Answered by:
"An unauthorised change was made to windows"

Question
-
I have been getting this message more than once and I am getting tired of it's unpredictability - Is there a way to resolve the issue once and for all? I have searched in these forums and see that many people are experiencing the same frustration that I am facing.
The first time that I encountered the error was when I installed a demo of the game Unreal Tournament 3. I was really stuck because the options given was just to either "Learn more online", assuming I had an internet connection, or "Close". No start button, no other way to uninstall what may be the offending program. That first time, I actually called up MS tech support (the next day, as they are only open during office hours). The person told me how to boot up in safe mode and do a system restore, an advice which I have had to use many, many times!
Why?? Because anything can trigger this ominous message!! I have experienced this recurring problem after installing the latest WHQL certified Nvidia display drivers, HP monitor drivers and worst of all the actual Unreal Tournament 3 game which I bought thinking the issue would not occur as it did with the demo.
Funny thing (actually NOT so funny) is that some programs are able to install with no problems, but like I say, each time I have to risk getting the message and rebooting in safe mode and waiting for restore to work.
Also, like the other users, each time the "unauthorised change" occurs, I am told that my copy of windows is not genuine. But after doing system restore, miraculously it passes "genuine" validation with flying colours.
As a result of all this, I am unable to install the latest drivers for my graphics, play the game I love and bought, and am living in fear of when the next time this warning will occur.
So ... is there any way of solving this problem once and for all? Also, why is it only plaguing me and not some other users installing the same software??
Wednesday, February 13, 2008 4:32 PM
Answers
-
Hello StRaynger,
Vista is in what is called a 'Mod-Auth' Tamper state. There are 2 types of Mod-Auth tampers.
1) A critical system file was modified On Disk - What this means is that the file, located on the hard drive, was modified in some way. This can be caused by random file corruption, a malicious program (spyware, malware, virus) or by manual file modification (by a user of the system). There is also a very small chance that an Update may fail in mid-update and cause this type of issue. As a safety mechanism, Updates are made so that if they fail, they roll back any updating that was done before the failure, but there is an off-chance that the roll back did not occure.
2) A critical system file was modified In Memory - What this means is the file itself (on the hard drive) is un-modified, but the code, from that file, running in the system, was modified in some way. and is usually caused by a running program that is incompatible with Vista.
Because of the Mismatched file listed under the "File Scan Data-->" line of your Diagnostic Report, your issue is an On Disk Mod-Auth. The Mismatched file (Slsvc.exe[6.0.6000.16509]) is the file that has been Modified or has become corrupted.
You will notice the long number [6.0.6000.16509] after the file name Slsvc.exe. That number is the version number for that file. Whenever a file is updated, it get a new version number. By using the version number, I can tell the last update that was applied to that file. The reason this is importent is that to fix your issue, all you need to do is re-install the update that was last applied to that file. By doing this, the update will install an unmodified/uncorrupted copy of Slsvc.exe (Version 6.0.6000.16509). The Update you need to install is KB933928
Unfortunately, most Vista updates can only be installed once. If you were to try to install an update that has already been installed on a system, you will usually get the error "This update does not apply to your system". So, to get around this, you will need to uninstall the update and then re-install the update. To do so, please follow the below steps:
First off, try installing update KB933928 from this link http://www.microsoft.com/downloads/details.aspx?FamilyID=dc2ad07b-d5d7-407a-9a0e-3f3d142682d0&DisplayLang=en if you receive the error "This update does not apply to your system" then Vista isn't going to allow you to re-install this update, so you will need to uninstall it first, then reinstall.
1) Log into Vista in Safe Mode
2) Click 'Start' button, then Click 'Control Panel'.
3) Click 'Classic View' in the upper right of the Control Panel window.
4) Double-Click the icon named 'Programs and Features'.
5) Click the 'View installed updates' link in the upper right of the Program and Features window.
6) It may take some time for the list of Updates to appear, please wait.
7) Right-Click on the update 'KB933928' and select 'Unistall'.
8) Reboot into Normal Mode
Now, try to install update KB933928 from this link http://www.microsoft.com/downloads/details.aspx?FamilyID=dc2ad07b-d5d7-407a-9a0e-3f3d142682d0&DisplayLang=en
If you have any problems or receive any unexpected errors, please create a (no cost) support request at http://go.microsoft.com/fwlink/?linkid=52029 for further assistance.
Thank you,
Darin Smith
WGA Forum Manager
Friday, February 15, 2008 9:41 PM
All replies
-
Hi StRaynger,
In order to recieve the best support, we request all users initially download and run the Genuine Diagnostics tool at this link
http://go.microsoft.com/fwlink/?linkid=52012. Click "Continue" click the Windows tab, click the "Copy" button, then paste the report into
a response message in this thread.
If you do not have access to the Start Button:1) Login to Vista and Click the option that brings up Internet Explorer.
2) Type: http://go.microsoft.com/fwlink/?linkid=52012 into the browser address bar.
3) A window will come up asking if you want to Run or Save, Select Run
4) When the program runs, Click the Continue button, then click the Copy button.
5) Return to this thread by Typing: http://forums.microsoft.com/Genuine/ShowPost.aspx?PostID=2838809&SiteID=25 into the browser address
bar.
6) In a reply post, Paste the Diagnostic Report.
Darin Smith
WGA Forum Manager
Wednesday, February 13, 2008 9:32 PM -
Here is the Diagnostic Report. I have looked at other posts and think my problem is the same as many of them ... update KB933928. I have already tried booting in safe mode and followed the advice in the other threads - however the update does not appear in my list of installed updates, hence cannot be uninstalled.
Please advice.
Thank you.
Diagnostic Report (1.7.0069.0):
-----------------------------------------
WGA Data-->
Validation Status: Genuine
Validation Code: 0
Online Validation Code: 0x0
Cached Validation Code: 0x0
Windows Product Key: *****-*****-BPK79-M36RR-CD94T
Windows Product Key Hash: obeWVeXsCEcc5/NklBWt+PYdszU=
Windows Product ID: 89578-OEM-7359756-32909
Windows Product ID Type: 3
Windows License Type: OEM System Builder
Windows OS version: 6.0.6000.2.00010300.0.0.003
CSVLK Server: N/A
CSVLK PID: N/A
ID: {D50CB9C8-5B45-4126-9366-2CF0CE73A40C}(3)
Is Admin: Yes
TestCab: 0x0
WGA Version: Registered, 1.7.59.1
Signed By: Microsoft
Product Name: Windows Vista (TM) Home Premium
Architecture: 0x00000000
Build lab: 6000.vista_gdr.071009-1548
TTS Error:
Validation Diagnostic:
Resolution Status: N/AWgaER Data-->
ThreatID(s): N/A, hr = 0x80070002
Version: N/A, hr = 0x80070002Notifications Data-->
Cached Result: N/A
File Exists: No
Version: N/A, hr = 0x80070002
WgaTray.exe Signed By: N/A, hr = 0x80070002
WgaLogon.dll Signed By: N/A, hr = 0x80070002OGA Data-->
Office Status: 103 Blocked VLK
OGA Version: N/A, 0x80070002
Signed By: N/A, hr = 0x80070002
Office Diagnostics: FCEE394C-2920-80070002_025D1FF3-282-80041010_025D1FF3-170-80041010_025D1FF3-171-1_025D1FF3-434-80040154_025D1FF3-178-80040154_025D1FF3-179-2_025D1FF3-185-80070002_025D1FF3-199-3Browser Data-->
Proxy settings: N/A
User Agent: Mozilla/4.0 (compatible; MSIE 7.0; Win32)
Default Browser: C:\Program Files\Internet Explorer\iexplore.exe
Download signed ActiveX controls: Prompt
Download unsigned ActiveX controls: Disabled
Run ActiveX controls and plug-ins: Allowed
Initialize and script ActiveX controls not marked as safe: Disabled
Allow scripting of Internet Explorer Webbrowser control: Disabled
Active scripting: Allowed
Script ActiveX controls marked as safe for scripting: AllowedFile Scan Data-->
File Mismatch: C:\Windows\system32\Slsvc.exe[6.0.6000.16509]Other data-->
Office Details: <GenuineResults><MachineData><UGUID>{D50CB9C8-5B45-4126-9366-2CF0CE73A40C}</UGUID><Version>1.7.0069.0</Version><OS>6.0.6000.2.00010300.0.0.003</OS><Architecture>x32</Architecture><PKey>*****-*****-*****-*****-CD94T</PKey><PID>89578-OEM-7359756-32909</PID><PIDType>3</PIDType><SID>S-1-5-21-2043350436-3782845366-2366295289</SID><SYSTEM><Manufacturer>System manufacturer</Manufacturer><Model>P5K</Model></SYSTEM><BIOS><Manufacturer>American Megatrends Inc.</Manufacturer><Version>0603 </Version><SMBIOSVersion major="2" minor="4"/><Date>20070703000000.000000+000</Date></BIOS><HWID>2A323507018400FA</HWID><UserLCID>4409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Malay Peninsula Standard Time(GMT+08:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM/><BRT/></MachineData><Software><Office><Result>103</Result><Products><Product GUID="{90120000-0030-0000-0000-0000000FF1CE}"><LegitResult>103</LegitResult><Name>Microsoft Office Enterprise 2007</Name><Ver>12</Ver><Val>ACD7202654E586</Val><Hash>fFic3JgCreGGRxyF8uMWB4R4Jcg=</Hash><Pid>89388-707-1528066-65895</Pid><PidType>14</PidType></Product></Products></Office></Software></GenuineResults>Spsys.log Content: U1BMRwEAAAAAAQAABAAAAIwGAAAAAAAAYWECANNg7p5Xj3YlbFvIAdArSr9MLECc5R83cvYPeMxwuOg0jaL5UTD6s0eSIOzgfKVup7i0kIl7kj5FDP0UfxzlbKaVHBjD6SE/4CKjeOudPVxqYmKVvnsVahEhotxH27OKLWTN3/xFyngmD3afWQd5BWut+vD3FqOkH5qwY3oKzOF7eXdqQzOdQlJCgYTeP9KSju/t9vu9LXUgneZO8JuQnPomGb9VupAJaZo25SIJxGN5hPlYXq2AFDshBm86M5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAzQK0q/TCxAnOUfN3L2D3jM1gas2PTThi0m4MnCXXPZ26EC4emoQwU1jiZtZw74zk8c5WymlRwYw+khP+Aio3jrtmDfczRuVTYMZNlUmbYbLtuzii1kzd/8Rcp4Jg92n1kHeQVrrfrw9xajpB+asGN6Cszhe3l3akMznUJSQoGE3j/Sko7v7fb7vS11IJ3mTvCbkJz6Jhm/VbqQCWmaNuUiCcRjeYT5WF6tgBQ7IQZvOjOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgM0CtKv0wsQJzlHzdy9g94zOVrIRet27p15pdSStYT5Q2nZAPBb24feK1TU0Wd6luuHOVsppUcGMPpIT/gIqN469eeYH+dfS9MgaN67ERFqh7bs4otZM3f/EXKeCYPdp9ZB3kFa6368PcWo6QfmrBjegrM4Xt5d2pDM51CUkKBhN4/0pKO7+32+70tdSCd5k7wm5Cc+iYZv1W6kAlpmjblIgnEY3mE+VherYAUOyEGbzozkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDNArSr9MLECc5R83cvYPeMzGVToNvidUVQOR7xeFC8oqHgAwM4C904Rm6l/JqOmXxxzlbKaVHBjD6SE/4CKjeOsohYyX8Z8L7Dq8V6Dhp6uP27OKLWTN3/xFyngmD3afWQd5BWut+vD3FqOkH5qwY3oKzOF7eXdqQzOdQlJCgYTeP9KSju/t9vu9LXUgneZO8JuQnPomGb9VupAJaZo25SIJxGN5hPlYXq2AFDshBm86M5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAzQK0q/TCxAnOUfN3L2D3jMXo2aB7RerTgurBZDqAu1qr/6NiY210U8e0O9gwq2sd8c5WymlRwYw+khP+Aio3jram127YKWzReSyrE0+qZtmduzii1kzd/8Rcp4Jg92n1kHeQVrrfrw9xajpB+asGN6Cszhe3l3akMznUJSQoGE3j/Sko7v7fb7vS11IJ3mTvCbkJz6Jhm/VbqQCWmaNuUiCcRjeYT5WF6tgBQ7IQZvOjOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgM0CtKv0wsQJzlHzdy9g94zMct8Itpuh1cK5w4C0w16EXDa9Px5LP2MZyp9TSPUsb5HOVsppUcGMPpIT/gIqN46xLZ0KIX52oY0NQVD/UC3ALbs4otZM3f/EXKeCYPdp9ZB3kFa6368PcWo6QfmrBjegrM4Xt5d2pDM51CUkKBhN4/0pKO7+32+70tdSCd5k7wm5Cc+iYZv1W6kAlpmjblIgnEY3mE+VherYAUOyEGbzozkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDNArSr9MLECc5R83cvYPeMw3k27TwdI3sKnaDf3VubWhAErW43sTUMLxWLbw6ixGXBzlbKaVHBjD6SE/4CKjeOuGvECgs+d9bUQvBbPctjRk27OKLWTN3/xFyngmD3afWQd5BWut+vD3FqOkH5qwY3oKzOF7eXdqQzOdQlJCgYTeP9KSju/t9vu9LXUgneZO8JuQnPomGb9VupAJaZo25SIJxGN5hPlYXq2AFDshBm86M5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAzQK0q/TCxAnOUfN3L2D3jMF2qIhEjSeEO2HgngR2NwKguCoV/sTargB3x8GcG0O/Yc5WymlRwYw+khP+Aio3jrGvFvo9SqiZ6dV4oLnl5RtNuzii1kzd/8Rcp4Jg92n1kHeQVrrfrw9xajpB+asGN6Cszhe3l3akMznUJSQoGE3j/Sko7v7fb7vS11IJ3mTvCbkJz6Jhm/VbqQCWmaNuUiCcRjeYT5WF6tgBQ7IQZvOjOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgM0CtKv0wsQJzlHzdy9g94zKxbVYAqRph0AEkpW4ZksvepglqjYrm4jR+1w+ow4dq3HOVsppUcGMPpIT/gIqN463skFVcJFLFuEZ73VnV9z+/bs4otZM3f/EXKeCYPdp9ZB3kFa6368PcWo6QfmrBjegrM4Xt5d2pDM51CUkKBhN4/0pKO7+32+70tdSCd5k7wm5Cc+iYZv1W6kAlpmjblIgnEY3mE+VherYAUOyEGbzozkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDNArSr9MLECc5R83cvYPeMw6xnFIkqqtqLpzDbU9Uw0yp7J4qU4Y975lCD+fN7nB2RzlbKaVHBjD6SE/4CKjeOtqiQ/qK2oKk6ZiV8q4yjiB27OKLWTN3/xFyngmD3afWQd5BWut+vD3FqOkH5qwY3oKzOF7eXdqQzOdQlJCgYTeP9KSju/t9vu9LXUgneZO8JuQnPomGb9VupAJaZo25SIJxGN5hPlYXq2AFDshBm86M5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAzQK0q/TCxAnOUfN3L2D3jMwoO2HLPFTVlWtL8BHjoge3sdmO6RPFQ17doknKAMYvsc5WymlRwYw+khP+Aio3jreQqa2VQI38BK43gu7QoapNuzii1kzd/8Rcp4Jg92n1kHeQVrrfrw9xajpB+asGN6Cszhe3l3akMznUJSQoGE3j/Sko7v7fb7vS11IJ3mTvCbkJz6Jhm/VbqQCWmaNuUiCcRjeYT5WF6tgBQ7IQZvOjOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgM0CtKv0wsQJzlHzdy9g94zNwuaVwvn5Gu5FzhP/FXjS1UpX/qJh9zQINwXWIGyliMHOVsppUcGMPpIT/gIqN461bUzHy/aktHDU7qhLHH0Jnbs4otZM3f/EXKeCYPdp9ZB3kFa6368PcWo6QfmrBjegrM4Xt5d2pDM51CUkKBhN4/0pKO7+32+70tdSCd5k7wm5Cc+iYZv1W6kAlpmjblIgnEY3mE+VherYAUOyEGbzozkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDNArSr9MLECc5R83cvYPeMx/vh+/8vbCxWpzF1T8/0BWs63NW0/IfLhiP+KJfvfAUhzlbKaVHBjD6SE/4CKjeOuCGPgSVSVwiGFt715BRKS327OKLWTN3/xFyngmD3afWQd5BWut+vD3FqOkH5qwY3oKzOF7eXdqQzOdQlJCgYTeP9KSju/t9vu9LXUgneZO8JuQnPomGb9VupAJaZo25SIJxGN5hPlYXq2AFDshBm86M5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAzQK0q/TCxAnOUfN3L2D3jM75NcIRhGE2NyAcwedKTlgohIP8XOmkCa1gUoxcF4AP4c5WymlRwYw+khP+Aio3jrus8WxysozFmrJ+cjFqZtpduzii1kzd/8Rcp4Jg92n1kHeQVrrfrw9xajpB+asGN6Cszhe3l3akMznUJSQoGE3j/Sko7v7fb7vS11IJ3mTvCbkJz6Jhm/VbqQCWmaNuUiCcRjeYT5WF6tgBQ7IQZvOjOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgM0CtKv0wsQJzlHzdy9g94zPObApfWgU4BavTycCxFrP8ZJxXDcYUVTD5cHriwxOPzHOVsppUcGMPpIT/gIqN462sHHO27GJnWPIVg5KztpJjbs4otZM3f/EXKeCYPdp9ZB3kFa6368PcWo6QfmrBjegrM4Xt5d2pDM51CUkKBhN4/0pKO7+32+70tdSCd5k7wm5Cc+iYZv1W6kAlpmjblIgnEY3mE+VherYAUOyEGbzozkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDNArSr9MLECc5R83cvYPeMyq8LUwpbgKJ2xmXQ6ZumfiaBK8elnwFyjNL55R7LhfLRzlbKaVHBjD6SE/4CKjeOu2YN9zNG5VNgxk2VSZthsu27OKLWTN3/xFyngmD3afWQd5BWut+vD3FqOkH5qwY3oKzOF7eXdqQzOdQlJCgYTeP9KSju/t9vu9LXUgneZO8JuQnPomGb9VupAJaZo25SIJxGN5hPlYXq2AFDshBm86M5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAzQK0q/TCxAnOUfN3L2D3jMVz67Xexzxv2UARdPtEGB6Y7t/8dSpaSqWt9uycrRYbwc5WymlRwYw+khP+Aio3jrUnCtHzF4p6ziB4tI9sO2Ytuzii1kzd/8Rcp4Jg92n1kHeQVrrfrw9xajpB+asGN6Cszhe3l3akMznUJSQoGE3j/Sko7v7fb7vS11IJ3mTvCbkJz6Jhm/VbqQCWmaNuUiCcRjeYT5WF6tgBQ7IQZvOjOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgM0CtKv0wsQJzlHzdy9g94zFHFQVATqb1ON30qxWEWUj6/8KkW9dIkhzq74BYcICVaHOVsppUcGMPpIT/gIqN4697L+UAJ2EafEZnMQvsz5sXbs4otZM3f/EXKeCYPdp9ZB3kFa6368PcWo6QfmrBjegrM4Xt5d2pDM51CUkKBhN4/0pKO7+32+70tdSCd5k7wm5Cc+iYZv1W6kAlpmjblIgnEY3mE+VherYAUOyEGbzozkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDNArSr9MLECc5R83cvYPeMwUMssrBnm0gWkhIEvvGqU3MVfotvryYLDpLW8SzvOcuRzlbKaVHBjD6SE/4CKjeOsnz8RfvKBBs7xSq6OXbRu027OKLWTN3/xFyngmD3afWQd5BWut+vD3FqOkH5qwY3oKzOF7eXdqQzOdQlJCgYTeP9KSju/t9vu9LXUgneZO8JuQnPomGb9VupAJaZo25SIJxGN5hPlYXq2AFDshBm86M5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAzQK0q/TCxAnOUfN3L2D3jMxWEnYHNc3Jmwm3L2B0fA9LEvaoErVoT1MP+u0dSpgioc5WymlRwYw+khP+Aio3jrZOzE/A5uNKdS83tU6DygpNuzii1kzd/8Rcp4Jg92n1kHeQVrrfrw9xajpB+asGN6Cszhe3l3akMznUJSQoGE3j/Sko7v7fb7vS11IJ3mTvCbkJz6Jhm/VbqQCWmaNuUiCcRjeYT5WF6tgBQ7IQZvOjOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgM0CtKv0wsQJzlHzdy9g94zJqIKBq4OcYadpcyXB90jP2fRPwMOjugGtAtQWkdoeJAHOVsppUcGMPpIT/gIqN467BNppLlLy8ecmXu4vyXga7bs4otZM3f/EXKeCYPdp9ZB3kFa6368PcWo6QfmrBjegrM4Xt5d2pDM51CUkKBhN4/0pKO7+32+70tdSCd5k7wm5Cc+iYZv1W6kAlpmjblIgnEY3mE+VherYAUOyEGbzozkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDNArSr9MLECc5R83cvYPeMxR0UFAXR7Di8T3zwITLx65+rhje8mya5Ln7mv+WhdSahzlbKaVHBjD6SE/4CKjeOvAzs+CHq+n66URJRqDTawh27OKLWTN3/xFyngmD3afWQd5BWut+vD3FqOkH5qwY3oKzOF7eXdqQzOdQlJCgYTeP9KSju/t9vu9LXUgneZO8JuQnPomGb9VupAJaZo25SIJxGN5hPlYXq2AFDshBm86M5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAzQK0q/TCxAnOUfN3L2D3jMW2UswmOHTgE46+PzHApTZ4UnSAl3LjJRk21X/Vcemdgc5WymlRwYw+khP+Aio3jrTh8SX8jjCVqxrxl9hfnLENuzii1kzd/8Rcp4Jg92n1kHeQVrrfrw9xajpB+asGN6Cszhe3l3akMznUJSQoGE3j/Sko7v7fb7vS11IJ3mTvCbkJz6Jhm/VbqQCWmaNuUiCcRjeYT5WF6tgBQ7IQZvOjOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgM0CtKv0wsQJzlHzdy9g94zH8XdNCYy6XCXQbItSGjnD7PkH3RYo8eazSPnsl4hVHlHOVsppUcGMPpIT/gIqN46zp/u0EnSbEnsQunGaa1saXbs4otZM3f/EXKeCYPdp9ZB3kFa6368PcWo6QfmrBjegrM4Xt5d2pDM51CUkKBhN4/0pKO7+32+70tdSCd5k7
Friday, February 15, 2008 4:34 PM -
Hello StRaynger,
Vista is in what is called a 'Mod-Auth' Tamper state. There are 2 types of Mod-Auth tampers.
1) A critical system file was modified On Disk - What this means is that the file, located on the hard drive, was modified in some way. This can be caused by random file corruption, a malicious program (spyware, malware, virus) or by manual file modification (by a user of the system). There is also a very small chance that an Update may fail in mid-update and cause this type of issue. As a safety mechanism, Updates are made so that if they fail, they roll back any updating that was done before the failure, but there is an off-chance that the roll back did not occure.
2) A critical system file was modified In Memory - What this means is the file itself (on the hard drive) is un-modified, but the code, from that file, running in the system, was modified in some way. and is usually caused by a running program that is incompatible with Vista.
Because of the Mismatched file listed under the "File Scan Data-->" line of your Diagnostic Report, your issue is an On Disk Mod-Auth. The Mismatched file (Slsvc.exe[6.0.6000.16509]) is the file that has been Modified or has become corrupted.
You will notice the long number [6.0.6000.16509] after the file name Slsvc.exe. That number is the version number for that file. Whenever a file is updated, it get a new version number. By using the version number, I can tell the last update that was applied to that file. The reason this is importent is that to fix your issue, all you need to do is re-install the update that was last applied to that file. By doing this, the update will install an unmodified/uncorrupted copy of Slsvc.exe (Version 6.0.6000.16509). The Update you need to install is KB933928
Unfortunately, most Vista updates can only be installed once. If you were to try to install an update that has already been installed on a system, you will usually get the error "This update does not apply to your system". So, to get around this, you will need to uninstall the update and then re-install the update. To do so, please follow the below steps:
First off, try installing update KB933928 from this link http://www.microsoft.com/downloads/details.aspx?FamilyID=dc2ad07b-d5d7-407a-9a0e-3f3d142682d0&DisplayLang=en if you receive the error "This update does not apply to your system" then Vista isn't going to allow you to re-install this update, so you will need to uninstall it first, then reinstall.
1) Log into Vista in Safe Mode
2) Click 'Start' button, then Click 'Control Panel'.
3) Click 'Classic View' in the upper right of the Control Panel window.
4) Double-Click the icon named 'Programs and Features'.
5) Click the 'View installed updates' link in the upper right of the Program and Features window.
6) It may take some time for the list of Updates to appear, please wait.
7) Right-Click on the update 'KB933928' and select 'Unistall'.
8) Reboot into Normal Mode
Now, try to install update KB933928 from this link http://www.microsoft.com/downloads/details.aspx?FamilyID=dc2ad07b-d5d7-407a-9a0e-3f3d142682d0&DisplayLang=en
If you have any problems or receive any unexpected errors, please create a (no cost) support request at http://go.microsoft.com/fwlink/?linkid=52029 for further assistance.
Thank you,
Darin Smith
WGA Forum Manager
Friday, February 15, 2008 9:41 PM -
I have created a support request as your suggestions have not worked.
- Installing another copy obviously doesn't work because as you say, vista isn't going to tolerate a reinstall of an update.
- I have automatic updates turned on as recommended and almost all of vista updates are not uninstallable whether in safe mode or normal mode.
With the barrage of complaints about update KB933928, perhaps it would make your job easier if MS came out with a removal tool for that update - if indeed it is the cause of this serious problem affecting so many users.
Saturday, February 16, 2008 2:01 AM -
I have had my laptop repaired and since then the This is not a Genuine product appears. My son purchased this computer and it has a product key that when used to test comes up as invalid. How can I solve this situation without purchasing a new Windows Product.
Tuesday, March 18, 2008 9:49 PM -
I have also been experiencing a problem with "an unauthorized change was made to windows . . ."
This is what the diagnostic report said:
Diagnostic Report (1.7.0069.0):
-----------------------------------------
WGA Data-->
Validation Status: Invalid License
Validation Code: 50
Online Validation Code: 0x80070426
Cached Validation Code: N/A, hr = 0x80070426
Windows Product Key: *****-*****-VRCTY-3V3RH-WRMG7
Windows Product Key Hash: l2HYuM058SkcIU57PqWaCOL7rEU=
Windows Product ID: 89576-OEM-7332141-00054
Windows Product ID Type: 2
Windows License Type: OEM SLP
Windows OS version: 6.0.6000.2.00010100.0.0.006
CSVLK Server: N/A
CSVLK PID: N/A
ID: {F2FBDEB9-FA25-47EC-B471-3C0F294017AF}(1)
Is Admin: Yes
TestCab: 0x0
WGA Version: Registered, 1.7.69.1
Signed By: Microsoft
Product Name: Windows Vista (TM) Business
Architecture: 0x00000000
Build lab: 6000.vista_gdr.071023-1545
TTS Error: M:20080319133839235-
Validation Diagnostic:
Resolution Status: N/AWgaER Data-->
ThreatID(s): N/A, hr = 0x80070002
Version: N/A, hr = 0x80070002Notifications Data-->
Cached Result: N/A
File Exists: No
Version: N/A, hr = 0x80070002
WgaTray.exe Signed By: N/A, hr = 0x80070002
WgaLogon.dll Signed By: N/A, hr = 0x80070002OGA Data-->
Office Status: 100 Genuine
OGA Version: Registered, 1.6.28.0
Signed By: Microsoft
Office Diagnostics: 77F760FE-153-80070002_7E90FEE8-175-80070002_025D1FF3-282-80041010_025D1FF3-170-80041010_025D1FF3-171-1_025D1FF3-434-80040154_025D1FF3-178-80040154_025D1FF3-179-2_025D1FF3-185-80070002_025D1FF3-199-3_672A8F41-307-80004005_672A8F41-349-80004005_672A8F41-244-80004005Browser Data-->
Proxy settings: N/A
User Agent: Mozilla/4.0 (compatible; MSIE 7.0; Win32)
Default Browser: C:\PROGRA~1\MOZILL~1\FIREFOX.exe
Download signed ActiveX controls: Prompt
Download unsigned ActiveX controls: Disabled
Run ActiveX controls and plug-ins: Allowed
Initialize and script ActiveX controls not marked as safe: Disabled
Allow scripting of Internet Explorer Webbrowser control: Disabled
Active scripting: Allowed
Script ActiveX controls marked as safe for scripting: AllowedFile Scan Data-->
File Mismatch: C:\Windows\system32\rpcrt4.dll[6.0.6000.16525]
File Mismatch: C:\Windows\system32\shell32.dll[6.0.6000.16513]
File Mismatch: C:\Windows\system32\crypt32.dll[6.0.6000.16425]
File Mismatch: C:\Windows\system32\dhcpcsvc.dll[6.0.6000.16512]
File Mismatch: C:\Windows\system32\dhcpcsvc6.dll[6.0.6000.16512]
File Mismatch: C:\Windows\system32\wininet.dll[7.0.6000.16609]
File Mismatch: C:\Windows\system32\urlmon.dll[7.0.6000.16609]
File Mismatch: C:\Windows\system32\advpack.dll[7.0.6000.16609]Other data-->
Office Details: <GenuineResults><MachineData><UGUID>{F2FBDEB9-FA25-47EC-B471-3C0F294017AF}</UGUID><Version>1.7.0069.0</Version><OS>6.0.6000.2.00010100.0.0.006</OS><Architecture>x32</Architecture><PKey>*****-*****-*****-*****-WRMG7</PKey><PID>89576-OEM-7332141-00054</PID><PIDType>2</PIDType><SID>S-1-5-21-4162458720-376568173-1985310304</SID><SYSTEM><Manufacturer>Dell Inc.</Manufacturer><Model>Inspiron 1521 </Model></SYSTEM><BIOS><Manufacturer>Dell Inc.</Manufacturer><Version>A02</Version><SMBIOSVersion major="2" minor="4"/><Date>20070720000000.000000+000</Date></BIOS><HWID>96313507018400FE</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Central Standard Time(GMT-06:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM><OEMID>DELL </OEMID><OEMTableID>M08 </OEMTableID></OEM><BRT/></MachineData><Software><Office><Result>100</Result><Products><Product GUID="{91120000-0031-0000-0000-0000000FF1CE}"><LegitResult>100</LegitResult><Name>2007 Microsoft Office system</Name><Ver>12</Ver><Val>9006B2960B085AE</Val><Hash>dcqdc+c3mvtfh/gZmwMcKzAzZhc=</Hash><Pid>89451-OEM-6672761-19084</Pid><PidType>4</PidType></Product><Product GUID="{91120000-0051-0000-0000-0000000FF1CE}"><LegitResult>100</LegitResult><Name>Microsoft Office Visio Professional 2007</Name><Ver>12</Ver><Val>6ABF669A587D260</Val><Hash>OhIi3Z0h5tPsCow7mI59N5zY1ho=</Hash><Pid>84890-304-8480762-63992</Pid><PidType>10</PidType></Product></Products></Office></Software></GenuineResults>Spsys.log Content: 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
I swear this is valid - it installed on the computer. Can you help?
Thursday, March 20, 2008 6:14 PM -
Diagnostic Report (1.7.0095.0):
-----------------------------------------
WGA Data-->
Validation Status: Invalid License
Validation Code: 50
Online Validation Code: 0x80070426
Cached Validation Code: N/A, hr = 0x80070426
Windows Product Key: *****-*****-27HYQ-XTKW2-WQD8Q
Windows Product Key Hash: U8YEZzymoD4DMyaMb32rPrNIS90=
Windows Product ID: 89578-OEM-7332157-00061
Windows Product ID Type: 2
Windows License Type: OEM SLP
Windows OS version: 6.0.6000.2.00010300.0.0.003
CSVLK Server: N/A
CSVLK PID: N/A
ID: {1A9829CE-0606-48CA-9DB8-E7BAAFF4B2EC}(3)
Is Admin: Yes
TestCab: 0x0
WGA Version: Registered, 1.7.69.2
Signed By: Microsoft
Product Name: Windows Vista (TM) Home Premium
Architecture: 0x00000000
Build lab: 6000.vista_gdr.071023-1545
TTS Error: M:20080419123334447-
Validation Diagnostic:
Resolution Status: N/AWgaER Data-->
ThreatID(s): N/A, hr = 0x80070002
Version: N/A, hr = 0x80070002WGA Notifications Data-->
Cached Result: N/A, hr = 0x80070002
File Exists: No
Version: N/A, hr = 0x80070002
WgaTray.exe Signed By: N/A, hr = 0x80070002
WgaLogon.dll Signed By: N/A, hr = 0x80070002OGA Notifications Data-->
Cached Result: N/A, hr = 0x80070002
Version: N/A, hr = 0x80070002
WGATray.exe Signed By: N/A, hr = 0x80070002
OGAAddin.dll Signed By: N/A, hr = 0x80070002OGA Data-->
Office Status: 109 N/A
OGA Version: Registered, 1.6.28.0
Signed By: Microsoft
Office Diagnostics: 025D1FF3-282-80041010_025D1FF3-170-80041010_025D1FF3-171-1_025D1FF3-434-80040154_025D1FF3-178-80040154_025D1FF3-179-2_025D1FF3-185-80070002_025D1FF3-199-3Browser Data-->
Proxy settings: N/A
User Agent: Mozilla/4.0 (compatible; MSIE 7.0; Win32)
Default Browser: C:\Program Files\Internet Explorer\iexplore.exe
Download signed ActiveX controls: Prompt
Download unsigned ActiveX controls: Disabled
Run ActiveX controls and plug-ins: Allowed
Initialize and script ActiveX controls not marked as safe: Disabled
Allow scripting of Internet Explorer Webbrowser control: Disabled
Active scripting: Allowed
Script ActiveX controls marked as safe for scripting: AllowedFile Scan Data-->
File Mismatch: C:\Windows\system32\rpcrt4.dll[6.0.6000.16525]Other data-->
Office Details: <GenuineResults><MachineData><UGUID>{1A9829CE-0606-48CA-9DB8-E7BAAFF4B2EC}</UGUID><Version>1.7.0095.0</Version><OS>6.0.6000.2.00010300.0.0.003</OS><Architecture>x32</Architecture><PKey>*****-*****-*****-*****-WQD8Q</PKey><PID>89578-OEM-7332157-00061</PID><PIDType>2</PIDType><SID>S-1-5-21-735422460-737841165-414697042</SID><SYSTEM><Manufacturer>Hewlett-Packard</Manufacturer><Model>Presario F500 (RY575EA#ABU) </Model></SYSTEM><BIOS><Manufacturer>Hewlett-Packard</Manufacturer><Version>F.03 </Version><SMBIOSVersion major="2" minor="4"/><Date>20061221000000.000000+000</Date></BIOS><HWID>AD323507018400EE</HWID><UserLCID>0809</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>GMT Standard Time(GMT+00:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM><OEMID>HPQOEM</OEMID><OEMTableID>SLIC-MPC</OEMTableID></OEM><BRT/></MachineData><Software><Office><Result>109</Result><Products/><Applications/></Office></Software></GenuineResults>Spsys.log Content: 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
Saturday, April 19, 2008 12:01 PM -
Diagnostic Report (1.7.0095.0):
-----------------------------------------
WGA Data-->
Validation Status: Invalid License
Validation Code: 50
Online Validation Code: 0x80070426
Cached Validation Code: N/A, hr = 0x80070426
Windows Product Key: *****-*****-27HYQ-XTKW2-WQD8Q
Windows Product Key Hash: U8YEZzymoD4DMyaMb32rPrNIS90=
Windows Product ID: 89578-OEM-7332157-00061
Windows Product ID Type: 2
Windows License Type: OEM SLP
Windows OS version: 6.0.6000.2.00010300.0.0.003
CSVLK Server: N/A
CSVLK PID: N/A
ID: {1A9829CE-0606-48CA-9DB8-E7BAAFF4B2EC}(3)
Is Admin: Yes
TestCab: 0x0
WGA Version: Registered, 1.7.69.2
Signed By: Microsoft
Product Name: Windows Vista (TM) Home Premium
Architecture: 0x00000000
Build lab: 6000.vista_gdr.071023-1545
TTS Error: M:20080419123334447-
Validation Diagnostic:
Resolution Status: N/AWgaER Data-->
ThreatID(s): N/A, hr = 0x80070002
Version: N/A, hr = 0x80070002WGA Notifications Data-->
Cached Result: N/A, hr = 0x80070002
File Exists: No
Version: N/A, hr = 0x80070002
WgaTray.exe Signed By: N/A, hr = 0x80070002
WgaLogon.dll Signed By: N/A, hr = 0x80070002OGA Notifications Data-->
Cached Result: N/A, hr = 0x80070002
Version: N/A, hr = 0x80070002
WGATray.exe Signed By: N/A, hr = 0x80070002
OGAAddin.dll Signed By: N/A, hr = 0x80070002OGA Data-->
Office Status: 109 N/A
OGA Version: Registered, 1.6.28.0
Signed By: Microsoft
Office Diagnostics: 025D1FF3-282-80041010_025D1FF3-170-80041010_025D1FF3-171-1_025D1FF3-434-80040154_025D1FF3-178-80040154_025D1FF3-179-2_025D1FF3-185-80070002_025D1FF3-199-3Browser Data-->
Proxy settings: N/A
User Agent: Mozilla/4.0 (compatible; MSIE 7.0; Win32)
Default Browser: C:\Program Files\Internet Explorer\iexplore.exe
Download signed ActiveX controls: Prompt
Download unsigned ActiveX controls: Disabled
Run ActiveX controls and plug-ins: Allowed
Initialize and script ActiveX controls not marked as safe: Disabled
Allow scripting of Internet Explorer Webbrowser control: Disabled
Active scripting: Allowed
Script ActiveX controls marked as safe for scripting: AllowedFile Scan Data-->
File Mismatch: C:\Windows\system32\rpcrt4.dll[6.0.6000.16525]Other data-->
Office Details: <GenuineResults><MachineData><UGUID>{1A9829CE-0606-48CA-9DB8-E7BAAFF4B2EC}</UGUID><Version>1.7.0095.0</Version><OS>6.0.6000.2.00010300.0.0.003</OS><Architecture>x32</Architecture><PKey>*****-*****-*****-*****-WQD8Q</PKey><PID>89578-OEM-7332157-00061</PID><PIDType>2</PIDType><SID>S-1-5-21-735422460-737841165-414697042</SID><SYSTEM><Manufacturer>Hewlett-Packard</Manufacturer><Model>Presario F500 (RY575EA#ABU) </Model></SYSTEM><BIOS><Manufacturer>Hewlett-Packard</Manufacturer><Version>F.03 </Version><SMBIOSVersion major="2" minor="4"/><Date>20061221000000.000000+000</Date></BIOS><HWID>AD323507018400EE</HWID><UserLCID>0809</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>GMT Standard Time(GMT+00:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM><OEMID>HPQOEM</OEMID><OEMTableID>SLIC-MPC</OEMTableID></OEM><BRT/></MachineData><Software><Office><Result>109</Result><Products/><Applications/></Office></Software></GenuineResults>Spsys.log Content: U1BMRwEAAAAAAQAABAAAAHcTAAAAAAAAYWECADAgAAAs9jJhRKHIAdArSr9MLECc5R83cvYPeMz3CE/Pz1VePsXXTxzkj0eYOA7PcztKd0hPuZzjqxWG2V+gwhNu+IeQRxhCs7OCF+Ns5bm/9XO42tJY7HnZFERiGD817S8Cu1HUlGNHVFBLTl0BpRsD6Dwtx6AnxzEU2IlE7oPk/SPeaYoTWCOSbwhb0nMat38/Ij8WvwlN0LR700BeYdi5UqK8Ce5F2YRTEM9PN3MXtCtbOqphU++LYllJM5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAzQK0q/TCxAnOUfN3L2D3jMeJNwp3kHAMWqPWVsaaFunFsYfwvT1/4S6W+TblTEJmBfoMITbviHkEcYQrOzghfjyrk7CHGZl2QzQkZkRGZKGBg/Ne0vArtR1JRjR1RQS05dAaUbA+g8LcegJ8cxFNiJRO6D5P0j3mmKE1gjkm8IW9JzGrd/PyI/Fr8JTdC0e9NAXmHYuVKivAnuRdmEUxDPTzdzF7QrWzqqYVPvi2JZSTOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgM0CtKv0wsQJzlHzdy9g94zHvrkdnWay2P5utXVACKnmpBGxBCI5wjvDFdmDguFYc4X6DCE274h5BHGEKzs4IX47Zuob56A88oW35dGmxaCvIYPzXtLwK7UdSUY0dUUEtOXQGlGwPoPC3HoCfHMRTYiUTug+T9I95pihNYI5JvCFvScxq3fz8iPxa/CU3QtHvTQF5h2LlSorwJ7kXZhFMQz083cxe0K1s6qmFT74tiWUkzkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDNArSr9MLECc5R83cvYPeMxv4lzPfcnvxcfVh8j7Evs47S2BDftU09Tq5/TUnb5VBV+gwhNu+IeQRxhCs7OCF+PWbW1BDDOBxSHZwee5DQeWGD817S8Cu1HUlGNHVFBLTl0BpRsD6Dwtx6AnxzEU2IlE7oPk/SPeaYoTWCOSbwhb0nMat38/Ij8WvwlN0LR700BeYdi5UqK8Ce5F2YRTEM9PN3MXtCtbOqphU++LYllJM5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAzQK0q/TCxAnOUfN3L2D3jMitRvTMLG0smCMpgiw+2Bzrpyv3THtGqjSpe+n6LACR9foMITbviHkEcYQrOzghfj22QSNedRPWwJOkhvaAIhSRg/Ne0vArtR1JRjR1RQS05dAaUbA+g8LcegJ8cxFNiJRO6D5P0j3mmKE1gjkm8IW9JzGrd/PyI/Fr8JTdC0e9NAXmHYuVKivAnuRdmEUxDPTzdzF7QrWzqqYVPvi2JZSTOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgM0CtKv0wsQJzlHzdy9g94zDTdyXkwlC/1mpOwXZ4QLhIYBksPHGpOHJccwUG7GG5ZX6DCE274h5BHGEKzs4IX47pbtgPJT5FKRLroLO+6bCIYPzXtLwK7UdSUY0dUUEtOXQGlGwPoPC3HoCfHMRTYiUTug+T9I95pihNYI5JvCFvScxq3fz8iPxa/CU3QtHvTQF5h2LlSorwJ7kXZhFMQz083cxe0K1s6qmFT74tiWUkzkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDNArSr9MLECc5R83cvYPeMyWZsVaU5w52MQNUFC6mzb8lzkSKNLzPakx/2LWpplUol+gwhNu+IeQRxhCs7OCF+PrPxdOyVcGEOguyz0AeotgGD817S8Cu1HUlGNHVFBLTl0BpRsD6Dwtx6AnxzEU2IlE7oPk/SPeaYoTWCOSbwhb0nMat38/Ij8WvwlN0LR700BeYdi5UqK8Ce5F2YRTEM9PN3MXtCtbOqphU++LYllJM5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAzQK0q/TCxAnOUfN3L2D3jMEFhr9JDWxBq9vNiOoTnpS7asf8NH13FrfViqIiNbpIpfoMITbviHkEcYQrOzghfjz9jwU5Kd6fTv+LYlCoK5ZRg/Ne0vArtR1JRjR1RQS05dAaUbA+g8LcegJ8cxFNiJRO6D5P0j3mmKE1gjkm8IW9JzGrd/PyI/Fr8JTdC0e9NAXmHYuVKivAnuRdmEUxDPTzdzF7QrWzqqYVPvi2JZSTOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgM
Saturday, April 19, 2008 12:12 PM -
I get no help........same thing
Diagnostic Report (1.7.0095.0):
-----------------------------------------
WGA Data-->
Validation Status: Invalid License
Validation Code: 50
Online Validation Code: 0x80070426
Cached Validation Code: N/A, hr = 0x80070426
Windows Product Key: *****-*****-F4GJK-KG77H-B9HD2
Windows Product Key Hash: iJAth4TbScMi8HdcPurlASXdEkw=
Windows Product ID: 89578-OEM-7332157-00204
Windows Product ID Type: 2
Windows License Type: OEM SLP
Windows OS version: 6.0.6000.2.00010300.0.0.003
CSVLK Server: N/A
CSVLK PID: N/A
ID: {D7FD2755-61D9-445C-8AE6-083DC1BE4BC1}(3)
Is Admin: Yes
TestCab: 0x0
WGA Version: Registered, 1.7.69.2
Signed By: Microsoft
Product Name: Windows Vista (TM) Home Premium
Architecture: 0x00000000
Build lab: 6000.vista_gdr.071023-1545
TTS Error:
Validation Diagnostic:
Resolution Status: N/AWgaER Data-->
ThreatID(s): N/A, hr = 0x80070002
Version: N/A, hr = 0x80070002WGA Notifications Data-->
Cached Result: N/A, hr = 0x80070002
File Exists: No
Version: N/A, hr = 0x80070002
WgaTray.exe Signed By: N/A, hr = 0x80070002
WgaLogon.dll Signed By: N/A, hr = 0x80070002OGA Notifications Data-->
Cached Result: N/A, hr = 0x80070002
Version: N/A, hr = 0x80070002
WGATray.exe Signed By: N/A, hr = 0x80070002
OGAAddin.dll Signed By: N/A, hr = 0x80070002OGA Data-->
Office Status: 100 Genuine
Microsoft Office Home and Student 2007 - 100 Genuine
OGA Version: Registered, 1.6.28.0
Signed By: Microsoft
Office Diagnostics: B4D0AA8B-604-645_7E90FEE8-198-80004005_025D1FF3-282-80041010_025D1FF3-170-80041010_025D1FF3-171-1_025D1FF3-434-80040154_025D1FF3-178-80040154_025D1FF3-179-2_025D1FF3-185-80070002_025D1FF3-199-3Browser Data-->
Proxy settings: N/A
User Agent: Mozilla/4.0 (compatible; MSIE 7.0; Win32)
Default Browser: N/A, hr=0x80070002
Download signed ActiveX controls: Prompt
Download unsigned ActiveX controls: Disabled
Run ActiveX controls and plug-ins: Allowed
Initialize and script ActiveX controls not marked as safe: Disabled
Allow scripting of Internet Explorer Webbrowser control: Disabled
Active scripting: Allowed
Script ActiveX controls marked as safe for scripting: AllowedFile Scan Data-->
Other data-->
Office Details: <GenuineResults><MachineData><UGUID>{D7FD2755-61D9-445C-8AE6-083DC1BE4BC1}</UGUID><Version>1.7.0095.0</Version><OS>6.0.6000.2.00010300.0.0.003</OS><Architecture>x32</Architecture><PKey>*****-*****-*****-*****-B9HD2</PKey><PID>89578-OEM-7332157-00204</PID><PIDType>2</PIDType><SID>S-1-5-21-2836157247-3609451604-3595081890</SID><SYSTEM><Manufacturer>Dell Inc.</Manufacturer><Model>MM061 </Model></SYSTEM><BIOS><Manufacturer>Dell Inc.</Manufacturer><Version>A14</Version><SMBIOSVersion major="2" minor="4"/><Date>20070402000000.000000+000</Date></BIOS><HWID>6A333507018400EE</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Pacific Standard Time(GMT-08:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM><OEMID>DELL </OEMID><OEMTableID>M07 </OEMTableID></OEM><BRT/></MachineData><Software><Office><Result>100</Result><Products><Product GUID="{91120000-002F-0000-0000-0000000FF1CE}"><LegitResult>100</LegitResult><Name>Microsoft Office Home and Student 2007</Name><Ver>12</Ver><Val>5BD5B624DBE55AE</Val><Hash>qVpmTeyA4zV8jbofNkQCWMR3LUA=</Hash><Pid>81602-OEM-6872775-92445</Pid><PidType>4</PidType></Product></Products><Applications><App Id="16" Version="12" Result="100"/><App Id="18" Version="12" Result="100"/><App Id="1B" Version="12" Result="100"/><App Id="A1" Version="12" Result="100"/></Applications></Office></Software></GenuineResults>Spsys.log Content: 0x80070002
Sunday, April 20, 2008 3:48 PM