none
problem Build 7601

    Question

  • Hi. Could you help us? after my computer got virus I have this problem build 7601. I read many answers on tjis forum, but I could not understand why I can not fix it. Could you tell me, please, what I should do?

    I have Windows 7 Home Edition, which It was preinstalled on my computer.

    Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 50
    Cached Online Validation Code: 0x0
    Windows Product Key: *****-*****-WJ2H8-R6B6D-7QJB7
    Windows Product Key Hash: ckKNc+BBPDWmo1LUlOkraNjlQ34=
    Windows Product ID: 00359-OEM-8992687-00006
    Windows Product ID Type: 2
    Windows License Type: OEM SLP
    Windows OS version: 6.1.7601.2.00010300.1.0.003
    ID: {630A9950-EC12-4367-9235-5AA730B0696A}(3)
    Is Admin: Yes
    TestCab: 0x0
    LegitcheckControl ActiveX: N/A, hr = 0x80070002
    Signed By: N/A, hr = 0x80070002
    Product Name: Windows 7 Home Premium
    Architecture: 0x00000009
    Build lab: 7601.win7sp1_gdr.120830-0333
    TTS Error: 
    Validation Diagnostic: 
    Resolution Status: N/A

    Vista WgaER Data-->
    ThreatID(s): N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002

    Windows XP Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    File Exists: No
    Version: N/A, hr = 0x80070002
    WgaTray.exe Signed By: N/A, hr = 0x80070002
    WgaLogon.dll Signed By: N/A, hr = 0x80070002

    OGA Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002
    OGAExec.exe Signed By: N/A, hr = 0x80070002
    OGAAddin.dll Signed By: N/A, hr = 0x80070002

    OGA Data-->
    Office Status: 109 N/A
    OGA Version: N/A, 0x80070002
    Signed By: N/A, hr = 0x80070002
    Office Diagnostics: 025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3

    Browser Data-->
    Proxy settings: N/A
    User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
    Default Browser: C:\Users\Stepan\AppData\Local\Google\Chrome\Application\chrome.exe
    Download signed ActiveX controls: Prompt
    Download unsigned ActiveX controls: Disabled
    Run ActiveX controls and plug-ins: Allowed
    Initialize and script ActiveX controls not marked as safe: Disabled
    Allow scripting of Internet Explorer Webbrowser control: Disabled
    Active scripting: Allowed
    Script ActiveX controls marked as safe for scripting: Allowed

    File Scan Data-->

    Other data-->
    Office Details: <GenuineResults><MachineData><UGUID>{630A9950-EC12-4367-9235-5AA730B0696A}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7601.2.00010300.1.0.003</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-7QJB7</PKey><PID>00359-OEM-8992687-00006</PID><PIDType>2</PIDType><SID>S-1-5-21-794122913-1632071796-3821847792</SID><SYSTEM><Manufacturer>Packard Bell</Manufacturer><Model>oneTwo L5861</Model></SYSTEM><BIOS><Manufacturer>American Megatrends Inc.</Manufacturer><Version>P01-A4                 </Version><SMBIOSVersion major="2" minor="6"/><Date>20110308000000.000000+000</Date></BIOS><HWID>D2713E07018400FE</HWID><UserLCID>0809</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>GMT Standard Time(GMT+00:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM><OEMID>ACRSYS</OEMID><OEMTableID>ACRPRDCT</OEMTableID></OEM><GANotification/></MachineData><Software><Office><Result>109</Result><Products/><Applications/></Office></Software></GenuineResults>  

    Spsys.log Content: 0x80070002

    Licensing Data-->
    C:\Windows\system32\slmgr.vbs(1131, 5) Microsoft VBScript runtime error: Permission denied

    Windows Activation Technologies-->
    HrOffline: 0x00000000
    HrOnline: 0xC004C327
    HealthStatus: 0x0000000000000000
    Event Time Stamp: 11:8:2012 10:49
    ActiveX: Registered, Version: 7.1.7600.16395
    Admin Service: Registered, Version: 7.1.7600.16395
    HealthStatus Bitmask Output:


    HWID Data-->
    HWID Hash Current: LgAAAAEAAQABAAEAAAACAAAAAgABAAEAeqj2bly2Mhs4MILVnnJ0yfpRINQucw==

    OEM Activation 1.0 Data-->
    N/A

    OEM Activation 2.0 Data-->
    BIOS valid for OA 2.0: yes
    Windows marker version: 0x20001
    OEMID and OEMTableID Consistent: yes
    BIOS Information: 
      ACPI Table Name OEMID Value OEMTableID Value
      APIC ACRSYS ACRPRDCT
      FACP ACRSYS ACRPRDCT
      HPET ACRSYS ACRPRDCT
      MCFG ACRSYS ACRPRDCT
      SSDT AMICPU PROC
      SLIC ACRSYS ACRPRDCT

    Thank you very much.

    I look forward to hearing from you.

    Thursday, November 08, 2012 11:16 AM

Answers

  • Somewhere along the line a space went adrift in all the REG QUERY commands - my fault,

    Please use the following ones....

    REG QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-18"
    REG QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-19"
    REG QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-20"

    Sorry about that!

    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth

    Sunday, November 18, 2012 6:36 PM
    Moderator

All replies

  • Open an Elevated
    Command Prompt, and run the following commands

    sc sdshow plugplay
    REG QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-18" /S
    REG QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-19" /S
    REG QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-20" /S

    Copy and paste the results to your reply

      Here are some instructions to make life easier :)

    1) To open an Elevated Command Prompt Window (the ECP window), click on Start, All Programs, Accessories – then right-click on Command Prompt, and select Run as Administrator. Accept the UAC prompt. 

    2) To run the commands easier, highlight the block of commands, and right-click on the highlight – select Copy. In the CP Window, click on the black/white icon at top left – select Paste. The commands will run but may not complete the last command, so hit the Enter Key once. 

    3) To copy the results... click on the Black/White icon in the top left, and select Edit... 'Select All', and hit the Enter key - then use Ctrl+V or r-click+Paste to paste it into your response.     


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth


    Friday, November 09, 2012 11:13 AM
    Moderator
  • Dear Noel, thank you very much for you help. But I have doubts.

    could you please explain and suggest if I do it right?

    I run Command Prompt and then I need to paste all following block ?

    sc sdshow plugplay
    REG QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsNT\CurrentVersion\ProfileList\S-1-5-18" /S
    REG QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsNT\CurrentVersion\ProfileList\S-1-5-19" /S
    REG QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsNT\CurrentVersion\ProfileList\S-1-5-20" /S

    If yes - I see ''

    Microsoft Windows [Version 6.1.7601]
    Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

    C:\Windows\system32>sc sdshow plugplay

    D:(A;;CCLCSWRPWPDTLOCRRC;;;SY)(A;;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;BA)(A;;CCLCSWLOCR
    RC;;;IU)(A;;CCLCSWLOCRRC;;;SU)S:(AU;FA;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;WD)

    C:\Windows\system32>REG QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsNT\C
    urrentVersion\ProfileList\S-1-5-18" /S
    ERROR: The system was unable to find the specified registry key or value.

    C:\Windows\system32>REG QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsNT\C
    urrentVersion\ProfileList\S-1-5-19" /S
    ERROR: The system was unable to find the specified registry key or value.

    C:\Windows\system32>REG QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsNT\C
    urrentVersion\ProfileList\S-1-5-20" /S
    ERROR: The system was unable to find the specified registry key or value.

    C:\Windows\system32>"HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsNT\CurrentVers
    ion\ProfileList\S-1-5-18"
    The system cannot find the path specified.

    C:\Windows\system32>sc
    DESCRIPTION:
            SC is a command line program used for communicating with the
            Service Control Manager and services.
    USAGE:
            sc <server> [command] [service name] <option1> <option2>...


            The option <server> has the form "\\ServerName"
            Further help on commands can be obtained by typing: "sc [command]"
            Commands:
              query-----------Queries the status for a service, or
                              enumerates the status for types of services.
              queryex---------Queries the extended status for a service, or
                              enumerates the status for types of services.
              start-----------Starts a service.
              pause-----------Sends a PAUSE control request to a service.
              interrogate-----Sends an INTERROGATE control request to a service.
              continue--------Sends a CONTINUE control request to a service.
              stop------------Sends a STOP request to a service.
              config----------Changes the configuration of a service (persistent).
              description-----Changes the description of a service.
              failure---------Changes the actions taken by a service upon failure.
              failureflag-----Changes the failure actions flag of a service.
              sidtype---------Changes the service SID type of a service.
              privs-----------Changes the required privileges of a service.
              qc--------------Queries the configuration information for a service.
              qdescription----Queries the description for a service.
              qfailure--------Queries the actions taken by a service upon failure.
              qfailureflag----Queries the failure actions flag of a service.
              qsidtype--------Queries the service SID type of a service.
              qprivs----------Queries the required privileges of a service.
              qtriggerinfo----Queries the trigger parameters of a service.
              qpreferrednode--Queries the preferred NUMA node of a service.
              delete----------Deletes a service (from the registry).
              create----------Creates a service. (adds it to the registry).
              control---------Sends a control to a service.
              sdshow----------Displays a service's security descriptor.
              sdset-----------Sets a service's security descriptor.
              showsid---------Displays the service SID string corresponding to an ar
    bitrary name.
              triggerinfo-----Configures the trigger parameters of a service.
              preferrednode---Sets the preferred NUMA node of a service.
              GetDisplayName--Gets the DisplayName for a service.
              GetKeyName------Gets the ServiceKeyName for a service.
              EnumDepend------Enumerates Service Dependencies.

            The following commands don't require a service name:
            sc <server> <command> <option>
              boot------------(ok | bad) Indicates whether the last boot should
                              be saved as the last-known-good boot configuration
              Lock------------Locks the Service Database
              QueryLock-------Queries the LockStatus for the SCManager Database
    EXAMPLE:
            sc start MyService

    Would you like to see help for the QUERY and QUERYEX commands? [ y | n ]:
    n

    C:\Windows\system32>REG QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsNT\C
    urrentVersion\ProfileList\S-1-5-18" /S
    ERROR: The system was unable to find the specified registry key or value.

    C:\Windows\system32>"HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsNT\CurrentVers
    ion\ProfileList\S-1-5-18" /S
    The system cannot find the path specified.

    C:\Windows\system32>HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsNT\CurrentVersi
    on\ProfileList\S-1-5-18
    The system cannot find the path specified.

    C:\Windows\system32>c:

    C:\Windows\system32>c:\
    'c:\' is not recognized as an internal or external command,
    operable program or batch file.

    C:\Windows\system32>c
    'c' is not recognized as an internal or external command,
    operable program or batch file.

    C:\Windows\system32>REG QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsNT\C
    urrentVersion\ProfileList\S-1-5-18" /S
    ERROR: The system was unable to find the specified registry key or value.

    C:\Windows\system32>REG QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsNT\C
    urrentVersion\ProfileList\S-1-5-19" /S
    ERROR: The system was unable to find the specified registry key or value.

    C:\Windows\system32>REG QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsNT\C
    urrentVersion\ProfileList\S-1-5-20"/S
    ERROR: The system was unable to find the specified registry key or value.

    C:\Windows\system32>REG QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsNT\C
    urrentVersion\ProfileList\S-1-5-18"
    ERROR: The system was unable to find the specified registry key or value.

    C:\Windows\system32>

    Thank you for your help!

    Sunday, November 18, 2012 4:05 PM
  • Somewhere along the line a space went adrift in all the REG QUERY commands - my fault,

    Please use the following ones....

    REG QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-18"
    REG QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-19"
    REG QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-20"

    Sorry about that!

    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth

    Sunday, November 18, 2012 6:36 PM
    Moderator
  • Any progress on this??

    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth

    Thursday, November 22, 2012 3:01 PM
    Moderator