Windows 8 and 8.1 Forums


ntoskrnl.exe causing all kinds of problem for me

  1. #1


    Posts : 3
    Windows 8.1 Pro

    ntoskrnl.exe causing all kinds of problem for me


    Heya!

    Ive been having these bluescreens from time to time mostly every other day. I get a different "crash" everytime

    KMODE_EXCEPTION_NOT_HANDLED
    DRIVER_OVERRAN_STACK_BUFFER
    IRQL_NOT_LESS_OR_EQUAL_
    BAD_POOL_HEADER


    all these are caused by the same driver ntoskrnl.exe

    this is the latest bluescreen seen from bluescreenviewer

    Attachment 49304

    Operating System
    Windows 8.1 Pro 64-bit
    CPU
    Intel Core i5 4670K @ 3.40GHz 40 ฐC
    Haswell 22nm Technology
    RAM
    16,0GB Dual-Channel DDR3 @ 665MHz (9-9-9-24)
    Motherboard
    Gigabyte Technology Co., Ltd. Z87X-D3H-CF (SOCKET 0) 28 ฐC
    Graphics
    ASUS VG278HE (1920x1080@144Hz)
    ASUS VE278 (1920x1080@60Hz)
    Intel HD Graphics 4600 (Gigabyte)
    3071MB NVIDIA GeForce GTX 780 (Gigabyte) 49 ฐC
    Storage
    931GB Seagate ST31000524AS (SATA) 36 ฐC
    223GB INTEL SSDSC2CT240A4 (SSD)
    232GB Samsung SSD 840 EVO 250GB (SSD) 30 ฐC
    Optical Drives
    ASUS DVD RAM GH75N
    Audio
    NVIDIA Virtual Audio Device (Wave Extensible) (WDM)

    Here is the rarfile from SF_Diagnostic_tool
    Attachment 49306
    Help me, Obi-Wan Kenobi. You're my only hope.

      My System SpecsSystem Spec

  2. #2


    Posts : 3
    Windows 8.1 Pro


    Things ive tried so far:

    Memtest86 - OK
    Updated to the latest Bios - OK
    Updated all drivers (Graphics, sound, internal graphic, etc) - OK
    Checked for virus, malware - OK
      My System SpecsSystem Spec

  3. #3


    Posts : 5,139
    Win8.1Pro - Finally!!!


    Sorry for the delay, I've been exceptionally busy over the last few days!

    No Windows Updates installed. Most systems have 60 to 90 or more. Please visit Windows Update and get ALL available updates (it may take several trips to get them all).

    Don't worry about the specific number, it's just important that you have checked and installed any updates that were available.

    You have 3 hard drives. What is the make/model/wattage and age of your Power Supply?

    This is starting to look like a hardware problem to me - please start with these free diagnostics: Hardware Diagnostics

    Out of 8 memory dumps there were 7 different BSOD error codes. The differing error codes are usually symptomatic of a lower level problem within the system. They are usually caused by one of these things:
    - borked (broken) hardware (several different procedures used to isolate the problem device)
    - BIOS issues (check for updates at the motherboard manufacturer's website)
    - overclocking/overheating - You'll know if you're overclocking or not. If uncertain we can suggest things to check.
    - missing Windows Updates
    - compatibility issues (3rd party hardware/drivers), older systems, or even pirated systems
    - low-level driver problems
    - or even malware (scanned for when we ask for hardware diagnostics from Initial Hardware Diagnostics or Hardware Diagnostics ).

    Check at the Gigabyte website to make sure that you have all the Win8.1 compatible drivers installed.
    Then run the hardware diagnostics. Let us know the results and we'll move on from there.

    Good luck!


    Analysis:
    The following is for informational purposes only.
    Code:
    **************************Fri Aug 22 05:45:20.498 2014 (UTC - 4:00)**************************
    Loading Dump File [C:\Users\John\SysnativeBSODApps\082214-6250-01.dmp]
    Windows 8 Kernel Version 9600 MP (4 procs) Free x64
    Built by: 9600.17085.amd64fre.winblue_gdr.140330-1035
    System Uptime:0 days 0:07:20.177
    *** WARNING: Unable to verify timestamp for win32k.sys
    *** ERROR: Module load completed but symbols could not be loaded for win32k.sys
    Probably caused by :ntkrnlmp.exe ( nt!KiRetireDpcList+8d1 )
    BugCheck 1E, {ffffffffc0000005, fffff801430e6bf1, 0, ffffffffffffffff}
    BugCheck Info: KMODE_EXCEPTION_NOT_HANDLED (1e)
    Arguments: 
    Arg1: ffffffffc0000005, The exception code that was not handled
    Arg2: fffff801430e6bf1, The address that the exception occurred at
    Arg3: 0000000000000000, Parameter 0 of the exception
    Arg4: ffffffffffffffff, Parameter 1 of the exception
    BUGCHECK_STR:  0x1E_c0000005_R
    PROCESS_NAME:  chrome.exe
    FAILURE_BUCKET_ID: 0x1E_c0000005_R_nt!KiRetireDpcList
    CPUID:        "Intel(R) Core(TM) i5-4670K CPU @ 3.40GHz"
    MaxSpeed:     3400
    CurrentSpeed: 3392
      BIOS Version                  F5
      BIOS Release Date             05/16/2013
      Manufacturer                  Gigabyte Technology Co., Ltd.
      Product Name                  Z87X-D3H
    จจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจ``
    **************************Mon Aug 18 20:44:41.743 2014 (UTC - 4:00)**************************
    Loading Dump File [C:\Users\John\SysnativeBSODApps\081914-6843-01.dmp]
    Windows 8 Kernel Version 9600 MP (4 procs) Free x64
    Built by: 9600.17085.amd64fre.winblue_gdr.140330-1035
    System Uptime:2 days 0:32:06.423
    Probably caused by :ntkrnlmp.exe ( nt!_report_gsfailure+25 )
    BugCheck F7, {b108b3c7d33f, b108b3d7d33f, ffff4ef74c282cc0, 0}
    BugCheck Info: DRIVER_OVERRAN_STACK_BUFFER (f7)
    Arguments: 
    Arg1: 0000b108b3c7d33f, Actual security check cookie from the stack
    Arg2: 0000b108b3d7d33f, Expected security check cookie
    Arg3: ffff4ef74c282cc0, Complement of the expected security check cookie
    Arg4: 0000000000000000, zero
    BUGCHECK_STR:  0xF7_ONE_BIT
    DEFAULT_BUCKET_ID:  GS_FALSE_POSITIVE_MISSING_GSFRAME
    PROCESS_NAME:  LolClient.exe
    FAILURE_BUCKET_ID: 0xF7_ONE_BIT_MISSING_GSFRAME_nt!_report_gsfailure
    CPUID:        "Intel(R) Core(TM) i5-4670K CPU @ 3.40GHz"
    MaxSpeed:     3400
    CurrentSpeed: 3392
      BIOS Version                  F5
      BIOS Release Date             05/16/2013
      Manufacturer                  Gigabyte Technology Co., Ltd.
      Product Name                  Z87X-D3H
    จจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจ``
    **************************Sat Aug 16 20:12:03.793 2014 (UTC - 4:00)**************************
    Loading Dump File [C:\Users\John\SysnativeBSODApps\081714-5671-01.dmp]
    Windows 8 Kernel Version 9600 MP (4 procs) Free x64
    Built by: 9600.17085.amd64fre.winblue_gdr.140330-1035
    System Uptime:2 days 7:13:27.473
    *** WARNING: Unable to verify timestamp for win32k.sys
    *** ERROR: Module load completed but symbols could not be loaded for win32k.sys
    Probably caused by :win32k.sys ( win32k+65d9c )
    BugCheck 139, {3, ffffd00036c336b0, ffffd00036c33608, 0}
    BugCheck Info: KERNEL_SECURITY_CHECK_FAILURE (139)
    Arguments: 
    Arg1: 0000000000000003, A LIST_ENTRY has been corrupted (i.e. double remove).
    Arg2: ffffd00036c336b0, Address of the trap frame for the exception that caused the bugcheck
    Arg3: ffffd00036c33608, Address of the exception record for the exception that caused the bugcheck
    Arg4: 0000000000000000, Reserved
    BUGCHECK_STR:  0x139
    DEFAULT_BUCKET_ID:  LIST_ENTRY_CORRUPT
    PROCESS_NAME:  csrss.exe
    FAILURE_BUCKET_ID: 0x139_3_win32k+65d9c
    CPUID:        "Intel(R) Core(TM) i5-4670K CPU @ 3.40GHz"
    MaxSpeed:     3400
    CurrentSpeed: 3392
      BIOS Version                  F5
      BIOS Release Date             05/16/2013
      Manufacturer                  Gigabyte Technology Co., Ltd.
      Product Name                  Z87X-D3H
    จจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจ``
    **************************Wed Aug 13 14:39:43.945 2014 (UTC - 4:00)**************************
    Loading Dump File [C:\Users\John\SysnativeBSODApps\081314-5437-01.dmp]
    Windows 8 Kernel Version 9600 MP (4 procs) Free x64
    Built by: 9600.17085.amd64fre.winblue_gdr.140330-1035
    System Uptime:1 days 5:37:30.624
    Probably caused by :ntkrnlmp.exe ( nt!KiRetireDpcList+943 )
    BugCheck A, {ffffe0811d795158, 2, 0, fffff8019ee65c63}
    BugCheck Info: IRQL_NOT_LESS_OR_EQUAL (a)
    Arguments: 
    Arg1: ffffe0811d795158, memory referenced
    Arg2: 0000000000000002, IRQL
    Arg3: 0000000000000000, bitfield :
        bit 0 : value 0 = read operation, 1 = write operation
        bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status)
    Arg4: fffff8019ee65c63, address which referenced memory
    BUGCHECK_STR:  AV
    DEFAULT_BUCKET_ID:  WIN8_DRIVER_FAULT
    PROCESS_NAME:  System
    FAILURE_BUCKET_ID: AV_nt!KiRetireDpcList
    CPUID:        "Intel(R) Core(TM) i5-4670K CPU @ 3.40GHz"
    MaxSpeed:     3400
    CurrentSpeed: 3392
      BIOS Version                  F5
      BIOS Release Date             05/16/2013
      Manufacturer                  Gigabyte Technology Co., Ltd.
      Product Name                  Z87X-D3H
    จจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจ``
    **************************Tue Aug 12 09:01:52.734 2014 (UTC - 4:00)**************************
    Loading Dump File [C:\Users\John\SysnativeBSODApps\081214-5656-01.dmp]
    Windows 8 Kernel Version 9600 MP (4 procs) Free x64
    Built by: 9600.17085.amd64fre.winblue_gdr.140330-1035
    System Uptime:1 days 14:17:11.413
    Probably caused by :ntkrnlmp.exe ( nt!ExFreePoolWithTag+124f )
    BugCheck 19, {20, ffffe001177020a0, ffffe001177023d0, 4330002}
    BugCheck Info: BAD_POOL_HEADER (19)
    Arguments: 
    Arg1: 0000000000000020, a pool block header size is corrupt.
    Arg2: ffffe001177020a0, The pool entry we were looking for within the page.
    Arg3: ffffe001177023d0, The next pool entry.
    Arg4: 0000000004330002, (reserved)
    BUGCHECK_STR:  0x19_20
    PROCESS_NAME:  System
    FAILURE_BUCKET_ID: 0x19_20_nt!ExFreePoolWithTag
    CPUID:        "Intel(R) Core(TM) i5-4670K CPU @ 3.40GHz"
    MaxSpeed:     3400
    CurrentSpeed: 3392
      BIOS Version                  F5
      BIOS Release Date             05/16/2013
      Manufacturer                  Gigabyte Technology Co., Ltd.
      Product Name                  Z87X-D3H
    จจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจ``
    **************************Sun Aug 10 18:44:07.320 2014 (UTC - 4:00)**************************
    Loading Dump File [C:\Users\John\SysnativeBSODApps\081114-5593-01.dmp]
    Windows 8 Kernel Version 9600 MP (4 procs) Free x64
    Built by: 9600.17085.amd64fre.winblue_gdr.140330-1035
    System Uptime:0 days 9:33:32.003
    *** ERROR: Module load completed but symbols could not be loaded for tcpip.sys
    Probably caused by :NETIO.SYS ( NETIO!RtlGetNextExpiredTimerWheelEntry+fd )
    BugCheck D1, {ffffe00124e47630, 2, 0, fffff8011da0797d}
    BugCheck Info: DRIVER_IRQL_NOT_LESS_OR_EQUAL (d1)
    Arguments: 
    Arg1: ffffe00124e47630, memory referenced
    Arg2: 0000000000000002, IRQL
    Arg3: 0000000000000000, value 0 = read operation, 1 = write operation
    Arg4: fffff8011da0797d, address which referenced memory
    BUGCHECK_STR:  AV
    DEFAULT_BUCKET_ID:  WIN8_DRIVER_FAULT
    PROCESS_NAME:  uTorrent.exe
    FAILURE_BUCKET_ID: AV_NETIO!RtlGetNextExpiredTimerWheelEntry
    CPUID:        "Intel(R) Core(TM) i5-4670K CPU @ 3.40GHz"
    MaxSpeed:     3400
    CurrentSpeed: 3392
      BIOS Version                  F5
      BIOS Release Date             05/16/2013
      Manufacturer                  Gigabyte Technology Co., Ltd.
      Product Name                  Z87X-D3H
    จจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจ``
    **************************Sat Aug  2 18:35:03.622 2014 (UTC - 4:00)**************************
    Loading Dump File [C:\Users\John\SysnativeBSODApps\080314-9875-01.dmp]
    Windows 8 Kernel Version 9600 MP (4 procs) Free x64
    Built by: 9600.16404.amd64fre.winblue_gdr.130913-2141
    System Uptime:0 days 6:56:20.301
    *** WARNING: Unable to verify timestamp for dxgmms1.sys
    *** ERROR: Module load completed but symbols could not be loaded for dxgmms1.sys
    Probably caused by :dxgmms1.sys ( dxgmms1+4ebbf )
    BugCheck 10E, {1f, ffffc00003589e00, 0, 836e9c}
    BugCheck Info: VIDEO_MEMORY_MANAGEMENT_INTERNAL (10e)
    Arguments: 
    Arg1: 000000000000001f, The subtype of the bugcheck:
    Arg2: ffffc00003589e00
    Arg3: 0000000000000000
    Arg4: 0000000000836e9c
    BUGCHECK_STR:  0x10e_1f
    PROCESS_NAME:  System
    FAILURE_BUCKET_ID: 0x10e_1f_dxgmms1+4ebbf
    CPUID:        "Intel(R) Core(TM) i5-4670K CPU @ 3.40GHz"
    MaxSpeed:     3400
    CurrentSpeed: 3392
      BIOS Version                  F5
      BIOS Release Date             05/16/2013
      Manufacturer                  Gigabyte Technology Co., Ltd.
      Product Name                  Z87X-D3H
    จจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจ``
    **************************Sat Aug  2 07:34:00.194 2014 (UTC - 4:00)**************************
    Loading Dump File [C:\Users\John\SysnativeBSODApps\080214-7015-01.dmp]
    Windows 8 Kernel Version 9600 MP (4 procs) Free x64
    Built by: 9600.16404.amd64fre.winblue_gdr.130913-2141
    System Uptime:0 days 18:29:26.263
    *** WARNING: Unable to verify timestamp for dxgmms1.sys
    *** ERROR: Module load completed but symbols could not be loaded for dxgmms1.sys
    Probably caused by :dxgmms1.sys ( dxgmms1+4ee20 )
    BugCheck 139, {3, ffffd00021e69410, ffffd00021e69368, 0}
    BugCheck Info: KERNEL_SECURITY_CHECK_FAILURE (139)
    Arguments: 
    Arg1: 0000000000000003, A LIST_ENTRY has been corrupted (i.e. double remove).
    Arg2: ffffd00021e69410, Address of the trap frame for the exception that caused the bugcheck
    Arg3: ffffd00021e69368, Address of the exception record for the exception that caused the bugcheck
    Arg4: 0000000000000000, Reserved
    BUGCHECK_STR:  0x139
    DEFAULT_BUCKET_ID:  LIST_ENTRY_CORRUPT
    PROCESS_NAME:  System
    FAILURE_BUCKET_ID: 0x139_3_dxgmms1+4ee20
    CPUID:        "Intel(R) Core(TM) i5-4670K CPU @ 3.40GHz"
    MaxSpeed:     3400
    CurrentSpeed: 3392
      BIOS Version                  F5
      BIOS Release Date             05/16/2013
      Manufacturer                  Gigabyte Technology Co., Ltd.
      Product Name                  Z87X-D3H
    จจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจ``
    
    3rd Party Drivers:
    The following is for information purposes only.
    Any drivers in red should be updated or removed from your system. And should have been discussed in the body of my post.
    Code:
    **************************Fri Aug 22 05:45:20.498 2014 (UTC - 4:00)**************************
    LGSHidFilt.Sys              Thu May 30 11:16:33 2013 (51A76D51)
    intelppm.sys                Thu Aug 22 04:46:35 2013 (5215CFEB)
    dump_storahci.sys           Thu Aug 22 07:40:39 2013 (5215F8B7)
    e1d64x64.sys                Thu Aug 29 19:55:45 2013 (521FDF81)
    TeeDriverx64.sys            Thu Sep  5 14:02:18 2013 (5228C72A)
    nvhda64v.sys                Thu Nov 28 08:38:09 2013 (52974741)
    IntcDAud.sys                Fri Feb 21 08:50:26 2014 (530759A2)
    iwdbus.sys                  Thu Mar 13 17:59:14 2014 (53222A32)
    RTKVHD64.sys                Fri Mar 14 07:03:23 2014 (5322E1FB)
    nvvad64v.sys                Fri Mar 28 09:32:06 2014 (533579D6)
    igdkmd64.sys                Sat May 17 00:17:35 2014 (5376E2DF)
    nvlddmkm.sys                Wed Jul  2 13:42:02 2014 (53B4446A)
    NvStreamKms.sys             Fri Jul 25 07:35:56 2014 (53D2411C)
    จจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจจ``
    **************************Sat Aug  2 18:35:03.622 2014 (UTC - 4:00)**************************
    igdkmd64.sys                Mon Mar 31 01:18:10 2014 (5338FA92)
    
    http://www.carrona.org/drivers/driver.php?id=LGSHidFilt.Sys
    http://www.carrona.org/drivers/driver.php?id=intelppm.sys
    http://www.carrona.org/drivers/driver.php?id=dump_storahci.sys
    http://www.carrona.org/drivers/driver.php?id=e1d64x64.sys
    http://www.carrona.org/drivers/driver.php?id=TeeDriverx64.sys
    http://www.carrona.org/drivers/driver.php?id=nvhda64v.sys
    http://www.carrona.org/drivers/driver.php?id=IntcDAud.sys
    http://www.carrona.org/drivers/driver.php?id=iwdbus.sys
    http://www.carrona.org/drivers/driver.php?id=RTKVHD64.sys
    http://www.carrona.org/drivers/driver.php?id=nvvad64v.sys
    http://www.carrona.org/drivers/driver.php?id=igdkmd64.sys
    http://www.carrona.org/drivers/driver.php?id=nvlddmkm.sys
    http://www.carrona.org/drivers/driver.php?id=NvStreamKms.sys
    http://www.carrona.org/drivers/driver.php?id=igdkmd64.sys
      My System SpecsSystem Spec

  4. #4


    Posts : 3
    Windows 8.1 Pro


    Hello John,

    Earlier I updated my bios from version F5 to F8 and tought that would solve my problems. When it was installed the bsod stopped and I could live happy again. And after a few days the BSOD started again. And after alot of troubleshooting, updating drivers, checking memory and so on. I gave up and posted it all here, and a few minutes after posting I got a blue screen.

    So I went in to my bios and checked, just to be sure. And figures, the bios update never went trough, so I was stuck with the F5 bios, wich did not support the 4th generation of intel core processors. So I did a the update towards F8 again. Guess what? Havent had a blue screen in 4 days!

    So yay, I solved it I guess. But thanks for the advice with the Windows update and thanks for your answer!

    , Der Juggler
      My System SpecsSystem Spec

  5. #5


    Posts : 5,139
    Win8.1Pro - Finally!!!


    Not a problem! I'm glad that you fixed it!
    Thanks for letting us know!
      My System SpecsSystem Spec

ntoskrnl.exe causing all kinds of problem for me
Related Threads
Help with minidump ntoskrnl.exe problem in BSOD Crashes and Debugging
Hi everyone, Please help with one BSOD. It appeared when tried to start one game. This is more about the problem: Microsoft (R) Windows Debugger Version 6.3.9600.16384 AMD64 Copyright (c) Microsoft Corporation. All rights reserved.
I had installed the update mentioned in the title, installed fine with no problems. When I went to shutdown my laptop, the screen would go off like it normally does, but the system does not shutdown. The power light still stays on, and I see a flicker of the HDD light but they do not turn off. I...
Update causing a big problem in Windows Updates & Activation
Hi, I've got a brand new Asus complete with Windows 8.1. Everything was working perfectly, including the Quick Access Menu (left click at bottom left hand corner - I don't have a touch screen). After a few updates this last feature stopped working and I was advised (amongst other things) to do a...
All kinds of BSOD, Help! in BSOD Crashes and Debugging
I installed windows 8 a few weeks ago on a brand new HDD and ever since I have started to have BSOD apperaing every now and then and it is never the same problem. I have been running all kinds of memory and disc tests and verifiers, virus scans but no errors are found. I have also reinstalled...
Different kinds of BSODS after computer sleep in BSOD Crashes and Debugging
Hello :) I'm using windows 8 pro. I recently formatted my windows drive and re-installed windows 8 because I was getting black screen after logging in. I found that it was connected to Avast, so when I re-installed windows I moved to AVG. I'm getting now BSOD couple of minutes after my computer...
Solved ntoskrnl.exe causing BSOD in BSOD Crashes and Debugging
Hi, I've had this pc for about 4 months and it has suddenly started crashing, the first two were prior to a system restore so I don't have the dump files, however the subsequent two I do and they're attached as the results of the SF_diagnostic_tool report. Not sure what other information is...
Note: Please disregard what it says under "My System Specs" for this post. This post is about a different computer. I bought a Toshiba Satellite C855D-S5359 laptop a couple of weeks ago. It came with Windows 8 (64-bit) pre-installed. Every now and then, the laptop gets a Blue Screen of Death...
Eight Forums Android App Eight Forums IOS App Follow us on Facebook