locked
Windows 7 not genuine Build 7601 RRS feed

  • Question

  • Here is the report that you need, just popped up and I can't run any updates.  Running on an Asus desktop that was purchased in 2010.

    Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 0
    Cached Online Validation Code: 0x0
    Windows Product Key: *****-*****-BJD6C-K3YVH-DVQJG
    Windows Product Key Hash: WFqPPaNJ0hrc3E/8MgITJa2Xf0M=
    Windows Product ID: 00359-OEM-8992687-00118
    Windows Product ID Type: 2
    Windows License Type: OEM SLP
    Windows OS version: 6.1.7601.2.00010300.1.0.003
    ID: {1E60F205-DA25-4CED-9BA0-9013CE8FCB0E}(3)
    Is Admin: Yes
    TestCab: 0x0
    LegitcheckControl ActiveX: N/A, hr = 0x80070002
    Signed By: N/A, hr = 0x80070002
    Product Name: Windows 7 Home Premium
    Architecture: 0x00000009
    Build lab: 7601.win7sp1_gdr.120330-1504
    TTS Error:
    Validation Diagnostic:
    Resolution Status: N/A

    Vista WgaER Data-->
    ThreatID(s): N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002

    Windows XP Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    File Exists: No
    Version: N/A, hr = 0x80070002
    WgaTray.exe Signed By: N/A, hr = 0x80070002
    WgaLogon.dll Signed By: N/A, hr = 0x80070002

    OGA Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002
    OGAExec.exe Signed By: N/A, hr = 0x80070002
    OGAAddin.dll Signed By: N/A, hr = 0x80070002

    OGA Data-->
    Office Status: 101 Not Activated
    Microsoft Office Home and Student 2007 - 101 Not Activated
    OGA Version: N/A, 0x80070002
    Signed By: N/A, hr = 0x80070002
    Office Diagnostics: FCEE394C-458-8007007e_025D1FF3-344-8007007e_025D1FF3-229-8007007e_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3

    Browser Data-->
    Proxy settings: N/A
    User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
    Default Browser: C:\Program Files (x86)\Mozilla Firefox\firefox.exe
    Download signed ActiveX controls: Prompt
    Download unsigned ActiveX controls: Disabled
    Run ActiveX controls and plug-ins: Allowed
    Initialize and script ActiveX controls not marked as safe: Disabled
    Allow scripting of Internet Explorer Webbrowser control: Disabled
    Active scripting: Allowed
    Script ActiveX controls marked as safe for scripting: Allowed

    File Scan Data-->
    File Mismatch: C:\Windows\system32\wat\watadminsvc.exe[Hr = 0x80070003]
    File Mismatch: C:\Windows\system32\wat\npwatweb.dll[Hr = 0x80070003]
    File Mismatch: C:\Windows\system32\wat\watux.exe[Hr = 0x80070003]
    File Mismatch: C:\Windows\system32\wat\watweb.dll[Hr = 0x80070003]

    Other data-->
    Office Details: <GenuineResults><MachineData><UGUID>{1E60F205-DA25-4CED-9BA0-9013CE8FCB0E}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7601.2.00010300.1.0.003</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-DVQJG</PKey><PID>00359-OEM-8992687-00118</PID><PIDType>2</PIDType><SID>S-1-5-21-386793425-627015689-302160</SID><SYSTEM/><BIOS/><HWID>AF663007018400FC</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Eastern Standard Time(GMT-05:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM><OEMID>_ASUS_</OEMID><OEMTableID>Notebook</OEMTableID></OEM><GANotification/></MachineData><Software><Office><Result>101</Result><Products><Product GUID="{91120000-002F-0000-0000-0000000FF1CE}"><LegitResult>101</LegitResult><Name>Microsoft Office Home and Student 2007</Name><Ver>12</Ver><Val>7B346FE747BB70E</Val><Hash>PxJQkgQsrWdg+R2ep+lnGj0uQSQ=</Hash><Pid>81602-903-6966942-68136</Pid><PidType>1</PidType></Product></Products><Applications><App Id="16" Version="12" Result="101"/><App Id="18" Version="12" Result="101"/><App Id="1B" Version="12" Result="101"/><App Id="A1" Version="12" Result="101"/></Applications></Office></Software></GenuineResults>  

    Spsys.log Content: 0x80070002

    Licensing Data-->
    On a computer running Microsoft Windows non-core edition, run 'slui.exe 0x2a 0x1A8' to display the error text.
    Error: 0x1A8

    Windows Activation Technologies-->
    HrOffline: 0x00000000
    HrOnline: 0x00000000
    HealthStatus: 0x0000000000000000
    Event Time Stamp: 6:6:2012 02:10
    ActiveX: Not Registered - 0x80040154
    Admin Service: Not Registered - 0x80040154
    HealthStatus Bitmask Output:


    HWID Data-->
    HWID Hash Current: NAAAAAEABAABAAEAAAACAAAAAgABAAEAln048MCOyt4cv0LGgJZARhwhYj3GjtKoVg9cXQ==

    OEM Activation 1.0 Data-->
    N/A

    OEM Activation 2.0 Data-->
    BIOS valid for OA 2.0: yes
    Windows marker version: 0x20001
    OEMID and OEMTableID Consistent: yes
    BIOS Information:
      ACPI Table Name    OEMID Value    OEMTableID Value
      APIC            111209        APIC1804
      FACP            111209        FACP1804
      HPET            111209        OEMHPET
      MCFG            111209        OEMMCFG
      OEMB            111209        OEMB1804
      SSDT            DpgPmm        CpuPm
      SLIC            _ASUS_        Notebook

    Sunday, July 8, 2012 4:18 PM

Answers

All replies

  • This can result from mistakenly setting the System32 folder and its contents to 'Read Only' status.


    To correct this:-

    Open Windows Explorer (Computer)
    Navigate to the C:\Windows folder
    Find the System32 sub-folder and right-click on it
    select Properties
    Clear the 'blob' from the 'Read-only(Only applies to files in folder) box by clicking on it until it's plain white.
    Click on Apply
    make sure that the radio button for 'Apply changes to this folder, subfolders and files' is set, and click OK
    Accept the Administrator prompt
    After a couple of seconds, you'll get told there is an error - click on the 'Ignore all' button.
    Wait for it to finish - it could take a couple of minutes
    OK out, and exit Windows Explorer.
    Reboot twice

    post a new MGADiag report.


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth

    Sunday, July 8, 2012 4:27 PM
    Moderator
  • Clicked off read only for System 32 folder and rebooted twice, here is the new MGADiag Report.

    Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 0
    Cached Online Validation Code: 0x0
    Windows Product Key: *****-*****-BJD6C-K3YVH-DVQJG
    Windows Product Key Hash: WFqPPaNJ0hrc3E/8MgITJa2Xf0M=
    Windows Product ID: 00359-OEM-8992687-00118
    Windows Product ID Type: 2
    Windows License Type: OEM SLP
    Windows OS version: 6.1.7601.2.00010300.1.0.003
    ID: {1E60F205-DA25-4CED-9BA0-9013CE8FCB0E}(3)
    Is Admin: Yes
    TestCab: 0x0
    LegitcheckControl ActiveX: N/A, hr = 0x80070002
    Signed By: N/A, hr = 0x80070002
    Product Name: Windows 7 Home Premium
    Architecture: 0x00000009
    Build lab: 7601.win7sp1_gdr.120330-1504
    TTS Error:
    Validation Diagnostic:
    Resolution Status: N/A

    Vista WgaER Data-->
    ThreatID(s): N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002

    Windows XP Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    File Exists: No
    Version: N/A, hr = 0x80070002
    WgaTray.exe Signed By: N/A, hr = 0x80070002
    WgaLogon.dll Signed By: N/A, hr = 0x80070002

    OGA Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002
    OGAExec.exe Signed By: N/A, hr = 0x80070002
    OGAAddin.dll Signed By: N/A, hr = 0x80070002

    OGA Data-->
    Office Status: 101 Not Activated
    Microsoft Office Home and Student 2007 - 101 Not Activated
    OGA Version: N/A, 0x80070002
    Signed By: N/A, hr = 0x80070002
    Office Diagnostics: FCEE394C-458-8007007e_025D1FF3-344-8007007e_025D1FF3-229-8007007e_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3

    Browser Data-->
    Proxy settings: N/A
    User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
    Default Browser: C:\Program Files (x86)\Mozilla Firefox\firefox.exe
    Download signed ActiveX controls: Prompt
    Download unsigned ActiveX controls: Disabled
    Run ActiveX controls and plug-ins: Allowed
    Initialize and script ActiveX controls not marked as safe: Disabled
    Allow scripting of Internet Explorer Webbrowser control: Disabled
    Active scripting: Allowed
    Script ActiveX controls marked as safe for scripting: Allowed

    File Scan Data-->
    File Mismatch: C:\Windows\system32\wat\watadminsvc.exe[Hr = 0x80070003]
    File Mismatch: C:\Windows\system32\wat\npwatweb.dll[Hr = 0x80070003]
    File Mismatch: C:\Windows\system32\wat\watux.exe[Hr = 0x80070003]
    File Mismatch: C:\Windows\system32\wat\watweb.dll[Hr = 0x80070003]

    Other data-->
    Office Details: <GenuineResults><MachineData><UGUID>{1E60F205-DA25-4CED-9BA0-9013CE8FCB0E}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7601.2.00010300.1.0.003</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-DVQJG</PKey><PID>00359-OEM-8992687-00118</PID><PIDType>2</PIDType><SID>S-1-5-21-386793425-627015689-302160</SID><SYSTEM/><BIOS/><HWID>AF663007018400FC</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Eastern Standard Time(GMT-05:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM><OEMID>_ASUS_</OEMID><OEMTableID>Notebook</OEMTableID></OEM><GANotification/></MachineData><Software><Office><Result>101</Result><Products><Product GUID="{91120000-002F-0000-0000-0000000FF1CE}"><LegitResult>101</LegitResult><Name>Microsoft Office Home and Student 2007</Name><Ver>12</Ver><Val>7B346FE747BB70E</Val><Hash>PxJQkgQsrWdg+R2ep+lnGj0uQSQ=</Hash><Pid>81602-903-6966942-68136</Pid><PidType>1</PidType></Product></Products><Applications><App Id="16" Version="12" Result="101"/><App Id="18" Version="12" Result="101"/><App Id="1B" Version="12" Result="101"/><App Id="A1" Version="12" Result="101"/></Applications></Office></Software></GenuineResults>  

    Spsys.log Content: 0x80070002

    Licensing Data-->
    On a computer running Microsoft Windows non-core edition, run 'slui.exe 0x2a 0x1A8' to display the error text.
    Error: 0x1A8

    Windows Activation Technologies-->
    HrOffline: 0x00000000
    HrOnline: 0x00000000
    HealthStatus: 0x0000000000000000
    Event Time Stamp: 6:6:2012 02:10
    ActiveX: Not Registered - 0x80040154
    Admin Service: Not Registered - 0x80040154
    HealthStatus Bitmask Output:


    HWID Data-->
    HWID Hash Current: NAAAAAEABAABAAEAAAACAAAAAgABAAEAln048MCOyt4cv0LGgJZARhwhYj3GjtKoVg9cXQ==

    OEM Activation 1.0 Data-->
    N/A

    OEM Activation 2.0 Data-->
    BIOS valid for OA 2.0: yes
    Windows marker version: 0x20001
    OEMID and OEMTableID Consistent: yes
    BIOS Information:
      ACPI Table Name    OEMID Value    OEMTableID Value
      APIC            111209        APIC1804
      FACP            111209        FACP1804
      HPET            111209        OEMHPET
      MCFG            111209        OEMMCFG
      OEMB            111209        OEMB1804
      SSDT            DpgPmm        CpuPm
      SLIC            _ASUS_        Notebook

    Edit* Just posted this and went back to check and the read only was re-applied to the System 32 folder
    • Edited by Cook87 Sunday, July 8, 2012 4:59 PM
    Sunday, July 8, 2012 4:57 PM
  • The reversion to a 'blob' in the box is normal - don't worry about it.

    OK there's no change in the report - let's look a little deeper....

    please open an elevated Command Prompt, and run the following commands......

    DIR C: Windows\System32\wbem\Repository /AR /S

    DIR C:\Windows\System32\wbem\Repository /S

    ICACLS C:\Windows\System32\wbem\Repository /T

     Here are some instructions to make life easier :)
    1) To open an Elevated Command Prompt Window (the CP window), click on Start, All Programs, Accessories – then right-click on Command Prompt, and select Run as Administrator. Accept the UAC prompt. 
    2) To run the commands easier, highlight the block of commands, and right-click on the highlight – select Copy. In the CP Windows, click on the black/white icon at top left – select Paste. The commands will run but may not complete the last command, so hit the Enter Key once. 
    3) To copy the results... click on the Black/White icon in the top left, and select Edit... 'Select All', and hit the Enter key - then use Ctrl+V or r-click+Paste to paste it into your response.     


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth

    Sunday, July 8, 2012 5:40 PM
    Moderator
  • Here's what I got!

    Microsoft Windows [Version 6.1.7601]
    Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

    C:\Windows\system32>DIR C: Windows\System32\wbem\Repository /AR /S
    The system cannot find the path specified.

    C:\Windows\system32>
    C:\Windows\system32>DIR C:\Windows\System32\wbem\Repository /S
     Volume in drive C is WIN7
     Volume Serial Number is 5AA4-466D

     Directory of C:\Windows\System32\wbem\Repository

    07/08/2012  12:55 PM    <DIR>          .
    07/08/2012  12:55 PM    <DIR>          ..
    05/26/2012  08:30 AM         5,840,896 INDEX.BTR
    05/26/2012  08:20 AM            94,172 MAPPING1.MAP
    07/08/2012  12:54 PM            94,172 MAPPING2.MAP
    05/26/2012  08:10 AM            94,176 MAPPING3.MAP
    05/26/2012  08:30 AM        29,188,096 OBJECTS.DATA
                   5 File(s)     35,311,512 bytes

         Total Files Listed:
                   5 File(s)     35,311,512 bytes
                   2 Dir(s)  128,854,028,288 bytes free

    C:\Windows\system32>
    C:\Windows\system32>ICACLS C:\Windows\System32\wbem\Repository /T
    C:\Windows\System32\wbem\Repository BUILTIN\Users:(RX)
                                        BUILTIN\Users:(OI)(CI)(IO)(GR,GE)
                                        NT AUTHORITY\NETWORK SERVICE:(R)
                                        NT AUTHORITY\NETWORK SERVICE:(OI)(CI)(IO)(GR
    )
                                        No mapping between account names and securit
    y IDs was done.
    (R,W)
                                        No mapping between account names and securit
    y IDs was done.
    (OI)(CI)(IO)(GR,GW)
                                        BUILTIN\Administrators:(F)
                                        BUILTIN\Administrators:(OI)(CI)(IO)(F)
                                        NT AUTHORITY\SYSTEM:(F)
                                        NT AUTHORITY\SYSTEM:(OI)(CI)(IO)(F)
                                        OWNER RIGHTS:(OI)(CI)(IO)(Rc)

    C:\Windows\System32\wbem\Repository\INDEX.BTR BUILTIN\Users:(I)(RX)
                                                  NT AUTHORITY\NETWORK SERVICE:(I)(R
    )
                                                  No mapping between account names a
    nd security IDs was done.
    (I)(R,W)
                                                  BUILTIN\Administrators:(I)(F)
                                                  NT AUTHORITY\SYSTEM:(I)(F)
                                                  OWNER RIGHTS:(I)(Rc)

    C:\Windows\System32\wbem\Repository\MAPPING1.MAP BUILTIN\Users:(I)(RX)
                                                     NT AUTHORITY\NETWORK SERVICE:(I
    )(R)
                                                     No mapping between account name
    s and security IDs was done.
    (I)(R,W)
                                                     BUILTIN\Administrators:(I)(F)
                                                     NT AUTHORITY\SYSTEM:(I)(F)
                                                     OWNER RIGHTS:(I)(Rc)

    C:\Windows\System32\wbem\Repository\MAPPING2.MAP BUILTIN\Users:(I)(RX)
                                                     NT AUTHORITY\NETWORK SERVICE:(I
    )(R)
                                                     No mapping between account name
    s and security IDs was done.
    (I)(R,W)
                                                     BUILTIN\Administrators:(I)(F)
                                                     NT AUTHORITY\SYSTEM:(I)(F)
                                                     OWNER RIGHTS:(I)(Rc)

    C:\Windows\System32\wbem\Repository\MAPPING3.MAP BUILTIN\Users:(I)(RX)
                                                     NT AUTHORITY\NETWORK SERVICE:(I
    )(R)
                                                     No mapping between account name
    s and security IDs was done.
    (I)(R,W)
                                                     BUILTIN\Administrators:(I)(F)
                                                     NT AUTHORITY\SYSTEM:(I)(F)
                                                     OWNER RIGHTS:(I)(Rc)

    C:\Windows\System32\wbem\Repository\OBJECTS.DATA BUILTIN\Users:(I)(RX)
                                                     NT AUTHORITY\NETWORK SERVICE:(I
    )(R)
                                                     No mapping between account name
    s and security IDs was done.
    (I)(R,W)
                                                     BUILTIN\Administrators:(I)(F)
                                                     NT AUTHORITY\SYSTEM:(I)(F)
                                                     OWNER RIGHTS:(I)(Rc)

    Successfully processed 6 files; Failed processing 0 files

    C:\Windows\system32>

    Sunday, July 8, 2012 5:50 PM
  • The dates and times here are worrying. - on my systems they all have roughly the same date and time

    05/26/2012  08:30 AM         5,840,896 INDEX.BTR
    05/26/2012  08:20 AM            94,172 MAPPING1.MAP
    07/08/2012  12:54 PM            94,172 MAPPING2.MAP
    05/26/2012  08:10 AM            94,176 MAPPING3.MAP
    05/26/2012  08:30 AM        29,188,096 OBJECTS.DATA

    Please check the read-only permissions on these files -

    find each in Windows Explorer, and right-click on it.

    Select Properties, and if it has a tick in the read-only box, untick it, and click Apply (you'll have to confirm it), then OK out.

    If you've had to change anything, reboot and post a new MGADiag report.

    Can you remember if you installed anything on 26th May? (check Installed Updates and Programs&Features)

    Are there any errors at boot in your Event Viewer?


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth

    Sunday, July 8, 2012 6:04 PM
    Moderator
  • Those five files didn't have read-only checked.

    The only thing that was installed on 5/26 was an Adobe Flash Update and a game purchased off of Steam

    There hasn't been any updates installed since 5/12 according to "Installed Updates"

           On 5/12 I just installed Microsoft Power Point Viewer, Compatibility Pack for 2007 Office, and Microsoft Silverlight

    I didn't see any boot errors in Event Viewer.

    Sunday, July 8, 2012 6:32 PM
  • On Sun, 8 Jul 2012 18:32:52 +0000, Cook87 wrote:
     
    >
    >
    >Those five files didn't have read-only checked.
    >
    >The only thing that was installed on 5/26 was an Adobe Flash Update and a game purchased off of Steam
    >
    >There hasn't been any updates installed since 5/12 according to "Installed Updates"
    >
    > On 5/12 I just installed Microsoft Power Point Viewer, Compatibility Pack for 2007 Office, and Microsoft Silverlight
    >
    >
    >
    >I didn't see any boot errors in Event Viewer.
     
    Flash shouldn't have caused that - but I can see a malware-laden Steam
    game causing it.
    Check your AV history and Please download and install MalwareBytes
    Anti-malware (free version) www.malwarebytes.org and update it, and
    run a full scan (DO NOT enable the Real-Time protection option!) in
    your main account, and Quick scans in any other user accounts.
     
    Delete everything it finds and post back with a new MGADiag report
     

    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    Sunday, July 8, 2012 7:45 PM
    Moderator
  • I could have sworn I responded to this earlier?

    ... in fact I got a response from the srever that says I did! - WTH???

     anyway - here's the response again....

    Flash shouldn't have caused that - but I can see a malware-laden Steam game causing it.

    Check your AV history

    Please download and install MalwareBytes Anti-malware (free version) www.malwarebytes.org and update it, and run a full scan (DO NOT enable the Real-Time protection option!) in your main account, and Quick scans in any other user accounts.  

    Delete everything it finds and post back with a new MGADiag report 


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth

    Sunday, July 8, 2012 8:36 PM
    Moderator
  • Sorry for the delay in my response, I work thirds so I was getting pretty tired. MalwareBytes found four files after the full scan so I deleted them. Here is my new report.

    Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 0
    Cached Online Validation Code: 0x0
    Windows Product Key: *****-*****-BJD6C-K3YVH-DVQJG
    Windows Product Key Hash: WFqPPaNJ0hrc3E/8MgITJa2Xf0M=
    Windows Product ID: 00359-OEM-8992687-00118
    Windows Product ID Type: 2
    Windows License Type: OEM SLP
    Windows OS version: 6.1.7601.2.00010300.1.0.003
    ID: {1E60F205-DA25-4CED-9BA0-9013CE8FCB0E}(3)
    Is Admin: Yes
    TestCab: 0x0
    LegitcheckControl ActiveX: N/A, hr = 0x80070002
    Signed By: N/A, hr = 0x80070002
    Product Name: Windows 7 Home Premium
    Architecture: 0x00000009
    Build lab: 7601.win7sp1_gdr.120330-1504
    TTS Error:
    Validation Diagnostic:
    Resolution Status: N/A

    Vista WgaER Data-->
    ThreatID(s): N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002

    Windows XP Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    File Exists: No
    Version: N/A, hr = 0x80070002
    WgaTray.exe Signed By: N/A, hr = 0x80070002
    WgaLogon.dll Signed By: N/A, hr = 0x80070002

    OGA Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002
    OGAExec.exe Signed By: N/A, hr = 0x80070002
    OGAAddin.dll Signed By: N/A, hr = 0x80070002

    OGA Data-->
    Office Status: 101 Not Activated
    Microsoft Office Home and Student 2007 - 101 Not Activated
    OGA Version: N/A, 0x80070002
    Signed By: N/A, hr = 0x80070002
    Office Diagnostics: FCEE394C-458-8007007e_025D1FF3-344-8007007e_025D1FF3-229-8007007e_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3

    Browser Data-->
    Proxy settings: N/A
    User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
    Default Browser: C:\Program Files (x86)\Mozilla Firefox\firefox.exe
    Download signed ActiveX controls: Prompt
    Download unsigned ActiveX controls: Disabled
    Run ActiveX controls and plug-ins: Allowed
    Initialize and script ActiveX controls not marked as safe: Disabled
    Allow scripting of Internet Explorer Webbrowser control: Disabled
    Active scripting: Allowed
    Script ActiveX controls marked as safe for scripting: Allowed

    File Scan Data-->
    File Mismatch: C:\Windows\system32\wat\watadminsvc.exe[Hr = 0x80070003]
    File Mismatch: C:\Windows\system32\wat\npwatweb.dll[Hr = 0x80070003]
    File Mismatch: C:\Windows\system32\wat\watux.exe[Hr = 0x80070003]
    File Mismatch: C:\Windows\system32\wat\watweb.dll[Hr = 0x80070003]

    Other data-->
    Office Details: <GenuineResults><MachineData><UGUID>{1E60F205-DA25-4CED-9BA0-9013CE8FCB0E}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7601.2.00010300.1.0.003</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-DVQJG</PKey><PID>00359-OEM-8992687-00118</PID><PIDType>2</PIDType><SID>S-1-5-21-386793425-627015689-302160</SID><SYSTEM/><BIOS/><HWID>AF663007018400FC</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Eastern Standard Time(GMT-05:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM><OEMID>_ASUS_</OEMID><OEMTableID>Notebook</OEMTableID></OEM><GANotification/></MachineData><Software><Office><Result>101</Result><Products><Product GUID="{91120000-002F-0000-0000-0000000FF1CE}"><LegitResult>101</LegitResult><Name>Microsoft Office Home and Student 2007</Name><Ver>12</Ver><Val>7B346FE747BB70E</Val><Hash>PxJQkgQsrWdg+R2ep+lnGj0uQSQ=</Hash><Pid>81602-903-6966942-68136</Pid><PidType>1</PidType></Product></Products><Applications><App Id="16" Version="12" Result="101"/><App Id="18" Version="12" Result="101"/><App Id="1B" Version="12" Result="101"/><App Id="A1" Version="12" Result="101"/></Applications></Office></Software></GenuineResults>  

    Spsys.log Content: 0x80070002

    Licensing Data-->
    On a computer running Microsoft Windows non-core edition, run 'slui.exe 0x2a 0x1A8' to display the error text.
    Error: 0x1A8

    Windows Activation Technologies-->
    HrOffline: 0x00000000
    HrOnline: 0x00000000
    HealthStatus: 0x0000000000000000
    Event Time Stamp: 6:6:2012 02:10
    ActiveX: Not Registered - 0x80040154
    Admin Service: Not Registered - 0x80040154
    HealthStatus Bitmask Output:


    HWID Data-->
    HWID Hash Current: NAAAAAEABAABAAEAAAACAAAAAgABAAEAln048MCOyt4cv0LGgJZARhwhYj3GjtKoVg9cXQ==

    OEM Activation 1.0 Data-->
    N/A

    OEM Activation 2.0 Data-->
    BIOS valid for OA 2.0: yes
    Windows marker version: 0x20001
    OEMID and OEMTableID Consistent: yes
    BIOS Information:
      ACPI Table Name    OEMID Value    OEMTableID Value
      APIC            111209        APIC1804
      FACP            111209        FACP1804
      HPET            111209        OEMHPET
      MCFG            111209        OEMMCFG
      OEMB            111209        OEMB1804
      SSDT            DpgPmm        CpuPm
      SLIC            _ASUS_        Notebook

    Monday, July 9, 2012 5:03 AM
  • What is the exact make/model of your machine?

    Please install the WAT Update KB971033, from http://support.microsoft.com/kb/971033

    then run another MGADiag report - it should help pinpoint the problem.


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth

    Monday, July 9, 2012 9:18 AM
    Moderator
  • Made by Asus, Essentio Desktop is the make and model is CG5275.

    Downloaded the update and tried to install it, came back with "Installer encountered an error: 0x80070424 The specific service does not exist as an installed service"

    Also tried to run Windows Update but it says that the service is currently not running and cannot check for updates.


    Edit* I also made a restore disk from an .ISO file and was wondering if I did a factory reinstall would I run into this problem again when I got back to build 7601 or would it fix it?
    • Edited by Cook87 Monday, July 9, 2012 12:51 PM
    Monday, July 9, 2012 12:43 PM
  • You have what appear to be some major problems.

    please open an Elevated Command Prompt, and run the following commands...

    SC QC SPPSVC
    SC QC BITS
    SC QC WUAUSERV
    SC QC WINMGMT
    SC QC MSISERVER
    SC QC TRUSTEDINSTALLER

    copy and paste the output to your reply.


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth


    Monday, July 9, 2012 12:56 PM
    Moderator
  • Couple of them failed, probably not a good thing.

    Microsoft Windows [Version 6.1.7601]
    Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

    C:\Users\Andy>SC QC SPPSVC
    [SC] QueryServiceConfig SUCCESS

    SERVICE_NAME: SPPSVC
            TYPE               : 10  WIN32_OWN_PROCESS
            START_TYPE         : 3   DEMAND_START
            ERROR_CONTROL      : 1   NORMAL
            BINARY_PATH_NAME   : C:\Windows\system32\sppsvc.exe
            LOAD_ORDER_GROUP   :
            TAG                : 0
            DISPLAY_NAME       : Software Protection
            DEPENDENCIES       : RpcSs
            SERVICE_START_NAME : NT AUTHORITY\NetworkService

    C:\Users\Andy>SC QC BITS
    [SC] OpenService FAILED 1060:

    The specified service does not exist as an installed service.


    C:\Users\Andy>SC QC WUAUSERV
    [SC] OpenService FAILED 1060:

    The specified service does not exist as an installed service.


    C:\Users\Andy>SC QC WINGMT
    [SC] OpenService FAILED 1060:

    The specified service does not exist as an installed service.


    C:\Users\Andy>SC QC MSISERVER
    [SC] QueryServiceConfig SUCCESS

    SERVICE_NAME: MSISERVER
            TYPE               : 10  WIN32_OWN_PROCESS
            START_TYPE         : 3   DEMAND_START
            ERROR_CONTROL      : 1   NORMAL
            BINARY_PATH_NAME   : C:\Windows\system32\msiexec.exe /V
            LOAD_ORDER_GROUP   :
            TAG                : 0
            DISPLAY_NAME       : Windows Installer
            DEPENDENCIES       : rpcss
            SERVICE_START_NAME : LocalSystem

    C:\Users\Andy>SC QC TRUSTEDINSTALLER
    [SC] QueryServiceConfig SUCCESS

    SERVICE_NAME: TRUSTEDINSTALLER
            TYPE               : 10  WIN32_OWN_PROCESS
            START_TYPE         : 3   DEMAND_START
            ERROR_CONTROL      : 1   NORMAL
            BINARY_PATH_NAME   : C:\Windows\servicing\TrustedInstaller.exe
            LOAD_ORDER_GROUP   : ProfSvc_Group
            TAG                : 0
            DISPLAY_NAME       : Windows Modules Installer
            DEPENDENCIES       :
            SERVICE_START_NAME : localSystem

    C:\Users\Andy>

    Monday, July 9, 2012 12:59 PM
  • Ooops! - one of the failures was my fault :(

    please run

    SC QC WINMGMT

    while I try and work out what to do about the others.


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth

    Monday, July 9, 2012 1:01 PM
    Moderator
  • Microsoft Windows [Version 6.1.7601]
    Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

    C:\Users\Andy>SC QC WINMGMT
    [SC] QueryServiceConfig SUCCESS

    SERVICE_NAME: WINMGMT
            TYPE               : 20  WIN32_SHARE_PROCESS
            START_TYPE         : 2   AUTO_START
            ERROR_CONTROL      : 0   IGNORE
            BINARY_PATH_NAME   : C:\Windows\system32\svchost.exe -k netsvcs
            LOAD_ORDER_GROUP   :
            TAG                : 0
            DISPLAY_NAME       : Windows Management Instrumentation
            DEPENDENCIES       : RPCSS
            SERVICE_START_NAME : localSystem

    C:\Users\Andy>
    Monday, July 9, 2012 1:02 PM
  • Good - at least that one works :)

    The first thing to do is set the Software Proection service to run properly

    Run the following commands in an Elevated Command prompt - copy and paste the results to a reply, before rebooting and proceeding further.

    SC CREATE SPPSVC start= delayed-auto
    SC QC SPPSVC
    SC SDSHOW SPPSVC

    I've uploaded two zip files for you - Andy1.zip and Andy2.zip - at https://skydrive.live.com/#cid=936736BB8FCEB92F&id=936736BB8FCEB92F%21481

    download them, and extract the contained .reg files to your desktop

    right-click on one, and select Merge - accept the prompts and warnings, and you should get a 'success' message.
    repeat for the other one.
    reboot and run another MGADiag report, and post the results.


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth

    Monday, July 9, 2012 1:31 PM
    Moderator
  • Downloaded both files and could only successfully merge one of them, the wuauserv.reg file, while the BITS.reg failed and said"Not all data was successfullly written to the registry. Some keys are open by the system or other processes. Rebooting now and running MGADiag when I get back up.

    Microsoft Windows [Version 6.1.7601]
    Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

    C:\Users\Andy>SC CREATE SPPSVC start= delayed-auto
    [SC] OpenSCManager FAILED 5:

    Access is denied.


    C:\Users\Andy>SC QC SPPSVC
    [SC] QueryServiceConfig SUCCESS

    SERVICE_NAME: SPPSVC
            TYPE               : 10  WIN32_OWN_PROCESS
            START_TYPE         : 3   DEMAND_START
            ERROR_CONTROL      : 1   NORMAL
            BINARY_PATH_NAME   : C:\Windows\system32\sppsvc.exe
            LOAD_ORDER_GROUP   :
            TAG                : 0
            DISPLAY_NAME       : Software Protection
            DEPENDENCIES       : RpcSs
            SERVICE_START_NAME : NT AUTHORITY\NetworkService

    C:\Users\Andy>SC SDSHOW SPPSVC

    D:(A;;CCLCSWRPWPDTLOCRRC;;;SY)(A;;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;BA)(A;;CCLCSWRPLO
    CRRC;;;IU)(A;;CCLCSWRPLOCRRC;;;SU)(A;;LCRP;;;AU)

    C:\Users\Andy>

    Edit* Here is the MGADiag report after the reboot

    Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 0
    Cached Online Validation Code: 0x0
    Windows Product Key: *****-*****-BJD6C-K3YVH-DVQJG
    Windows Product Key Hash: WFqPPaNJ0hrc3E/8MgITJa2Xf0M=
    Windows Product ID: 00359-OEM-8992687-00118
    Windows Product ID Type: 2
    Windows License Type: OEM SLP
    Windows OS version: 6.1.7601.2.00010300.1.0.003
    ID: {1E60F205-DA25-4CED-9BA0-9013CE8FCB0E}(3)
    Is Admin: Yes
    TestCab: 0x0
    LegitcheckControl ActiveX: N/A, hr = 0x80070002
    Signed By: N/A, hr = 0x80070002
    Product Name: Windows 7 Home Premium
    Architecture: 0x00000009
    Build lab: 7601.win7sp1_gdr.120330-1504
    TTS Error:
    Validation Diagnostic:
    Resolution Status: N/A

    Vista WgaER Data-->
    ThreatID(s): N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002

    Windows XP Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    File Exists: No
    Version: N/A, hr = 0x80070002
    WgaTray.exe Signed By: N/A, hr = 0x80070002
    WgaLogon.dll Signed By: N/A, hr = 0x80070002

    OGA Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002
    OGAExec.exe Signed By: N/A, hr = 0x80070002
    OGAAddin.dll Signed By: N/A, hr = 0x80070002

    OGA Data-->
    Office Status: 101 Not Activated
    Microsoft Office Home and Student 2007 - 101 Not Activated
    OGA Version: N/A, 0x80070002
    Signed By: N/A, hr = 0x80070002
    Office Diagnostics: FCEE394C-458-8007007e_025D1FF3-344-8007007e_025D1FF3-229-8007007e_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3

    Browser Data-->
    Proxy settings: N/A
    User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
    Default Browser: C:\Program Files (x86)\Mozilla Firefox\firefox.exe
    Download signed ActiveX controls: Prompt
    Download unsigned ActiveX controls: Disabled
    Run ActiveX controls and plug-ins: Allowed
    Initialize and script ActiveX controls not marked as safe: Disabled
    Allow scripting of Internet Explorer Webbrowser control: Disabled
    Active scripting: Allowed
    Script ActiveX controls marked as safe for scripting: Allowed

    File Scan Data-->
    File Mismatch: C:\Windows\system32\wat\watadminsvc.exe[Hr = 0x80070003]
    File Mismatch: C:\Windows\system32\wat\npwatweb.dll[Hr = 0x80070003]
    File Mismatch: C:\Windows\system32\wat\watux.exe[Hr = 0x80070003]
    File Mismatch: C:\Windows\system32\wat\watweb.dll[Hr = 0x80070003]

    Other data-->
    Office Details: <GenuineResults><MachineData><UGUID>{1E60F205-DA25-4CED-9BA0-9013CE8FCB0E}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7601.2.00010300.1.0.003</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-DVQJG</PKey><PID>00359-OEM-8992687-00118</PID><PIDType>2</PIDType><SID>S-1-5-21-386793425-627015689-302160</SID><SYSTEM/><BIOS/><HWID>AF663007018400FC</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Eastern Standard Time(GMT-05:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM><OEMID>_ASUS_</OEMID><OEMTableID>Notebook</OEMTableID></OEM><GANotification/></MachineData><Software><Office><Result>101</Result><Products><Product GUID="{91120000-002F-0000-0000-0000000FF1CE}"><LegitResult>101</LegitResult><Name>Microsoft Office Home and Student 2007</Name><Ver>12</Ver><Val>7B346FE747BB70E</Val><Hash>PxJQkgQsrWdg+R2ep+lnGj0uQSQ=</Hash><Pid>81602-903-6966942-68136</Pid><PidType>1</PidType></Product></Products><Applications><App Id="16" Version="12" Result="101"/><App Id="18" Version="12" Result="101"/><App Id="1B" Version="12" Result="101"/><App Id="A1" Version="12" Result="101"/></Applications></Office></Software></GenuineResults>  

    Spsys.log Content: 0x80070002

    Licensing Data-->
    On a computer running Microsoft Windows non-core edition, run 'slui.exe 0x2a 0x1A8' to display the error text.
    Error: 0x1A8

    Windows Activation Technologies-->
    HrOffline: 0x00000000
    HrOnline: 0x00000000
    HealthStatus: 0x0000000000000000
    Event Time Stamp: 6:6:2012 02:10
    ActiveX: Not Registered - 0x80040154
    Admin Service: Not Registered - 0x80040154
    HealthStatus Bitmask Output:


    HWID Data-->
    HWID Hash Current: NAAAAAEABAABAAEAAAACAAAAAgABAAEAln048MCOyt4cv0LGgJZARhwhYj3GjtKoVg9cXQ==

    OEM Activation 1.0 Data-->
    N/A

    OEM Activation 2.0 Data-->
    BIOS valid for OA 2.0: yes
    Windows marker version: 0x20001
    OEMID and OEMTableID Consistent: yes
    BIOS Information:
      ACPI Table Name    OEMID Value    OEMTableID Value
      APIC            111209        APIC1804
      FACP            111209        FACP1804
      HPET            111209        OEMHPET
      MCFG            111209        OEMMCFG
      OEMB            111209        OEMB1804
      SSDT            DpgPmm        CpuPm
      SLIC            _ASUS_        Notebook

    • Edited by Cook87 Monday, July 9, 2012 1:56 PM
    Monday, July 9, 2012 1:49 PM
  • You ran those commands from a normal command prompt window, rather than an Elevated one - which is why you got an error :)

    "To open an Elevated Command Prompt Window (the CP window), click on Start, All Programs, Accessories – then right-click on Command Prompt, and select Run as Administrator. Accept the UAC prompt.  "

    Try them again

    I'll see waht happens about the BITS one - we may need to twiddle a knob somewhere - back soon


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth

    Monday, July 9, 2012 1:56 PM
    Moderator
  • Here is the list of three and the list of the other five from before, I have to head to my class now but I will be back around 1400 EST or 1800 GMT

    Microsoft Windows [Version 6.1.7601]
    Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

    C:\Windows\system32>SC CREATE SPPSVC start= delayed-auto
    [SC] CreateService FAILED 487:

    Attempt to access invalid address.


    C:\Windows\system32>SC QC SPPSVC
    [SC] QueryServiceConfig SUCCESS

    SERVICE_NAME: SPPSVC
            TYPE               : 10  WIN32_OWN_PROCESS
            START_TYPE         : 3   DEMAND_START
            ERROR_CONTROL      : 1   NORMAL
            BINARY_PATH_NAME   : C:\Windows\system32\sppsvc.exe
            LOAD_ORDER_GROUP   :
            TAG                : 0
            DISPLAY_NAME       : Software Protection
            DEPENDENCIES       : RpcSs
            SERVICE_START_NAME : NT AUTHORITY\NetworkService

    C:\Windows\system32>SC SDSHOW SPPSVC

    D:(A;;CCLCSWRPWPDTLOCRRC;;;SY)(A;;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;BA)(A;;CCLCSWRPLO
    CRRC;;;IU)(A;;CCLCSWRPLOCRRC;;;SU)(A;;LCRP;;;AU)S:(AU;FA;CCDCLCSWRPWPDTLOCRSDRCW
    DWO;;;WD)

    C:\Windows\system32>

    Here is the list of five from earlier I didn't know if you need them or not.

    Microsoft Windows [Version 6.1.7601]
    Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

    C:\Windows\system32>SC QC SPPSVC
    [SC] QueryServiceConfig SUCCESS

    SERVICE_NAME: SPPSVC
            TYPE               : 10  WIN32_OWN_PROCESS
            START_TYPE         : 3   DEMAND_START
            ERROR_CONTROL      : 1   NORMAL
            BINARY_PATH_NAME   : C:\Windows\system32\sppsvc.exe
            LOAD_ORDER_GROUP   :
            TAG                : 0
            DISPLAY_NAME       : Software Protection
            DEPENDENCIES       : RpcSs
            SERVICE_START_NAME : NT AUTHORITY\NetworkService

    C:\Windows\system32>SC QC BITS
    [SC] OpenService FAILED 1060:

    The specified service does not exist as an installed service.


    C:\Windows\system32>SC QC WUAUSERV
    [SC] OpenService FAILED 1060:

    The specified service does not exist as an installed service.


    C:\Windows\system32>SC QC WINMGMT
    [SC] QueryServiceConfig SUCCESS

    SERVICE_NAME: WINMGMT
            TYPE               : 20  WIN32_SHARE_PROCESS
            START_TYPE         : 2   AUTO_START
            ERROR_CONTROL      : 0   IGNORE
            BINARY_PATH_NAME   : C:\Windows\system32\svchost.exe -k netsvcs
            LOAD_ORDER_GROUP   :
            TAG                : 0
            DISPLAY_NAME       : Windows Management Instrumentation
            DEPENDENCIES       : RPCSS
            SERVICE_START_NAME : localSystem

    C:\Windows\system32>SC QC MSISERVER
    [SC] QueryServiceConfig SUCCESS

    SERVICE_NAME: MSISERVER
            TYPE               : 10  WIN32_OWN_PROCESS
            START_TYPE         : 3   DEMAND_START
            ERROR_CONTROL      : 1   NORMAL
            BINARY_PATH_NAME   : C:\Windows\system32\msiexec.exe /V
            LOAD_ORDER_GROUP   :
            TAG                : 0
            DISPLAY_NAME       : Windows Installer
            DEPENDENCIES       : rpcss
            SERVICE_START_NAME : LocalSystem

    C:\Windows\system32>SC QC TRUSTEDINSTALLER
    [SC] QueryServiceConfig SUCCESS

    SERVICE_NAME: TRUSTEDINSTALLER
            TYPE               : 10  WIN32_OWN_PROCESS
            START_TYPE         : 3   DEMAND_START
            ERROR_CONTROL      : 1   NORMAL
            BINARY_PATH_NAME   : C:\Windows\servicing\TrustedInstaller.exe
            LOAD_ORDER_GROUP   : ProfSvc_Group
            TAG                : 0
            DISPLAY_NAME       : Windows Modules Installer
            DEPENDENCIES       :
            SERVICE_START_NAME : localSystem

    C:\Windows\system32>

    Monday, July 9, 2012 2:10 PM
  • Ah - I forgot that the Hosts service blocks changes to the BITS service...

    follow the instructions here.... http://www.sevenforums.com/tutorials/113399-windows-update-error-80246008-windows-7-fix.html

    (at the end of the first post)


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth

    Monday, July 9, 2012 2:13 PM
    Moderator
  • Ummm - my error! (I so rarely use this...)

    The command should be

    SC CONFIG SPPSVC start= delayed-auto

    run that, and then the

    SC QC SPPPSVC

    and we'll see where we are, if you run the MGADiag report and post it as well


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth

    Monday, July 9, 2012 2:18 PM
    Moderator
  • Any progress??

    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth

    Monday, July 16, 2012 12:40 PM
    Moderator