IRQL_NOT_LESS_OR_EQUAL on shutdown/restart


  1. Posts : 8
    Win 10 home
       #1

    IRQL_NOT_LESS_OR_EQUAL on shutdown/restart


    I keep having this bsod error appear on shutdown or restart and I am not sure what is causing it. It also has had an additional affect where disk check runs every time the computer restarts, even when the system has shut down normally. Here is the file created by the DM log creator as required:

    Attachment 163246
      My Computer


  2. Posts : 41,412
    windows 10 professional version 1607 build 14393.969 64 bit
       #2

    Hi Tailsy,

    Welcome to Ten Forums BSOD forum.

    There was 1 BSOD mini dump that was submitted.
    When it was debugged with windbg it did not display a definitive misbehaving driver.
    The bugchecks was A.
    The logs also displayed bugcheck 133.
    There was corruption on the drive reported in the logs.
    Windows fast start up failed.


    For all tests please post images into the thread.
    In case there are problems posting images please post one drive or drop box share links into the thread.

    Please update the computer specs in the "My Computer section:
    How To Fill Out Your System Specs
    System Specs - Fill in at Ten Forums:
    System Specs - Fill in at Ten Forums General Tips Tutorials
    In the left corner below in your post you find 'My System Specs'.
    After clicking it you can find a link a little below that says 'Update your System Spec', click on this link to get to the page where you can fill in your system specs.
    System Info - See Your System Specs - Windows 7 Help Forums

    Open administrative command prompt and type or copy and paste:

    1) sfc /scannow
    2) dism /online /cleanup-image /restorehealth
    3) When these have completed > right click on the top bar or title bar of the administrative command prompt box > left click on edit then select all > right click on the top bar again > left click on edit then copy > paste into the thread

    4) chkdsk /x /f /r

    Microsoft Windows [Version 10.0.15063]
    (c) 2017 Microsoft Corporation. All rights reserved.


    C:\Windows\system32>chkdsk /x /f /r
    The type of the file system is NTFS.
    Cannot lock current drive.


    Chkdsk cannot run because the volume is in use by another
    process. Would you like to schedule this volume to be
    checked the next time the system restarts? (Y/N)
    Type: Y
    then reboot
    This may take many hours so plan to run overnight
    5) To find the chkdsk report in the event viewer follow the steps in this link:
    Read Chkdsk Log in Event Viewer in Windows 10 Performance Maintenance Tutorials

    6) Run HDTune:
    http://www.hdtune.com/
    to check the health,
    scan for errors, no quick scan but full scan
    run a benchmark.
    It may take some time, but please take the time you need to perform it properly.
    When above is done please make screenshots of the following
    the health,
    the error scan,
    the benchmark incl. following
    transfer rate,
    access time,
    burst rate,
    cpu usage.
    Take Screenshot in Windows 10 General Tips Tutorials

    7) Read these links on Windows driver verifier: (learn the methods to turn off windows driver verifier)
    Do not use the tool until it is discussed in the thread.
    Driver Verifier-- tracking down a mis-behaving driver. - Microsoft Community
    Enable and Disable Driver Verifier in Windows 10 Performance Maintenance Tutorials

    8) For any new BSOD please post a zip into the thread:
    BSOD Crashes and Debugging - Windows 10 Forums

    9) Create a backup image using Macrium:
    Macrium Software | Macrium Reflect Free
    10) Place the backup image onto another drive or into the cloud.
    11) backup all files onto another drive or into the cloud.
    12) Create a brand new restore point.
    13) Turn off windows fast startup:
    Turn On or Off Fast Startup in Windows 10 Performance Maintenance Tutorials
    14) In the left lower corner search type system > open system control panel > on the left pane click advanced system settings > on the advanced tab in startup and recovery click settings > post an image into the thread.
    15) Use file explorer to find the memory dump file and post into the thread using one drive or drop box share link:
    memory dump file: %SystemRoot%\MEMORY.DMP or C:\Windows\MEMORY.DMP

    Code:
    09/11/2017 14:47    Windows Error Reporting    Fault bucket , type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 0
    
    Problem signature:
    P1: 133
    P2: 1
    P3: 1e00
    P4: fffff80325a8c370
    P5: 0
    P6: 10_0_16299
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\110917-23578-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-29687-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER8760.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER877F.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER8790.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_133_31d6f1c0f156dafa4eff8cddce72e537e5d1fc3_00000000_cab_0354879e
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report ID: f595f6a9-85b1-4639-a750-c4dc5c12fc64
    Report Status: 4
    Hashed bucket:09/11/2017 00:31    Windows Error Reporting    Fault bucket , type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 0
    
    Problem signature:
    P1: a
    P2: 0
    P3: 2
    P4: 0
    P5: fffff801f7670588
    P6: 10_0_16299
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\110917-23906-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-33546-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER9942.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER9971.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER9B18.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_a_2732b8981b767918791fb2b4cf88bea7ee27159_00000000_cab_034c9b17
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report ID: 682ae850-ac83-4afa-885a-e2d710e1224f
    Report Status: 4
    Hashed bucket:
    08/11/2017 01:08    Windows Error Reporting    Fault bucket , type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 0
    
    Problem signature:
    P1: a
    P2: 0
    P3: 2
    P4: 0
    P5: fffff802fa2f9588
    P6: 10_0_16299
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\110817-12671-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-44265-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERCAE2.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERCAF3.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERCB03.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_a_91ca87d51a2ddabea38453cf474a608040b23f1c_00000000_cab_0348cb10
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report ID: 14d930d6-ae88-46d4-817e-5a562cca7698
    Report Status: 4
    Hashed bucket:
    11/11/2017 01:48    Windows Error Reporting    Fault bucket , type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 0
    
    Problem signature:
    P1: a
    P2: 0
    P3: 2
    P4: 0
    P5: fffff803ad6ee588
    P6: 10_0_16299
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\111117-14296-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-37546-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERAF4C.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERAF5E.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERAF6F.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_a_ab15411381968c497917704ff0aea290587daa57_00000000_cab_0354af79
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report ID: e88c6527-a16f-4555-8c3e-d055486b1b63
    Report Status: 4
    Hashed bucket:
    Code:
    09/11/2017 14:47    Windows Error Reporting    Fault bucket 0x133_ISR_nt!EtwpFreeLoggerContext, type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: 74f54e5e-4865-40eb-bdec-da7c6b0775fa
    
    Problem signature:
    P1: 133
    P2: 1
    P3: 1e00
    P4: fffff80325a8c370
    P5: 0
    P6: 10_0_16299
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\110917-23578-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-29687-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER8760.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER877F.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER8790.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_133_31d6f1c0f156dafa4eff8cddce72e537e5d1fc3_00000000_cab_1f2cbc99
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report ID: f595f6a9-85b1-4639-a750-c4dc5c12fc64
    Report Status: 268435456
    Hashed bucket:
    Code:
    11/11/2017 09:33    Windows Error Reporting    Fault bucket AV_nt!KiTimerWaitTest, type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: ac3e7e00-c8bd-42cd-bd57-8c2bda1484fc
    
    Problem signature:
    P1: a
    P2: 0
    P3: 2
    P4: 0
    P5: fffff803ad6ee588
    P6: 10_0_16299
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\111117-14296-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-37546-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERAF4C.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERAF5E.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERAF6F.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_a_ab15411381968c497917704ff0aea290587daa57_00000000_cab_33611112
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report ID: e88c6527-a16f-4555-8c3e-d055486b1b63
    Report Status: 268435456
    Hashed bucket:09/11/2017 00:31    Windows Error Reporting    Fault bucket AV_nt!KiTimerWaitTest, type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: d18a6489-5aa3-49fe-84ae-ecb729f23643
    
    Problem signature:
    P1: a
    P2: 0
    P3: 2
    P4: 0
    P5: fffff801f7670588
    P6: 10_0_16299
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\110917-23906-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-33546-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER9942.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER9971.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER9B18.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_a_2732b8981b767918791fb2b4cf88bea7ee27159_00000000_cab_2d30e752
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report ID: 682ae850-ac83-4afa-885a-e2d710e1224f
    Report Status: 268435456
    Hashed bucket:
    08/11/2017 01:09    Windows Error Reporting    Fault bucket AV_nt!ObpRemoveObjectRoutine, type 0
    Event Name: BlueScreen
    Response: Not available
    Cab Id: f5a3eaac-7827-448f-893a-c0178b0e090e
    
    Problem signature:
    P1: a
    P2: 0
    P3: 2
    P4: 0
    P5: fffff802fa2f9588
    P6: 10_0_16299
    P7: 0_0
    P8: 768_1
    P9: 
    P10: 
    
    Attached files:
    \\?\C:\WINDOWS\Minidump\110817-12671-01.dmp
    \\?\C:\WINDOWS\TEMP\WER-44265-0.sysdata.xml
    \\?\C:\WINDOWS\MEMORY.DMP
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERCAE2.tmp.WERInternalMetadata.xml
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERCAF3.tmp.csv
    \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERCB03.tmp.txt
    
    These files may be available here:
    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_a_91ca87d51a2ddabea38453cf474a608040b23f1c_00000000_cab_2f555270
    
    Analysis symbol: 
    Rechecking for solution: 0
    Report ID: 14d930d6-ae88-46d4-817e-5a562cca7698
    Report Status: 268435456
    Hashed bucket:
    Code:
    A corruption was discovered in the file system structure on volume C:.
    
    The exact nature of the corruption is unknown.  The file system structures need to be scanned and fixed offline.
    Code:
    Windows failed fast startup with error status 0xC00000D4.
    Code:
    The Trusted Platform Module (TPM) firmware on this PC has a known security problem. Please contact your PC manufacturer to find out if an update is available. For more information please go to https://go.microsoft.com/fwlink/?linkid=852572
    Code:
    Device Encryption Support	Reasons for failed automatic device encryption: PCR7 binding is not supported, Hardware Security Test Interface failed and the device is not InstantGo, Un-allowed DMA-capable bus/device(s) detected
    Last edited by zbook; 11 Nov 2017 at 05:50.
      My Computer


  3. Posts : 8
    Win 10 home
    Thread Starter
       #3

    Thank you, I have done all the steps requested.
    here is the command prompt log for the sfc and dism commands:
    Microsoft Windows [Version 10.0.16299.19](c) 2017 Microsoft Corporation. All rights reserved.C:\WINDOWS\system32>sfc /scannowBeginning system scan. This process will take some time.Beginning verification phase of system scan.Verification 100% complete.Windows Resource Protection did not find any integrity violations.C:\WINDOWS\system32>dism /online /cleanup-image /restorehealthDeployment Image Servicing and Management toolVersion: 10.0.16299.15Image Version: 10.0.16299.19[==========================100.0%==========================] The restore operation completed successfully.The operation completed successfully.C:\WINDOWS\system32>
    chkdsk log:
    Attachment 163296
    all the requested tests done in hdtune:


    Attachment 163291Attachment 163292Attachment 163293
    startup/recovery settings
    Attachment 163294

    memory dump file: Dropbox - MEMORY.DMP
      My Computer


  4. Posts : 41,412
    windows 10 professional version 1607 build 14393.969 64 bit
       #4

    For the chkdsk report please post a one drive or drop share link:
    Read Chkdsk Log in Event Viewer in Windows 10 Performance Maintenance Tutorials
    The report above displayed that Windows made corrections to the file system.
    For startup and recovery system failure please un-check automatically restart.
    With automatically restart un-checked you will have unlimited time to view the BSOD windows.
    On the BSOD windows view the bugcheck name. Sometimes the misbehaving driver is displayed in the form *.sys
    If you see the misbehaving driver displayed please record it and post it into the thread.
    Alternatively you can use a camera or smart phone camera to take a picture and post it into the thread.
    Please report into the thread your progress with the steps in the earlier post.


    This hardware driver was identified as a misbehaving driver: igdkmd64.sys Intel Graphics driver
    Update the driver: Updating a driver: Updating a driver. - Microsoft Community



    Code:
    Name	Intel(R) HD Graphics 530PNP Device ID	PCI\VEN_8086&DEV_191B&SUBSYS_6A011558&REV_06\3&11583659&1&10
    Adapter Type	Intel(R) HD Graphics Family, Intel Corporation compatible
    Adapter Description	Intel(R) HD Graphics 530
    Adapter RAM	1.00 GB (1,073,741,824 bytes)
    Installed Drivers	C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_f507e86e308a4c50\igdumdim64.dll,C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_f507e86e308a4c50\igd10iumd64.dll,C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_f507e86e308a4c50\igd10iumd64.dll,C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_f507e86e308a4c50\igd12umd64.dll
    Driver Version	22.20.16.4749
    INF File	oem90.inf (iSKLD_w10_DS section)
    Colour Planes	Not Available
    Colour Table Entries	4294967296
    Resolution	1920 x 1080 x 60 hertz
    Bits/Pixel	32
    Memory Address	0xFE000000-0xFEFFFFFF
    Memory Address	0xA0000000-0xAFFFFFFF
    I/O Port	0x0000F000-0x0000F03F
    IRQ Channel	IRQ 4294967292
    Driver	c:\windows\system32\driverstore\filerepository\igdlh64.inf_amd64_f507e86e308a4c50\igdkmd64.sys (22.20.16.4749, 12.24 MB (12,834,928 bytes), 31/07/2017 14:28)
    Last edited by zbook; 11 Nov 2017 at 18:08.
      My Computer


 

  Related Discussions
Our Sites
Site Links
About Us
Windows 10 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 10" and related materials are trademarks of Microsoft Corp.

© Designer Media Ltd
All times are GMT -5. The time now is 12:37.
Find Us




Windows 10 Forums