I cant use Memory Integrity (HVCI)


345boost

Member
Local time
3:00 AM
Posts
29
OS
Windows 11 Pro 24H2
Even though I enable the Memory Integrity feature, it keeps turning itself off. How can I fix this issue? There are no driver conflicts in the system, and everything is up to date. Reinstalling the system doesn't help either.


Virtualization, vt-D is already enabled from bios, system mode is uefi without csm
 
Windows Build/Version
Windows 11 PRO 24H2

My Computer

System One

  • OS
    Windows 11 Pro 24H2
    Computer type
    Laptop
    Manufacturer/Model
    MSI
    CPU
    i7 10875H
    Motherboard
    MS 17E9
    Memory
    16GB
    Graphics Card(s)
    RTX 2070 SUPER
Please update the EF "My Computer" section with the laptop model.


Run the V2 log collector > post a share link




 

My Computer

System One

  • OS
    Windows 10
    Computer type
    Laptop
    Manufacturer/Model
    HP
    CPU
    Intel(R) Core(TM) i7-4800MQ CPU @ 2.70GHz
    Motherboard
    Product : 190A Version : KBC Version 94.56
    Memory
    16 GB Total: Manufacturer : Samsung MemoryType : DDR3 FormFactor : SODIMM Capacity : 8GB Speed : 1600
    Graphics Card(s)
    NVIDIA Quadro K3100M; Intel(R) HD Graphics 4600
    Sound Card
    IDT High Definition Audio CODEC; PNP Device ID HDAUDIO\FUNC_01&VEN_111D&DEV_76E0
    Hard Drives
    Model Hitachi HTS727575A9E364
    Antivirus
    Microsoft Defender
    Other Info
    Mobile Workstation
Please update the EF "My Computer" section with the laptop model.


Run the V2 log collector > post a share link




It is MSI GE75 Raider 10SFS Laptop, here are the logs: Easyupload.io - Upload Files and Share Them Easily
 

My Computer

System One

  • OS
    Windows 11 Pro 24H2
    Computer type
    Laptop
    Manufacturer/Model
    MSI
    CPU
    i7 10875H
    Motherboard
    MS 17E9
    Memory
    16GB
    Graphics Card(s)
    RTX 2070 SUPER
Please use google drive, one drive, or drop box for share links.
 

My Computer

System One

  • OS
    Windows 10
    Computer type
    Laptop
    Manufacturer/Model
    HP
    CPU
    Intel(R) Core(TM) i7-4800MQ CPU @ 2.70GHz
    Motherboard
    Product : 190A Version : KBC Version 94.56
    Memory
    16 GB Total: Manufacturer : Samsung MemoryType : DDR3 FormFactor : SODIMM Capacity : 8GB Speed : 1600
    Graphics Card(s)
    NVIDIA Quadro K3100M; Intel(R) HD Graphics 4600
    Sound Card
    IDT High Definition Audio CODEC; PNP Device ID HDAUDIO\FUNC_01&VEN_111D&DEV_76E0
    Hard Drives
    Model Hitachi HTS727575A9E364
    Antivirus
    Microsoft Defender
    Other Info
    Mobile Workstation
These were some of the reports in the collected log files.

They may useful for members that troubleshoot memory integrity.



Code:
Event[2224]
  Log Name: System
  Source: Microsoft-Windows-Hyper-V-Hypervisor
  Date: 2024-12-15T21:28:55.0680000Z
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: DESKTOP-8JUUMPD
  Description:
Hypervisor successfully started.

Event[2225]
  Log Name: System
  Source: Microsoft-Windows-Hyper-V-Hypervisor
  Date: 2024-12-15T21:28:55.0680000Z
  Event ID: 2
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: DESKTOP-8JUUMPD
  Description:
Hypervisor scheduler type is 0x4.

Event[2226]
  Log Name: System
  Source: Microsoft-Windows-Hyper-V-Hypervisor
  Date: 2024-12-15T21:28:55.0680000Z
  Event ID: 129
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: DESKTOP-8JUUMPD
  Description:
Hypervisor initialized I/O remapping.

Hardware present: true
Hardware enabled: true
Policy: 0x0
Enabled features: 0x43
Internal information: 0x0
Problems: 0x0
Additional information: 0x0

Event[2227]
  Log Name: System
  Source: Microsoft-Windows-Hyper-V-Hypervisor
  Date: 2024-12-15T21:28:55.0680000Z
  Event ID: 156
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: DESKTOP-8JUUMPD
  Description:
Hypervisor configured mitigations for CVE-2018-3646 for virtual machines.

Processor not affected: true
Processor family not affected: false
Processor supports cache flush: true
HyperThreading enabled: true
Parent hypervisor applies mitigations: false
Mitigations disabled by bcdedit: false
Mitigations enabled: true
Cache flush needed: false
 

Event[2228]
  Log Name: System
  Source: Microsoft-Windows-Hyper-V-Hypervisor
  Date: 2024-12-15T21:28:55.0680000Z
  Event ID: 165
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: DESKTOP-8JUUMPD
  Description:
Hypervisor configured mitigations for CVE-2019-11091, CVE-2018-12126, CVE-2018-12127, CVE-2018-12130 for virtual machines.

Processor not affected: true
Processor family not affected: false
Processor supports microarchitectural buffer flush: false
Buffer flush needed: true
 

Event[2229]
  Log Name: System
  Source: Microsoft-Windows-Hyper-V-Hypervisor
  Date: 2024-12-15T21:28:55.0680000Z
  Event ID: 167
  Task: N/A
  Level: Warning
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: DESKTOP-8JUUMPD
  Description:
The hypervisor did not enable mitigations for side channel vulnerabilities for virtual machines because HyperThreading is enabled. To enable mitigations for virtual machines, disable HyperThreading.


Code:
Event[1982]
  Log Name: System
  Source: Microsoft-Windows-Kernel-Boot
  Date: 2024-12-15T20:34:21.1290000Z
  Event ID: 124
  Task: N/A
  Level: Error
  Opcode: Info 
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: DESKTOP-8JUUMPD
  Description:
The virtualization-based security enablement policy check at phase 3 failed with status: Secure Boot is not enabled on this machine.


Code:
Kernel DMA Protection    On
Virtualization-based security    Running
Virtualization-based security Required Security Properties    Base Virtualization Support, Secure Boot
Virtualization-based security Available Security Properties    Base Virtualization Support, Secure Boot, DMA Protection, SMM Security Mitigations 1.0, Mode Based Execution Control, APIC Virtualization
Virtualization-based security Services Configured   
Virtualization-based security Services Running   
App Control for Business policy    Enforced
App Control for Business user mode policy    Audit
Automatic Device Encryption Support    Elevation Required to View
A hypervisor has been detected. Features required for Hyper-V will not be displayed.
 

My Computer

System One

  • OS
    Windows 10
    Computer type
    Laptop
    Manufacturer/Model
    HP
    CPU
    Intel(R) Core(TM) i7-4800MQ CPU @ 2.70GHz
    Motherboard
    Product : 190A Version : KBC Version 94.56
    Memory
    16 GB Total: Manufacturer : Samsung MemoryType : DDR3 FormFactor : SODIMM Capacity : 8GB Speed : 1600
    Graphics Card(s)
    NVIDIA Quadro K3100M; Intel(R) HD Graphics 4600
    Sound Card
    IDT High Definition Audio CODEC; PNP Device ID HDAUDIO\FUNC_01&VEN_111D&DEV_76E0
    Hard Drives
    Model Hitachi HTS727575A9E364
    Antivirus
    Microsoft Defender
    Other Info
    Mobile Workstation
These were some of the reports in the collected log files.

They may useful for members that troubleshoot memory integrity.



Code:
Event[2224]
  Log Name: System
  Source: Microsoft-Windows-Hyper-V-Hypervisor
  Date: 2024-12-15T21:28:55.0680000Z
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: DESKTOP-8JUUMPD
  Description:
Hypervisor successfully started.

Event[2225]
  Log Name: System
  Source: Microsoft-Windows-Hyper-V-Hypervisor
  Date: 2024-12-15T21:28:55.0680000Z
  Event ID: 2
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: DESKTOP-8JUUMPD
  Description:
Hypervisor scheduler type is 0x4.

Event[2226]
  Log Name: System
  Source: Microsoft-Windows-Hyper-V-Hypervisor
  Date: 2024-12-15T21:28:55.0680000Z
  Event ID: 129
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: DESKTOP-8JUUMPD
  Description:
Hypervisor initialized I/O remapping.

Hardware present: true
Hardware enabled: true
Policy: 0x0
Enabled features: 0x43
Internal information: 0x0
Problems: 0x0
Additional information: 0x0

Event[2227]
  Log Name: System
  Source: Microsoft-Windows-Hyper-V-Hypervisor
  Date: 2024-12-15T21:28:55.0680000Z
  Event ID: 156
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: DESKTOP-8JUUMPD
  Description:
Hypervisor configured mitigations for CVE-2018-3646 for virtual machines.

Processor not affected: true
Processor family not affected: false
Processor supports cache flush: true
HyperThreading enabled: true
Parent hypervisor applies mitigations: false
Mitigations disabled by bcdedit: false
Mitigations enabled: true
Cache flush needed: false
 

Event[2228]
  Log Name: System
  Source: Microsoft-Windows-Hyper-V-Hypervisor
  Date: 2024-12-15T21:28:55.0680000Z
  Event ID: 165
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: DESKTOP-8JUUMPD
  Description:
Hypervisor configured mitigations for CVE-2019-11091, CVE-2018-12126, CVE-2018-12127, CVE-2018-12130 for virtual machines.

Processor not affected: true
Processor family not affected: false
Processor supports microarchitectural buffer flush: false
Buffer flush needed: true
 

Event[2229]
  Log Name: System
  Source: Microsoft-Windows-Hyper-V-Hypervisor
  Date: 2024-12-15T21:28:55.0680000Z
  Event ID: 167
  Task: N/A
  Level: Warning
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: DESKTOP-8JUUMPD
  Description:
The hypervisor did not enable mitigations for side channel vulnerabilities for virtual machines because HyperThreading is enabled. To enable mitigations for virtual machines, disable HyperThreading.


Code:
Event[1982]
  Log Name: System
  Source: Microsoft-Windows-Kernel-Boot
  Date: 2024-12-15T20:34:21.1290000Z
  Event ID: 124
  Task: N/A
  Level: Error
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: DESKTOP-8JUUMPD
  Description:
The virtualization-based security enablement policy check at phase 3 failed with status: Secure Boot is not enabled on this machine.


Code:
Kernel DMA Protection    On
Virtualization-based security    Running
Virtualization-based security Required Security Properties    Base Virtualization Support, Secure Boot
Virtualization-based security Available Security Properties    Base Virtualization Support, Secure Boot, DMA Protection, SMM Security Mitigations 1.0, Mode Based Execution Control, APIC Virtualization
Virtualization-based security Services Configured  
Virtualization-based security Services Running  
App Control for Business policy    Enforced
App Control for Business user mode policy    Audit
Automatic Device Encryption Support    Elevation Required to View
A hypervisor has been detected. Features required for Hyper-V will not be displayed.
How can i fix that issue?
 

My Computer

System One

  • OS
    Windows 11 Pro 24H2
    Computer type
    Laptop
    Manufacturer/Model
    MSI
    CPU
    i7 10875H
    Motherboard
    MS 17E9
    Memory
    16GB
    Graphics Card(s)
    RTX 2070 SUPER

My Computers

System One System Two

  • OS
    Win 11 Home 24H2
    Computer type
    PC/Desktop
    Manufacturer/Model
    HP 24" AiO
    CPU
    Ryzen 7 5825u
    Motherboard
    HP
    Memory
    64GB DDR4 3200
    Graphics Card(s)
    Ryzen 7 5825u
    Sound Card
    RealTek
    Monitor(s) Displays
    24" HP
    Hard Drives
    1TB WD Blue SN580 M2 SSD Partitioned.
    250GB C:/Windows .. 750GB D:/Home.
    2x 1TB USB HDD External Backup/Storage.
    Internet Speed
    900MB full fibre
    Browser
    Vivaldi .. Browser, Calendar, eMail.
    Antivirus
    AVG Internet Security
    Other Info
    Mainly Open Source Software
  • Operating System
    Windows 11 Home 24H2
    Computer type
    PC/Desktop
    Manufacturer/Model
    HP 24" AiO
    CPU
    Ryzen 5 5500u
    Motherboard
    HP
    Memory
    32GB DDR4 3200
    Graphics card(s)
    AMD Radeon GPU
    Sound Card
    RealTek
    Monitor(s) Displays
    HP
    Hard Drives
    1TB WD blue SN580 M2 SSD Partitioned.
    250GB C:/Windows .. 750GB D:/Home.
    2x 1TB HDD External Backup/Storage.
    Internet Speed
    900MB Full Fibre
    Browser
    Microsoft Edge
    Antivirus
    AVG Internet Security
    Other Info
    Mainly Windows Software
    'The Wife's Computer'
This is a Microsoft link:



Code:
The virtualization-based security enablement policy check at phase 3 failed with status: Secure Boot is not enabled on this machine.


See if turning on secure boot has an impact:

 

My Computer

System One

  • OS
    Windows 10
    Computer type
    Laptop
    Manufacturer/Model
    HP
    CPU
    Intel(R) Core(TM) i7-4800MQ CPU @ 2.70GHz
    Motherboard
    Product : 190A Version : KBC Version 94.56
    Memory
    16 GB Total: Manufacturer : Samsung MemoryType : DDR3 FormFactor : SODIMM Capacity : 8GB Speed : 1600
    Graphics Card(s)
    NVIDIA Quadro K3100M; Intel(R) HD Graphics 4600
    Sound Card
    IDT High Definition Audio CODEC; PNP Device ID HDAUDIO\FUNC_01&VEN_111D&DEV_76E0
    Hard Drives
    Model Hitachi HTS727575A9E364
    Antivirus
    Microsoft Defender
    Other Info
    Mobile Workstation
This is a Microsoft link:



Code:
The virtualization-based security enablement policy check at phase 3 failed with status: Secure Boot is not enabled on this machine.


See if turning on secure boot has an impact:

I fixed secure boot statement but still memory integrity closing by itself
 

My Computer

System One

  • OS
    Windows 11 Pro 24H2
    Computer type
    Laptop
    Manufacturer/Model
    MSI
    CPU
    i7 10875H
    Motherboard
    MS 17E9
    Memory
    16GB
    Graphics Card(s)
    RTX 2070 SUPER
I'm running out of ideas.

Please run the PS command in the Microsoft link (post #9).

Get-CimInstance -ClassName Win32_DeviceGuard -Namespace root\Microsoft\Windows\DeviceGuard

 

My Computer

System One

  • OS
    Windows 10
    Computer type
    Laptop
    Manufacturer/Model
    HP
    CPU
    Intel(R) Core(TM) i7-4800MQ CPU @ 2.70GHz
    Motherboard
    Product : 190A Version : KBC Version 94.56
    Memory
    16 GB Total: Manufacturer : Samsung MemoryType : DDR3 FormFactor : SODIMM Capacity : 8GB Speed : 1600
    Graphics Card(s)
    NVIDIA Quadro K3100M; Intel(R) HD Graphics 4600
    Sound Card
    IDT High Definition Audio CODEC; PNP Device ID HDAUDIO\FUNC_01&VEN_111D&DEV_76E0
    Hard Drives
    Model Hitachi HTS727575A9E364
    Antivirus
    Microsoft Defender
    Other Info
    Mobile Workstation
AD3-A9772-4-E79-4-DC6-A16-E-1641-F530424-D.png



0-F4-A71-A7-167-E-4-FC7-82-C4-95-E68608-B2-C9.png

@zbook
 

My Computer

System One

  • OS
    Windows 11 Pro 24H2
    Computer type
    Laptop
    Manufacturer/Model
    MSI
    CPU
    i7 10875H
    Motherboard
    MS 17E9
    Memory
    16GB
    Graphics Card(s)
    RTX 2070 SUPER
Get-CimInstance -ClassName Win32_DeviceGuard -Namespace root\Microsoft\Windows\DeviceGuard
 

My Computer

System One

  • OS
    Windows 10
    Computer type
    Laptop
    Manufacturer/Model
    HP
    CPU
    Intel(R) Core(TM) i7-4800MQ CPU @ 2.70GHz
    Motherboard
    Product : 190A Version : KBC Version 94.56
    Memory
    16 GB Total: Manufacturer : Samsung MemoryType : DDR3 FormFactor : SODIMM Capacity : 8GB Speed : 1600
    Graphics Card(s)
    NVIDIA Quadro K3100M; Intel(R) HD Graphics 4600
    Sound Card
    IDT High Definition Audio CODEC; PNP Device ID HDAUDIO\FUNC_01&VEN_111D&DEV_76E0
    Hard Drives
    Model Hitachi HTS727575A9E364
    Antivirus
    Microsoft Defender
    Other Info
    Mobile Workstation
Get-CimInstance -ClassName Win32_DeviceGuard -Namespace root\Microsoft\Windows\DeviceGuard
Check my message above
 

My Computer

System One

  • OS
    Windows 11 Pro 24H2
    Computer type
    Laptop
    Manufacturer/Model
    MSI
    CPU
    i7 10875H
    Motherboard
    MS 17E9
    Memory
    16GB
    Graphics Card(s)
    RTX 2070 SUPER
I'm not finding information on how secure boot impacts memory integrity.

Other members may have information.


The log files collected displayed contradictory results for secure boot.

Secure Boot State On

SecureBoot : Not Enabled
 

My Computer

System One

  • OS
    Windows 10
    Computer type
    Laptop
    Manufacturer/Model
    HP
    CPU
    Intel(R) Core(TM) i7-4800MQ CPU @ 2.70GHz
    Motherboard
    Product : 190A Version : KBC Version 94.56
    Memory
    16 GB Total: Manufacturer : Samsung MemoryType : DDR3 FormFactor : SODIMM Capacity : 8GB Speed : 1600
    Graphics Card(s)
    NVIDIA Quadro K3100M; Intel(R) HD Graphics 4600
    Sound Card
    IDT High Definition Audio CODEC; PNP Device ID HDAUDIO\FUNC_01&VEN_111D&DEV_76E0
    Hard Drives
    Model Hitachi HTS727575A9E364
    Antivirus
    Microsoft Defender
    Other Info
    Mobile Workstation

My Computer

System One

  • OS
    Windows 11 Pro
Search your system32 for “dddriver64Dcsa.sys”
Does that driver exist? Apparently there are a few incompatible drivers that do not show in the integrity incompatibility report
I dont have that file
 

My Computer

System One

  • OS
    Windows 11 Pro 24H2
    Computer type
    Laptop
    Manufacturer/Model
    MSI
    CPU
    i7 10875H
    Motherboard
    MS 17E9
    Memory
    16GB
    Graphics Card(s)
    RTX 2070 SUPER
I'm not finding information on how secure boot impacts memory integrity.

Other members may have information.


The log files collected displayed contradictory results for secure boot.

Secure Boot State On

SecureBoot : Not Enabled
Yeah, u are right, what a mess
 

My Computer

System One

  • OS
    Windows 11 Pro 24H2
    Computer type
    Laptop
    Manufacturer/Model
    MSI
    CPU
    i7 10875H
    Motherboard
    MS 17E9
    Memory
    16GB
    Graphics Card(s)
    RTX 2070 SUPER

My Computer

System One

  • OS
    Windows 11 Pro 24H2
    Computer type
    Laptop
    Manufacturer/Model
    MSI
    CPU
    i7 10875H
    Motherboard
    MS 17E9
    Memory
    16GB
    Graphics Card(s)
    RTX 2070 SUPER
I'm not finding information on how secure boot impacts memory integrity.
It doesn't. I have SB off and memory integrity ON.
 

Attachments

  • core isolation.webp
    core isolation.webp
    39.7 KB · Views: 1
  • SB off.webp
    SB off.webp
    19.2 KB · Views: 1

My Computers

System One System Two

  • OS
    Windows 11 Pro 24H2 26100.2314
    Computer type
    PC/Desktop
    Manufacturer/Model
    Dell Optiplex 7080
    CPU
    i9-10900 10 core 20 threads
    Motherboard
    DELL 0J37VM
    Memory
    32 gb
    Graphics Card(s)
    none-Intel UHD Graphics 630
    Sound Card
    Integrated Realtek
    Monitor(s) Displays
    Benq 27
    Screen Resolution
    2560x1440
    Hard Drives
    1tb Solidigm m.2 nvme+256gb SKHynix m.2 nvme /External drives 512gb Samsung m.2 sata+1tb Kingston m2.nvme+ 4gb Solidigm nvme
    PSU
    500w
    Case
    MT
    Cooling
    Dell Premium
    Keyboard
    Logitech wired
    Mouse
    Logitech wireless
    Internet Speed
    so slow I'm too embarrassed to tell
    Browser
    Firefox
    Antivirus
    Defender+MWB Premium
  • Operating System
    Windows 10 Pro 22H2 19045.3930
    Computer type
    PC/Desktop
    Manufacturer/Model
    Dell Optiplex 9020
    CPU
    i7-4770
    Memory
    24 gb
    Monitor(s) Displays
    Benq 27
    Screen Resolution
    2560x1440
    Hard Drives
    256 gb Toshiba BG4 M.2 NVE SSB and 1 tb hdd
    PSU
    500w
    Case
    MT
    Cooling
    Dell factory
    Mouse
    Logitech wireless
    Keyboard
    Logitech wired
    Internet Speed
    still not telling
    Browser
    Firefox
    Antivirus
    Defender+MWB Premium

Latest Support Threads

Back
Top Bottom