locked
Suddenly My Win 7 Home Premium suddenly showing notification copy of windows not genuine RRS feed

  • Question

  • Diagnostic Report (1.9.0019.0):
    -----------------------------------------
    WGA Data-->
    Validation Status: Genuine
    Validation Code: 0

    Cached Validation Code: N/A, hr = 0xc004f012
    Windows Product Key: *****-*****-4F8HK-M4P73-W8DQG
    Windows Product Key Hash: Xs1iQgVeo0C+sObJxS7eu+FuBPQ=
    Windows Product ID: 00359-OEM-8992687-00057
    Windows Product ID Type: 2
    Windows License Type: OEM SLP
    Windows OS version: 6.1.7601.2.00010300.1.0.003
    ID: {939D184F-AC9A-489C-8BF6-29747F36F380}(1)
    Is Admin: Yes
    TestCab: 0x0
    WGA Version: N/A, hr = 0x80070002
    Signed By: N/A, hr = 0x80070002
    Product Name: Windows 7 Home Premium
    Architecture: 0x00000009
    Build lab: 7601.win7sp1_gdr.151019-1254
    TTS Error:
    Validation Diagnostic:
    Resolution Status: N/A

    WgaER Data-->
    ThreatID(s): N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002

    WGA Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    File Exists: No
    Version: N/A, hr = 0x80070002
    WgaTray.exe Signed By: N/A, hr = 0x80070002
    WgaLogon.dll Signed By: N/A, hr = 0x80070002

    OGA Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002
    OGAExec.exe Signed By: N/A, hr = 0x80070002
    OGAAddin.dll Signed By: N/A, hr = 0x80070002

    OGA Data-->
    Office Status: 100 Genuine
    Microsoft Office Enterprise 2007 - 100 Genuine
    OGA Version: N/A, 0x80070002
    Signed By: N/A, hr = 0x80070002
    Office Diagnostics: 025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3_E2AD56EA-765-d003_E2AD56EA-766-0_E2AD56EA-134-80004005_E2AD56EA-765-8009_E2AD56EA-766-2ee7_E2AD56EA-148-80004005_16E0B333-89-80004005_B4D0AA8B-1029-80004005

    Browser Data-->
    Proxy settings: N/A
    User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
    Default Browser: C:\Program Files\Pale Moon\palemoon.exe
    Download signed ActiveX controls: Prompt
    Download unsigned ActiveX controls: Disabled
    Run ActiveX controls and plug-ins: Allowed
    Initialize and script ActiveX controls not marked as safe: Disabled
    Allow scripting of Internet Explorer Webbrowser control: Disabled
    Active scripting: Allowed
    Script ActiveX controls marked as safe for scripting: Allowed

    File Scan Data-->
    File Mismatch: C:\windows\system32\wat\watadminsvc.exe[hr = 0x80070002]
    File Mismatch: C:\windows\system32\wat\npwatweb.dll[hr = 0x80070002]
    File Mismatch: C:\windows\system32\wat\watux.exe[hr = 0x80070002]
    File Mismatch: C:\windows\system32\wat\watweb.dll[hr = 0x80070002]

    Other data-->
    Office Details: <GenuineResults><MachineData><UGUID>{939D184F-AC9A-489C-8BF6-29747F36F380}</UGUID><Version>1.9.0019.0</Version><OS>6.1.7601.2.00010300.1.0.003</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-W8DQG</PKey><PID>00359-OEM-8992687-00057</PID><PIDType>2</PIDType><SID>S-1-5-21-3914985758-3102438160-1649895504</SID><SYSTEM><Manufacturer>TOSHIBA</Manufacturer><Model>Satellite E305</Model></SYSTEM><BIOS><Manufacturer>INSYDE</Manufacturer><Version>2.20</Version><SMBIOSVersion major="2" minor="7"/><Date>20120210000000.000000+000</Date></BIOS><HWID>93F33407018400FE</HWID><UserLCID>0421</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>SE Asia Standard Time(GMT+07:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM><OEMID>TOSQCI</OEMID><OEMTableID>TOSQCI00</OEMTableID></OEM><GANotification/></MachineData><Software><Office><Result>100</Result><Products><Product GUID="{90120000-0030-0000-0000-0000000FF1CE}"><LegitResult>100</LegitResult><Name>Microsoft Office Enterprise 2007</Name><Ver>12</Ver><Val>7480B9502DF0D86</Val><Hash>oYWOW5ayFE3pZ+jvTpuXYsY64JE=</Hash><Pid>89388-707-8722531-65120</Pid><PidType>14</PidType></Product></Products><Applications><App Id="15" Version="12" Result="100"/><App Id="16" Version="12" Result="100"/><App Id="18" Version="12" Result="100"/><App Id="19" Version="12" Result="100"/><App Id="1A" Version="12" Result="100"/><App Id="1B" Version="12" Result="100"/><App Id="44" Version="12" Result="100"/><App Id="A1" Version="12" Result="100"/><App Id="BA" Version="12" Result="100"/></Applications></Office></Software></GenuineResults>  

    Spsys.log Content: 0x80070002

    Licensing Data-->
    Software licensing service version: 6.1.7601.17514

    Name: Windows(R) 7, HomePremium edition
    Description: Windows Operating System - Windows(R) 7, OEM_SLP channel
    Activation ID: d2c04e90-c3dd-4260-b0f3-f845f5d27d64
    Application ID: 55c92734-d682-4d71-983e-d6ec3f16059f
    Extended PID: 00359-00178-926-800057-02-1033-7601.0000-3132011
    Installation ID: 005491825153758260867375388076492292899540389766967536
    Processor Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88338
    Machine Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88339
    Use License URL: http://go.microsoft.com/fwlink/?LinkID=88341
    Product Key Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88340
    Partial Product Key: W8DQG
    License Status: Licensed
    Remaining Windows rearm count: 1
    Trusted time: 12/02/2016 10:04:29

    Windows Activation Technologies-->
    HrOffline: 0x00000000
    HrOnline: 0x00000000
    HealthStatus: PASS
    Event Time Stamp: 9:10:2015 18:14
    WAT Activex: Not Registered - 0x80040154
    WAT Admin Service: Not Registered - 0x80040154

    HWID Data-->
    HWID Hash Current: MAAAAAEAAQABAAEAAAABAAAABAABAAEAonaykSKxulUK9GaS4GTCzepgp1A4vS5z

    OEM Activation 1.0 Data-->
    N/A

    OEM Activation 2.0 Data-->
    BIOS valid for OA 2.0: yes
    Windows marker version: 0x20001
    OEMID and OEMTableID Consistent: yes
    BIOS Information:
      ACPI Table Name    OEMID Value    OEMTableID Value
      APIC            TOSQCI        TOSQCI00
      FACP            TOSQCI        TOSQCI00
      HPET            TOSQCI        TOSQCI00
      BOOT            TOSQCI        TOSQCI00
      MCFG            TOSQCI        TOSQCI00
      WDAT            TOSQCI        TOSQCI00
      ASF!            TOSQCI        TOSQCI00
      SLIC            TOSQCI        TOSQCI00
      SSDT            INSYDE        INSYDE  
      ASPT            TOSQCI        TOSQCI00
      SSDT            INSYDE        INSYDE  
      SSDT            INSYDE        INSYDE  

    Friday, February 12, 2016 3:18 AM

Answers

  • YOu appear to have installed the WAT update - and then removed it by deletion rather than uninstalling it.

    Close all open windows.

    Open an Elevated Command Prompt window, and type the following command

    wusa /uninstall /kb:971033

    and hit the Enter key

    Accept the warnings/confirmations, and wait for it to complete

    copy and paste the output (if any) from the command prompt window to a reply here,

    Reboot

    reinstall the update from http://support.microsoft.com/kb/971033

    Reboot

    run another MGADiag report, and post it.


    Noel Paton | Nil Carborundum Illegitemi
    CrashFixPC | The Three-toed Sloth
    No - I do not work for Microsoft, or any of its contractors.

    Monday, March 28, 2016 7:31 AM
    Moderator