Answered by:
Copy of Windows is not genuine!

Question
-
As posted several times already, I have started getting a similar message saying that the copy of windows installed is not genuine. I have had this laptop for 2 years (bought from Best Buy) and this is the first time I have to deal with this issue. I validated my key yesterday and ran the Microsoft genuine diagnostic report: everything comes clean and yet the problem persists.
Also what is with this windows rearm count? I have never reinstalled this copy of microsoft then why has this count gone down?
Please help!
here is the report:
Diagnostic Report (1.9.0027.0):
-----------------------------------------
Windows Validation Data-->Validation Code: 50
Cached Online Validation Code: 0x0
Windows Product Key: *****-*****-73CQT-WMF7J-3Q6C9
Windows Product Key Hash: KaFG+RmurcM3ZxzWyfEP9WtPUJw=
Windows Product ID: 00359-OEM-8992687-00010
Windows Product ID Type: 2
Windows License Type: OEM SLP
Windows OS version: 6.1.7601.2.00010300.1.0.003
ID: {F12F3441-1FC6-4857-B84D-1DA1072C0FE3}(1)
Is Admin: Yes
TestCab: 0x0
LegitcheckControl ActiveX: N/A, hr = 0x80070002
Signed By: N/A, hr = 0x80070002
Product Name: Windows 7 Home Premium
Architecture: 0x00000009
Build lab: 7601.win7sp1_gdr.120503-2030
TTS Error:
Validation Diagnostic:
Resolution Status: N/AVista WgaER Data-->
ThreatID(s): N/A, hr = 0x80070002
Version: N/A, hr = 0x80070002Windows XP Notifications Data-->
Cached Result: N/A, hr = 0x80070002
File Exists: No
Version: N/A, hr = 0x80070002
WgaTray.exe Signed By: N/A, hr = 0x80070002
WgaLogon.dll Signed By: N/A, hr = 0x80070002OGA Notifications Data-->
Cached Result: N/A, hr = 0x80070002
Version: N/A, hr = 0x80070002
OGAExec.exe Signed By: N/A, hr = 0x80070002
OGAAddin.dll Signed By: N/A, hr = 0x80070002OGA Data-->
Office Status: 109 N/A
OGA Version: N/A, 0x80070002
Signed By: N/A, hr = 0x80070002
Office Diagnostics: B4D0AA8B-604-645_025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3Browser Data-->
Proxy settings: N/A
User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
Default Browser: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Download signed ActiveX controls: Prompt
Download unsigned ActiveX controls: Disabled
Run ActiveX controls and plug-ins: Allowed
Initialize and script ActiveX controls not marked as safe: Disabled
Allow scripting of Internet Explorer Webbrowser control: Disabled
Active scripting: Allowed
Script ActiveX controls marked as safe for scripting: AllowedFile Scan Data-->
Other data-->
Office Details: <GenuineResults><MachineData><UGUID>{F12F3441-1FC6-4857-B84D-1DA1072C0FE3}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7601.2.00010300.1.0.003</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-3Q6C9</PKey><PID>00359-OEM-8992687-00010</PID><PIDType>2</PIDType><SID>S-1-5-21-3723680985-2778147882-3160419957</SID><SYSTEM><Manufacturer>Hewlett-Packard</Manufacturer><Model>HP Pavilion dm4 Notebook PC </Model></SYSTEM><BIOS><Manufacturer>Hewlett-Packard</Manufacturer><Version>F.27</Version><SMBIOSVersion major="2" minor="6"/><Date>20111221000000.000000+000</Date></BIOS><HWID>308A3C07018400FC</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Eastern Standard Time(GMT-05:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM><OEMID>HPQOEM</OEMID><OEMTableID>SLIC-MPC</OEMTableID></OEM><GANotification/></MachineData><Software><Office><Result>109</Result><Products/><Applications/></Office></Software></GenuineResults>Spsys.log Content: 0x80070002
Licensing Data-->
Software licensing service version: 6.1.7601.17514Name: Windows(R) 7, HomePremium edition
Description: Windows Operating System - Windows(R) 7, OEM_COA_SLP channel
Activation ID: 5e017a8a-f3f9-4167-b1bd-ba3e236a4d8f
Application ID: 55c92734-d682-4d71-983e-d6ec3f16059f
Extended PID: 00359-00196-068-476487-02-1033-7601.0000-1652012
Installation ID: 011842920010605602504312854596003036249100802922362051
Processor Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88338
Machine Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88339
Use License URL: http://go.microsoft.com/fwlink/?LinkID=88341
Product Key Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88340
Partial Product Key: HY64G
License Status: Licensed
Remaining Windows rearm count: 2
Trusted time: 6/14/2012 1:18:35 PMWindows Activation Technologies-->
HrOffline: 0x00000000
HrOnline: N/A
HealthStatus: 0x0000000000000000
Event Time Stamp: N/A
ActiveX: Registered, Version: 7.1.7600.16395
Admin Service: Registered, Version: 7.1.7600.16395
HealthStatus Bitmask Output:
HWID Data-->
HWID Hash Current: LgAAAAIAAQABAAEAAQABAAAAAQABAAEA6GHEXdQEUQtKvOb2tOehRQ61koNcXQ==OEM Activation 1.0 Data-->
N/AOEM Activation 2.0 Data-->
BIOS valid for OA 2.0: yes
Windows marker version: 0x20001
OEMID and OEMTableID Consistent: yes
BIOS Information:
ACPI Table Name OEMID Value OEMTableID Value
APIC HP SLIC-MPC
FACP HP SLIC-MPC
HPET HP SLIC-MPC
BOOT HP SLIC-MPC
MCFG HP SLIC-MPC
ASF! HP SLIC-MPC
SLIC HPQOEM SLIC-MPC
SSDT TrmRef PtidDevc
SSDT TrmRef PtidDevc
SSDT TrmRef PtidDevc
SSDT TrmRef PtidDevc
ASPT HP SLIC-MPC
SSDT TrmRef PtidDevcThursday, June 14, 2012 5:37 PM
Answers
-
"Noel D Paton" wrote in message news:0d4b8f02-79c0-4bfa-8ed8-ca6be8a3dfe7...
easily done :)
The tokens.dat file is still missing - but the folder permissions seem to be OK.
I need to play - back later.
Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
.... sorry - it's going to be tomorrow.I'm beginning to think that this may not be solvable in a forum context - Unless you're prepared for a long exchange (perhaps a couple more weeks) I doubt that we'll find a solution without a reinstall (either a repair or reformat/reinstall).That being the case, I would suggest that you contact WGA Support and see of you can get them to assist (although I'm happy to carry on if you prefer)WGA Support can be found here-North America: http://support.microsoft.com/contactus/cu_sc_genadv_master?ws=support&ws=support#tab4Outside North America:Please let us know if (and how) MS manage to repair the problem without a repair install of the OS - it would be useful for future reference!
Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth- Marked as answer by Darin Smith MS Thursday, June 28, 2012 6:20 PM
Thursday, June 28, 2012 5:36 PMModerator
All replies
-
"NCash" wrote in message news:596a0ff7-3c75-47ec-a25d-9f0f6e11d4f1... As posted several times already, I have started getting a similar message saying that the copy of windows installed is not genuine. I have had this laptop for 2 years (bought from Best Buy) and this is the first time I have to deal with this issue. I validated my key yesterday and ran the Microsoft genuine diagnostic report: everything comes clean and yet the problem persists. Also what is with this windows rearm count? I have never reinstalled this copy of microsoft then why has this count gone down? Please help! here is the report: Diagnostic Report (1.9.0027.0): ----------------------------------------- Windows Validation Data--> Validation Code: 50 Cached Online Validation Code: 0x0 Windows Product Key: *****-*****-73CQT-WMF7J-3Q6C9 Windows Product Key Hash: KaFG+RmurcM3ZxzWyfEP9WtPUJw= Windows Product ID: 00359-OEM-8992687-00010 Windows Product ID Type: 2 Windows License Type: OEM SLP Windows OS version: 6.1.7601.2.00010300.1.0.003 Other data--> SYSTEM><Manufacturer>Hewlett-Packard</Manufacturer><Model>HP Pavilion dm4 Notebook PC </Model></SYSTEM><BIOS><Manufacturer>Hewlett-Packard</Manufacturer><Version>F.27</Version><SMBIOSVersion major="2" minor="6"/><Date>20111221000000.000000+000</Date></BIOS Licensing Data--> Software licensing service version: 6.1.7601.17514 Name: Windows(R) 7, HomePremium edition Description: Windows Operating System - Windows(R) 7, OEM_COA_SLP channel Partial Product Key: HY64G License Status: Licensed Remaining Windows rearm count: 2 Trusted time: 6/14/2012 1:18:35 PM OEM Activation 2.0 Data--> BIOS valid for OA 2.0: yes Windows marker version: 0x20001 OEMID and OEMTableID Consistent: yes
There is a mismatch between the two parts of your report. In one part it thinks the License Key is an OEM_SLP one, and in the other, a COA_SLP Key. You should attempt to repair the Licensing Store. Please first try recreating the Licensing Store. Recreate the Licensing Store 1) Click Start button. 2) Type: CMD.exe into the 'Search programs and files' field 3) Right-Click on CMD.exe and select Run as Administrator 4) Type: net stop sppsvc (It may ask you if you are sure, select yes) Note: the Software Protection service may not be running, this is ok. 5) Type: cd %windir%\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform 6) Type: rename tokens.dat tokens.bar 7) Type: cd %windir%\system32 8) Type: net start sppsvc 9) Type: slui.exe 10) After a couple of seconds Windows Activation dialog will appear. You may be asked to re-activate and/or re-enter your product key or Activation may occur automatically. If you are asked for your Key, use the one on the COA sitcker on eht machine's case Reboot and Post back with a new MGADiag report Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
- Edited by Darin Smith MS Thursday, June 14, 2012 9:06 PM corrected formatting
Thursday, June 14, 2012 7:40 PMModerator -
Thanks Noel.
I did what said and the validation was successful. Here is the updated report.
Diagnostic Report (1.9.0027.0):
-----------------------------------------
Windows Validation Data-->Validation Code: 50
Cached Online Validation Code: 0x0
Windows Product Key: *****-*****-73CQT-WMF7J-3Q6C9
Windows Product Key Hash: KaFG+RmurcM3ZxzWyfEP9WtPUJw=
Windows Product ID: 00359-OEM-8992687-00010
Windows Product ID Type: 2
Windows License Type: OEM SLP
Windows OS version: 6.1.7601.2.00010300.1.0.003
ID: {F12F3441-1FC6-4857-B84D-1DA1072C0FE3}(3)
Is Admin: Yes
TestCab: 0x0
LegitcheckControl ActiveX: N/A, hr = 0x80070002
Signed By: N/A, hr = 0x80070002
Product Name: Windows 7 Home Premium
Architecture: 0x00000009
Build lab: 7601.win7sp1_gdr.120503-2030
TTS Error:
Validation Diagnostic:
Resolution Status: N/AVista WgaER Data-->
ThreatID(s): N/A, hr = 0x80070002
Version: N/A, hr = 0x80070002Windows XP Notifications Data-->
Cached Result: N/A, hr = 0x80070002
File Exists: No
Version: N/A, hr = 0x80070002
WgaTray.exe Signed By: N/A, hr = 0x80070002
WgaLogon.dll Signed By: N/A, hr = 0x80070002OGA Notifications Data-->
Cached Result: N/A, hr = 0x80070002
Version: N/A, hr = 0x80070002
OGAExec.exe Signed By: N/A, hr = 0x80070002
OGAAddin.dll Signed By: N/A, hr = 0x80070002OGA Data-->
Office Status: 109 N/A
OGA Version: N/A, 0x80070002
Signed By: N/A, hr = 0x80070002
Office Diagnostics: B4D0AA8B-604-645_025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3Browser Data-->
Proxy settings: N/A
User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
Default Browser: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Download signed ActiveX controls: Prompt
Download unsigned ActiveX controls: Disabled
Run ActiveX controls and plug-ins: Allowed
Initialize and script ActiveX controls not marked as safe: Disabled
Allow scripting of Internet Explorer Webbrowser control: Disabled
Active scripting: Allowed
Script ActiveX controls marked as safe for scripting: AllowedFile Scan Data-->
Other data-->
Office Details: <GenuineResults><MachineData><UGUID>{F12F3441-1FC6-4857-B84D-1DA1072C0FE3}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7601.2.00010300.1.0.003</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-3Q6C9</PKey><PID>00359-OEM-8992687-00010</PID><PIDType>2</PIDType><SID>S-1-5-21-3723680985-2778147882-3160419957</SID><SYSTEM><Manufacturer>Hewlett-Packard</Manufacturer><Model>HP Pavilion dm4 Notebook PC </Model></SYSTEM><BIOS><Manufacturer>Hewlett-Packard</Manufacturer><Version>F.27</Version><SMBIOSVersion major="2" minor="6"/><Date>20111221000000.000000+000</Date></BIOS><HWID>308A3C07018400FC</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Eastern Standard Time(GMT-05:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM><OEMID>HPQOEM</OEMID><OEMTableID>SLIC-MPC</OEMTableID></OEM><GANotification/></MachineData><Software><Office><Result>109</Result><Products/><Applications/></Office></Software></GenuineResults>Spsys.log Content: 0x80070002
Licensing Data-->
Software licensing service version: 6.1.7601.17514Name: Windows(R) 7, HomePremium edition
Description: Windows Operating System - Windows(R) 7, OEM_COA_SLP channel
Activation ID: 5e017a8a-f3f9-4167-b1bd-ba3e236a4d8f
Application ID: 55c92734-d682-4d71-983e-d6ec3f16059f
Extended PID: 00359-00196-068-476487-02-1033-7601.0000-1652012
Installation ID: 011842920010605602504312854596003036249100802922362051
Processor Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88338
Machine Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88339
Use License URL: http://go.microsoft.com/fwlink/?LinkID=88341
Product Key Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88340
Partial Product Key: HY64G
License Status: Licensed
Remaining Windows rearm count: 2
Trusted time: 6/14/2012 6:45:45 PMWindows Activation Technologies-->
HrOffline: 0x00000000
HrOnline: N/A
HealthStatus: 0x0000000000000000
Event Time Stamp: N/A
ActiveX: Registered, Version: 7.1.7600.16395
Admin Service: Registered, Version: 7.1.7600.16395
HealthStatus Bitmask Output:
HWID Data-->
HWID Hash Current: LgAAAAIAAQABAAEAAQABAAAAAQABAAEA6GHEXdQEUQtKvOb2tOehRQ61koNcXQ==OEM Activation 1.0 Data-->
N/AOEM Activation 2.0 Data-->
BIOS valid for OA 2.0: yes
Windows marker version: 0x20001
OEMID and OEMTableID Consistent: yes
BIOS Information:
ACPI Table Name OEMID Value OEMTableID Value
APIC HP SLIC-MPC
FACP HP SLIC-MPC
HPET HP SLIC-MPC
BOOT HP SLIC-MPC
MCFG HP SLIC-MPC
ASF! HP SLIC-MPC
SLIC HPQOEM SLIC-MPC
SSDT TrmRef PtidDevc
SSDT TrmRef PtidDevc
SSDT TrmRef PtidDevc
SSDT TrmRef PtidDevc
ASPT HP SLIC-MPC
SSDT TrmRef PtidDevcThursday, June 14, 2012 10:50 PM -
That looks fine now - (and it was activation that was successful, rather than validation)
You should confirm it by going to validate at www.microsoft.com/genuine/validate - when it passes, you'll be offered MSE and IE9 (you don't have to take them)
Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
Friday, June 15, 2012 11:19 AMModerator -
Noel... the situation just got worse. Now when I d0 a validation check I get the following message : "Files that Windows needs to work properly have been modified, removed or disabled. To resolve, you need to install genuine windows. Not to worry we can help you with that. " and asks me to buy a copy.
When I check the system properties for Windows activation fields-
Status: not available
Product ID: not available
I am also getting some kbdus.dll failure message when I try to open any application.
My laptop came with a preinstalled Windows and I dont have Windows CD.
Please let me know what to do....
Files that Windows needs to work properly have been modified, removed, or disabled. To resolve, you need to install genuine Windows. Not to worry, we can help you with that.
Friday, June 15, 2012 1:38 PM -
Hmmm -
this sounds like creeping corruption - which is possibly due to disk problems.
Please run a full CHKDSK and SFC scan....
type in the Search box
CMD.EXE
right-click on the only file that is found
Select Run as Administrator
- the Elevated Command Prompt window should pop up
At the Command prompt, type
CHKDSK C: /R
and hit the Enter key.
You will be told that the drive is locked,
and the CHKDSK will run at he next boot - hit the Y key, and then reboot.
The chkdsk will take a few hours depending on the size
of the drive, so be patient!After the CHKDSK has run, Windows should boot normally
(possibly after a second auto-reboot) - then run the SFCSFC -System File Checker - Instructions
Click on the Start button
type in the Search box
CMD.EXE
right-click on the only file that is foundSelect Run as Administrator
- the Elevated Command Prompt window should pop up
At the Command prompt, typeSFC /SCANNOW
and hit the Enter key
Wait for the scan to finish - make a note of any error messages - and then reboot.
Post an MGADiag report with details of any error messages encountered.Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
Friday, June 15, 2012 1:58 PMModerator -
Chkdsk did not find any errors. sfc scan did show some errors which were logged in a file CBS.log which is inaccessible!!
The Mgadiag report now shows that there is no product key...
Here is the report:
Diagnostic Report (1.9.0027.0):
-----------------------------------------
Windows Validation Data-->Validation Code: 50
Cached Online Validation Code: N/A, hr = 0xc004f012
Windows Product Key: *****-*****-73CQT-WMF7J-3Q6C9
Windows Product Key Hash: KaFG+RmurcM3ZxzWyfEP9WtPUJw=
Windows Product ID: 00359-OEM-8992687-00010
Windows Product ID Type: 2
Windows License Type: OEM SLP
Windows OS version: 6.1.7601.2.00010300.1.0.003
ID: {F12F3441-1FC6-4857-B84D-1DA1072C0FE3}(3)
Is Admin: Yes
TestCab: 0x0
LegitcheckControl ActiveX: N/A, hr = 0x80070002
Signed By: N/A, hr = 0x80070002
Product Name: Windows 7 Home Premium
Architecture: 0x00000009
Build lab: 7601.win7sp1_gdr.120503-2030
TTS Error:
Validation Diagnostic:
Resolution Status: N/AVista WgaER Data-->
ThreatID(s): N/A, hr = 0x80070002
Version: N/A, hr = 0x80070002Windows XP Notifications Data-->
Cached Result: N/A, hr = 0x80070002
File Exists: No
Version: N/A, hr = 0x80070002
WgaTray.exe Signed By: N/A, hr = 0x80070002
WgaLogon.dll Signed By: N/A, hr = 0x80070002OGA Notifications Data-->
Cached Result: N/A, hr = 0x80070002
Version: N/A, hr = 0x80070002
OGAExec.exe Signed By: N/A, hr = 0x80070002
OGAAddin.dll Signed By: N/A, hr = 0x80070002OGA Data-->
Office Status: 109 N/A
OGA Version: N/A, 0x80070002
Signed By: N/A, hr = 0x80070002
Office Diagnostics: B4D0AA8B-604-645_025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3Browser Data-->
Proxy settings: N/A
User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
Default Browser: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Download signed ActiveX controls: Prompt
Download unsigned ActiveX controls: Disabled
Run ActiveX controls and plug-ins: Allowed
Initialize and script ActiveX controls not marked as safe: Disabled
Allow scripting of Internet Explorer Webbrowser control: Disabled
Active scripting: Allowed
Script ActiveX controls marked as safe for scripting: AllowedFile Scan Data-->
Other data-->
Office Details: <GenuineResults><MachineData><UGUID>{F12F3441-1FC6-4857-B84D-1DA1072C0FE3}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7601.2.00010300.1.0.003</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-3Q6C9</PKey><PID>00359-OEM-8992687-00010</PID><PIDType>2</PIDType><SID>S-1-5-21-3723680985-2778147882-3160419957</SID><SYSTEM><Manufacturer>Hewlett-Packard</Manufacturer><Model>HP Pavilion dm4 Notebook PC </Model></SYSTEM><BIOS><Manufacturer>Hewlett-Packard</Manufacturer><Version>F.27</Version><SMBIOSVersion major="2" minor="6"/><Date>20111221000000.000000+000</Date></BIOS><HWID>308A3C07018400FC</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Eastern Standard Time(GMT-05:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM><OEMID>HPQOEM</OEMID><OEMTableID>SLIC-MPC</OEMTableID></OEM><GANotification/></MachineData><Software><Office><Result>109</Result><Products/><Applications/></Office></Software></GenuineResults>Spsys.log Content: 0x80070002
Licensing Data-->
Software licensing service version: 6.1.7601.17514
Error: product key not found.Windows Activation Technologies-->
HrOffline: 0x00000000
HrOnline: 0xC004F022
HealthStatus: 0x0000000000000000
Event Time Stamp: 6:15:2012 09:26
ActiveX: Registered, Version: 7.1.7600.16395
Admin Service: Registered, Version: 7.1.7600.16395
HealthStatus Bitmask Output:
HWID Data-->
HWID Hash Current: LgAAAAIAAQABAAEAAQABAAAAAQABAAEA6GHEXdQEUQtKvOb2tOehRQ61koNcXQ==OEM Activation 1.0 Data-->
N/AOEM Activation 2.0 Data-->
BIOS valid for OA 2.0: yes
Windows marker version: 0x20001
OEMID and OEMTableID Consistent: yes
BIOS Information:
ACPI Table Name OEMID Value OEMTableID Value
APIC HP SLIC-MPC
FACP HP SLIC-MPC
HPET HP SLIC-MPC
BOOT HP SLIC-MPC
MCFG HP SLIC-MPC
ASF! HP SLIC-MPC
SLIC HPQOEM SLIC-MPC
SSDT TrmRef PtidDevc
SSDT TrmRef PtidDevc
SSDT TrmRef PtidDevc
SSDT TrmRef PtidDevc
ASPT HP SLIC-MPC
SSDT TrmRef PtidDevcWhat should I do now?
Friday, June 15, 2012 7:46 PM -
Please COPY the CBS.log file to your desktop (it will copy, even if you can't open the original).
Once on the deskyop, please upload it to either your SkyDrive, or your preferred fileshare site.
As far as your Product Key is concerned, we'd best check for malware first -
Please download and install Malwarebytes Anti-malware (free version) www.malwarebytes.org and update it, and run a full scan (DO NOT enable the Real-Time protection option!) in your main account, and Quick scans in any other user accounts.
Delete everything it finds
Once that's complete, run the Licensing store repair again - you'll need to modify line 6 to read
6) Type: rename tokens.dat tokens.bar3
Then post a new MGADiag report.
Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
- Proposed as answer by Darin Smith MS Friday, June 15, 2012 8:42 PM
- Unproposed as answer by NCash Saturday, June 16, 2012 8:00 AM
Friday, June 15, 2012 8:25 PMModerator -
I get the following mesage: "An unauthorised change was made to Windows at it must be restored"
I have Malwarebytes for the past year or so and run daily quickscans and weekly full scan.
I also use Symantec and MSFT Security Essentials as antivrus softwares on my system.:(
Saturday, June 16, 2012 3:54 AM -
You CANNOT have two anti-virus programs installed without creating problems.
I would recommend removing Norton, and running the Norton Removal tool to get rid of the dregs for the moment at least.
Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
Saturday, June 16, 2012 9:10 AMModerator -
Done everything as you said so far. Here is the mgadiag report:
Diagnostic Report (1.9.0027.0):
-----------------------------------------
Windows Validation Data-->Validation Code: 50
Cached Online Validation Code: N/A, hr = 0xc004f012
Windows Product Key: *****-*****-73CQT-WMF7J-3Q6C9
Windows Product Key Hash: KaFG+RmurcM3ZxzWyfEP9WtPUJw=
Windows Product ID: 00359-OEM-8992687-00010
Windows Product ID Type: 2
Windows License Type: OEM SLP
Windows OS version: 6.1.7601.2.00010300.1.0.003
ID: {8D1E9B27-24E3-4A73-8F70-A6E7E80D492A}(1)
Is Admin: Yes
TestCab: 0x0
LegitcheckControl ActiveX: N/A, hr = 0x80070002
Signed By: N/A, hr = 0x80070002
Product Name: Windows 7 Home Premium
Architecture: 0x00000009
Build lab: 7601.win7sp1_gdr.120330-1504
TTS Error:
Validation Diagnostic:
Resolution Status: N/AVista WgaER Data-->
ThreatID(s): N/A, hr = 0x80070002
Version: N/A, hr = 0x80070002Windows XP Notifications Data-->
Cached Result: N/A, hr = 0x80070002
File Exists: No
Version: N/A, hr = 0x80070002
WgaTray.exe Signed By: N/A, hr = 0x80070002
WgaLogon.dll Signed By: N/A, hr = 0x80070002OGA Notifications Data-->
Cached Result: N/A, hr = 0x80070002
Version: N/A, hr = 0x80070002
OGAExec.exe Signed By: N/A, hr = 0x80070002
OGAAddin.dll Signed By: N/A, hr = 0x80070002OGA Data-->
Office Status: 109 N/A
OGA Version: N/A, 0x80070002
Signed By: N/A, hr = 0x80070002
Office Diagnostics: B4D0AA8B-604-645_025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3Browser Data-->
Proxy settings: N/A
User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
Default Browser: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Download signed ActiveX controls: Prompt
Download unsigned ActiveX controls: Disabled
Run ActiveX controls and plug-ins: Allowed
Initialize and script ActiveX controls not marked as safe: Disabled
Allow scripting of Internet Explorer Webbrowser control: Disabled
Active scripting: Allowed
Script ActiveX controls marked as safe for scripting: AllowedFile Scan Data-->
Other data-->
Office Details: <GenuineResults><MachineData><UGUID>{8D1E9B27-24E3-4A73-8F70-A6E7E80D492A}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7601.2.00010300.1.0.003</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-3Q6C9</PKey><PID>00359-OEM-8992687-00010</PID><PIDType>2</PIDType><SID>S-1-5-21-3723680985-2778147882-3160419957</SID><SYSTEM><Manufacturer>Hewlett-Packard</Manufacturer><Model>HP Pavilion dm4 Notebook PC </Model></SYSTEM><BIOS><Manufacturer>Hewlett-Packard</Manufacturer><Version>F.27</Version><SMBIOSVersion major="2" minor="6"/><Date>20111221000000.000000+000</Date></BIOS><HWID>308A3C07018400FC</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Eastern Standard Time(GMT-05:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM><OEMID>HPQOEM</OEMID><OEMTableID>SLIC-MPC</OEMTableID></OEM><GANotification/></MachineData><Software><Office><Result>109</Result><Products/><Applications/></Office></Software></GenuineResults>Spsys.log Content: 0x80070002
Licensing Data-->
Software licensing service version: 6.1.7601.17514
Error: product key not found.Windows Activation Technologies-->
HrOffline: 0x00000000
HrOnline: 0xC004F022
HealthStatus: 0x0000000000000000
Event Time Stamp: 6:15:2012 09:26
ActiveX: Registered, Version: 7.1.7600.16395
Admin Service: Registered, Version: 7.1.7600.16395
HealthStatus Bitmask Output:
HWID Data-->
HWID Hash Current: LgAAAAIAAQABAAEAAQABAAAAAQABAAEA6GHEXdQEUQtKvOb2tOehRQ61koNcXQ==OEM Activation 1.0 Data-->
N/AOEM Activation 2.0 Data-->
BIOS valid for OA 2.0: yes
Windows marker version: 0x20001
OEMID and OEMTableID Consistent: yes
BIOS Information:
ACPI Table Name OEMID Value OEMTableID Value
APIC HP SLIC-MPC
FACP HP SLIC-MPC
HPET HP SLIC-MPC
BOOT HP SLIC-MPC
MCFG HP SLIC-MPC
ASF! HP SLIC-MPC
SLIC HPQOEM SLIC-MPC
SSDT TrmRef PtidDevc
SSDT TrmRef PtidDevc
SSDT TrmRef PtidDevc
SSDT TrmRef PtidDevc
ASPT HP SLIC-MPC
SSDT TrmRef PtidDevcSunday, June 17, 2012 5:43 AM -
"NCash" wrote in message news:ba7efb1c-f0eb-4f1a-904a-4c186385b66f...
Done everything as you said so far. Here is the mgadiag report:
Diagnostic Report (1.9.0027.0):
-----------------------------------------
Windows Validation Data-->Validation Code: 50
Cached Online Validation Code: N/A, hr = 0xc004f012
Windows Product Key: *****-*****-73CQT-WMF7J-3Q6C9
Windows Product Key Hash: KaFG+RmurcM3ZxzWyfEP9WtPUJw=
Windows Product ID: 00359-OEM-8992687-00010
Windows Product ID Type: 2
Windows License Type: OEM SLP
Windows OS version: 6.1.7601.2.00010300.1.0.003
Other data-->
BIOS><Manufacturer>Hewlett-Packard</Manufacturer><Version>F.27</Version><SMBIOSVersion major="2" minor="6"/><Date>20111221000000.000000+000</Date></BIOSLicensing Data-->
Software licensing service version: 6.1.7601.17514
Error: product key not found.Windows Activation Technologies-->
HrOffline: 0x00000000
HrOnline: 0xC004F022
Still the same - try the Licensing Store fix again,You'll need to change the target name in line 6 to the following6) Type: rename tokens.dat tokens.bar2(if you get a 'duplicate or missing' error then increase the numeric until it works).
Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed SlothSunday, June 17, 2012 12:16 PMModerator -
I went uptill 13 but still could not find the files - error:windows cannot find the specified file
The activation tool is also not running and I get error saying that I need to reinstall or restore windows system files to run activation tool.
Should I call the windows support staff?
Monday, June 18, 2012 4:09 AM -
Ahah!
not often we actually see that - for whatever resoon the system is actually unable to crete the proper tokens file.
please run the following commands in an Elevated command prompt, and post the results.
ICACLS %windir%\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft
ICACLS %windir%\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform /T
Here are some instructions to make life easier :)
1) To open an Elevated Command Prompt Window (the CP window), click on Start, All Programs, Accessories – then right-click on Command Prompt, and select Run as Administrator. Accept the UAC prompt.
2) To run the commands easier, highlight the block of commands, and right-click on the highlight – select Copy. In the CP Windows, click on the black/white icon at top left – select Paste. The commands will run but may not complete the last command, so hit the Enter Key once.
3) To copy the results... click on the Black/White icon in the top left, and select Edit... 'Select All', and hit the Enter key - then use Ctrl+V or r-click+Paste to paste it into your response.Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
Monday, June 18, 2012 9:13 AMModerator -
ok..So I did what you said. Here is what was the response:
Microsoft Windows [Version 6.1.7601]
Copyright (c) 2009 Microsoft Corporation. All rights reserved.C:\Windows\system32>ICACLS %windir%\ServiceProfiles\NetworkService\AppData\Roami
ng\Microsoft
C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft NT AUTHORITY
\SYSTEM:(I)(OI)(CI)(F)
BUILTIN\Admi
nistrators:(I)(OI)(CI)(F)
NT AUTHORITY
\NETWORK SERVICE:(I)(OI)(CI)(F)Successfully processed 1 files; Failed processing 0 files
C:\Windows\system32>
C:\Windows\system32>ICACLS %windir%\ServiceProfiles\NetworkService\AppData\Roami
ng\Microsoft\SoftwareProtectionPlatform /T
C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProt
ectionPlatform NT AUTHORITY\SYSTEM:(I)(OI)(CI)(F)BUILTIN\Administrators:(I)(OI)(CI)(F)
NT AUTHORITY\NETWORK SERVICE:(I)(OI)(CI)(F)
C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProt
ectionPlatform\Cache NT AUTHORITY\SYSTEM:(OI)(CI)(F)BUILTIN\Administrators:(OI)(CI)(F)
NT SERVICE\sppsvc:(OI)(CI)(R,W,D)
Everyone:(OI)(CI)(R)
C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProt
ectionPlatform\tokens.bar NT AUTHORITY\SYSTEM:(I)(F)BUILTIN\Administrators:(I)(F)
NT AUTHORITY\NETWORK SERVICE:(I)(F)
C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProt
ectionPlatform\tokens.bar3 NT AUTHORITY\SYSTEM:(I)(F)BUILTIN\Administrators:(I)(F)
NT AUTHORITY\NETWORK SERVICE:(I)(F)
C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProt
ectionPlatform\Cache\cache.dat NT AUTHORITY\SYSTEM:(I)(F)BUILTIN\Administrators:(I)(F)
NT SERVICE\sppsvc:(I)(R,W,D)
Everyone:(I)(R)
Successfully processed 5 files; Failed processing 0 files
C:\Windows\system32>
Thursday, June 21, 2012 4:56 PM -
Ahah! - the tokens.dat file doesn't exist - which is why you're not getting sensible responses.
This means that there is corruption in the registry, or there is a redirect in operation.
Please run the following commands and post the results
DIR C:\WIndows\ServiceProfiles
REG QUERY HKU
REG QUERY HKU\S-1-5-20
REG QUERY "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-20"
Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
Thursday, June 21, 2012 5:19 PMModerator -
Noel, The tokens.dat file did exist as I was able to change it the first you asked me to. But since then the system shows it is deviod of any Product Id while earlier I could atleast see the OEM Product key. I did as you said, here are the results (hopefully there isn't any information contained in this report which I shouldn't be posting online):
Microsoft Windows [Version 6.1.7601]
Copyright (c) 2009 Microsoft Corporation. All rights reserved.C:\Windows\system32>DIR C:\WIndows\ServiceProfiles
Volume in drive C has no label.
Volume Serial Number is AA7D-F1BFDirectory of C:\WIndows\ServiceProfiles
06/16/2012 11:54 AM <DIR> .
06/16/2012 11:54 AM <DIR> ..
06/16/2012 12:10 PM <DIR> LocalService
06/16/2012 12:10 PM <DIR> NetworkService
0 File(s) 0 bytes
4 Dir(s) 347,516,801,024 bytes freeC:\Windows\system32>
C:\Windows\system32>REG QUERY HKUHKEY_USERS\.DEFAULT
HKEY_USERS\S-1-5-19
HKEY_USERS\S-1-5-20
HKEY_USERS\S-1-5-21-3723680985-2778147882-3160419957-1000
HKEY_USERS\S-1-5-21-3723680985-2778147882-3160419957-1000_Classes
HKEY_USERS\S-1-5-18C:\Windows\system32>
C:\Windows\system32>REG QUERY HKU\S-1-5-20HKEY_USERS\S-1-5-20\AppEvents
HKEY_USERS\S-1-5-20\Console
HKEY_USERS\S-1-5-20\Control Panel
HKEY_USERS\S-1-5-20\Environment
HKEY_USERS\S-1-5-20\EUDC
HKEY_USERS\S-1-5-20\Keyboard Layout
HKEY_USERS\S-1-5-20\Network
HKEY_USERS\S-1-5-20\Printers
HKEY_USERS\S-1-5-20\Software
HKEY_USERS\S-1-5-20\SystemC:\Windows\system32>
C:\Windows\system32>REG QUERY "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion
\ProfileList\S-1-5-20"HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-
5-20
ProfileImagePath REG_EXPAND_SZ C:\Windows\ServiceProfiles\NetworkServi
ce
Flags REG_DWORD 0x0
State REG_DWORD 0x0
C:\Windows\system32>Thursday, June 21, 2012 6:20 PM -
That all looks normal.
Please check the following - I need to think about what to do next, as it's very similar to a long (100+post) thread I had in Vista some time ago.
DIR C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform /s
DIR C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform /ah /s
DIR C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform /ar /s
DIR C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform /as /s
post the results, and also tell me whether the files appear in Windows Explorer - sometimes there is a mismatch - make sure that you have hidden files and Protected files enabled in File options View.
Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
Thursday, June 21, 2012 6:41 PMModerator -
hmm.. here is what I get:
Microsoft Windows [Version 6.1.7601]
Copyright (c) 2009 Microsoft Corporation. All rights reserved.C:\Windows\system32>DIR C:\Windows\ServiceProfiles\NetworkService\AppData\Roamin
g\Microsoft\SoftwareProtectionPlatform /s
Volume in drive C has no label.
Volume Serial Number is AA7D-F1BFDirectory of C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsof
t\SoftwareProtectionPlatform06/15/2012 11:47 PM <DIR> .
06/15/2012 11:47 PM <DIR> ..
07/14/2009 12:46 AM <DIR> Cache
06/13/2012 11:17 AM 7,145,451 tokens.bar
06/14/2012 09:21 PM 16,452 tokens.bar3
2 File(s) 7,161,903 bytesDirectory of C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsof
t\SoftwareProtectionPlatform\Cache07/14/2009 12:46 AM <DIR> .
07/14/2009 12:46 AM <DIR> ..
06/15/2012 12:23 AM 3,040 cache.dat
1 File(s) 3,040 bytesTotal Files Listed:
3 File(s) 7,164,943 bytes
5 Dir(s) 347,351,494,656 bytes freeC:\Windows\system32>
C:\Windows\system32>DIR C:\Windows\ServiceProfiles\NetworkService\AppData\Roamin
g\Microsoft\SoftwareProtectionPlatform /ah /s
Volume in drive C has no label.
Volume Serial Number is AA7D-F1BF
File Not FoundC:\Windows\system32>
C:\Windows\system32>DIR C:\Windows\ServiceProfiles\NetworkService\AppData\Roamin
g\Microsoft\SoftwareProtectionPlatform /ar /s
Volume in drive C has no label.
Volume Serial Number is AA7D-F1BF
File Not FoundC:\Windows\system32>
C:\Windows\system32>DIR C:\Windows\ServiceProfiles\NetworkService\AppData\Roamin
g\Microsoft\SoftwareProtectionPlatform /as /s
Volume in drive C has no label.
Volume Serial Number is AA7D-F1BF
File Not FoundC:\Windows\system32>
I tried searching for the files in the explorer. I can't find them there but in the SoftwareProtectionPlatform folder I could see tokens.bar and tokens.bar3 files which were created on June 13th and 14th, 2012 resp.
Thursday, June 21, 2012 8:26 PM -
That confirms that the tokens.dat file hasn't been recreated the way it should have been - I need to do some tests, so I'll be back tomorrow with suggestions.
Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
Thursday, June 21, 2012 8:52 PMModerator -
"NCash" wrote in message news:382fc89f-6cae-4d96-91e3-3e1cb5d6d923...
hmm.. here is what I get:
Microsoft Windows [Version 6.1.7601]
Copyright (c) 2009 Microsoft Corporation. All rights reserved.C:\Windows\system32>DIR C:\Windows\ServiceProfiles\NetworkService\AppData\Roamin
g\Microsoft\SoftwareProtectionPlatform /s
Volume in drive C has no label.
Volume Serial Number is AA7D-F1BFDirectory of C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsof
t\SoftwareProtectionPlatform06/15/2012 11:47 PM <DIR> ..
06/15/2012 11:47 PM <DIR> ...
07/14/2009 12:46 AM <DIR> Cache
06/13/2012 11:17 AM 7,145,451 tokens.bar
06/14/2012 09:21 PM 16,452 tokens.bar3
2 File(s) 7,161,903 bytesDirectory of C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsof
t\SoftwareProtectionPlatform\Cache07/14/2009 12:46 AM <DIR> ..
07/14/2009 12:46 AM <DIR> ...
06/15/2012 12:23 AM 3,040 cache.dat
1 File(s) 3,040 bytesTotal Files Listed:
3 File(s) 7,164,943 bytes
5 Dir(s) 347,351,494,656 bytes freeC:\Windows\system32>
C:\Windows\system32>DIR C:\Windows\ServiceProfiles\NetworkService\AppData\Roamin
g\Microsoft\SoftwareProtectionPlatform /ah /s
Volume in drive C has no label.
Volume Serial Number is AA7D-F1BF
File Not FoundC:\Windows\system32>
C:\Windows\system32>DIR C:\Windows\ServiceProfiles\NetworkService\AppData\Roamin
g\Microsoft\SoftwareProtectionPlatform /ar /s
Volume in drive C has no label.
Volume Serial Number is AA7D-F1BF
File Not FoundC:\Windows\system32>
C:\Windows\system32>DIR C:\Windows\ServiceProfiles\NetworkService\AppData\Roamin
g\Microsoft\SoftwareProtectionPlatform /as /s
Volume in drive C has no label.
Volume Serial Number is AA7D-F1BF
File Not FoundC:\Windows\system32>
I tried searching for the files in the explorer. I can't find them there but in the SoftwareProtectionPlatform folder I could see tokens.bar and tokens.bar3 files which were created on June 13th and 14th, 2012 resp.
Please reboot and run the following commands (check the web page, as I may update the list through the day) and post the results.ATTRIB C:\Windows\ServiceProfiles\NetworkService\NTUSER.DATDIR C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT /ahICACLS C:\Windows\ServiceProfiles\NetworkService\NTUSER.DATreg load HKU\Test "C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT"
ICACLS C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\SoftwareProtectionPlatform /t
Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth- Marked as answer by Darin Smith MS Wednesday, June 27, 2012 8:08 PM
- Unmarked as answer by NCash Wednesday, June 27, 2012 8:55 PM
Friday, June 22, 2012 4:10 PMModerator -
No reply from the original Poster.
Issue is assumed to be resolved.
Darin MS
Wednesday, June 27, 2012 8:08 PM -
Noel, Here are results buddy.. thanks for your patience. i masked personal info with XXXXXXs.
Microsoft Windows [Version 6.1.7601]
Copyright (c) 2009 Microsoft Corporation. All rights reserved.C:\Windows\system32>ATTRIB C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT
A SH I C:\Windows\ServiceProfiles\NetworkService\ntuser.datC:\Windows\system32>
C:\Windows\system32>DIR C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT /ahVolume in drive C has no label.
Volume Serial Number is AA7D-F1BFDirectory of C:\Windows\ServiceProfiles\NetworkService
06/27/2012 03:23 PM 524,288 ntuser.dat
1 File(s) 524,288 bytes
0 Dir(s) 348,126,130,176 bytes freeC:\Windows\system32>
C:\Windows\system32>ICACLS C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT
C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT NT AUTHORITY\SYSTEM:(I)(F)
BUILTIN\Administrators:(I)(
F)
NT AUTHORITY\NETWORK SERVIC
E:(I)(F)
xxxxxx\xxxxxxx:(
I)(F)Successfully processed 1 files; Failed processing 0 files
C:\Windows\system32> reg load HKU\Test "C:\Windows\ServiceProfiles\NetworkServic
e\NTUSER.DAT"
ERROR: The process cannot access the file because it is being used by another pr
ocess.C:\Windows\system32>
C:\Windows\system32>ICACLS C:\Windows\ServiceProfiles\NetworkService\AppData\Roa
ming\SoftwareProtectionPlatform /tWednesday, June 27, 2012 8:59 PM -
"NCash" wrote in message news:b1f6217e-f400-4efc-9148-cfb15383b5b8...
Noel, Here are results buddy.. thanks for your patience. i masked personal info with XXXXXXs.
C:\Windows\system32>
C:\Windows\system32>ICACLS C:\Windows\ServiceProfiles\NetworkService\AppData\Roa
ming\SoftwareProtectionPlatform /tYou didn't hit the Enter key at the end :)Everything else looks normal enough - the error message is almost always generated in a properly functioning profile, as the file is mostly in use anyhow.Please run that last command again, as it is fairly important.
Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed SlothThursday, June 28, 2012 11:13 AMModerator -
Ooops ..my mistake. I am reposting the results.
Microsoft Windows [Version 6.1.7601]
Copyright (c) 2009 Microsoft Corporation. All rights reserved.
C:\Windows\system32>ATTRIB C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT
A SH I C:\Windows\ServiceProfiles\NetworkService\ntuser.dat
C:\Windows\system32>
C:\Windows\system32>DIR C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT /ah
Volume in drive C has no label.
Volume Serial Number is AA7D-F1BF
Directory of C:\Windows\ServiceProfiles\NetworkService
06/27/2012 11:46 PM 524,288 ntuser.dat
1 File(s) 524,288 bytes
0 Dir(s) 347,787,816,960 bytes free
C:\Windows\system32>
C:\Windows\system32>ICACLS C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT
C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT NT AUTHORITY\SYSTEM:(I)(F)
BUILTIN\Administrators:(I)(
F)
NT AUTHORITY\NETWORK SERVIC
E:(I)(F)
XXXXX\Xxxxx Xxxxx:(
I)(F)
Successfully processed 1 files; Failed processing 0 files
C:\Windows\system32> reg load HKU\Test "C:\Windows\ServiceProfiles\NetworkServic
e\NTUSER.DAT"
ERROR: The process cannot access the file because it is being used by another pr
ocess.
C:\Windows\system32>
C:\Windows\system32>ICACLS C:\Windows\ServiceProfiles\NetworkService\AppData\Roa
ming\SoftwareProtectionPlatform /t
C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProt
ectionPlatform NT AUTHORITY\SYSTEM:(I)(OI)(CI)(F)
BUILTIN\Administrators:(I)(OI)(CI)(F)
NT AUTHORITY\NETWORK SERVICE:(I)(OI)(CI)(F)
XXXXX\Xxxxx Xxxxx:(I)(OI)(CI)(F)
C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProt
ectionPlatform\Cache NT AUTHORITY\SYSTEM:(OI)(CI)(F)
BUILTIN\Administrators:(OI)(CI)(F)
NT SERVICE\sppsvc:(OI)(CI)(R,W,D)
Everyone:(OI)(CI)(R)
C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProt
ectionPlatform\tokens.bar NT AUTHORITY\SYSTEM:(I)(F)
BUILTIN\Administrators:(I)(F)
NT AUTHORITY\NETWORK SERVICE:(I)(F)
XXXXX\Xxxxx Xxxxx:(I)(F)
C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProt
ectionPlatform\tokens.bar3 NT AUTHORITY\SYSTEM:(I)(F)
BUILTIN\Administrators:(I)(F)
NT AUTHORITY\NETWORK SERVICE:(I)(F)
XXXXX\Xxxxx Xxxxx:(I)(F)
C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProt
ectionPlatform\Cache\cache.dat NT AUTHORITY\SYSTEM:(I)(F)
BUILTIN\Administrators:(I)(F)
NT SERVICE\sppsvc:(I)(R,W,D)
Everyone:(I)(R)
Successfully processed 5 files; Failed processing 0 files
C:\Windows\system32>
Thursday, June 28, 2012 2:42 PM -
easily done :)
The tokens.dat file is still missing - but the folder permissions seem to be OK.
I need to play - back later.
Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
Thursday, June 28, 2012 3:54 PMModerator -
"Noel D Paton" wrote in message news:0d4b8f02-79c0-4bfa-8ed8-ca6be8a3dfe7...
easily done :)
The tokens.dat file is still missing - but the folder permissions seem to be OK.
I need to play - back later.
Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
.... sorry - it's going to be tomorrow.I'm beginning to think that this may not be solvable in a forum context - Unless you're prepared for a long exchange (perhaps a couple more weeks) I doubt that we'll find a solution without a reinstall (either a repair or reformat/reinstall).That being the case, I would suggest that you contact WGA Support and see of you can get them to assist (although I'm happy to carry on if you prefer)WGA Support can be found here-North America: http://support.microsoft.com/contactus/cu_sc_genadv_master?ws=support&ws=support#tab4Outside North America:Please let us know if (and how) MS manage to repair the problem without a repair install of the OS - it would be useful for future reference!
Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth- Marked as answer by Darin Smith MS Thursday, June 28, 2012 6:20 PM
Thursday, June 28, 2012 5:36 PMModerator