> Source: [sk177184](https://support.checkpoint.com/results/sk/sk177184)

# sk177184 - Endpoint Security client Threat Emulation blade fails to run

| Property | Value |
|----------|-------|
| Solution ID | sk177184 |
| Date Created | 2022-01-03 |
| Last Modified | 2022-01-05 |
| Technical Level | General |
| Products | Endpoint Security |
| Versions | Cloud, E89.X, E88.X |
| OS | Windows |
| Platform | Open Server |

## Symptoms

- The Threat Emulation blade in Endpoint Security client fails to run, and consequently, in the TEUnlandledEx.txt file, the following error appears:  

`</br> Time: 2021-11-15 14:43:23Z`  
`</br> HResult: -2146233052`  
`</br> Is Terminating: True`  
`</br> Exception: System.DllNotFoundException: <b> Unable to load DLL 'wer.dll': The specified procedure could not be found. (Exception from HRESULT: 0x8007007F) </b>`  
`</br> at Bridge.Common.NativeMethods.WerAddExcludedApplication(String pwzExeName, Boolean bAllUsers)`  
`</br> at CheckPoint.ThreatEmulation.Service.Engine.Engine.InitializeAndStart()`  
`</br> at CheckPoint.ThreatEmulation.Service.EntryPoint.ServiceKickStarter()`  
`</br> at System.Threading.ThreadHelper.ThreadStart_Context(Object state)`  
`</br> at System.Threading.ExecutionContext.RunInternal(ExecutionContext executionContext, ContextCallback callback, Object state, Boolean preserveSyncCtx)`  
`</br> at System.Threading.ExecutionContext.Run(ExecutionContext executionContext, ContextCallback callback, Object state, Boolean preserveSyncCtx)`  
`</br> at System.Threading.ExecutionContext.Run(ExecutionContext executionContext, ContextCallback callback, Object state)`  
`</br> at System.Threading.ThreadHelper.ThreadStart()`

## Cause

The Threat Emulation blade crashes due to a missing wer.dll file.

## Solution

[Contact Check Point Support](https://www.checkpoint.com/support-services/contact-support/) to get a Hotfix for this issue - improved Endpoint Security Client package.  
A Support Engineer will make sure the Hotfix is compatible with your environment before providing the Hotfix.  
For faster resolution and verification please collect [CPinfo](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk90445) file from the Endpoint Security Client involved in the case.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
