Hi Mattmartin19,
Thanks for quickly doing what I asked. I think we really are near to the solution of your problem
(Touchwood! )
Below is the analysis of the Dump file generated by the Driver Verifier (Windows does not change any personal files during System Restore but rather the settings) :-
Code:
0: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
SPECIAL_POOL_DETECTED_MEMORY_CORRUPTION (c1)
Special pool has detected memory corruption. Typically the current thread's
stack backtrace will reveal the guilty party.
Arguments:
Arg1: ffffcf80ad768ff0, address trying to free
Arg2: ffffcf80ad768ffc, address where bits are corrupted
Arg3: 000000000055000c, (reserved)
Arg4: 0000000000000024, [B][U]caller is freeing an address where bytes after the end of the allocation have been overwritten[/U][/B]
Debugging Details:
------------------
DUMP_FILE_ATTRIBUTES: 0x8
Kernel Generated Triage Dump
BUGCHECK_STR: 0xC1_24
SPECIAL_POOL_CORRUPTION_TYPE: 24
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
PROCESS_NAME: AdjustService.
CURRENT_IRQL: 1
ANALYSIS_VERSION: 6.3.9600.16384 (debuggers(dbg).130821-1623) amd64fre
IRP_ADDRESS: ffffcf80ad0aad89
LAST_CONTROL_TRANSFER: from fffff80379e827bb to fffff80379de1fa0
STACK_TEXT:
ffffd000`324ac2d8 fffff803`79e827bb : 00000000`000000c1 ffffcf80`ad768ff0 ffffcf80`ad768ffc 00000000`0055000c : nt!KeBugCheckEx
ffffd000`324ac2e0 fffff803`79f24376 : 00000000`00000010 00000000`000213f1 00000000`00000000 00000000`20206f49 : nt!MmFreeSpecialPool+0x307
ffffd000`324ac420 fffff803`79d2b8d8 : fffffa80`0002ffd0 ffffd000`324ac5f0 00000000`00000002 00000000`00000006 : nt!ExFreePoolWithTag+0x1096
ffffd000`324ac4f0 fffff803`79d2d5ec : ffffcf80`ad0aae01 ffffe000`00000001 ffffd000`324ac6a9 ffffd000`324ac740 : nt!IopCompleteRequest+0x78
ffffd000`324ac600 fffff803`7a2f7b6f : 00000000`00000000 ffffcf80`ad0aae00 ffffe000`b26fb850 fffff3fc`ee4f0f72 : nt!IopfCompleteRequest+0x7fc
ffffd000`324ac710 fffff801`86fda0c7 : 00000000`00000000 ffffe000`b2507810 00000000`00000000 ffffcf80`ad0aaea0 : nt!IovCompleteRequest+0x1d7
ffffd000`324ac7e0 00000000`00000000 : ffffe000`b2507810 00000000`00000000 ffffcf80`ad0aaea0 ffffe000`00000004 : gdrv+0x30c7
STACK_COMMAND: kb
FOLLOWUP_IP:
[COLOR=#ff0000][B][U]gdrv+30c7[/U][/B][/COLOR]
fffff801`86fda0c7 ?? ???
SYMBOL_STACK_INDEX: 6
SYMBOL_NAME: [COLOR=#ff0000][B][U]gdrv[/U][/B][/COLOR]+30c7
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: [COLOR=#ff0000][U][B]gdrv[/B][/U][/COLOR]
IMAGE_NAME: [COLOR=#ff0000][B][U]gdrv.sys[/U][/B][/COLOR]
DEBUG_FLR_IMAGE_TIMESTAMP: 49b9d175
FAILURE_BUCKET_ID: 0xC1_24_[COLOR=#ff0000][B][U]gdrv[/U][/B][/COLOR]+30c7
BUCKET_ID: 0xC1_24_[COLOR=#ff0000][B][U]gdrv[/U][/B][/COLOR]+30c7
ANALYSIS_SOURCE: KM
FAILURE_ID_HASH_STRING: km:0xc1_24_[COLOR=#ff0000][B][U]gdrv[/U][/B][/COLOR]+30c7
FAILURE_ID_HASH: {fd14b231-03e3-990a-9b32-092218776c8d}
Followup: MachineOwner
---------
I have highlighted why the Driver Verifier was causing the crash. It was crashing because the driver was trying to free (Deallocate) a piece of memory which was overwritten by some other program.
So, do you see what is causing the crashes (Highlighted in RED)? Psst, it is the GDRV.SYS which is the Gigabyte Easy Saver - mobo power utility driver.
First thing I would like you to check is that once you rename the driver, have you played those videos? Are they still BSODing?
Now, the thing is that, I checked your Event Viewer logs and found that the GDRV.SYS is running as a part of a Service which is setup so that it will start on demand or automatically. Now, in order to resolve your problem (touchwood!), follow these steps :-
1. Press "Start (Windows Key)+R" on your keyboard to open up the Run Prompt.
2. Type in "services.msc".
3. This would open up the Services Window. Search for "GDRV" or anything related to "GigaByte". Most likely it would be directly "GDRV".
4. Right Click on the Service and then Click On Properties. A Properties Dialog Box would open up.
5. In front of the "Startup Type" section, click on the dropdown list and then select "Disabled".
6. Click on "OK".
Now, delete the driver and see if it is regenerating or not. Most likely this should solve the problem. Keep me updated. This case of yours really got me excited ^_^ as it is very rare to see such BSOD.