/27/2018 5:28 PM	Windows Error Reporting	Fault bucket , type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 0
    
    Problem signature:
    P1: 139
    P2: 3
    P3: fffff800d4c627d0
    P4: fffff800d4c62728
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072718-40453-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-234343-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERF761.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERF781.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERF7FD.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERF84C.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_139_e9749a68dbbe685e3540319138c6ce788df0f_00000000_cab_03a7f84b
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: b9cabf22-c286-4cd4-8764-7ad1e25429bc
    Report Status: 4
    Hashed bucket: 
    Cab Guid: 0
    7/26/2018 6:32 PM	Windows Error Reporting	Fault bucket , type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 0
    
    Problem signature:
    P1: 139
    P2: 3
    P3: fffff800b8c69b20
    P4: fffff800b8c69a78
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072618-38078-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-263640-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER701B.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER703C.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER70C7.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER7116.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_139_126e31915f62f627a0dc935e1b4f90e7b4331a42_00000000_cab_03e87125
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 431ef92e-1abd-4be4-b979-43b598fac46b
    Report Status: 4
    Hashed bucket: 
    Cab Guid: 0
    7/27/2018 2:31 AM	Windows Error Reporting	Fault bucket , type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 0
    
    Problem signature:
    P1: 139
    P2: 3
    P3: fffff800a04627d0
    P4: fffff800a0462728
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072618-41453-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-238046-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER51D.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER53D.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER5C9.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER627.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_139_257a279cde95214a83e90551a9dd0ed7ed2574f_00000000_cab_03d00626
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: c89a33a6-5280-4cce-bcc2-07302367e581
    Report Status: 4
    Hashed bucket: 
    Cab Guid: 0
    7/26/2018 5:32 PM	Windows Error Reporting	Fault bucket , type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 0
    
    Problem signature:
    P1: 139
    P2: 3
    P3: fffff8006fa62780
    P4: fffff8006fa626d8
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072618-43375-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-385546-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER48A4.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER48D4.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER499E.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER49FD.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_139_bfbf858d46b9e67a77fee089859cfa828bad93_00000000_cab_004e49fc
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 33390ecf-4ec6-4622-a404-f773a93b2cbc
    Report Status: 4
    Hashed bucket: 
    Cab Guid: 0
    7/27/2018 5:18 PM	Windows Error Reporting	Fault bucket , type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 0
    
    Problem signature:
    P1: 139
    P2: 3
    P3: fffff80058069ad0
    P4: fffff80058069a28
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072718-39828-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-178687-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER40C3.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER40E3.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER4150.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER418F.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_139_7c8e19ce166632754769a36825c1125719b214_00000000_cab_03b7418e
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 889a7857-206d-4a86-b97d-4dd25d29e306
    Report Status: 4
    Hashed bucket: 
    Cab Guid: 0
    6/12/2018 5:11 AM	Windows Error Reporting	Fault bucket , type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 0
    
    Problem signature:
    P1: 139
    P2: 3
    P3: fffff80028469ad0
    P4: fffff80028469a28
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\061218-37765-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-274953-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER9C1D.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER9C4D.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER9CC9.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER9CF9.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_139_39b9539fe09597421d217fd9b35b3ec67f58eb0_00000000_cab_03bc9d07
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 7636dca8-de11-4008-8f9f-75e2a438d168
    Report Status: 4
    Hashed bucket: 
    Cab Guid: 0
    7/27/2018 4:25 AM	Windows Error Reporting	Fault bucket , type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 0
    
    Problem signature:
    P1: 139
    P2: 3
    P3: fffff8001fc62780
    P4: fffff8001fc626d8
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072718-30765-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-364546-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERCB4.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERCD5.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERD41.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERDA0.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_139_102162a38eeb2f3ef961f06f2a9facc32bfec63d_00000000_cab_015e0d9f
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 3ee76d4d-e8d2-4981-a7db-a3319fb1f878
    Report Status: 4
    Hashed bucket: 
    Cab Guid: 0
    7/28/2018 2:36 AM	Windows Error Reporting	Fault bucket , type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 0
    
    Problem signature:
    P1: 133
    P2: 1
    P3: 1e00
    P4: fffff801afafc378
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072718-29984-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-230828-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERDE4B.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERDE5C.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERDF45.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERDF85.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_133_b827a8e62c642e96b3aebf42d6e88f1f2a7e62_00000000_cab_0373df93
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 2b796c2c-a951-4bf1-a3ac-685947b4a34b
    Report Status: 4
    Hashed bucket: 
    Cab Guid: 0
    7/27/2018 10:53 PM	Windows Error Reporting	Fault bucket , type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 0
    
    Problem signature:
    P1: 133
    P2: 1
    P3: 1e00
    P4: fffff8015486e378
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072718-31515-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-253640-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER3C59.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER3C89.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER3D34.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER3D64.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_133_5d16f2c49f87792b4e9a2d9b7d6ffbf865b4c49_00000000_cab_03603d63
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 9058c0cc-41f2-4810-ab28-0af6d31cf650
    Report Status: 4
    Hashed bucket: 
    Cab Guid: 0
    7/28/2018 12:43 AM	Windows Error Reporting	Fault bucket , type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 0
    
    Problem signature:
    P1: 133
    P2: 1
    P3: 1e00
    P4: fffff8003d868378
    P5: 0
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\072718-31875-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-243906-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER174D.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER175E.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER1818.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER1858.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_133_2540f566c7b88f6ca8b5bc175589601d5169db30_00000000_cab_036c1866
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: ba2e8cdd-32c5-4227-b490-8502f6d132d0
    Report Status: 4
    Hashed bucket: 
    Cab Guid: 0
    6/18/2018 12:10 AM	Windows Error Reporting	Fault bucket , type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 0
    
    Problem signature:
    P1: 1000007e
    P2: ffffffffc0000005
    P3: fffff80131457047
    P4: ffffef8a25df7028
    P5: ffffef8a25df6870
    P6: 10_0_17134
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\061718-35812-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-388734-0.sysdata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER58A2.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER58C2.tmp.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER595D.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER59AC.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_1000007e_ec1d89e08628d27afd8b51bf8dd69b5355939f52_00000000_cab_004e59bb
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report Id: 41dcbd78-359a-4331-8d1e-d49adfce1fcb
    Report Status: 4
    Hashed bucket: 
    Cab Guid: 0
    Code:
    cmusbdac.sys
    C-Media USB Audio Class 1.0 and 2.0 DAC Device Driver 
    http://www.cmedia.com.tw/EN/DownloadCenter_Detail2/Serno-118/pserno-0/dtype-ALL.html
    Last edited by zbook; 28 Jul 2018 at 00:25.
      My Computer


  3. Posts : 4
    Windows 10
    Thread Starter
       #3

    Updated profile as much as I could.

    Here's the new file: Attachment 197431

    Here's MEMORY.dmp: Dropbox - Memory dump.zip

    I don't know anything about the RAM being mismatched. The two installed modules are the ones that came shipped with the PC.

    System File Checker and DISM results:

    Code:
    Microsoft Windows [Version 10.0.17134.165]
    (c) 2018 Microsoft Corporation. All rights reserved.
    
    C:\Users\MB Station 1>sfc /scannow
    
    Beginning system scan.  This process will take some time.
    
    Beginning verification phase of system scan.
    Verification 100% complete.
    
    Windows Resource Protection did not find any integrity violations.
    
    C:\Users\MB Station 1>dism /online /cleanup-image /restorehealth
    
    Deployment Image Servicing and Management tool
    Version: 10.0.17134.1
    
    Image Version: 10.0.17134.165
    
    [==========================100.0%==========================] The restore operation completed successfully.
    The operation completed successfully.
    
    C:\Users\MB Station 1>
    I disabled fastboot but haven't had a chance to run the hard drive and memory tests yet. I do know that the error that showed with not being able to flush data to the transaction log had to do with the SATA drive in my hard drive dock that I was trying to eject.

    cmusbdac.sys is the driver for a Blue Snowball microphone and USB28xxOEM is associated with a Hauppauge WinTV capture device.
      My Computer


  4. Posts : 41,479
    windows 10 professional version 1607 build 14393.969 64 bit
       #4

    1) See if you can identify the drivers that were modified or installed by Driver Easy 5.6.3
    2) Uninstall all of these drivers
    3) Uninstall Driver Easy
    4) If you cannot determine which drivers were installed by this software look for a restore point that predates the installation of this software. The third party software can install unknown files. Sometimes a clean install is necessary.
    All drivers should be downloaded from the computer or motherboard manufacturer websites or from the component manufacturer websites so that the computer has known drivers.
    5) See if you can identify the drivers that were modified or installed by iObit.
    6) Uninstall all of these drivers
    7) Uninstall IObit using the iObit uninstall instructions
    http://forums.iobit.com/forum/smart-...p;postcount=10
    8) In the left lower corner search type: system or system control > open system control panel > on the left pane click advanced system settings
    a) > on the advanced tab under startup and recovery > click settings > post an image of the startup and recovery into the thread.
    b) > on the advanced tab under performance > click on settings > under performance options > click on the advanced tab > under virtual memory > click on change > post an image of the virtual memory tab into the thread
    9) The drivers in the earlier post do not need to be uninstalled at this time.
    10) There was only one dump file and multiple misbehaving hardware drivers were identified in the debugging. Complete the steps in the prior post. As more dumps occur please post both a new beta log collector zip and memory dump zip for troubleshooting.
      My Computer


  5. Posts : 41,479
    windows 10 professional version 1607 build 14393.969 64 bit
       #5

    The chkdsk on the larger drive and the memtest86+ version 5.01 may take a long time and can be run overnight.
      My Computer


  6. Posts : 4
    Windows 10
    Thread Starter
       #6

    Results of chkdsk:

    Code:
    Checking file system on C:
    The type of the file system is NTFS.
    Volume label is Windows.
    
    A disk check has been scheduled.
    Windows will now check the disk.                         
    
    Stage 1: Examining basic file system structure ...
      578816 file records processed.                                                         
    File verification completed.
      16280 large file records processed.                                    
      0 bad file records processed.                                      
    
    Stage 2: Examining file name linkage ...
      17093 reparse records processed.                                       
      734256 index entries processed.                                                        
    Index verification completed.
      0 unindexed files scanned.                                         
      0 unindexed files recovered to lost and found.                     
      17093 reparse records processed.                                       
    
    Stage 3: Examining security descriptors ...
    Cleaning up 7846 unused index entries from index $SII of file 0x9.
    Cleaning up 7846 unused index entries from index $SDH of file 0x9.
    Cleaning up 7846 unused security descriptors.
    CHKDSK is compacting the security descriptor stream
    Security descriptor verification completed.
      77721 data files processed.                                            
    CHKDSK is verifying Usn Journal...
      40059800 USN bytes processed.                                                            
    Usn Journal verification completed.
    
    Stage 4: Looking for bad clusters in user file data ...
      578800 files processed.                                                                
    File data verification completed.
    
    Stage 5: Looking for bad, free clusters ...
      306073947 free clusters processed.                                                        
    Free space verification is complete.
    Correcting errors in the Volume Bitmap.
    
    Windows has made corrections to the file system.
    No further action is required.
    
    1920122879 KB total disk space.
     694893276 KB in 274239 files.
        183752 KB in 77724 indexes.
             0 KB in bad sectors.
        750059 KB in use by the system.
         65536 KB occupied by the log file.
    1224295792 KB available on disk.
    
          4096 bytes in each allocation unit.
     480030719 total allocation units on disk.
     306073948 allocation units available on disk.
    
    Internal Info:
    00 d5 08 00 e4 5e 05 00 17 d4 09 00 00 00 00 00  .....^..........
    90 02 00 00 35 40 00 00 00 00 00 00 00 00 00 00  ....5@..........
    
    Windows has finished checking your disk.
    Please wait while your computer restarts.
    Another zip file: Attachment 197482

    A couple more MEMORY.dmp files:
    Dropbox - Memory Dump 2.zip
    Dropbox - Memory Dump 3.zip

    Attachment 197483

    Attachment 197484
      My Computer


  7. Posts : 41,479
    windows 10 professional version 1607 build 14393.969 64 bit
       #7

    1) Chkdsk found and fixed problems with the C: drive file system:
    Correcting errors in the Volume Bitmap.
    Windows has made corrections to the file system.

    2) For startup and recovery system failure:
    a) Un-check Automatically restart
    b) change write debugging information from complete memory dump to automatic memory dump
    c) reboot

    3) Uninstall everything AMD using Display driver uninstaller and install new drivers from the Lenovo or the AMD website.
    4) The Lenovo web site is preferred.
    5) Enter the computer's serial or product number and the operating system to view available drivers.
    6) If you use the AMD web site be sure the "clean install" box is checked and only install the graphics driver.

    Official Display Driver Uninstaller DDU Download
    Display Driver Uninstaller Download version 17.0.9.1 (or a newer version if available)
    Display Driver Uninstaller: How to use - Windows 7 Help Forums
    AMD Support and Radeon Software Driver Download

    AMD Graphics Drivers - Install Without Catalyst Install Manager - Windows 7 Help Forums

    7) Uninstall and reinstall: rtwlane.sys Realtek 8821AE Wireless LAN 802.11ac PCI-E NIC

    Updating a driver. - Microsoft Community

    8) Uninstall and reinstall: fastboot.sys
    Lenovo Fastboot Driver
    Home Global Support - us

    Code:
    atikmdag atikmdag.sys Wed May 16 11:54:38 2018 (5AFC7E6E)
    Code:
    atikmpag atikmpag.sys Wed May 16 11:42:03 2018 (5AFC7B7B)
    24.20.11016.4

    Code:
    rtwlane.sys  Tue Jun 12 20:35:52 2018 (5B209118)
    2023.79.606.2018

    Code:
    Fastboot.sys Mon Jun 29 01:30:44 2015 (55910234)
    Code:
    Name	AMD Radeon(TM) R7 Graphics
    PNP Device ID	PCI\VEN_1002&DEV_130F&SUBSYS_36A017AA&REV_00\3&11583659&0&08
    Adapter Type	AMD Radeon Graphics Processor (0x130F), Advanced Micro Devices, Inc. compatible
    Adapter Description	AMD Radeon(TM) R7 Graphics
    Adapter RAM	1.00 GB (1,073,741,824 bytes)
    Installed Drivers	C:\WINDOWS\System32\DriverStore\FileRepository\c0328911.inf_amd64_a81756cbffedb936\B328940\aticfx64.dll,C:\WINDOWS\System32\DriverStore\FileRepository\c0328911.inf_amd64_a81756cbffedb936\B328940\aticfx64.dll,C:\WINDOWS\System32\DriverStore\FileRepository\c0328911.inf_amd64_a81756cbffedb936\B328940\aticfx64.dll,C:\WINDOWS\System32\DriverStore\FileRepository\c0328911.inf_amd64_a81756cbffedb936\B328940\amdxc64.dll
    Driver Version	24.20.11016.4
    INF File	oem53.inf (ati2mtag_Kaveri_DesktopDS section)
    Color Planes	Not Available
    Color Table Entries	4294967296
    Resolution	1920 x 1080 x 60 hertz
    Bits/Pixel	32
    Memory Address	0xC0000000-0xFED3FFFF
    Memory Address	0xD0000000-0xD07FFFFF
    I/O Port	0x0000F000-0x0000F0FF
    Memory Address	0xFEB00000-0xFEB3FFFF
    IRQ Channel	IRQ 4294967290
    Driver	c:\windows\system32\driverstore\filerepository\c0328911.inf_amd64_a81756cbffedb936\b328940\atikmpag.sys (24.20.11016.4, 539.87 KB (552,824 bytes), 5/22/2018 10:54 AM)
    Code:
    Name	[00000001] Realtek 8821AE Wireless LAN 802.11ac PCI-E NIC
    Adapter Type	Ethernet 802.3
    Product Type	Realtek 8821AE Wireless LAN 802.11ac PCI-E NIC
    Installed	Yes
    PNP Device ID	PCI\VEN_10EC&DEV_8821&SUBSYS_A80317AA&REV_00\00E04CFFFE872B0100
    Last Reset	7/27/2018 10:32 PM
    Index	1
    Service Name	RTWlanE
    IP Address	192.168.1.148, fe80::f41f:fd66:db40:ec20
    IP Subnet	255.255.255.0, 64
    Default IP Gateway	192.168.1.1
    DHCP Enabled	Yes
    DHCP Server	192.168.1.1
    DHCP Lease Expires	1/1/1970 8:00 PM
    DHCP Lease Obtained	12/31/1969 8:00 PM
    MAC Address	‪C8:FF:28:9F:E7:78‬
    I/O Port	0x0000DF00-0x0000DFFF
    Memory Address	0xFE9FC000-0xFE9FFFFF
    IRQ Channel	IRQ 4294967283
    Driver	c:\windows\system32\drivers\rtwlane.sys (2023.79.606.2018, 8.00 MB (8,384,848 bytes), 1/3/2017 2:49 PM)
    Code:
    rtwlane	Realtek Wireless LAN 802.11n PCI-E Network Adapter	c:\windows\system32\drivers\rtwlane.sys	Kernel Driver	Yes	Manual	Running	OK	Normal	No	Yes
    Code:
    amdkmdag	amdkmdag	c:\windows\system32\driverstore\filerepository\c0328911.inf_amd64_a81756cbffedb936\b328940\atikmdag.sys	Kernel Driver	Yes	Manual	Running	OK	Ignore	No	Yes
    Code:
    amdkmdap	amdkmdap	c:\windows\system32\driverstore\filerepository\c0328911.inf_amd64_a81756cbffedb936\b328940\atikmpag.sys	Kernel Driver	Yes	Manual	Running	OK	Ignore	No	Yes
    Code:
    Fastboot     Fastboot               Fastboot               Kernel        Boot       Running    OK         TRUE        FALSE        0                 53,248      0          6/29/2015 4:30:44 AM   C:\WINDOWS\system32\DRIVERS\Fastboot.sys         4,096
    Code:
    fastboot	Fastboot	c:\windows\system32\drivers\fastboot.sys	Kernel Driver	Yes	Boot	Running	OK	Normal	No	Yes
      My Computer


  8. Posts : 4
    Windows 10
    Thread Starter
       #8

    Did everything in your previous post except uninstall and reinstall fastboot.sys because I couldn't figure out how to. (it seems to be a Windows function and not something from Lenovo?) But anyway, I still got a BSOD when I tried to change hard drives in my dock.

    Attachment 197527

    Dropbox - Memory Dump 4.zip
      My Computer


  9. Posts : 41,479
    windows 10 professional version 1607 build 14393.969 64 bit
       #9

    When available please post an image of the Memtest86+ version 5.01 results.
      My Computer


  10. Posts : 545
    seL4
       #10

    I'd recommend you install the latest AMD chipset drivers for your system. Go to AMD's driver page, select the "Optional Downloads" tab and download the chipset driver at the top. It should be release 18.10.0601.

    I also have a few questions:
    • Do these bugchecks *only* occur when you are ejecting your Toshiba disk connected to you SATA-to-USB dock? Or do the crashes occasionally happen seemingly randomly?
    • What model of SATA-to-USB dock are you using?
    • Have you tried ejecting any other USB devices, such as small flash drives? Does that ever cause a crash?
      My Computer


 

  Related Discussions
Our Sites
Site Links
About Us
Windows 10 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 10" and related materials are trademarks of Microsoft Corp.

© Designer Media Ltd
All times are GMT -5. The time now is 21:21.
Find Us




Windows 10 Forums