locked
Genuine Advantage diagnostic tool won't work and windows claim to be not genuine. (edit: the tool now works) RRS feed

  • Question

  • Ever since yesterday I have been unable to acces my control panel as well as running certain software (only 1 game so far since I have not tried every program to confirm).
    I think the problem came to existance when trying to manually edit the winsxs folder for which I tried changing permissions as well as disabling certain protections. Leading to my copy of Vista to be branded as not genuine.

    I want to restore everything to how it was but since I no longer am capable of accesing the control panel I can't run Restore Center, the genuine advantage tool crashes as soon as I click the "Continue" button to start diagnostic meaning I can't profide the WGA diagnostic tool results as requested.

    On a side note I tried "upgrading" vista with my vista CD which gave the error that it couldn't configure my hardware (it's already running so don't ask me how that's possible). And I have been running Vista as Genuine for about 8 months.

    I'm not really sure about what hardware I exectly have since I can't acces hardware manager to check.

    EDIT:
    Sorry after running WGA diagnostic tool again and not closing it when it was no longer responding it managed to finish afterall.

    Here are the results:

    Diagnostic Report (1.7.0095.0):
    -----------------------------------------
    WGA Data-->
    Validation Status: Genuine
    Validation Code: 0
    Online Validation Code: 0x80070426
    Cached Validation Code: N/A, hr = 0x80004005
    Windows Product Key: *****-*****-CTTKD-4GDGK-R4QD3
    Windows Product Key Hash: Oskbl1AFNfwI+1IP0LsgdOg7bjU=
    Windows Product ID: 89581-OEM-7300936-70678
    Windows Product ID Type: 3
    Windows License Type: OEM System Builder
    Windows OS version: 6.0.6000.2.00010300.0.0.002
    CSVLK Server: N/A
    CSVLK PID: N/A
    ID: {FE776880-EFCA-400D-B9B8-E54A7AF44521}(3)
    Is Admin: Yes
    TestCab: 0x0
    WGA Version: N/A, hr = 0x80070002
    Signed By: N/A, hr = 0x80070002
    Product Name: Windows Vista (TM) Home Basic
    Architecture: 0x00000009
    Build lab: 6000.vista_gdr.071009-1548
    TTS Error:
    Validation Diagnostic:
    Resolution Status: N/A

    WgaER Data-->
    ThreatID(s): N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002

    WGA Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    File Exists: No
    Version: N/A, hr = 0x80070002
    WgaTray.exe Signed By: N/A, hr = 0x80070002
    WgaLogon.dll Signed By: N/A, hr = 0x80070002

    OGA Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002
    WGATray.exe Signed By: N/A, hr = 0x80070002
    OGAAddin.dll Signed By: N/A, hr = 0x80070002

    OGA Data-->
    Office Status: 109 N/A
    OGA Version: N/A, 0x80070002
    Signed By: N/A, hr = 0x80070002
    Office Diagnostics: FCEE394C-459-80070005_025D1FF3-262-80070005_025D1FF3-170-80070005_025D1FF3-171-1_025D1FF3-434-80040154_025D1FF3-178-80040154_025D1FF3-179-2_025D1FF3-185-80070002_025D1FF3-199-3

    Browser Data-->
    Proxy settings: N/A
    User Agent: Mozilla/4.0 (compatible; MSIE 7.0; Win32)
    Default Browser: C:\Program Files (x86)\Internet Explorer\IEXPLORE.exe
    Download signed ActiveX controls: Prompt
    Download unsigned ActiveX controls: Disabled
    Run ActiveX controls and plug-ins: Allowed
    Initialize and script ActiveX controls not marked as safe: Disabled
    Allow scripting of Internet Explorer Webbrowser control: Disabled
    Active scripting: Allowed
    Script ActiveX controls marked as safe for scripting: Allowed

    File Scan Data-->
    File Mismatch: C:\Windows\system32\Slsvc.exe[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\drivers\Spsys.sys[6.0.5840.16389]
    File Mismatch: C:\Windows\system32\drivers\Spldr.sys[6.0.5840.16389]
    File Mismatch: C:\Windows\system32\ci.dll[6.0.6000.16642]
    File Mismatch: C:\Windows\system32\Slcext.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\advapi32.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\kernel32.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\rpcrt4.dll[6.0.6000.16525]
    File Mismatch: C:\Windows\system32\authz.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\msvcrt.dll[7.0.6000.16386]
    File Mismatch: C:\Windows\system32\samlib.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\ntdsapi.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\dnsapi.dll[6.0.6000.16615]
    File Mismatch: C:\Windows\system32\ws2_32.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\nsi.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\user32.dll[6.0.6000.16438]
    File Mismatch: C:\Windows\system32\gdi32.dll[6.0.6000.16643]
    File Mismatch: C:\Windows\system32\msimg32.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\powrprof.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\setupapi.dll[6.0.6000.16609]
    File Mismatch: C:\Windows\system32\oleaut32.dll[6.0.6000.16609]
    File Mismatch: C:\Windows\system32\ole32.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\shell32.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\shlwapi.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\version.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\winmm.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\oleacc.dll[4.2.5406.0]
    File Mismatch: C:\Windows\system32\mmdevapi.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\wtsapi32.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\regapi.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\crypt32.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\msasn1.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\userenv.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\secur32.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\netapi32.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\psapi.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\netrap.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\wldap32.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\winbrand.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\iphlpapi.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\dhcpcsvc.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\winnsi.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\dhcpcsvc6.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\gpapi.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\slc.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\gpsvc.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\sysntfy.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\winsta.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\nlaapi.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\ncrypt.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\bcrypt.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\mpr.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\credui.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\cryptui.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\wintrust.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\imagehlp.dll[6.0.6000.16470]
    File Mismatch: C:\Windows\system32\dbghelp.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\mssign32.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\wininet.dll[7.0.6000.16643]
    File Mismatch: C:\Windows\system32\normaliz.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\iertutil.dll[7.0.6000.16386]
    File Mismatch: C:\Windows\system32\tapi32.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\rtutils.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\rasapi32.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\rasman.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\rasdlg.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\mprapi.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\activeds.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\adsldpc.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\atl.dll[3.5.2284.0]
    File Mismatch: C:\Windows\system32\certcli.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\winscard.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\netplwiz.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\urlmon.dll[7.0.6000.16643]
    File Mismatch: C:\Windows\system32\propsys.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\xmllite.dll[1.1.1002.0]
    File Mismatch: C:\Windows\system32\mlang.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\advpack.dll[7.0.6000.16643]
    File Mismatch: C:\Windows\system32\apphelp.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\msiltcfg.dll[4.0.6000.16386]
    File Mismatch: C:\Windows\system32\shunimpl.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\devmgr.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\newdev.dll[6.0.5054.0]
    File Mismatch: C:\Windows\system32\dwmapi.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\winspool.drv[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\cscapi.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\uxtheme.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\windowscodecs.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\ntshrui.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\feclient.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\shdocvw.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\browseui.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\imm32.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\msctf.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\duser.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6000.16386_none_9ea0ac9ec96e7127\gdiplus.dll[5.2.6000.16386]
    File Mismatch: C:\Windows\system32\msrating.dll[7.0.6000.16386]
    File Mismatch: C:\Windows\system32\ieframe.dll[7.0.6000.16643]
    File Mismatch: C:\Windows\system32\msi.dll[4.0.6000.16386]
    File Mismatch: C:\Windows\system32\mshtml.dll[7.0.6000.16643]
    File Mismatch: C:\Windows\system32\msls31.dll[3.10.349.0]
    File Mismatch: C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.6000.16386_none_87e0cb09378714f1\comctl32.dll[5.82.6000.16386]
    File Mismatch: C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.6000.16386_none_40339432230aebeb\comctl32.dll[5.82.6000.16386]
    File Mismatch: C:\Windows\system32\comdlg32.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\printui.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\cfgmgr32.dll[6.0.6000.16609]
    File Mismatch: C:\Windows\system32\puiapi.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\hlink.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\imgutil.dll[7.0.6000.16386]
    File Mismatch: C:\Windows\system32\usp10.dll[1.626.6000.16386]
    File Mismatch: C:\Windows\system32\inetcomm.dll[6.0.6000.16545]
    File Mismatch: C:\Windows\system32\msoert2.dll[6.0.6000.16480]
    File Mismatch: C:\Windows\system32\ieui.dll[7.0.6000.16643]
    File Mismatch: C:\Windows\system32\efsadu.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\mfc42u.dll[6.6.8063.0]
    File Mismatch: C:\Windows\system32\odbc32.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\oledlg.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\linkinfo.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\query.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\clbcatq.dll[2001.12.6930.16386]
    File Mismatch: C:\Windows\system32\cabinet.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\scecli.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\w32topl.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\rpchttp.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\winhttp.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\fwpuclnt.dll[6.0.6000.16386]
    File Mismatch: C:\Windows\system32\ktmw32.dll[6.0.6000.16386]

    Other data-->
    Office Details: <GenuineResults><MachineData><UGUID>{FE776880-EFCA-400D-B9B8-E54A7AF44521}</UGUID><Version>1.7.0095.0</Version><OS>6.0.6000.2.00010300.0.0.002</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-R4QD3</PKey><PID>89581-OEM-7300936-70678</PID><PIDType>3</PIDType><SID>S-1-5-21-2233830060-1003358186-3511966152</SID><SYSTEM/><BIOS/><HWID>82303507018400F6</HWID><UserLCID>0809</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>W. Europe Standard Time(GMT+01:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM/><BRT/></MachineData><Software><Office><Result>109</Result><Products/><Applications/></Office></Software></GenuineResults> 

    Spsys.log Content: 0x80070002


    Saturday, April 19, 2008 10:45 PM

Answers

  • Hello Drachnon,

     

      You will notice that under the "File Scan Data-->" line there are a large number of files that are listed as Mismatched. All those files listed are Critical Vista System files. When there is one or two Mismatched files, it means that those files listed have been tampered or corrupted in some way. But in your case the Diagnostic Report is reporting that ALL your Critical Vista System files are Tampered or Corrupted. This is highly unlikly. Whats more likely is that your System Catalog has been tampered or corrupted. The System Catalog stores all the Signatures Hash (think fingerprint) for all the Critical Vista System (and other) files. One of the things that Vista uses the System Catalog for is to identify if a file has been tampered or corrupted because if the file had been modified in any way, it's signature hash would not match what is listed in the System Catalog.

     

    I suggest that you Repair Windows using System Restore:

    1. Reboot Vista into Safe Mode
    2. Go to Control Panel
    3. On the left hand side of the Controlee panel window, Click on "Classic View"
    4. Double-click "Backup and Restore Center"
    5. On the left hand side of the window, click "Repair Windows using system restore"
    6. Select "Choose Different Restore Point", Put a check in the box that says "Show restore points older than 5 days"and then select a restore point that corresponds to a date Before you first experienced the issue.
    7. Click the "Next" button. (follow any further directions from the System Restore Wizard)
    8. Reboot back into Normal mode
    9. Vista should no longer be in Reduced Functionality mode.

     

      Your other option is to attempt a Startup Repair. Startup Repair is the repair process using the Vista install DVD. To conduct a Startup Repair, please go to http://windowshelp.microsoft.com/Windows/en-US/Help/5c59f8c1-b0d1-4f1a-af55-74f3922f3f351033.mspx#EX and click "How do I use Startup Repair?"

     

    Thank you,

    Darin Smith

    WGA Forum Manager

    Monday, April 21, 2008 10:11 PM