Hello @Shyam Narayan Gupta
On Windows 11 25H2, disabling the Hyper-V optional feature alone does not necessarily mean the Windows hypervisor is no longer running.
Features such as Virtualization-Based Security (VBS), Memory Integrity/HVCI, Credential Guard, and certain App Control policies can use the Windows hypervisor independently. Microsoft specifically documents that VBS uses the hypervisor to create its isolated security environment.
First, confirm the actual state rather than relying only on the Windows Features dialog. Run:
Get-CimInstance -ClassName Win32_DeviceGuard `
-Namespace root\Microsoft\Windows\DeviceGuard |
Select-Object VirtualizationBasedSecurityStatus,
SecurityServicesConfigured,
SecurityServicesRunning,
CodeIntegrityPolicyEnforcementStatus
Microsoft documents VirtualizationBasedSecurityStatus as:
0 = VBS isn't enabled
1 = VBS enabled but not running
2 = VBS enabled and running
You can also run msinfo32. If System Information says:
A hypervisor has been detected.
Features required for Hyper-V will not be displayed.
then the Windows hypervisor is still active. I recommend this check when troubleshooting third-party virtualization applications.
If the goal is to run software such as VMware or VirtualBox without the Windows hypervisor, check all of the components that can keep it active:
- Windows Security → Device security → Core isolation → Memory integrity
- Windows Features → Hyper-V, Virtual Machine Platform, and Windows Hypervisor Platform
- Group Policy → Computer Configuration → Administrative Templates → System → Device Guard → Turn On Virtualization Based Security
- Credential Guard configuration
- Any App Control for Business/WDAC policies
The last one is particularly worth checking. Microsoft documents that an App Control policy can enable Memory Integrity/HVCI, even when the policy is operating in audit mode.
You can also check the boot configuration:
bcdedit /enum {current}
Look for hypervisorlaunchtype
If you're intentionally trying to prevent the hypervisor from starting, Microsoft's troubleshooting guidance also covers disabling Hyper-V and its dependent security features.
Don't delete Code Integrity policies or manually change EFI/UEFI files. If VBS still reports 2 after the normal Hyper-V, Memory Integrity, and Credential Guard settings have been disabled, the next useful information would be:
Get-CimInstance -ClassName Win32_DeviceGuard `
-Namespace root\Microsoft\Windows\DeviceGuard
together with:
bcdedit /enum {current}
and the Virtualization-based security section from msinfo32. That should tell us whether HVCI/VBS, an App Control policy, or another virtualization-dependent security feature is still driving it.
Microsoft also describes the conflict with some third-party virtualization software as by design, rather than automatically indicating a Windows 11 25H2 defect.
References:
Hyper-V and third-party virtualization applications
Help make this community better for everyone: If this answer helped or resolved your issue, please accept it or upvote it. If not, share more details in a comment so we can continue the discussion and find the right solution. Thank you.