none
Error The security processor reported a system file mismatch error.

    Question

  • Recently started getting this error and control panel closing immediately. Copy of Vista is original to computer being bought off the shelf. 

    Thanks for the help!!




    Diagnostic Report (1.9.0027.0):

    -----------------------------------------

    Windows Validation Data-->

    Validation Status: Genuine

    Validation Code: 0

    Cached Online Validation Code: N/A, hr = 0xc004f012

    Windows Product Key: *****-*****-4JJQP-TP64Y-RPFFV

    Windows Product Key Hash: W7I5PeTN2iJuvTTU9QmIXc6iQqY=

    Windows Product ID: 89583-OEM-7332157-00043

    Windows Product ID Type: 2

    Windows License Type: OEM SLP

    Windows OS version: 6.0.6001.2.00010300.1.0.003

    ID: {A2D65736-B931-4FA5-BFD7-9EC4B39A1895}(1)

    Is Admin: Yes

    TestCab: 0x0

    LegitcheckControl ActiveX: Registered, 1.9.42.0

    Signed By: Microsoft

    Product Name: Windows Vista (TM) Home Premium

    Architecture: 0x00000009

    Build lab: 6001.vistasp1_gdr.101014-0432

    TTS Error: K:20140714233900451-M:20140716205024719-

    Validation Diagnostic: 

    Resolution Status: N/A

    Vista WgaER Data-->

    ThreatID(s): N/A, hr = 0x80070002

    Version: N/A, hr = 0x80070002

    Windows XP Notifications Data-->

    Cached Result: N/A, hr = 0x80070002

    File Exists: No

    Version: N/A, hr = 0x80070002

    WgaTray.exe Signed By: N/A, hr = 0x80070002

    WgaLogon.dll Signed By: N/A, hr = 0x80070002

    OGA Notifications Data-->

    Cached Result: N/A, hr = 0x80070002

    Version: N/A, hr = 0x80070002

    OGAExec.exe Signed By: N/A, hr = 0x80070002

    OGAAddin.dll Signed By: N/A, hr = 0x80070002

    OGA Data-->

    Office Status: 100 Genuine

    Microsoft Office Home and Student 2007 - 100 Genuine

    OGA Version: N/A, 0x80070002

    Signed By: N/A, hr = 0x80070002

    Office Diagnostics: B4D0AA8B-604-645_025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3_E2AD56EA-765-d003_E2AD56EA-766-0_E2AD56EA-134-80004005_E2AD56EA-765-b01a_E2AD56EA-766-0_E2AD56EA-148-80004005_16E0B333-89-80004005_B4D0AA8B-1029-80004005

    Browser Data-->

    Proxy settings: N/A

    User Agent: Mozilla/4.0 (compatible; MSIE; Win32)

    Default Browser: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

    Download signed ActiveX controls: Prompt

    Download unsigned ActiveX controls: Disabled

    Run ActiveX controls and plug-ins: Allowed

    Initialize and script ActiveX controls not marked as safe: Disabled

    Allow scripting of Internet Explorer Webbrowser control: Allowed

    Active scripting: Allowed

    Script ActiveX controls marked as safe for scripting: Allowed

    File Scan Data-->

    Other data-->

    Office Details: <GenuineResults><MachineData><UGUID>{A2D65736-B931-4FA5-BFD7-9EC4B39A1895}</UGUID><Version>1.9.0027.0</Version><OS>6.0.6001.2.00010300.1.0.003</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-RPFFV</PKey><PID>89583-OEM-7332157-00043</PID><PIDType>2</PIDType><SID>S-1-5-21-850984977-947260834-309292167</SID><SYSTEM><Manufacturer>ASUSTeK Computer Inc.        </Manufacturer><Model>U80A                </Model></SYSTEM><BIOS><Manufacturer>American Megatrends Inc.</Manufacturer><Version>205    </Version><SMBIOSVersion major="2" minor="5"/><Date>20090514000000.000000+000</Date></BIOS><HWID>A9313507018400F8</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Eastern Standard Time(GMT-05:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM><OEMID>_ASUS_</OEMID><OEMTableID>Notebook</OEMTableID></OEM><GANotification/></MachineData><Software><Office><Result>100</Result><Products><Product GUID="{91120000-002F-0000-0000-0000000FF1CE}"><LegitResult>100</LegitResult><Name>Microsoft Office Home and Student 2007</Name><Ver>12</Ver><Val>93E70BF386A2F32</Val><Hash>fyHzoOPD54TYBMlGcbgC0mviKT0=</Hash><Pid>81602-921-0452091-68716</Pid><PidType>1</PidType></Product></Products><Applications><App Id="16" Version="12" Result="100"/><App Id="18" Version="12" Result="100"/><App Id="1B" Version="12" Result="100"/><App Id="A1" Version="12" Result="100"/></Applications></Office></Software></GenuineResults>  

    Spsys.log Content: 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 kGZjYd0o8Py01iTA/fgr0SSJ/6M5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDBhy9171jCizkdIEkQaJZ66gHaZE91pyfcgcajKMx+yo3q5+xissgBzu5oqQw+h7wid7IPmIgITKmLNv1wD2WLY5MLUPkUhqiEFURMcVbSecqaOcEd48HYsOntqnEBPIUIqaMVS50xsGhTiu2v3HTjLlzsauw1rN6YPtvvhlgmsO7TtXiHJbmqvzuSde4tUlmcGxBpop0WwiuBXa5HXuzs1OU5kpI4Km83cHZMn5BmY2HdKPD8tNYkwP34K9Ekif+jOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAw=

    Licensing Data-->

    Software licensing service version: 6.0.6001.18000

    Name: Windows(TM) Vista, HomePremium edition

    Description: Windows Operating System - Vista, OEM_SLP channel

    Activation ID: bffdc375-bbd5-499d-8ef1-4f37b61c895f

    Application ID: 55c92734-d682-4d71-983e-d6ec3f16059f

    Extended PID: 89583-00146-321-500043-02-1033-6001.0000-3472013

    Installation ID: 108473910806435723503756515614977590183524773601569192

    Processor Certificate URL: http://go.microsoft.com/fwlink/?LinkID=43473

    Machine Certificate URL: http://go.microsoft.com/fwlink/?LinkID=43474

    Use License URL: http://go.microsoft.com/fwlink/?LinkID=43476

    Product Key Certificate URL: http://go.microsoft.com/fwlink/?LinkID=43475

    Partial Product Key: RPFFV

    License Status: Licensed

    Windows Activation Technologies-->

    N/A

    HWID Data-->

    HWID Hash Current: NAAAAAEAAQABAAIAAQACAAAAAwABAAEA6GG8KI5ejIxGiCT+oNzy9OTm3nCoNhTkrFZGyg==

    OEM Activation 1.0 Data-->

    N/A

    OEM Activation 2.0 Data-->

    BIOS valid for OA 2.0: yes

    Windows marker version: 0x20000

    OEMID and OEMTableID Consistent: yes

    BIOS Information: 

      ACPI Table Name OEMID Value OEMTableID Value

      APIC 051409 APIC1554

      FACP

    051409 FACP1554

      DBGP 051409 DBGP1554

      HPET 051409 OEMHPET 

      BOOT 051409 BOOT1554

      MCFG 051409 OEMMCFG 

      SLIC _ASUS_ Notebook

      ECDT 051409 OEMECDT 

      OEMB 051409 OEMB1554

      GSCI 051409 GMCHSCI 

      SSDT PmRef CpuPm

    Friday, July 18, 2014 3:11 AM

Answers

All replies

  • You have been having a number of Tamper problems - possibly caused by malware.

    TTS Error: K:20140714233900451-M:20140716205024719-

    The first is a Kernel Mode tamper, and the second an In Memory Mod-Auth tamper.

    First let's scan the system for malware -

    Please download and install  Malwarebytes Anti-malware (free version) from  http://www.malwarebytes.org/products/malwarebytes_free/ - UNtick 'Enable free trial of MBAM Premium' at the end of the installation -  and update it, then run a full scan  in your main account, and Quick scans in any other user accounts.

    Delete everything it finds   

    Then, run through the standard filesystem tests...

    Please run a full CHKDSK and SFC scan....

    Click on Start > All Programs > Accessories

    Right-click on the Command Prompt entry

    Select Run as Administrator and accept the UAC prompt - the Elevated Command Prompt window should pop up.

    At the Command prompt, type

     CHKDSK C: /R

    and hit the Enter key.

    You will be told that the drive is locked, and the CHKDSK will run at the next boot - hit the Y key, and then reboot.

    The CHKDSK will take a few hours depending on the size  of the drive, so be patient!

     After the CHKDSK has run, Windows should boot normally  (possibly after a second auto-reboot) - then run the SFC.

    SFC -System File Checker - Instructions

    Click on Start > All Programs > Accessories

    Right-click on the Command Prompt entry

    Select Run as Administrator and accept the UAC prompt - the Elevated Command Prompt window should pop up.

    At the Command prompt, type

    SFC /SCANNOW

    and hit the Enter key

    Wait for the scan to finish - make a note of any error messages - and then reboot.

    Upload the CBS.log file (compressed, please!) to your OneDrive or DropBox Public folder, and post a link - also post a new MGADiag report.


    Noel Paton | Nil Carborundum Illegitemi
    CrashFixPC | The Three-toed Sloth
    No - I do not work for Microsoft, or any of its contractors.

    Friday, July 18, 2014 6:59 AM
    Moderator
  • The MGADiag report is pasted below. SFC /SCANNOW said Windows Resource Protection did not find any integrity violations and I can not locate a cbs.log file on the computer, including searching the whole drive including hidden files. 

    Diagnostic Report (1.9.0027.0):

    -----------------------------------------

    Windows Validation Data-->

    Validation Status: Genuine

    Validation Code: 0

    Cached Online Validation Code: N/A, hr = 0xc004f012

    Windows Product Key: *****-*****-4JJQP-TP64Y-RPFFV

    Windows Product Key Hash: W7I5PeTN2iJuvTTU9QmIXc6iQqY=

    Windows Product ID: 89583-OEM-7332157-00043

    Windows Product ID Type: 2

    Windows License Type: OEM SLP

    Windows OS version: 6.0.6001.2.00010300.1.0.003

    ID: {A2D65736-B931-4FA5-BFD7-9EC4B39A1895}(3)

    Is Admin: Yes

    TestCab: 0x0

    LegitcheckControl ActiveX: Registered, 1.9.42.0

    Signed By: Microsoft

    Product Name: Windows Vista (TM) Home Premium

    Architecture: 0x00000009

    Build lab: 6001.vistasp1_gdr.101014-0432

    TTS Error: K:20140720071514493-M:20140719191013457-

    Validation Diagnostic: 

    Resolution Status: N/A

    Vista WgaER Data-->

    ThreatID(s): N/A, hr = 0x80070002

    Version: N/A, hr = 0x80070002

    Windows XP Notifications Data-->

    Cached Result: N/A, hr = 0x80070002

    File Exists: No

    Version: N/A, hr = 0x80070002

    WgaTray.exe Signed By: N/A, hr = 0x80070002

    WgaLogon.dll Signed By: N/A, hr = 0x80070002

    OGA Notifications Data-->

    Cached Result: N/A, hr = 0x80070002

    Version: N/A, hr = 0x80070002

    OGAExec.exe Signed By: N/A, hr = 0x80070002

    OGAAddin.dll Signed By: N/A, hr = 0x80070002

    OGA Data-->

    Office Status: 100 Genuine

    Microsoft Office Home and Student 2007 - 100 Genuine

    OGA Version: N/A, 0x80070002

    Signed By: N/A, hr = 0x80070002

    Office Diagnostics: B4D0AA8B-604-645_025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3_E2AD56EA-765-d003_E2AD56EA-766-0_E2AD56EA-134-80004005_E2AD56EA-765-b01a_E2AD56EA-766-0_E2AD56EA-148-80004005_16E0B333-89-80004005_B4D0AA8B-1029-80004005

    Browser Data-->

    Proxy settings: N/A

    User Agent: Mozilla/4.0 (compatible; MSIE; Win32)

    Default Browser: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

    Download signed ActiveX controls: Prompt

    Download unsigned ActiveX controls: Disabled

    Run ActiveX controls and plug-ins: Allowed

    Initialize and script ActiveX controls not marked as safe: Disabled

    Allow scripting of Internet Explorer Webbrowser control: Allowed

    Active scripting: Allowed

    Script ActiveX controls marked as safe for scripting: Allowed

    File Scan Data-->

    Other data-->

    Office Details: <GenuineResults><MachineData><UGUID>{A2D65736-B931-4FA5-BFD7-9EC4B39A1895}</UGUID><Version>1.9.0027.0</Version><OS>6.0.6001.2.00010300.1.0.003</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-RPFFV</PKey><PID>89583-OEM-7332157-00043</PID><PIDType>2</PIDType><SID>S-1-5-21-850984977-947260834-309292167</SID><SYSTEM><Manufacturer>ASUSTeK Computer Inc.        </Manufacturer><Model>U80A                </Model></SYSTEM><BIOS><Manufacturer>American Megatrends Inc.</Manufacturer><Version>205    </Version><SMBIOSVersion major="2" minor="5"/><Date>20090514000000.000000+000</Date></BIOS><HWID>A9313507018400F8</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Eastern Standard Time(GMT-05:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM><OEMID>_ASUS_</OEMID><OEMTableID>Notebook</OEMTableID></OEM><GANotification/></MachineData><Software><Office><Result>100</Result><Products><Product GUID="{91120000-002F-0000-0000-0000000FF1CE}"><LegitResult>100</LegitResult><Name>Microsoft Office Home and Student 2007</Name><Ver>12</Ver><Val>93E70BF386A2F32</Val><Hash>fyHzoOPD54TYBMlGcbgC0mviKT0=</Hash><Pid>81602-921-0452091-68716</Pid><PidType>1</PidType></Product></Products><Applications><App Id="16" Version="12" Result="100"/><App Id="18" Version="12" Result="100"/><App Id="1B" Version="12" Result="100"/><App Id="A1" Version="12" Result="100"/></Applications></Office></Software></GenuineResults>  

    Spsys.log Content: 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

    Licensing Data-->

    C:\Windows\system32\slmgr.vbs(1648, 9) (null): 0xC004D401

    Windows Activation Technologies-->

    N/A

    HWID Data-->

    HWID Hash Current: NAAAAAEAAQABAAIAAQACAAAAAwABAAEA6GG8KI5ejIxGiCT+oNzy9OTm3nCoNhTkrFZGyg==

    OEM Activation 1.0 Data-->

    N/A

    OEM Activation 2.0 Data-->

    BIOS valid for OA 2.0: yes

    Windows marker version: 0x20000

    OEMID and OEMTableID Consistent: yes

    BIOS Information: 

      ACPI Table Name OEMID Value OEMTableID Value

      APIC 051409 APIC1554

      FACP 051409 FACP1554

      DBGP 051409 DBGP1554

      HPET 051409 OEMHPET 

      BOOT 051409 BOOT1554

      MCFG 051409

    OEMMCFG 

      SLIC _ASUS_ Notebook

      ECDT 051409 OEMECDT 

      OEMB 051409 OEMB1554

      GSCI 051409 GMCHSCI 

      SSDT PmRef CpuPm


    • Edited by dda0002 Monday, July 21, 2014 1:40 AM pasted old diag report, edited 9:39 edt 7/20/14
    Monday, July 21, 2014 1:37 AM
  • This post may help...

    http://social.microsoft.com/Forums/en-US/genuinevista/thread/a3145e58-eaea-43e5-b2db-c15885076c48



    Noel Paton | Nil Carborundum Illegitemi
    CrashFixPC | The Three-toed Sloth
    No - I do not work for Microsoft, or any of its contractors.

    Monday, July 21, 2014 6:06 AM
    Moderator