Hi Tailsy,
Welcome to Ten Forums BSOD forum.
There was 1 BSOD mini dump that was submitted.
When it was debugged with windbg it did not display a definitive misbehaving driver.
The bugchecks was A.
The logs also displayed bugcheck 133.
There was corruption on the drive reported in the logs.
Windows fast start up failed.
For all tests please post images into the thread.
In case there are problems posting images please post one drive or drop box share links into the thread.
Please update the computer specs in the "My Computer section:
How To Fill Out Your System Specs
System Specs - Fill in at Ten Forums:
System Specs - Fill in at Ten Forums General Tips Tutorials
In the left corner below in your post you find 'My System Specs'.
After clicking it you can find a link a little below that says 'Update your System Spec', click on this link to get to the page where you can fill in your system specs.
System Info - See Your System Specs - Windows 7 Help Forums
Open administrative command prompt and type or copy and paste:
1) sfc /scannow
2) dism /online /cleanup-image /restorehealth
3) When these have completed > right click on the top bar or title bar of the administrative command prompt box > left click on edit then select all > right click on the top bar again > left click on edit then copy > paste into the thread
4) chkdsk /x /f /r
Microsoft Windows [Version 10.0.15063]
(c) 2017 Microsoft Corporation. All rights reserved.
C:\Windows\system32>chkdsk /x /f /r
The type of the file system is NTFS.
Cannot lock current drive.
Chkdsk cannot run because the volume is in use by another
process. Would you like to schedule this volume to be
checked the next time the system restarts? (Y/N)
Type: Y
then reboot
This may take many hours so plan to run overnight
5) To find the chkdsk report in the event viewer follow the steps in this link:
Read Chkdsk Log in Event Viewer in Windows 10 Performance Maintenance Tutorials
6) Run HDTune:
http://www.hdtune.com/
to check the health,
scan for errors, no quick scan but full scan
run a benchmark.
It may take some time, but please take the time you need to perform it properly.
When above is done please make screenshots of the following
the health,
the error scan,
the benchmark incl. following
transfer rate,
access time,
burst rate,
cpu usage.
Take Screenshot in Windows 10 General Tips Tutorials
7) Read these links on Windows driver verifier: (learn the methods to turn off windows driver verifier)
Do not use the tool until it is discussed in the thread.
Driver Verifier-- tracking down a mis-behaving driver. - Microsoft Community
Enable and Disable Driver Verifier in Windows 10 Performance Maintenance Tutorials
8) For any new BSOD please post a zip into the thread:
BSOD Crashes and Debugging - Windows 10 Forums
9) Create a backup image using Macrium:
Macrium Software | Macrium Reflect Free
10) Place the backup image onto another drive or into the cloud.
11) backup all files onto another drive or into the cloud.
12) Create a brand new restore point.
13) Turn off windows fast startup:
Turn On or Off Fast Startup in Windows 10 Performance Maintenance Tutorials
14) In the left lower corner search type system > open system control panel > on the left pane click advanced system settings > on the advanced tab in startup and recovery click settings > post an image into the thread.
15) Use file explorer to find the memory dump file and post into the thread using one drive or drop box share link:
memory dump file: %SystemRoot%\MEMORY.DMP or C:\Windows\MEMORY.DMP
Code:
09/11/2017 14:47 Windows Error Reporting Fault bucket , type 0
Event Name: BlueScreen
Response: Not available
Cab Id: 0
Problem signature:
P1: 133
P2: 1
P3: 1e00
P4: fffff80325a8c370
P5: 0
P6: 10_0_16299
P7: 0_0
P8: 768_1
P9:
P10:
Attached files:
\\?\C:\WINDOWS\Minidump\110917-23578-01.dmp
\\?\C:\WINDOWS\TEMP\WER-29687-0.sysdata.xml
\\?\C:\WINDOWS\MEMORY.DMP
\\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER8760.tmp.WERInternalMetadata.xml
\\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER877F.tmp.csv
\\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER8790.tmp.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_133_31d6f1c0f156dafa4eff8cddce72e537e5d1fc3_00000000_cab_0354879e
Analysis symbol:
Rechecking for solution: 0
Report ID: f595f6a9-85b1-4639-a750-c4dc5c12fc64
Report Status: 4
Hashed bucket:09/11/2017 00:31 Windows Error Reporting Fault bucket , type 0
Event Name: BlueScreen
Response: Not available
Cab Id: 0
Problem signature:
P1: a
P2: 0
P3: 2
P4: 0
P5: fffff801f7670588
P6: 10_0_16299
P7: 0_0
P8: 768_1
P9:
P10:
Attached files:
\\?\C:\WINDOWS\Minidump\110917-23906-01.dmp
\\?\C:\WINDOWS\TEMP\WER-33546-0.sysdata.xml
\\?\C:\WINDOWS\MEMORY.DMP
\\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER9942.tmp.WERInternalMetadata.xml
\\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER9971.tmp.csv
\\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER9B18.tmp.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_a_2732b8981b767918791fb2b4cf88bea7ee27159_00000000_cab_034c9b17
Analysis symbol:
Rechecking for solution: 0
Report ID: 682ae850-ac83-4afa-885a-e2d710e1224f
Report Status: 4
Hashed bucket:
08/11/2017 01:08 Windows Error Reporting Fault bucket , type 0
Event Name: BlueScreen
Response: Not available
Cab Id: 0
Problem signature:
P1: a
P2: 0
P3: 2
P4: 0
P5: fffff802fa2f9588
P6: 10_0_16299
P7: 0_0
P8: 768_1
P9:
P10:
Attached files:
\\?\C:\WINDOWS\Minidump\110817-12671-01.dmp
\\?\C:\WINDOWS\TEMP\WER-44265-0.sysdata.xml
\\?\C:\WINDOWS\MEMORY.DMP
\\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERCAE2.tmp.WERInternalMetadata.xml
\\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERCAF3.tmp.csv
\\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERCB03.tmp.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_a_91ca87d51a2ddabea38453cf474a608040b23f1c_00000000_cab_0348cb10
Analysis symbol:
Rechecking for solution: 0
Report ID: 14d930d6-ae88-46d4-817e-5a562cca7698
Report Status: 4
Hashed bucket:
11/11/2017 01:48 Windows Error Reporting Fault bucket , type 0
Event Name: BlueScreen
Response: Not available
Cab Id: 0
Problem signature:
P1: a
P2: 0
P3: 2
P4: 0
P5: fffff803ad6ee588
P6: 10_0_16299
P7: 0_0
P8: 768_1
P9:
P10:
Attached files:
\\?\C:\WINDOWS\Minidump\111117-14296-01.dmp
\\?\C:\WINDOWS\TEMP\WER-37546-0.sysdata.xml
\\?\C:\WINDOWS\MEMORY.DMP
\\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERAF4C.tmp.WERInternalMetadata.xml
\\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERAF5E.tmp.csv
\\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERAF6F.tmp.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_a_ab15411381968c497917704ff0aea290587daa57_00000000_cab_0354af79
Analysis symbol:
Rechecking for solution: 0
Report ID: e88c6527-a16f-4555-8c3e-d055486b1b63
Report Status: 4
Hashed bucket:
Code:
09/11/2017 14:47 Windows Error Reporting Fault bucket 0x133_ISR_nt!EtwpFreeLoggerContext, type 0
Event Name: BlueScreen
Response: Not available
Cab Id: 74f54e5e-4865-40eb-bdec-da7c6b0775fa
Problem signature:
P1: 133
P2: 1
P3: 1e00
P4: fffff80325a8c370
P5: 0
P6: 10_0_16299
P7: 0_0
P8: 768_1
P9:
P10:
Attached files:
\\?\C:\WINDOWS\Minidump\110917-23578-01.dmp
\\?\C:\WINDOWS\TEMP\WER-29687-0.sysdata.xml
\\?\C:\WINDOWS\MEMORY.DMP
\\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER8760.tmp.WERInternalMetadata.xml
\\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER877F.tmp.csv
\\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER8790.tmp.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_133_31d6f1c0f156dafa4eff8cddce72e537e5d1fc3_00000000_cab_1f2cbc99
Analysis symbol:
Rechecking for solution: 0
Report ID: f595f6a9-85b1-4639-a750-c4dc5c12fc64
Report Status: 268435456
Hashed bucket:
Code:
11/11/2017 09:33 Windows Error Reporting Fault bucket AV_nt!KiTimerWaitTest, type 0
Event Name: BlueScreen
Response: Not available
Cab Id: ac3e7e00-c8bd-42cd-bd57-8c2bda1484fc
Problem signature:
P1: a
P2: 0
P3: 2
P4: 0
P5: fffff803ad6ee588
P6: 10_0_16299
P7: 0_0
P8: 768_1
P9:
P10:
Attached files:
\\?\C:\WINDOWS\Minidump\111117-14296-01.dmp
\\?\C:\WINDOWS\TEMP\WER-37546-0.sysdata.xml
\\?\C:\WINDOWS\MEMORY.DMP
\\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERAF4C.tmp.WERInternalMetadata.xml
\\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERAF5E.tmp.csv
\\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERAF6F.tmp.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_a_ab15411381968c497917704ff0aea290587daa57_00000000_cab_33611112
Analysis symbol:
Rechecking for solution: 0
Report ID: e88c6527-a16f-4555-8c3e-d055486b1b63
Report Status: 268435456
Hashed bucket:09/11/2017 00:31 Windows Error Reporting Fault bucket AV_nt!KiTimerWaitTest, type 0
Event Name: BlueScreen
Response: Not available
Cab Id: d18a6489-5aa3-49fe-84ae-ecb729f23643
Problem signature:
P1: a
P2: 0
P3: 2
P4: 0
P5: fffff801f7670588
P6: 10_0_16299
P7: 0_0
P8: 768_1
P9:
P10:
Attached files:
\\?\C:\WINDOWS\Minidump\110917-23906-01.dmp
\\?\C:\WINDOWS\TEMP\WER-33546-0.sysdata.xml
\\?\C:\WINDOWS\MEMORY.DMP
\\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER9942.tmp.WERInternalMetadata.xml
\\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER9971.tmp.csv
\\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER9B18.tmp.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_a_2732b8981b767918791fb2b4cf88bea7ee27159_00000000_cab_2d30e752
Analysis symbol:
Rechecking for solution: 0
Report ID: 682ae850-ac83-4afa-885a-e2d710e1224f
Report Status: 268435456
Hashed bucket:
08/11/2017 01:09 Windows Error Reporting Fault bucket AV_nt!ObpRemoveObjectRoutine, type 0
Event Name: BlueScreen
Response: Not available
Cab Id: f5a3eaac-7827-448f-893a-c0178b0e090e
Problem signature:
P1: a
P2: 0
P3: 2
P4: 0
P5: fffff802fa2f9588
P6: 10_0_16299
P7: 0_0
P8: 768_1
P9:
P10:
Attached files:
\\?\C:\WINDOWS\Minidump\110817-12671-01.dmp
\\?\C:\WINDOWS\TEMP\WER-44265-0.sysdata.xml
\\?\C:\WINDOWS\MEMORY.DMP
\\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERCAE2.tmp.WERInternalMetadata.xml
\\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERCAF3.tmp.csv
\\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WERCB03.tmp.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_a_91ca87d51a2ddabea38453cf474a608040b23f1c_00000000_cab_2f555270
Analysis symbol:
Rechecking for solution: 0
Report ID: 14d930d6-ae88-46d4-817e-5a562cca7698
Report Status: 268435456
Hashed bucket:
Code:
A corruption was discovered in the file system structure on volume C:.
The exact nature of the corruption is unknown. The file system structures need to be scanned and fixed offline.
Code:
Windows failed fast startup with error status 0xC00000D4.
Code:
The Trusted Platform Module (TPM) firmware on this PC has a known security problem. Please contact your PC manufacturer to find out if an update is available. For more information please go to https://go.microsoft.com/fwlink/?linkid=852572
Code:
Device Encryption Support Reasons for failed automatic device encryption: PCR7 binding is not supported, Hardware Security Test Interface failed and the device is not InstantGo, Un-allowed DMA-capable bus/device(s) detected