Hello,
Thank you for keeping us updated.
It seems that the issue is resolved.
I appreciate your efforts and time.
Please do let us know if you need any assistance in regards to Windows.
Thank you
This browser is no longer supported.
Upgrade to Microsoft Edge to take advantage of the latest features, security updates, and technical support.
Hi,
My System is Windows 7 SP1 Home Premium. Recently the Event Viewer has shown the following Audit failure after every fresh startup after the system has been powered off:
Record Number : 145537
Log Type : Security
Event Type : Audit Failure
Time : 28/06/2016 18:57:39
Source : Microsoft-Windows-Security-Auditing
Category : 12290
Event ID : 6281
User Name :
Computer : Chris-PC
Event Data Length : 0
Record Length : 352
Event Description : Code Integrity determined that the page hashes of an image file are not valid. The file could be improperly signed without page hashes or corrupt due to unauthorized modification. The invalid hashes could indicate a potential disk device error. File Name: \Device\HarddiskVolume3\ProgramData\Trusteer\Rapport\store\exts\RapportMS\baseline\RapportIaso.sys
I have been in touch with IBM Trusteer Support but they have been unable to help - their initial suggestion was as follows:
In order to resolve this issue, please follow the steps below:
1. Run → Enter secpol.msc in the search box.
*Please note, that an error message may appear. Disregard it and wait for a few seconds until the "Local Security Policy" window appears.
2.Open “Local Policies”.
3.Open “Audit Policy”.
4.Enter “Auditor privilege use”
5.Verify both check-boxes are unchecked.
6. Restart your computer.
However Windows 7 Home Premium does not have the the group policies editor 'secpol.msc' so I am unable to carry out their suggestion. Because of this they advised I contact Microsoft.
I have ruled out 'disk error' by running HD Tune which found no errors on the hard drive. IBM appear to have ruled out a problem with my malware protection (Avast 2016 anti-virus and Comodo Firewall) after I had sent the details to them.
The problem has occurred over the last few days (starting Monday 27 June 2016).
Any advice and suggestions would be much appreciated, thank you.
Locked Question. This question was migrated from the Microsoft Support Community. You can vote on whether it's helpful, but you can't add comments or replies or follow the question.
Hello,
Thank you for keeping us updated.
It seems that the issue is resolved.
I appreciate your efforts and time.
Please do let us know if you need any assistance in regards to Windows.
Thank you
Hi Ratandeep,
I have not run System Restore but merely removed Silverlight. However the problem still exists. I'll check what System Restore points I have - if there is one just before the Silverlight update I may use it. I'll report back later.
Regards.
Hello,
Thank you for the reply.
I appreciate your patience.
I hope that restoring Windows may resolve the issue.
However, when you use System Restore to restore the computer to a previous state, programs and updates that you installed are removed.
Please keep us posted.
Thank you
Hi Ratandeep,
Thank you for your suggestion about the Microsoft Safety Scanner - a useful facility I was not previously aware of.
A full system scan with the safety scanner revealed no threats. I shall try reversing the last Windows update which was about the time my problem first occurred. The update was for Silverlight which is probably not necessary for me anyway - I will report back if that makes any difference.
regards.
Hello,
Thank you for your response.
I appreciate your time.
I would suggest you to run Microsoft safety scanner and check if it helps.
Refer:
Microsoft safety scanner
http://www.microsoft.com/security/scanner/en-us/default.aspx
Note: Any data files that are infected may only be cleaned by deleting the file entirely, which means there is a potential for data loss.
Please keep us updated.
Thank you