After Windows Update KB4457145 (https://support.microsoft.com/ca-es/help/4457145/windows-7-update-kb4457145), users can't logon on endpoints.
When user logon, appears windows Popup (Explorer.exe) with error and logon not continues.
Solidcore Event
User.Init
Other error reported
Software Version:
PD: Sorry for my English Level.
Solved! Go to Solution.
Please open a case with support then and provide a gatherinfo, with the details still in the logs.
McAfee Support
Benjamin Ellis
Was my reply helpful?
If this information was helpful in any way or answered your question, will you please select Accept as Solution in my reply and together we can help other members?
What extension version are you running?
Please make sure you have the latest 8.0.2 extension and client and make sure the windows update rule group is assigned to the machine.
McAfee Support
Benjamin Ellis
Was my reply helpful?
If this information was helpful in any way or answered your question, will you please select Accept as Solution in my reply and together we can help other members?
Hi Benjamin,
We're running Solidcore 8.2.0.126 extension and Solidcore 8.2.0.140 client.
The default Windows Update rule is assigned to the workstations.
Please open a case with support then and provide a gatherinfo, with the details still in the logs.
McAfee Support
Benjamin Ellis
Was my reply helpful?
If this information was helpful in any way or answered your question, will you please select Accept as Solution in my reply and together we can help other members?
same issue here on GDIPLUS.DLL and comctl32.dll.
As far as i am aware from our support ticket, engineering is aware of this issue.
For now best you can do is add these files as trusted binary on hash.
We have the latest Solidcore version and windows rule in place and still noticing the same error
Threat Target File Path: C:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.24356_none_5c07bd39a00d5ba6\GdiPlus.dll
Event Category: Application Blocked
Please suggest
Did you resolidify after upgrading to 8.2.1.143?
If not you need to resolidify
McAfee Support
Benjamin Ellis
Was my reply helpful?
If this information was helpful in any way or answered your question, will you please select Accept as Solution in my reply and together we can help other members?
Also make sure you manually update update your policy as described in the releasenotes.
Especially the skiplist rule on the "\windows\winsxs\temp" folder should be removed from the Application Control > Windows > McAfee Exclusion Filters and Application Control > Windows > Windows Update rule groups
Corporate Headquarters
6220 America Center Drive
San Jose, CA 95002 USA