Windows 10 pro/32 error log says part of Avira install is corrupt
hello
I have noticed these errors appearing in the Windows 10 security error log list recently and I believe BDnet.sys is something to do with BullGuard, a company that Avira bought recently.
It's properties show version 2.6.0.49 date modified 24/9/2022 01:41
One of your own files also shows an error, see below
I have checked the disk for errors and the Win10 tools indicate no errors on this disk
Source: Microsoft-Windows-Security-Auditing
Date: 05/12/2022 17:55:45
Event ID: 5038
Task Category: System Integrity
Level: Information
Keywords: Audit Failure
User: N/A
Computer: *****
Description:
Code integrity determined that the image hash of a file is not valid. The file could be corrupt due to unauthorized modification or the invalid hash could indicate a potential disk device error.
File Name: \Device\HarddiskVolume1\Windows\System32\drivers\BdNet.sys
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-Security-Auditing" Guid="{54849625-5478-4994-a5ba-3e3b0328c30d}" />
<EventID>5038</EventID>
<Version>0</Version>
<Level>0</Level>
<Task>12290</Task>
<Opcode>0</Opcode>
<Keywords>0x8010000000000000</Keywords>
<TimeCreated SystemTime="2022-12-05T17:55:45.9155197Z" />
<EventRecordID>355597</EventRecordID>
<Correlation />
<Execution ProcessID="4" ThreadID="416" />
<Channel>Security</Channel>
<Computer>****</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">\Device\HarddiskVolume1\Windows\System32\drivers\BdNet.sys</Data>
</EventData>
</Event>
Log Name: Security
Source: Microsoft-Windows-Security-Auditing
Date: 05/12/2022 17:55:34
Event ID: 5038
Task Category: System Integrity
Level: Information
Keywords: Audit Failure
User: N/A
Computer: ****
Description:
Code integrity determined that the image hash of a file is not valid. The file could be corrupt due to unauthorized modification or the invalid hash could indicate a potential disk device error.
File Name: \Device\HarddiskVolume1\Program Files\Avira\Endpoint Protection SDK\amsi\Win32\avamsi.dll
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-Security-Auditing" Guid="{54849625-5478-4994-a5ba-3e3b0328c30d}" />
<EventID>5038</EventID>
<Version>0</Version>
<Level>0</Level>
<Task>12290</Task>
<Opcode>0</Opcode>
<Keywords>0x8010000000000000</Keywords>
<TimeCreated SystemTime="2022-12-05T17:55:34.5367533Z" />
<EventRecordID>355596</EventRecordID>
<Correlation />
<Execution ProcessID="4" ThreadID="416" />
<Channel>Security</Channel>
<Computer>****</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">\Device\HarddiskVolume1\Program Files\Avira\Endpoint Protection SDK\amsi\Win32\avamsi.dll</Data>
</EventData>
</Event>
Vous devez vous connecter pour laisser un commentaire.
Commentaires
0 commentaire