Frequent BSOD - Please Help!

boxcarracer1478

Distinguished
Dec 14, 2011
8
0
18,510
I am getting a lot of BSODs even after a few fresh installs. Here is the last one I had:

Below is the dmp and basic system specs. I can provide more specs/info on request.

Summary
Operating System
Windows 10 Home 64-bit
CPU
Intel Core i5 6600K @ 3.50GHz 21 °C
Skylake 14nm Technology
RAM
16.0GB Dual-Channel Unknown @ 1067MHz (15-15-15-36)
Motherboard
ASRock Z170M Extreme4 (CPUSocket) 29 °C
Graphics
BenQ GW2765 (2560x1440@59Hz)
DELL P1911 (900x1440@60Hz)
4095MB NVIDIA GeForce GTX 970 (ASUStek Computer Inc) 43 °C
Storage
476GB ADATA SP920SS (SSD) 40 °C
931GB Western Digital WDC WD10EZEX-00ER1A0 (SATA) 35 °C
Optical Drives
No optical disk drives detected
Audio
Logitech G930 Gaming Headset


*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************

IRQL_NOT_LESS_OR_EQUAL (a)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high. This is usually
caused by drivers using improper addresses.
If a kernel debugger is available get the stack backtrace.
Arguments:
Arg1: 00000000000003a0, memory referenced
Arg2: 0000000000000002, IRQL
Arg3: 0000000000000000, bitfield :
bit 0 : value 0 = read operation, 1 = write operation
bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status)
Arg4: fffff8019b6d9449, address which referenced memory

Debugging Details:
------------------


DUMP_CLASS: 1

DUMP_QUALIFIER: 400

BUILD_VERSION_STRING: 10.0.14393.693 (rs1_release.161220-1747)

SYSTEM_PRODUCT_NAME: To Be Filled By O.E.M.

SYSTEM_SKU: To Be Filled By O.E.M.

SYSTEM_VERSION: To Be Filled By O.E.M.

BIOS_VENDOR: American Megatrends Inc.

BIOS_VERSION: L1.35

BIOS_DATE: 12/14/2015

BASEBOARD_MANUFACTURER: ASRock

BASEBOARD_PRODUCT: Z170M Extreme4

BASEBOARD_VERSION:

DUMP_TYPE: 2

BUGCHECK_P1: 3a0

BUGCHECK_P2: 2

BUGCHECK_P3: 0

BUGCHECK_P4: fffff8019b6d9449

READ_ADDRESS: 00000000000003a0

CURRENT_IRQL: 2

FAULTING_IP:
nt!EtwpLogKernelEvent+49
fffff801`9b6d9449 4b8bb4fc90030000 mov rsi,qword ptr [r12+r15*8+390h]

CPU_COUNT: 4

CPU_MHZ: db0

CPU_VENDOR: GenuineIntel

CPU_FAMILY: 6

CPU_MODEL: 5e

CPU_STEPPING: 3

CPU_MICROCODE: 6,5e,3,0 (F,M,S,R) SIG: 49'00000000 (cache) 49'00000000 (init)

CUSTOMER_CRASH_COUNT: 1

DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT

BUGCHECK_STR: AV

PROCESS_NAME: Wow-64.exe

ANALYSIS_SESSION_HOST: DONNIE_MATX_DES

ANALYSIS_SESSION_TIME: 02-19-2017 12:57:38.0763

ANALYSIS_VERSION: 10.0.14321.1024 amd64fre

DPC_STACK_BASE: FFFFDB817A6F3FB0

TRAP_FRAME: ffffdb817a6f3980 -- (.trap 0xffffdb817a6f3980)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=0000000000000002 rbx=0000000000000000 rcx=ffffdb817a6f3cb0
rdx=0000000000000001 rsi=0000000000000000 rdi=0000000000000000
rip=fffff8019b6d9449 rsp=ffffdb817a6f3b10 rbp=ffffdb817a6f3b89
r8=0000000000000002 r9=0000000000000002 r10=ffff868008a5b390
r11=fffff8019b97a808 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei pl zr na po nc
nt!EtwpLogKernelEvent+0x49:
fffff801`9b6d9449 4b8bb4fc90030000 mov rsi,qword ptr [r12+r15*8+390h] ds:00000000`00000390=????????????????
Resetting default scope

LAST_CONTROL_TRANSFER: from fffff8019b7ca829 to fffff8019b7bf6f0

STACK_TEXT:
ffffdb81`7a6f3838 fffff801`9b7ca829 : 00000000`0000000a 00000000`000003a0 00000000`00000002 00000000`00000000 : nt!KeBugCheckEx
ffffdb81`7a6f3840 fffff801`9b7c8e07 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiBugCheckDispatch+0x69
ffffdb81`7a6f3980 fffff801`9b6d9449 : 00000000`00000000 00000000`00000000 00000000`00000000 fffff801`9b73d538 : nt!KiPageFault+0x247
ffffdb81`7a6f3b10 fffff801`9b6d9363 : ffffdb81`7a6c0180 00000000`00000001 ffffdb81`7a6c2f00 fffffff6`00000002 : nt!EtwpLogKernelEvent+0x49
ffffdb81`7a6f3be0 fffff801`9b6d867f : ffff8680`1310a7c0 ffff8680`1310a7c0 00000000`00000000 ffffdb81`00000002 : nt!KiExecuteAllDpcs+0x393
ffffdb81`7a6f3d30 fffff801`9b7c47a5 : ff2b88e8`50488900 ffffdb81`7a6c0180 ffff8680`086cb700 0000015f`162cf8f8 : nt!KiRetireDpcList+0x5df
ffffdb81`7a6f3fb0 fffff801`9b7c45b0 : 00000000`00000000 00000000`00000000 ffffdb81`00000000 ffffffff`ffe17b80 : nt!KxRetireDpcList+0x5
ffffdb81`7e1b3a40 fffff801`9b7c3005 : 00000000`00000000 fffff801`9b7c1231 ffff8680`138fd800 00000000`000000c8 : nt!KiDispatchInterruptContinue
ffffdb81`7e1b3a70 fffff801`9b7c1231 : ffff8680`138fd800 00000000`000000c8 ffffdb81`7e1b3a58 ffff8680`12effa30 : nt!KiDpcInterruptBypass+0x25
ffffdb81`7e1b3a80 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiInterruptDispatchNoLockNoEtw+0xb1


STACK_COMMAND: kb

THREAD_SHA1_HASH_MOD_FUNC: b0f7750385cc21e9d4ba1773e8e2bcf037f20eb1

THREAD_SHA1_HASH_MOD_FUNC_OFFSET: 788dfa2f21d8fb338ed197800570010b546c350c

THREAD_SHA1_HASH_MOD: bc100a5647b828107ac4e18055e00abcbe1ec406

FOLLOWUP_IP:
nt!EtwpLogKernelEvent+49
fffff801`9b6d9449 4b8bb4fc90030000 mov rsi,qword ptr [r12+r15*8+390h]

FAULT_INSTR_CODE: fcb48b4b

SYMBOL_STACK_INDEX: 3

SYMBOL_NAME: nt!EtwpLogKernelEvent+49

FOLLOWUP_NAME: MachineOwner

MODULE_NAME: nt

IMAGE_NAME: ntkrnlmp.exe

DEBUG_FLR_IMAGE_TIMESTAMP: 585a2651

IMAGE_VERSION: 10.0.14393.693

BUCKET_ID_FUNC_OFFSET: 49

FAILURE_BUCKET_ID: AV_nt!EtwpLogKernelEvent

BUCKET_ID: AV_nt!EtwpLogKernelEvent

PRIMARY_PROBLEM_CLASS: AV_nt!EtwpLogKernelEvent

TARGET_TIME: 2017-02-19T17:04:53.000Z

OSBUILD: 14393

OSSERVICEPACK: 693

SERVICEPACK_NUMBER: 0

OS_REVISION: 0

SUITE_MASK: 784

PRODUCT_TYPE: 1

OSPLATFORM_TYPE: x64

OSNAME: Windows 10

OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS Personal

OS_LOCALE:

USER_LCID: 0

OSBUILD_TIMESTAMP: 2016-12-21 01:50:57

BUILDDATESTAMP_STR: 161220-1747

BUILDLAB_STR: rs1_release

BUILDOSVER_STR: 10.0.14393.693

ANALYSIS_SESSION_ELAPSED_TIME: 3f1

ANALYSIS_SOURCE: KM

FAILURE_ID_HASH_STRING: km:av_nt!etwplogkernelevent

FAILURE_ID_HASH: {2dd8433c-c071-e8df-14a1-7a8aa408eedb}

Followup: MachineOwner
---------
 
Got another one:

==================================================
Dump File : 021917-5875-01.dmp
Crash Time : 2/19/2017 9:23:31 PM
Bug Check String : SYSTEM_SERVICE_EXCEPTION
Bug Check Code : 0x0000003b
Parameter 1 : 00000000`c0000005
Parameter 2 : fffff801`58a53c1e
Parameter 3 : ffff9f01`186f0db0
Parameter 4 : 00000000`00000000
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+14a6f0
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 10.0.14393.693 (rs1_release.161220-1747)
Processor : x64
Crash Address : ntoskrnl.exe+14a6f0
Stack Address 1 :
Stack Address 2 :
Stack Address 3 :
Computer Name :
Full Path : C:\Windows\Minidump\021917-5875-01.dmp
Processors Count : 4
Major Version : 15
Minor Version : 14393
Dump File Size : 543,252
Dump File Time : 2/19/2017 9:24:15 PM
==================================================

Code:
Microsoft (R) Windows Debugger Version 10.0.14321.1024 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [C:\Windows\Minidump\021917-5875-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available


************* Symbol Path validation summary **************
Response                         Time (ms)     Location
Deferred                                       SRV*C:\SymCache*http://msdl.microsoft.com/download/symbols
Symbol search path is: SRV*C:\SymCache*http://msdl.microsoft.com/download/symbols
Executable search path is: 
Windows 10 Kernel Version 14393 MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS Personal
Built by: 14393.693.amd64fre.rs1_release.161220-1747
Machine Name:
Kernel base = 0xfffff801`58807000 PsLoadedModuleList = 0xfffff801`58b0c060
Debug session time: Sun Feb 19 21:23:31.070 2017 (UTC - 5:00)
System Uptime: 0 days 1:26:25.758
Loading Kernel Symbols
...............................................................
................................................................
............................................
Loading User Symbols
Loading unloaded module list
........
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck 3B, {c0000005, fffff80158a53c1e, ffff9f01186f0db0, 0}

Probably caused by : memory_corruption

Followup:     memory_corruption
---------

1: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 00000000c0000005, Exception code that caused the bugcheck
Arg2: fffff80158a53c1e, Address of the instruction which caused the bugcheck
Arg3: ffff9f01186f0db0, Address of the context record for the exception that caused the bugcheck
Arg4: 0000000000000000, zero.

Debugging Details:
------------------


DUMP_CLASS: 1

DUMP_QUALIFIER: 400

BUILD_VERSION_STRING:  10.0.14393.693 (rs1_release.161220-1747)

SYSTEM_PRODUCT_NAME:  To Be Filled By O.E.M.

SYSTEM_SKU:  To Be Filled By O.E.M.

SYSTEM_VERSION:  To Be Filled By O.E.M.

BIOS_VENDOR:  American Megatrends Inc.

BIOS_VERSION:  P7.20

BIOS_DATE:  12/13/2016

BASEBOARD_MANUFACTURER:  ASRock

BASEBOARD_PRODUCT:  Z170M Extreme4

BASEBOARD_VERSION:                        

DUMP_TYPE:  2

BUGCHECK_P1: c0000005

BUGCHECK_P2: fffff80158a53c1e

BUGCHECK_P3: ffff9f01186f0db0

BUGCHECK_P4: 0

EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%p referenced memory at 0x%p. The memory could not be %s.

FAULTING_IP: 
nt!ExAllocatePoolWithTag+1de
fffff801`58a53c1e 418b04c0        mov     eax,dword ptr [r8+rax*8]

CONTEXT:  ffff9f01186f0db0 -- (.cxr 0xffff9f01186f0db0)
rax=0000000000001d10 rbx=00000000000005d0 rcx=00000000000005d0
rdx=00000000000005d0 rsi=000000006e657645 rdi=000000000000e880
rip=fffff80158a53c1e rsp=ffff9f01186f17c0 rbp=00000000000007ff
 r8=ffff9f0116540000  r9=0000000000000000 r10=0000000000000801
r11=0000000000000001 r12=0000000000000000 r13=0000000000000020
r14=0000000000000000 r15=0000000000000000
iopl=0         nv up ei pl nz na pe nc
cs=0010  ss=0018  ds=002b  es=002b  fs=0053  gs=002b             efl=00010202
nt!ExAllocatePoolWithTag+0x1de:
fffff801`58a53c1e 418b04c0        mov     eax,dword ptr [r8+rax*8] ds:002b:ffff9f01`1654e880=????????
Resetting default scope

CPU_COUNT: 4

CPU_MHZ: db0

CPU_VENDOR:  GenuineIntel

CPU_FAMILY: 6

CPU_MODEL: 5e

CPU_STEPPING: 3

CPU_MICROCODE: 6,5e,3,0 (F,M,S,R)  SIG: 74'00000000 (cache) 74'00000000 (init)

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  CODE_CORRUPTION

BUGCHECK_STR:  0x3B

PROCESS_NAME:  audiodg.exe

CURRENT_IRQL:  0

ANALYSIS_SESSION_HOST:  DESKTOP-KF57CUM

ANALYSIS_SESSION_TIME:  02-19-2017 21:52:26.0750

ANALYSIS_VERSION: 10.0.14321.1024 amd64fre

LAST_CONTROL_TRANSFER:  from fffff80158c8f1ae to fffff80158a53c1e

STACK_TEXT:  
ffff9f01`186f17c0 fffff801`58c8f1ae : ffffc787`00000200 00000000`00000068 ffffc787`5b27abb0 ffffda83`00000000 : nt!ExAllocatePoolWithTag+0x1de
ffff9f01`186f18b0 fffff801`58c90dd1 : ffffc787`00000000 ffffc787`5b2b7d01 00000000`00000050 ffff9f01`186f1970 : nt!ObpAllocateObject+0x15e
ffff9f01`186f1930 fffff801`58c92b09 : 000000fc`1287faa0 ffff9f01`186f1b00 00000000`00000001 00000000`00000001 : nt!ObCreateObjectEx+0xf1
ffff9f01`186f19a0 fffff801`5895c393 : ffffc787`61c82080 000000fc`1287fa88 ffff9f01`186f1a28 00000000`00000000 : nt!NtCreateEvent+0x99
ffff9f01`186f1a10 00007ff8`b4a569d4 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
000000fc`1287fa68 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ff8`b4a569d4


CHKIMG_EXTENSION: !chkimg -lo 50 -d !nt
    fffff801588ac8ba - nt!MiCompletePrivateZeroFault+51a
	[ fa:ea ]
    fffff801588ac950-fffff801588ac951  2 bytes - nt!MiCompletePrivateZeroFault+5b0 (+0x96)
	[ fb f6:fc f8 ]
    fffff801588ae348 - nt!MiGetPage+98 (+0x19f8)
	[ fa:ea ]
    fffff8015891504e - nt!MiPurgeZeroList+6e (+0x66d06)
	[ fa:ea ]
    fffff80158a53388-fffff80158a53389  2 bytes - nt!ExFreePoolWithTag+388
	[ fb f6:fc f8 ]
    fffff80158a5383e - nt!ExFreePoolWithTag+83e (+0x4b6)
	[ f6:f8 ]
8 errors : !nt (fffff801588ac8ba-fffff80158a5383e)

MODULE_NAME: memory_corruption

IMAGE_NAME:  memory_corruption

FOLLOWUP_NAME:  memory_corruption

DEBUG_FLR_IMAGE_TIMESTAMP:  0

MEMORY_CORRUPTOR:  LARGE

STACK_COMMAND:  .cxr 0xffff9f01186f0db0 ; kb

FAILURE_BUCKET_ID:  MEMORY_CORRUPTION_LARGE

BUCKET_ID:  MEMORY_CORRUPTION_LARGE

PRIMARY_PROBLEM_CLASS:  MEMORY_CORRUPTION_LARGE

TARGET_TIME:  2017-02-20T02:23:31.000Z

OSBUILD:  14393

OSSERVICEPACK:  693

SERVICEPACK_NUMBER: 0

OS_REVISION: 0

SUITE_MASK:  784

PRODUCT_TYPE:  1

OSPLATFORM_TYPE:  x64

OSNAME:  Windows 10

OSEDITION:  Windows 10 WinNt TerminalServer SingleUserTS Personal

OS_LOCALE:  

USER_LCID:  0

OSBUILD_TIMESTAMP:  2016-12-21 01:50:57

BUILDDATESTAMP_STR:  161220-1747

BUILDLAB_STR:  rs1_release

BUILDOSVER_STR:  10.0.14393.693

ANALYSIS_SESSION_ELAPSED_TIME: fa6

ANALYSIS_SOURCE:  KM

FAILURE_ID_HASH_STRING:  km:memory_corruption_large

FAILURE_ID_HASH:  {e29154ac-69a4-0eb8-172a-a860f73c0a3c}

Followup:     memory_corruption
---------