Privacy and Security Enable or Disable Core Isolation Memory Integrity in Windows 11


Windows_Security_banner.png

This tutorial will show you how to turn on or off core isolation memory integrity in Windows 11.

Core isolation is a security feature of Microsoft Windows that protects important core processes of Windows from malicious software by isolating them in memory. It does this by running those core processes in a virtualized environment.

Memory integrity, also known as Hypervisor-protected Code Integrity (HVCI) is a Windows security feature that makes it difficult for malicious programs to use low-level drivers to hijack your computer. It is designed to prevent attacks from inserting malicious code into high-security processes.

A driver is a piece of software that lets the operating system (Windows in this case) and a device (like a keyboard or a webcam, for two examples) talk to each other. When the device wants Windows to do something it uses the driver to send that request.

Memory integrity works by creating an isolated environment using hardware virtualization.

In most cases memory integrity is on by default in Windows 11.

References:

In the most recent Insider Preview builds, Windows will notify the user that the Memory integrity feature is currently turned off so that action can be taken for the user to turn it back on so that their device is as secure as possible against malicious attacks.


You must be signed in as an administrator to turn on or off core isolation memory integrity.

Core isolation memory integrity requires CPU virtualization turned on.



Contents

  • Option One: Turn On or Off Core Isolation Memory Integrity in Windows Security
  • Option Two: Turn On or Off Core Isolation Memory Integrity using REG file




Option One

Turn On or Off Core Isolation Memory Integrity in Windows Security


1 Open Windows Security.

2 Click/tap on Device security on the left side, and click/tap on the Core isolation details link on the right side. (see screenshot below)

Core_isolation_Memory_integrity-1.png

3 Turn on (default) or off Memory integrity for what you want. (see screenshot below)

If the Memory integrity setting is grayed out with a This setting is managed by your administrator message, change the Locked DWORD value to 0 instead of 1 in the registry key below, then close and reopen Windows Security.

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceGuard\Scenarios\HypervisorEnforcedCodeIntegrity


If memory integrity fails to turn on it may tell you that you have an incompatible device driver already installed. Check with the manufacturer of the device to see if they have an updated driver available. If they don’t have compatible driver available, you might be able to remove the device or app that uses that incompatible driver. Otherwise, you can uninstall any incompatible drivers.

Uninstall Driver in Windows 11

Incompatible_Drivers.png

Note: If you try to install a device with an incompatible driver after turning on memory integrity, you may see the same message. If so, the same advice applies - check with the device manufacturer to see if they have an updated driver you can download, or don’t install that particular device until a compatible driver is available.


Core_isolation_Memory_integrity-2.png

4 If prompted by UAC, click/tap on Yes to approve.

5 Restart the computer to apply. (see screenshots below)

Core_isolation_Memory_integrity-3.png
notification.png




Option Two

Turn On or Off Core Isolation Memory Integrity using REG file


1 Do step 2 (on) or step 3 (off) below for what you want.

2 Turn On Core Isolation Memory Integrity

This is the default setting.


A) Click/tap on the Download button below to download the REG file below, and go to step 4 below.​

Turn_ON_Core_isolation_Memory_integrity.reg


(Contents of REG file for reference)
Code:
Windows Registry Editor Version 5.00

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceGuard\Scenarios\HypervisorEnforcedCodeIntegrity]
"Enabled"=dword:00000001

3 Turn Off Core Isolation Memory Integrity

A) Click/tap on the Download button below to download the REG file below, and go to step 4 below.​

Turn_OFF_Core_isolation_Memory_integrity.reg


(Contents of REG file for reference)
Code:
Windows Registry Editor Version 5.00

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceGuard\Scenarios\HypervisorEnforcedCodeIntegrity]
"Enabled"=dword:00000000

4 Save the .reg file to your desktop.

5 Double click/tap on the downloaded .reg file to merge it.

6 When prompted, click/tap on Run, Yes (UAC), Yes, and OK to approve the merge.

7 Restart the computer to apply.

8 You can now delete the downloaded .reg file if you like.


That's it,
Shawn Brink


 

Attachments

Last edited:
Is it 100% safe to turn off? Does it use any Memory, etc?
 

My Computers

System One System Two

  • OS
    Windows 11 Pro x64 24H2 v26100.3037
    Computer type
    PC/Desktop
    Manufacturer/Model
    Built Myself in 2017
    CPU
    AMD Ryzen 1800X 8-Core @ 3.60GHz
    Motherboard
    Asus Crosshair VI Hero
    Memory
    16GB G.Skill Trident Z RGB Series
    Graphics Card(s)
    EVGA GeForce gtx 1660 Super
    Sound Card
    On Board
    Monitor(s) Displays
    2 X AOC 27" , PLANAR 22"
    Screen Resolution
    1920 X 1080
    Hard Drives
    ~~~~~~~~~~~~~~~~~~~~~~~~~~
    ~ P34A60 512GB NVMe PCIe Gen3x4 M.2
    ~ 6TB Toshiba HDD
    ~ 6TB HDD (Backup)
    ~ SanDisk 250GB SSD
    ~ 2 X 1TB HDD
    ~~~~~~~~~~
    PSU
    Corsair RM850 Fully Modular (850watts)
    Case
    NZXT Phantom 630 CA-PH630-W1
    Cooling
    CORSAIR iCUE H100i RGB PRO XT
    Keyboard
    Nulea RT05 Wireless Ergonomic
    Mouse
    Nulea MD280 Wireless Vertical Mouse
    Internet Speed
    761Mbps (Download) / 692Mbps (Upload)
    Browser
    Firefox
    Antivirus
    Malwarebytes
    Other Info
    *This is my Main Computer That I use*
  • Operating System
    Windows 11 Pro x64 24H2 v26100.2894
    Computer type
    PC/Desktop
    Manufacturer/Model
    HP
    CPU
    Intel Xeon E3-1246 v3 @ 3.50GHz
    Memory
    16GB
    Graphics card(s)
    AMD Radeon R7 350X
    Sound Card
    onBoard
    Monitor(s) Displays
    eMachine 22"
    Screen Resolution
    1920 X 1080
    Hard Drives
    250GB SSD
    Cooling
    Fan
    Mouse
    Nulea MD280
    Internet Speed
    752Mbps (Download) / 537Mbps (Upload)
    Browser
    Firefox
    Antivirus
    Malwarebytes
    Other Info
    I use this computer for photo/video editing and to track severe weather
Is it 100% safe to turn off? Does it use any Memory, etc?
Hello mate, :)

It's safer to leave it turned on for better security.

I doubt there will be any noticeable difference in performance when comparing it turned on and off.
 

My Computers

System One System Two

  • OS
    Windows 11 Pro for Workstations
    Computer type
    PC/Desktop
    Manufacturer/Model
    Custom self build
    CPU
    Intel i7-8700K 5 GHz
    Motherboard
    ASUS ROG Maximus XI Formula Z390
    Memory
    64 GB (4x16GB) G.SKILL TridentZ RGB DDR4 3600 MHz (F4-3600C18D-32GTZR)
    Graphics Card(s)
    ASUS ROG-STRIX-GTX1080TI-O11G-GAMING (11GB GDDR5X)
    Sound Card
    Integrated Digital Audio (S/PDIF)
    Monitor(s) Displays
    2 x Samsung Odyssey G75 27"
    Screen Resolution
    2560x1440
    Hard Drives
    1TB Samsung 990 PRO M.2,
    4TB Samsung 990 PRO M.2,
    8TB WD MyCloudEX2Ultra NAS
    PSU
    Seasonic Prime Titanium 850W
    Case
    Thermaltake Core P3 wall mounted
    Cooling
    Corsair Hydro H115i
    Keyboard
    Logitech wireless K800
    Mouse
    Logitech MX Master 3
    Internet Speed
    1 Gbps Download and 35 Mbps Upload
    Browser
    Google Chrome
    Antivirus
    Microsoft Defender and Malwarebytes Premium
    Other Info
    Logitech Z625 speaker system,
    Logitech BRIO 4K Pro webcam,
    HP Color LaserJet Pro MFP M477fdn,
    CyberPower CP1500PFCLCD
    Galaxy S23 Plus phone
  • Operating System
    Windows 11 Pro
    Computer type
    Laptop
    Manufacturer/Model
    Surface Laptop 7 Copilot+ PC
    CPU
    Snapdragon X Elite (12 core) 3.42 GHz
    Memory
    16 GB LPDDR5x-7467 MHz
    Monitor(s) Displays
    15" HDR
    Screen Resolution
    2496 x 1664
    Hard Drives
    1 TB SSD
    Internet Speed
    Wi-Fi 7 and Bluetooth 5.4
    Browser
    Chrome and Edge
    Antivirus
    Windows Defender
In most cases memory integrity is on by default in Windows 11
If it is not enabled by default, then the most likely reason is that one or more drivers are not compatible. To find out which they may be try turning on Memory integrity with Option One. Any incompatible drivers will be listed.

windows-security-vbs-incompatible-drivers-png.17219
 

My Computers

System One System Two

  • OS
    Windows 11 Home
    Computer type
    Laptop
    Manufacturer/Model
    Acer Aspire 3 A315-23
    CPU
    AMD Athlon Silver 3050U
    Memory
    8GB
    Graphics Card(s)
    Radeon Graphics
    Monitor(s) Displays
    laptop screen
    Screen Resolution
    1366x768 native resolution, up to 2560x1440 with Radeon Virtual Super Resolution
    Hard Drives
    1TB Samsung EVO 870 SSD
    Internet Speed
    50 Mbps
    Browser
    Edge, Firefox
    Antivirus
    Defender
    Other Info
    fully 'Windows 11 ready' laptop. Windows 10 C: partition migrated from my old unsupported 'main machine' then upgraded to 11. A test migration ran Insider builds for 2 months. When 11 was released on 5th October 2021 it was re-imaged back to 10 and was offered the upgrade in Windows Update on 20th October. Windows Update offered the 22H2 Feature Update on 20th September 2022. It got the 23H2 Feature Update on 4th November 2023 through Windows Update, and 24H2 on 3rd October 2024 through Windows Update by setting the Target Release Version for 24H2.

    My SYSTEM THREE is a Dell Latitude 5410, i7-10610U, 32GB RAM, 512GB NVMe ssd, supported device running Windows 11 Pro.

    My SYSTEM FOUR is a 2-in-1 convertible Lenovo Yoga 11e 20DA, Celeron N2930, 8GB RAM, 256GB ssd. Unsupported device: currently running Win10 Pro, plus Win11 Pro RTM and Insider Dev, Beta, and RP 24H2 as native boot vhdx.

    My SYSTEM FIVE is a Dell Latitude 3190 2-in-1, Pentium Silver N5030, 8GB RAM, 512GB NVMe ssd, supported device running Windows 11 Pro, plus Insider Beta, Dev, and Canary builds (and a few others) as a native boot .vhdx.

    My SYSTEM SIX is a Dell Latitude 5550, Core Ultra 7 165H, 64GB RAM, 1TB NVMe SSD, supported device, Windows 11 Pro 24H2, Hyper-V host machine.
  • Operating System
    Windows 11 Pro
    Computer type
    Laptop
    Manufacturer/Model
    Dell Latitude E4310
    CPU
    Intel® Core™ i5-520M
    Motherboard
    0T6M8G
    Memory
    8GB
    Graphics card(s)
    (integrated graphics) Intel HD Graphics
    Screen Resolution
    1366x768
    Hard Drives
    500GB Crucial MX500 SSD
    Browser
    Firefox, Edge
    Antivirus
    Defender
    Other Info
    unsupported machine: Legacy bios, MBR, TPM 1.2, upgraded from W10 to W11 using W10/W11 hybrid install media workaround. In-place upgrade to 22H2 using ISO and a workaround. Feature Update to 23H2 by manually installing the Enablement Package. In-place upgrade to 24H2 using hybrid 23H2/24H2 install media. Also running Insider Beta, Dev, and Canary builds as a native boot .vhdx.

    My SYSTEM THREE is a Dell Latitude 5410, i7-10610U, 32GB RAM, 512GB NVMe ssd, supported device running Windows 11 Pro.

    My SYSTEM FOUR is a 2-in-1 convertible Lenovo Yoga 11e 20DA, Celeron N2930, 8GB RAM, 256GB ssd. Unsupported device: currently running Win10 Pro, plus Win11 Pro RTM and Insider Dev, Beta, and RP 24H2 as native boot vhdx.

    My SYSTEM FIVE is a Dell Latitude 3190 2-in-1, Pentium Silver N5030, 8GB RAM, 512GB NVMe ssd, supported device running Windows 11 Pro, plus Insider Beta, Dev, and Canary builds (and a few others) as a native boot .vhdx.

    My SYSTEM SIX is a Dell Latitude 5550, Core Ultra 7 165H, 64GB RAM, 1TB NVMe SSD, supported device, Windows 11 Pro 24H2, Hyper-V host machine.
@Brink
Shawn, I am unable to turn on Core Isolation Memory Integrity because I have two rogue drivers (see attached) that were optionally downloaded during a Windows update last May. The drivers or component are not visible/listed in Device manager and I don't know how to find them and delete the 2 drivers, can you help?
Thanks
 

Attachments

  • Incompatible Mediatek drivers.jpg
    Incompatible Mediatek drivers.jpg
    18.9 KB · Views: 189
  • Incompatible drivers.jpg
    Incompatible drivers.jpg
    10.8 KB · Views: 216

My Computers

System One System Two

  • OS
    Windows 11 Home 24H2 build: 26100.3476
    Computer type
    Laptop
    Manufacturer/Model
    Acer Predator PHN16-71-50JG
    CPU
    Intel i5-13500HX 2500 Mhz, 14 cores, 20 l. processors
    Motherboard
    RPL, Compass RTX, V1.18
    Memory
    16 GB DDR5-4800MT/s in Dual Channel mode
    Graphics Card(s)
    Intel UHD + NVIDIA GeForce RTX 4050
    Sound Card
    RealTek + Intel Smart Sound and Nvidia HD Audio
    Monitor(s) Displays
    IPS 16", AR16:10,
    Screen Resolution
    1920x1200x165Hz
    Hard Drives
    SK Hynix 512GB PCIe NVMe Gen4x4 M.2 2280 SSD
    PSU
    Power adapter Delta 230W, 4-cell 90 Wh Li-Ion battery
    Case
    Polycarbonate with a metal panel lid
    Cooling
    2 fans
    Keyboard
    US RGB white keys
    Mouse
    Precision Trackpad
    Internet Speed
    15 Mb/s
    Browser
    Edge
    Antivirus
    Windows Defender
    Other Info
    BIOS: Insyde Software 5.44.1.18 dated: 21/8/2024
    Wi-Fi 6 AX 1650i, Gigabit Ethernet, Network (RJ-45) port
  • Operating System
    Windows 11 Home 24H2 build 26100.3476
    Computer type
    Laptop
    Manufacturer/Model
    Asus Vivobook K3502Z S15 15" OLED
    CPU
    Intel 12th Gen. i7 12700H, 14 cores, 2.3 GHz (24M Cache, up to 4.7 GHz, 6P+8E cores)
    Motherboard
    Alder Lake-H, 1700-4700 MHz clock rate
    Memory
    8GB LPDDR4 on board + 8GB LPDDR4 3200 MHz in Dual Channel.
    Graphics card(s)
    Intel Iris Xe supports up to 4096 x 2304 @ 120Hz
    Sound Card
    Harman Kardon - DTS
    Monitor(s) Displays
    OLED 15.6inch 2.8K (2880 x 1620)
    Screen Resolution
    16:9 aspect ratio 0.2ms response time 120Hz refresh rate, 550nits
    Hard Drives
    512GB M.2 NVMe Gen4 PCIe 4.0 SSD, Micron_2450_MTFDKBA512TFK
    PSU
    90-Watt USB charger (Thunderbolt4)
    Case
    Metal lid, plastic case
    Cooling
    1 fan
    Mouse
    Precision Trackpad
    Keyboard
    With adjustable backlight
    Internet Speed
    ISP provides 15 mb/s WIFI LTE (4G), laptop WIFI 6 adapter.
    Browser
    Edge
    Antivirus
    Windows Defender
    Other Info
    BIOS American Megatrends International, LLC. 10.1.2.312, 13/03/2024. Network adapter: Intel Wi-Fi 6E AX211 160 MHz
The drivers or component are not visible/listed in Device manager
Such drivers are only visible in Device Manager when the device that needs them is connected to the PC and in use.

To see all devices in Device Manager, whether currently connected or not, select View > Show hidden devices. You can the remove then and delete their drivers.
 

My Computers

System One System Two

  • OS
    Windows 11 Home
    Computer type
    Laptop
    Manufacturer/Model
    Acer Aspire 3 A315-23
    CPU
    AMD Athlon Silver 3050U
    Memory
    8GB
    Graphics Card(s)
    Radeon Graphics
    Monitor(s) Displays
    laptop screen
    Screen Resolution
    1366x768 native resolution, up to 2560x1440 with Radeon Virtual Super Resolution
    Hard Drives
    1TB Samsung EVO 870 SSD
    Internet Speed
    50 Mbps
    Browser
    Edge, Firefox
    Antivirus
    Defender
    Other Info
    fully 'Windows 11 ready' laptop. Windows 10 C: partition migrated from my old unsupported 'main machine' then upgraded to 11. A test migration ran Insider builds for 2 months. When 11 was released on 5th October 2021 it was re-imaged back to 10 and was offered the upgrade in Windows Update on 20th October. Windows Update offered the 22H2 Feature Update on 20th September 2022. It got the 23H2 Feature Update on 4th November 2023 through Windows Update, and 24H2 on 3rd October 2024 through Windows Update by setting the Target Release Version for 24H2.

    My SYSTEM THREE is a Dell Latitude 5410, i7-10610U, 32GB RAM, 512GB NVMe ssd, supported device running Windows 11 Pro.

    My SYSTEM FOUR is a 2-in-1 convertible Lenovo Yoga 11e 20DA, Celeron N2930, 8GB RAM, 256GB ssd. Unsupported device: currently running Win10 Pro, plus Win11 Pro RTM and Insider Dev, Beta, and RP 24H2 as native boot vhdx.

    My SYSTEM FIVE is a Dell Latitude 3190 2-in-1, Pentium Silver N5030, 8GB RAM, 512GB NVMe ssd, supported device running Windows 11 Pro, plus Insider Beta, Dev, and Canary builds (and a few others) as a native boot .vhdx.

    My SYSTEM SIX is a Dell Latitude 5550, Core Ultra 7 165H, 64GB RAM, 1TB NVMe SSD, supported device, Windows 11 Pro 24H2, Hyper-V host machine.
  • Operating System
    Windows 11 Pro
    Computer type
    Laptop
    Manufacturer/Model
    Dell Latitude E4310
    CPU
    Intel® Core™ i5-520M
    Motherboard
    0T6M8G
    Memory
    8GB
    Graphics card(s)
    (integrated graphics) Intel HD Graphics
    Screen Resolution
    1366x768
    Hard Drives
    500GB Crucial MX500 SSD
    Browser
    Firefox, Edge
    Antivirus
    Defender
    Other Info
    unsupported machine: Legacy bios, MBR, TPM 1.2, upgraded from W10 to W11 using W10/W11 hybrid install media workaround. In-place upgrade to 22H2 using ISO and a workaround. Feature Update to 23H2 by manually installing the Enablement Package. In-place upgrade to 24H2 using hybrid 23H2/24H2 install media. Also running Insider Beta, Dev, and Canary builds as a native boot .vhdx.

    My SYSTEM THREE is a Dell Latitude 5410, i7-10610U, 32GB RAM, 512GB NVMe ssd, supported device running Windows 11 Pro.

    My SYSTEM FOUR is a 2-in-1 convertible Lenovo Yoga 11e 20DA, Celeron N2930, 8GB RAM, 256GB ssd. Unsupported device: currently running Win10 Pro, plus Win11 Pro RTM and Insider Dev, Beta, and RP 24H2 as native boot vhdx.

    My SYSTEM FIVE is a Dell Latitude 3190 2-in-1, Pentium Silver N5030, 8GB RAM, 512GB NVMe ssd, supported device running Windows 11 Pro, plus Insider Beta, Dev, and Canary builds (and a few others) as a native boot .vhdx.

    My SYSTEM SIX is a Dell Latitude 5550, Core Ultra 7 165H, 64GB RAM, 1TB NVMe SSD, supported device, Windows 11 Pro 24H2, Hyper-V host machine.
Such drivers are only visible in Device Manager when the device that needs them is connected to the PC and in use.

To see all devices in Device Manager, whether currently connected or not, select View > Show hidden devices. You can the remove then and delete their drivers.
I did that (show hidden devices) and those Mediatek items are not there also checked all USB drivers and there is no USB2ser.sys anywhere. I seem to remember uninstalling those 2 Mediatek drivers in Device manager in May 2022 so there may be remnants left that W11 Core Isolation still detects. There used to be a command in W10 to list/manage all your installed drivers is that still possible in W11?
 

My Computers

System One System Two

  • OS
    Windows 11 Home 24H2 build: 26100.3476
    Computer type
    Laptop
    Manufacturer/Model
    Acer Predator PHN16-71-50JG
    CPU
    Intel i5-13500HX 2500 Mhz, 14 cores, 20 l. processors
    Motherboard
    RPL, Compass RTX, V1.18
    Memory
    16 GB DDR5-4800MT/s in Dual Channel mode
    Graphics Card(s)
    Intel UHD + NVIDIA GeForce RTX 4050
    Sound Card
    RealTek + Intel Smart Sound and Nvidia HD Audio
    Monitor(s) Displays
    IPS 16", AR16:10,
    Screen Resolution
    1920x1200x165Hz
    Hard Drives
    SK Hynix 512GB PCIe NVMe Gen4x4 M.2 2280 SSD
    PSU
    Power adapter Delta 230W, 4-cell 90 Wh Li-Ion battery
    Case
    Polycarbonate with a metal panel lid
    Cooling
    2 fans
    Keyboard
    US RGB white keys
    Mouse
    Precision Trackpad
    Internet Speed
    15 Mb/s
    Browser
    Edge
    Antivirus
    Windows Defender
    Other Info
    BIOS: Insyde Software 5.44.1.18 dated: 21/8/2024
    Wi-Fi 6 AX 1650i, Gigabit Ethernet, Network (RJ-45) port
  • Operating System
    Windows 11 Home 24H2 build 26100.3476
    Computer type
    Laptop
    Manufacturer/Model
    Asus Vivobook K3502Z S15 15" OLED
    CPU
    Intel 12th Gen. i7 12700H, 14 cores, 2.3 GHz (24M Cache, up to 4.7 GHz, 6P+8E cores)
    Motherboard
    Alder Lake-H, 1700-4700 MHz clock rate
    Memory
    8GB LPDDR4 on board + 8GB LPDDR4 3200 MHz in Dual Channel.
    Graphics card(s)
    Intel Iris Xe supports up to 4096 x 2304 @ 120Hz
    Sound Card
    Harman Kardon - DTS
    Monitor(s) Displays
    OLED 15.6inch 2.8K (2880 x 1620)
    Screen Resolution
    16:9 aspect ratio 0.2ms response time 120Hz refresh rate, 550nits
    Hard Drives
    512GB M.2 NVMe Gen4 PCIe 4.0 SSD, Micron_2450_MTFDKBA512TFK
    PSU
    90-Watt USB charger (Thunderbolt4)
    Case
    Metal lid, plastic case
    Cooling
    1 fan
    Mouse
    Precision Trackpad
    Keyboard
    With adjustable backlight
    Internet Speed
    ISP provides 15 mb/s WIFI LTE (4G), laptop WIFI 6 adapter.
    Browser
    Edge
    Antivirus
    Windows Defender
    Other Info
    BIOS American Megatrends International, LLC. 10.1.2.312, 13/03/2024. Network adapter: Intel Wi-Fi 6E AX211 160 MHz
Run the following command in an command prompt as admin:

Code:
pnputil /delete-driver oem11.inf /uninstall /force

to uninstall and remove the driver from the system.

To list the drivers you can use this command:

Code:
dism /online /get-drivers /format:table

 

My Computer

System One

  • OS
    Win 11
Run the following command in an command prompt as admin:

Code:
pnputil /delete-driver oem11.inf /uninstall /force

to uninstall and remove the driver from the system.

To list the drivers you can use this command:

Code:
dism /online /get-drivers /format:table

Thank you, that did it (see attached), now to turn on Core Isolution after restart

It worked! Lucky Windows mentioned the Oem11.inf name as I did a driver query and found nothing. Thanks again Tekkie Boy.
 

Attachments

  • Success.jpg
    Success.jpg
    31.7 KB · Views: 212
  • Core Isolation on.jpg
    Core Isolation on.jpg
    39.5 KB · Views: 133
Last edited:

My Computers

System One System Two

  • OS
    Windows 11 Home 24H2 build: 26100.3476
    Computer type
    Laptop
    Manufacturer/Model
    Acer Predator PHN16-71-50JG
    CPU
    Intel i5-13500HX 2500 Mhz, 14 cores, 20 l. processors
    Motherboard
    RPL, Compass RTX, V1.18
    Memory
    16 GB DDR5-4800MT/s in Dual Channel mode
    Graphics Card(s)
    Intel UHD + NVIDIA GeForce RTX 4050
    Sound Card
    RealTek + Intel Smart Sound and Nvidia HD Audio
    Monitor(s) Displays
    IPS 16", AR16:10,
    Screen Resolution
    1920x1200x165Hz
    Hard Drives
    SK Hynix 512GB PCIe NVMe Gen4x4 M.2 2280 SSD
    PSU
    Power adapter Delta 230W, 4-cell 90 Wh Li-Ion battery
    Case
    Polycarbonate with a metal panel lid
    Cooling
    2 fans
    Keyboard
    US RGB white keys
    Mouse
    Precision Trackpad
    Internet Speed
    15 Mb/s
    Browser
    Edge
    Antivirus
    Windows Defender
    Other Info
    BIOS: Insyde Software 5.44.1.18 dated: 21/8/2024
    Wi-Fi 6 AX 1650i, Gigabit Ethernet, Network (RJ-45) port
  • Operating System
    Windows 11 Home 24H2 build 26100.3476
    Computer type
    Laptop
    Manufacturer/Model
    Asus Vivobook K3502Z S15 15" OLED
    CPU
    Intel 12th Gen. i7 12700H, 14 cores, 2.3 GHz (24M Cache, up to 4.7 GHz, 6P+8E cores)
    Motherboard
    Alder Lake-H, 1700-4700 MHz clock rate
    Memory
    8GB LPDDR4 on board + 8GB LPDDR4 3200 MHz in Dual Channel.
    Graphics card(s)
    Intel Iris Xe supports up to 4096 x 2304 @ 120Hz
    Sound Card
    Harman Kardon - DTS
    Monitor(s) Displays
    OLED 15.6inch 2.8K (2880 x 1620)
    Screen Resolution
    16:9 aspect ratio 0.2ms response time 120Hz refresh rate, 550nits
    Hard Drives
    512GB M.2 NVMe Gen4 PCIe 4.0 SSD, Micron_2450_MTFDKBA512TFK
    PSU
    90-Watt USB charger (Thunderbolt4)
    Case
    Metal lid, plastic case
    Cooling
    1 fan
    Mouse
    Precision Trackpad
    Keyboard
    With adjustable backlight
    Internet Speed
    ISP provides 15 mb/s WIFI LTE (4G), laptop WIFI 6 adapter.
    Browser
    Edge
    Antivirus
    Windows Defender
    Other Info
    BIOS American Megatrends International, LLC. 10.1.2.312, 13/03/2024. Network adapter: Intel Wi-Fi 6E AX211 160 MHz
Glad to hear.

You’re welcome.
Deleted 2 more unwanted 3rd party drivers, Mediatek and Apple, That DISM command is very usefull.:-)
 

My Computers

System One System Two

  • OS
    Windows 11 Home 24H2 build: 26100.3476
    Computer type
    Laptop
    Manufacturer/Model
    Acer Predator PHN16-71-50JG
    CPU
    Intel i5-13500HX 2500 Mhz, 14 cores, 20 l. processors
    Motherboard
    RPL, Compass RTX, V1.18
    Memory
    16 GB DDR5-4800MT/s in Dual Channel mode
    Graphics Card(s)
    Intel UHD + NVIDIA GeForce RTX 4050
    Sound Card
    RealTek + Intel Smart Sound and Nvidia HD Audio
    Monitor(s) Displays
    IPS 16", AR16:10,
    Screen Resolution
    1920x1200x165Hz
    Hard Drives
    SK Hynix 512GB PCIe NVMe Gen4x4 M.2 2280 SSD
    PSU
    Power adapter Delta 230W, 4-cell 90 Wh Li-Ion battery
    Case
    Polycarbonate with a metal panel lid
    Cooling
    2 fans
    Keyboard
    US RGB white keys
    Mouse
    Precision Trackpad
    Internet Speed
    15 Mb/s
    Browser
    Edge
    Antivirus
    Windows Defender
    Other Info
    BIOS: Insyde Software 5.44.1.18 dated: 21/8/2024
    Wi-Fi 6 AX 1650i, Gigabit Ethernet, Network (RJ-45) port
  • Operating System
    Windows 11 Home 24H2 build 26100.3476
    Computer type
    Laptop
    Manufacturer/Model
    Asus Vivobook K3502Z S15 15" OLED
    CPU
    Intel 12th Gen. i7 12700H, 14 cores, 2.3 GHz (24M Cache, up to 4.7 GHz, 6P+8E cores)
    Motherboard
    Alder Lake-H, 1700-4700 MHz clock rate
    Memory
    8GB LPDDR4 on board + 8GB LPDDR4 3200 MHz in Dual Channel.
    Graphics card(s)
    Intel Iris Xe supports up to 4096 x 2304 @ 120Hz
    Sound Card
    Harman Kardon - DTS
    Monitor(s) Displays
    OLED 15.6inch 2.8K (2880 x 1620)
    Screen Resolution
    16:9 aspect ratio 0.2ms response time 120Hz refresh rate, 550nits
    Hard Drives
    512GB M.2 NVMe Gen4 PCIe 4.0 SSD, Micron_2450_MTFDKBA512TFK
    PSU
    90-Watt USB charger (Thunderbolt4)
    Case
    Metal lid, plastic case
    Cooling
    1 fan
    Mouse
    Precision Trackpad
    Keyboard
    With adjustable backlight
    Internet Speed
    ISP provides 15 mb/s WIFI LTE (4G), laptop WIFI 6 adapter.
    Browser
    Edge
    Antivirus
    Windows Defender
    Other Info
    BIOS American Megatrends International, LLC. 10.1.2.312, 13/03/2024. Network adapter: Intel Wi-Fi 6E AX211 160 MHz
I noticed this off yesterday. I saw a driver it said it didn't like. I moved the files to a different folder so that it wouldn't find it and rebooted. Then I tried to enable the option again. This time, it didn't list any drivers. Now what? Anybody have ideas?

... time passes ...

I guess I just had to ask here to get it fixed. After posting, I decided to try it again today. It didn't just turn it on when I clicked on the switch, but it didn't complain about drivers either. It said I had to restart to turn it on. Now, the option is on. I don't think I applied any updates in between time either. Somewhat scary. At least now I feel a little safer.

Good luck to anyone else with the same problem.
 

My Computer

System One

  • OS
    Windows 11 Pro Version 10.0.22000 Build 22000
Having another issue with Core Isolation Memory Integrity running (besides HV slowing my RAM by 2 GB/s and unreliable HWIFO stats). I am getting an Intel GPU error 4101 now that I have never seen before in Event Viewer. When I turn off Fast Startup and disable Battery Saver the 4101 error is not there so it looks like this "BSOD recovery" is very quick just before windows booting (I do get a black screen for a second also with a full boot). It is not a critical error in my case, just a bit annoying probably not worth installing a newer Intel GPU driver; I have now an old (2019) OEM driver from ACER installed "VGA_Intel_26.20.100.6911_W11x64_(UMA)" but also downloaded from Intel the latest (2022) "gfx_win_101.3413_101.2111.exe" that is supposed to work with my MOBO/CPU. I installed the new Intel GPU driver and no longer get this 4101 error.
 

Attachments

Last edited:

My Computers

System One System Two

  • OS
    Windows 11 Home 24H2 build: 26100.3476
    Computer type
    Laptop
    Manufacturer/Model
    Acer Predator PHN16-71-50JG
    CPU
    Intel i5-13500HX 2500 Mhz, 14 cores, 20 l. processors
    Motherboard
    RPL, Compass RTX, V1.18
    Memory
    16 GB DDR5-4800MT/s in Dual Channel mode
    Graphics Card(s)
    Intel UHD + NVIDIA GeForce RTX 4050
    Sound Card
    RealTek + Intel Smart Sound and Nvidia HD Audio
    Monitor(s) Displays
    IPS 16", AR16:10,
    Screen Resolution
    1920x1200x165Hz
    Hard Drives
    SK Hynix 512GB PCIe NVMe Gen4x4 M.2 2280 SSD
    PSU
    Power adapter Delta 230W, 4-cell 90 Wh Li-Ion battery
    Case
    Polycarbonate with a metal panel lid
    Cooling
    2 fans
    Keyboard
    US RGB white keys
    Mouse
    Precision Trackpad
    Internet Speed
    15 Mb/s
    Browser
    Edge
    Antivirus
    Windows Defender
    Other Info
    BIOS: Insyde Software 5.44.1.18 dated: 21/8/2024
    Wi-Fi 6 AX 1650i, Gigabit Ethernet, Network (RJ-45) port
  • Operating System
    Windows 11 Home 24H2 build 26100.3476
    Computer type
    Laptop
    Manufacturer/Model
    Asus Vivobook K3502Z S15 15" OLED
    CPU
    Intel 12th Gen. i7 12700H, 14 cores, 2.3 GHz (24M Cache, up to 4.7 GHz, 6P+8E cores)
    Motherboard
    Alder Lake-H, 1700-4700 MHz clock rate
    Memory
    8GB LPDDR4 on board + 8GB LPDDR4 3200 MHz in Dual Channel.
    Graphics card(s)
    Intel Iris Xe supports up to 4096 x 2304 @ 120Hz
    Sound Card
    Harman Kardon - DTS
    Monitor(s) Displays
    OLED 15.6inch 2.8K (2880 x 1620)
    Screen Resolution
    16:9 aspect ratio 0.2ms response time 120Hz refresh rate, 550nits
    Hard Drives
    512GB M.2 NVMe Gen4 PCIe 4.0 SSD, Micron_2450_MTFDKBA512TFK
    PSU
    90-Watt USB charger (Thunderbolt4)
    Case
    Metal lid, plastic case
    Cooling
    1 fan
    Mouse
    Precision Trackpad
    Keyboard
    With adjustable backlight
    Internet Speed
    ISP provides 15 mb/s WIFI LTE (4G), laptop WIFI 6 adapter.
    Browser
    Edge
    Antivirus
    Windows Defender
    Other Info
    BIOS American Megatrends International, LLC. 10.1.2.312, 13/03/2024. Network adapter: Intel Wi-Fi 6E AX211 160 MHz
I can't enable memory integrity. I have one old device that I use with my recording studio, a Frontier Tranzport that only uses a Vista era driver. The company is no longer around so no new driver will ever be issued. The Tranzport is a wireless recording studio program controller.

I have two options, dump the fully functional Tranzport or not enable memory integrity. I'm not going to dump the Tranzport unless it dies.
 

My Computer

System One

  • OS
    Windows 11 Pro
    Computer type
    Laptop
    Manufacturer/Model
    Dell Inspiron 16 5630
    CPU
    i7 1360P
    Motherboard
    Dell
    Memory
    16GB
    Graphics Card(s)
    Intel CPU
    Sound Card
    Realtek
    Monitor(s) Displays
    16" Touch Screen
    Screen Resolution
    1920X1080
    Hard Drives
    1TB Samsung NVME SSD
    PSU
    65 Watt Dell
    Case
    Dell
    Cooling
    Dell
    Keyboard
    Dell
    Mouse
    Trackpad
    Internet Speed
    Google Fiber
    Browser
    Edge
    Antivirus
    Defender and Malwarebytes
    Other Info
    Cakewalk by Bandlab and Presonus Studio One 4.6 Pro recording programs. MOTU recording interface
I can't enable memory integrity. I have one old device that I use with my recording studio, a Frontier Tranzport that only uses a Vista era driver. The company is no longer around so no new driver will ever be issued. The Tranzport is a wireless recording studio program controller.

I have two options, dump the fully functional Tranzport or not enable memory integrity. I'm not going to dump the Tranzport unless it dies.

I'm in a similar situation. I have a brand spanking new, albeit obsolete, RumblePad 2 and Acronis Cyber Protect Home Office installed on my pc. Drivers for both suddenly triggered the message about incompatibility for Core Isolation: Memory Integrity. Although both have been installed and in use, and Windows Security has been running without issue, for months, suddenly Windows Security recognizes the drivers as incompatible. I could uninstall ACPHO and install last month's new version - which, btw, took Acronis several years to address this issue by finally allowing customization to avoid installing the offending component - but I'm not about to buy and test a new controller. I've been very comfortable with my RumblePad 2.

Since Core Isolation is a relatively new security feature introduced in Windows 10, which means it hasn't been protecting computers for decades, I suppose I'll simply continue taking my chances, as I did with Windows 7, Windows Vista and Windows 98.
 
Last edited:

My Computer

System One

  • OS
    Windows 11 Pro
If I use Group Policy to set this key on my Win 11 PCs, what will happen if there is an incompatible driver on some of them?
 

My Computer

System One

  • OS
    Windows 11
    Computer type
    PC/Desktop
If I use Group Policy to set this key on my Win 11 PCs, what will happen if there is an incompatible driver on some of them?

Hello Rick,

Memory Integrity will not turn on with incompatible drivers. :(
 

My Computers

System One System Two

  • OS
    Windows 11 Pro for Workstations
    Computer type
    PC/Desktop
    Manufacturer/Model
    Custom self build
    CPU
    Intel i7-8700K 5 GHz
    Motherboard
    ASUS ROG Maximus XI Formula Z390
    Memory
    64 GB (4x16GB) G.SKILL TridentZ RGB DDR4 3600 MHz (F4-3600C18D-32GTZR)
    Graphics Card(s)
    ASUS ROG-STRIX-GTX1080TI-O11G-GAMING (11GB GDDR5X)
    Sound Card
    Integrated Digital Audio (S/PDIF)
    Monitor(s) Displays
    2 x Samsung Odyssey G75 27"
    Screen Resolution
    2560x1440
    Hard Drives
    1TB Samsung 990 PRO M.2,
    4TB Samsung 990 PRO M.2,
    8TB WD MyCloudEX2Ultra NAS
    PSU
    Seasonic Prime Titanium 850W
    Case
    Thermaltake Core P3 wall mounted
    Cooling
    Corsair Hydro H115i
    Keyboard
    Logitech wireless K800
    Mouse
    Logitech MX Master 3
    Internet Speed
    1 Gbps Download and 35 Mbps Upload
    Browser
    Google Chrome
    Antivirus
    Microsoft Defender and Malwarebytes Premium
    Other Info
    Logitech Z625 speaker system,
    Logitech BRIO 4K Pro webcam,
    HP Color LaserJet Pro MFP M477fdn,
    CyberPower CP1500PFCLCD
    Galaxy S23 Plus phone
  • Operating System
    Windows 11 Pro
    Computer type
    Laptop
    Manufacturer/Model
    Surface Laptop 7 Copilot+ PC
    CPU
    Snapdragon X Elite (12 core) 3.42 GHz
    Memory
    16 GB LPDDR5x-7467 MHz
    Monitor(s) Displays
    15" HDR
    Screen Resolution
    2496 x 1664
    Hard Drives
    1 TB SSD
    Internet Speed
    Wi-Fi 7 and Bluetooth 5.4
    Browser
    Chrome and Edge
    Antivirus
    Windows Defender
Now that I realize Memory Integrity has been disabled by default all this time, why did I receive the warning message about incompatible drivers, in the first place, and why do I continue receiving the warning message every time I recover from a backup archive, even after I've selected "Dismiss" for the offending Memory Integrity feature before creating the backup archive? Is there a way to permanently avoid having to "Dismiss" every single time I complete a recovery?
 

My Computer

System One

  • OS
    Windows 11 Pro
Now that I realize Memory Integrity has been disabled by default all this time, why did I receive the warning message about incompatible drivers, in the first place, and why do I continue receiving the warning message every time I recover from a backup archive, even after I've selected "Dismiss" for the offending Memory Integrity feature before creating the backup archive? Is there a way to permanently avoid having to "Dismiss" every single time I complete a recovery?

Currently, only by uninstalling the incompatible drivers. :(

 

My Computers

System One System Two

  • OS
    Windows 11 Pro for Workstations
    Computer type
    PC/Desktop
    Manufacturer/Model
    Custom self build
    CPU
    Intel i7-8700K 5 GHz
    Motherboard
    ASUS ROG Maximus XI Formula Z390
    Memory
    64 GB (4x16GB) G.SKILL TridentZ RGB DDR4 3600 MHz (F4-3600C18D-32GTZR)
    Graphics Card(s)
    ASUS ROG-STRIX-GTX1080TI-O11G-GAMING (11GB GDDR5X)
    Sound Card
    Integrated Digital Audio (S/PDIF)
    Monitor(s) Displays
    2 x Samsung Odyssey G75 27"
    Screen Resolution
    2560x1440
    Hard Drives
    1TB Samsung 990 PRO M.2,
    4TB Samsung 990 PRO M.2,
    8TB WD MyCloudEX2Ultra NAS
    PSU
    Seasonic Prime Titanium 850W
    Case
    Thermaltake Core P3 wall mounted
    Cooling
    Corsair Hydro H115i
    Keyboard
    Logitech wireless K800
    Mouse
    Logitech MX Master 3
    Internet Speed
    1 Gbps Download and 35 Mbps Upload
    Browser
    Google Chrome
    Antivirus
    Microsoft Defender and Malwarebytes Premium
    Other Info
    Logitech Z625 speaker system,
    Logitech BRIO 4K Pro webcam,
    HP Color LaserJet Pro MFP M477fdn,
    CyberPower CP1500PFCLCD
    Galaxy S23 Plus phone
  • Operating System
    Windows 11 Pro
    Computer type
    Laptop
    Manufacturer/Model
    Surface Laptop 7 Copilot+ PC
    CPU
    Snapdragon X Elite (12 core) 3.42 GHz
    Memory
    16 GB LPDDR5x-7467 MHz
    Monitor(s) Displays
    15" HDR
    Screen Resolution
    2496 x 1664
    Hard Drives
    1 TB SSD
    Internet Speed
    Wi-Fi 7 and Bluetooth 5.4
    Browser
    Chrome and Edge
    Antivirus
    Windows Defender

Latest Support Threads

Back
Top Bottom