locked
Copy of Windows is not genuine! RRS feed

  • Question

  • As posted several times already, I have started getting a similar message saying that the copy of windows installed is not genuine. I have had this laptop for 2 years (bought from Best Buy) and this is the first time I have to deal with this issue. I validated my key yesterday and ran the Microsoft genuine diagnostic report: everything comes clean and yet the problem persists.

    Also what is with this windows rearm count? I have never reinstalled this copy of microsoft then why has this count gone down?

    Please help!

    here is the report:

    Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 50
    Cached Online Validation Code: 0x0
    Windows Product Key: *****-*****-73CQT-WMF7J-3Q6C9
    Windows Product Key Hash: KaFG+RmurcM3ZxzWyfEP9WtPUJw=
    Windows Product ID: 00359-OEM-8992687-00010
    Windows Product ID Type: 2
    Windows License Type: OEM SLP
    Windows OS version: 6.1.7601.2.00010300.1.0.003
    ID: {F12F3441-1FC6-4857-B84D-1DA1072C0FE3}(1)
    Is Admin: Yes
    TestCab: 0x0
    LegitcheckControl ActiveX: N/A, hr = 0x80070002
    Signed By: N/A, hr = 0x80070002
    Product Name: Windows 7 Home Premium
    Architecture: 0x00000009
    Build lab: 7601.win7sp1_gdr.120503-2030
    TTS Error:
    Validation Diagnostic:
    Resolution Status: N/A

    Vista WgaER Data-->
    ThreatID(s): N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002

    Windows XP Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    File Exists: No
    Version: N/A, hr = 0x80070002
    WgaTray.exe Signed By: N/A, hr = 0x80070002
    WgaLogon.dll Signed By: N/A, hr = 0x80070002

    OGA Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002
    OGAExec.exe Signed By: N/A, hr = 0x80070002
    OGAAddin.dll Signed By: N/A, hr = 0x80070002

    OGA Data-->
    Office Status: 109 N/A
    OGA Version: N/A, 0x80070002
    Signed By: N/A, hr = 0x80070002
    Office Diagnostics: B4D0AA8B-604-645_025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3

    Browser Data-->
    Proxy settings: N/A
    User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
    Default Browser: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    Download signed ActiveX controls: Prompt
    Download unsigned ActiveX controls: Disabled
    Run ActiveX controls and plug-ins: Allowed
    Initialize and script ActiveX controls not marked as safe: Disabled
    Allow scripting of Internet Explorer Webbrowser control: Disabled
    Active scripting: Allowed
    Script ActiveX controls marked as safe for scripting: Allowed

    File Scan Data-->

    Other data-->
    Office Details: <GenuineResults><MachineData><UGUID>{F12F3441-1FC6-4857-B84D-1DA1072C0FE3}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7601.2.00010300.1.0.003</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-3Q6C9</PKey><PID>00359-OEM-8992687-00010</PID><PIDType>2</PIDType><SID>S-1-5-21-3723680985-2778147882-3160419957</SID><SYSTEM><Manufacturer>Hewlett-Packard</Manufacturer><Model>HP Pavilion dm4 Notebook PC     </Model></SYSTEM><BIOS><Manufacturer>Hewlett-Packard</Manufacturer><Version>F.27</Version><SMBIOSVersion major="2" minor="6"/><Date>20111221000000.000000+000</Date></BIOS><HWID>308A3C07018400FC</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Eastern Standard Time(GMT-05:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM><OEMID>HPQOEM</OEMID><OEMTableID>SLIC-MPC</OEMTableID></OEM><GANotification/></MachineData><Software><Office><Result>109</Result><Products/><Applications/></Office></Software></GenuineResults> 

    Spsys.log Content: 0x80070002

    Licensing Data-->
    Software licensing service version: 6.1.7601.17514

    Name: Windows(R) 7, HomePremium edition
    Description: Windows Operating System - Windows(R) 7, OEM_COA_SLP channel
    Activation ID: 5e017a8a-f3f9-4167-b1bd-ba3e236a4d8f
    Application ID: 55c92734-d682-4d71-983e-d6ec3f16059f
    Extended PID: 00359-00196-068-476487-02-1033-7601.0000-1652012
    Installation ID: 011842920010605602504312854596003036249100802922362051
    Processor Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88338
    Machine Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88339
    Use License URL: http://go.microsoft.com/fwlink/?LinkID=88341
    Product Key Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88340
    Partial Product Key: HY64G
    License Status: Licensed
    Remaining Windows rearm count: 2
    Trusted time: 6/14/2012 1:18:35 PM

    Windows Activation Technologies-->
    HrOffline: 0x00000000
    HrOnline: N/A
    HealthStatus: 0x0000000000000000
    Event Time Stamp: N/A
    ActiveX: Registered, Version: 7.1.7600.16395
    Admin Service: Registered, Version: 7.1.7600.16395
    HealthStatus Bitmask Output:


    HWID Data-->
    HWID Hash Current: LgAAAAIAAQABAAEAAQABAAAAAQABAAEA6GHEXdQEUQtKvOb2tOehRQ61koNcXQ==

    OEM Activation 1.0 Data-->
    N/A

    OEM Activation 2.0 Data-->
    BIOS valid for OA 2.0: yes
    Windows marker version: 0x20001
    OEMID and OEMTableID Consistent: yes
    BIOS Information:
      ACPI Table Name OEMID Value OEMTableID Value
      APIC   HP      SLIC-MPC
      FACP   HP      SLIC-MPC
      HPET   HP      SLIC-MPC
      BOOT   HP      SLIC-MPC
      MCFG   HP      SLIC-MPC
      ASF!   HP      SLIC-MPC
      SLIC   HPQOEM  SLIC-MPC
      SSDT   TrmRef  PtidDevc
      SSDT   TrmRef  PtidDevc
      SSDT   TrmRef  PtidDevc
      SSDT   TrmRef  PtidDevc
      ASPT   HP      SLIC-MPC
      SSDT   TrmRef  PtidDevc

     
    Thursday, June 14, 2012 5:37 PM

Answers

  • "Noel D Paton" wrote in message news:0d4b8f02-79c0-4bfa-8ed8-ca6be8a3dfe7...

    easily done :)

    The tokens.dat file is still missing - but the folder permissions seem to be OK.

    I need to play - back later.


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth

    .... sorry - it's going to be tomorrow.
     
    I'm beginning to think that this may not be solvable in a forum context - Unless you're prepared for a long exchange (perhaps a couple more weeks) I doubt that we'll find a solution without a reinstall (either a repair or reformat/reinstall).
     
    That being the case, I would suggest that you contact WGA Support and see of you can get them to assist (although I'm happy to carry on if you prefer)
     
     
    Outside North America:
     
    Please let us know if (and how) MS manage to repair the problem without a repair install of the OS - it would be useful for future reference!    
     
     
     
     
     

    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    Thursday, June 28, 2012 5:36 PM
    Moderator

All replies

  • "NCash" wrote in message news:596a0ff7-3c75-47ec-a25d-9f0f6e11d4f1... As posted several times already, I have started getting a similar message saying that the copy of windows installed is not genuine. I have had this laptop for 2 years (bought from Best Buy) and this is the first time I have to deal with this issue. I validated my key yesterday and ran the Microsoft genuine diagnostic report: everything comes clean and yet the problem persists. Also what is with this windows rearm count? I have never reinstalled this copy of microsoft then why has this count gone down? Please help! here is the report: Diagnostic Report (1.9.0027.0): ----------------------------------------- Windows Validation Data--> Validation Code: 50 Cached Online Validation Code: 0x0 Windows Product Key: *****-*****-73CQT-WMF7J-3Q6C9 Windows Product Key Hash: KaFG+RmurcM3ZxzWyfEP9WtPUJw= Windows Product ID: 00359-OEM-8992687-00010 Windows Product ID Type: 2 Windows License Type: OEM SLP Windows OS version: 6.1.7601.2.00010300.1.0.003 Other data--> SYSTEM><Manufacturer>Hewlett-Packard</Manufacturer><Model>HP Pavilion dm4 Notebook PC     </Model></SYSTEM><BIOS><Manufacturer>Hewlett-Packard</Manufacturer><Version>F.27</Version><SMBIOSVersion major="2" minor="6"/><Date>20111221000000.000000+000</Date></BIOS   Licensing Data--> Software licensing service version: 6.1.7601.17514 Name: Windows(R) 7, HomePremium edition Description: Windows Operating System - Windows(R) 7, OEM_COA_SLP channel Partial Product Key: HY64G License Status: Licensed Remaining Windows rearm count: 2 Trusted time: 6/14/2012 1:18:35 PM   OEM Activation 2.0 Data--> BIOS valid for OA 2.0: yes Windows marker version: 0x20001 OEMID and OEMTableID Consistent: yes
        There is a mismatch between the two parts of your report. In one part it thinks the License Key is an OEM_SLP one, and in the other, a COA_SLP Key.   You should attempt to repair the Licensing Store.   Please first try recreating the Licensing Store.   Recreate the Licensing Store 1) Click Start button. 2) Type: CMD.exe into the 'Search programs and files' field 3) Right-Click on CMD.exe and select Run as Administrator 4) Type: net stop sppsvc (It may ask you if you are sure, select yes) Note: the Software Protection service may not be running, this is ok. 5) Type: cd %windir%\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform 6) Type: rename tokens.dat tokens.bar 7) Type: cd %windir%\system32 8) Type: net start sppsvc 9) Type: slui.exe 10) After a couple of seconds Windows Activation dialog will appear. You may be asked to re-activate and/or re-enter your product key or Activation may occur automatically. If you are asked for your Key, use the one on the COA sitcker on eht machine's case   Reboot and Post back with a new MGADiag report     Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth


    • Edited by Darin Smith MS Thursday, June 14, 2012 9:06 PM corrected formatting
    Thursday, June 14, 2012 7:40 PM
    Moderator
  • Thanks Noel.

    I did what said and the validation was successful. Here is the updated report.

    Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 50
    Cached Online Validation Code: 0x0
    Windows Product Key: *****-*****-73CQT-WMF7J-3Q6C9
    Windows Product Key Hash: KaFG+RmurcM3ZxzWyfEP9WtPUJw=
    Windows Product ID: 00359-OEM-8992687-00010
    Windows Product ID Type: 2
    Windows License Type: OEM SLP
    Windows OS version: 6.1.7601.2.00010300.1.0.003
    ID: {F12F3441-1FC6-4857-B84D-1DA1072C0FE3}(3)
    Is Admin: Yes
    TestCab: 0x0
    LegitcheckControl ActiveX: N/A, hr = 0x80070002
    Signed By: N/A, hr = 0x80070002
    Product Name: Windows 7 Home Premium
    Architecture: 0x00000009
    Build lab: 7601.win7sp1_gdr.120503-2030
    TTS Error:
    Validation Diagnostic:
    Resolution Status: N/A

    Vista WgaER Data-->
    ThreatID(s): N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002

    Windows XP Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    File Exists: No
    Version: N/A, hr = 0x80070002
    WgaTray.exe Signed By: N/A, hr = 0x80070002
    WgaLogon.dll Signed By: N/A, hr = 0x80070002

    OGA Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002
    OGAExec.exe Signed By: N/A, hr = 0x80070002
    OGAAddin.dll Signed By: N/A, hr = 0x80070002

    OGA Data-->
    Office Status: 109 N/A
    OGA Version: N/A, 0x80070002
    Signed By: N/A, hr = 0x80070002
    Office Diagnostics: B4D0AA8B-604-645_025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3

    Browser Data-->
    Proxy settings: N/A
    User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
    Default Browser: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    Download signed ActiveX controls: Prompt
    Download unsigned ActiveX controls: Disabled
    Run ActiveX controls and plug-ins: Allowed
    Initialize and script ActiveX controls not marked as safe: Disabled
    Allow scripting of Internet Explorer Webbrowser control: Disabled
    Active scripting: Allowed
    Script ActiveX controls marked as safe for scripting: Allowed

    File Scan Data-->

    Other data-->
    Office Details: <GenuineResults><MachineData><UGUID>{F12F3441-1FC6-4857-B84D-1DA1072C0FE3}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7601.2.00010300.1.0.003</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-3Q6C9</PKey><PID>00359-OEM-8992687-00010</PID><PIDType>2</PIDType><SID>S-1-5-21-3723680985-2778147882-3160419957</SID><SYSTEM><Manufacturer>Hewlett-Packard</Manufacturer><Model>HP Pavilion dm4 Notebook PC     </Model></SYSTEM><BIOS><Manufacturer>Hewlett-Packard</Manufacturer><Version>F.27</Version><SMBIOSVersion major="2" minor="6"/><Date>20111221000000.000000+000</Date></BIOS><HWID>308A3C07018400FC</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Eastern Standard Time(GMT-05:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM><OEMID>HPQOEM</OEMID><OEMTableID>SLIC-MPC</OEMTableID></OEM><GANotification/></MachineData><Software><Office><Result>109</Result><Products/><Applications/></Office></Software></GenuineResults> 

    Spsys.log Content: 0x80070002

    Licensing Data-->
    Software licensing service version: 6.1.7601.17514

    Name: Windows(R) 7, HomePremium edition
    Description: Windows Operating System - Windows(R) 7, OEM_COA_SLP channel
    Activation ID: 5e017a8a-f3f9-4167-b1bd-ba3e236a4d8f
    Application ID: 55c92734-d682-4d71-983e-d6ec3f16059f
    Extended PID: 00359-00196-068-476487-02-1033-7601.0000-1652012
    Installation ID: 011842920010605602504312854596003036249100802922362051
    Processor Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88338
    Machine Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88339
    Use License URL: http://go.microsoft.com/fwlink/?LinkID=88341
    Product Key Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88340
    Partial Product Key: HY64G
    License Status: Licensed
    Remaining Windows rearm count: 2
    Trusted time: 6/14/2012 6:45:45 PM

    Windows Activation Technologies-->
    HrOffline: 0x00000000
    HrOnline: N/A
    HealthStatus: 0x0000000000000000
    Event Time Stamp: N/A
    ActiveX: Registered, Version: 7.1.7600.16395
    Admin Service: Registered, Version: 7.1.7600.16395
    HealthStatus Bitmask Output:


    HWID Data-->
    HWID Hash Current: LgAAAAIAAQABAAEAAQABAAAAAQABAAEA6GHEXdQEUQtKvOb2tOehRQ61koNcXQ==

    OEM Activation 1.0 Data-->
    N/A

    OEM Activation 2.0 Data-->
    BIOS valid for OA 2.0: yes
    Windows marker version: 0x20001
    OEMID and OEMTableID Consistent: yes
    BIOS Information:
      ACPI Table Name OEMID Value OEMTableID Value
      APIC   HP      SLIC-MPC
      FACP   HP      SLIC-MPC
      HPET   HP      SLIC-MPC
      BOOT   HP      SLIC-MPC
      MCFG   HP      SLIC-MPC
      ASF!   HP      SLIC-MPC
      SLIC   HPQOEM  SLIC-MPC
      SSDT   TrmRef  PtidDevc
      SSDT   TrmRef  PtidDevc
      SSDT   TrmRef  PtidDevc
      SSDT   TrmRef  PtidDevc
      ASPT   HP      SLIC-MPC
      SSDT   TrmRef  PtidDevc

    Thursday, June 14, 2012 10:50 PM
  • That looks fine now - (and it was activation that was successful, rather than validation)

    You should confirm it by going to validate at www.microsoft.com/genuine/validate - when it passes, you'll be offered MSE and IE9 (you don't have to take them)


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth

    Friday, June 15, 2012 11:19 AM
    Moderator
  •  

    Noel... the situation just got worse. Now when I d0 a validation check I get the following message : "Files that Windows needs to work properly have been modified, removed or disabled. To resolve, you need to install genuine windows. Not to worry we can help you with that. " and asks me to buy a copy.

    When I check the system properties for Windows activation fields-

        Status: not available

        Product ID: not available

    I am also getting some kbdus.dll failure message when I try to open any application.

    My laptop came with a preinstalled Windows and I dont have Windows CD.

    Please let me know what to do....

    Files that Windows needs to work properly have been modified, removed, or disabled. To resolve, you need to install genuine Windows. Not to worry, we can help you with that.

    Friday, June 15, 2012 1:38 PM
  • Hmmm -

    this sounds like creeping corruption - which is possibly due to disk problems.

    Please run a full CHKDSK and SFC scan.... 
    type in the Search box
    CMD.EXE
    right-click on the only file that is found
    Select Run as Administrator
    - the Elevated Command Prompt window should pop up
    At the Command prompt, type
    CHKDSK C: /R
    and hit the Enter key.
     
    You will be told that the drive is locked,
    and the CHKDSK will run at he next boot - hit the Y key, and then reboot.

     
    The chkdsk will take a few hours depending on the size
    of the drive, so be patient!

    After the CHKDSK has run, Windows should boot normally
    (possibly after a second auto-reboot) - then run the SFC

    SFC -System File Checker - Instructions
    Click on the Start button
    type in the Search box
    CMD.EXE
    right-click on the only file that is found

    Select Run as Administrator
    - the Elevated Command Prompt window should pop up
    At the Command prompt, type

    SFC /SCANNOW

    and hit the Enter key
     
    Wait for the scan to finish - make a note of any error messages - and then reboot.
     Post an MGADiag report with details of any error messages encountered.     


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth

    Friday, June 15, 2012 1:58 PM
    Moderator
  • Chkdsk did not find any errors. sfc scan did show some errors which were logged in a file CBS.log which is inaccessible!!

    The Mgadiag report now shows that there is no product key...

    Here is the report:

    Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 50
    Cached Online Validation Code: N/A, hr = 0xc004f012
    Windows Product Key: *****-*****-73CQT-WMF7J-3Q6C9
    Windows Product Key Hash: KaFG+RmurcM3ZxzWyfEP9WtPUJw=
    Windows Product ID: 00359-OEM-8992687-00010
    Windows Product ID Type: 2
    Windows License Type: OEM SLP
    Windows OS version: 6.1.7601.2.00010300.1.0.003
    ID: {F12F3441-1FC6-4857-B84D-1DA1072C0FE3}(3)
    Is Admin: Yes
    TestCab: 0x0
    LegitcheckControl ActiveX: N/A, hr = 0x80070002
    Signed By: N/A, hr = 0x80070002
    Product Name: Windows 7 Home Premium
    Architecture: 0x00000009
    Build lab: 7601.win7sp1_gdr.120503-2030
    TTS Error:
    Validation Diagnostic:
    Resolution Status: N/A

    Vista WgaER Data-->
    ThreatID(s): N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002

    Windows XP Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    File Exists: No
    Version: N/A, hr = 0x80070002
    WgaTray.exe Signed By: N/A, hr = 0x80070002
    WgaLogon.dll Signed By: N/A, hr = 0x80070002

    OGA Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002
    OGAExec.exe Signed By: N/A, hr = 0x80070002
    OGAAddin.dll Signed By: N/A, hr = 0x80070002

    OGA Data-->
    Office Status: 109 N/A
    OGA Version: N/A, 0x80070002
    Signed By: N/A, hr = 0x80070002
    Office Diagnostics: B4D0AA8B-604-645_025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3

    Browser Data-->
    Proxy settings: N/A
    User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
    Default Browser: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    Download signed ActiveX controls: Prompt
    Download unsigned ActiveX controls: Disabled
    Run ActiveX controls and plug-ins: Allowed
    Initialize and script ActiveX controls not marked as safe: Disabled
    Allow scripting of Internet Explorer Webbrowser control: Disabled
    Active scripting: Allowed
    Script ActiveX controls marked as safe for scripting: Allowed

    File Scan Data-->

    Other data-->
    Office Details: <GenuineResults><MachineData><UGUID>{F12F3441-1FC6-4857-B84D-1DA1072C0FE3}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7601.2.00010300.1.0.003</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-3Q6C9</PKey><PID>00359-OEM-8992687-00010</PID><PIDType>2</PIDType><SID>S-1-5-21-3723680985-2778147882-3160419957</SID><SYSTEM><Manufacturer>Hewlett-Packard</Manufacturer><Model>HP Pavilion dm4 Notebook PC     </Model></SYSTEM><BIOS><Manufacturer>Hewlett-Packard</Manufacturer><Version>F.27</Version><SMBIOSVersion major="2" minor="6"/><Date>20111221000000.000000+000</Date></BIOS><HWID>308A3C07018400FC</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Eastern Standard Time(GMT-05:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM><OEMID>HPQOEM</OEMID><OEMTableID>SLIC-MPC</OEMTableID></OEM><GANotification/></MachineData><Software><Office><Result>109</Result><Products/><Applications/></Office></Software></GenuineResults> 

    Spsys.log Content: 0x80070002

    Licensing Data-->
    Software licensing service version: 6.1.7601.17514
    Error: product key not found.

    Windows Activation Technologies-->
    HrOffline: 0x00000000
    HrOnline: 0xC004F022
    HealthStatus: 0x0000000000000000
    Event Time Stamp: 6:15:2012 09:26
    ActiveX: Registered, Version: 7.1.7600.16395
    Admin Service: Registered, Version: 7.1.7600.16395
    HealthStatus Bitmask Output:


    HWID Data-->
    HWID Hash Current: LgAAAAIAAQABAAEAAQABAAAAAQABAAEA6GHEXdQEUQtKvOb2tOehRQ61koNcXQ==

    OEM Activation 1.0 Data-->
    N/A

    OEM Activation 2.0 Data-->
    BIOS valid for OA 2.0: yes
    Windows marker version: 0x20001
    OEMID and OEMTableID Consistent: yes
    BIOS Information:
      ACPI Table Name OEMID Value OEMTableID Value
      APIC   HP      SLIC-MPC
      FACP   HP      SLIC-MPC
      HPET   HP      SLIC-MPC
      BOOT   HP      SLIC-MPC
      MCFG   HP      SLIC-MPC
      ASF!   HP      SLIC-MPC
      SLIC   HPQOEM  SLIC-MPC
      SSDT   TrmRef  PtidDevc
      SSDT   TrmRef  PtidDevc
      SSDT   TrmRef  PtidDevc
      SSDT   TrmRef  PtidDevc
      ASPT   HP      SLIC-MPC
      SSDT   TrmRef  PtidDevc

    What should I do now?

    Friday, June 15, 2012 7:46 PM
  • Please COPY the CBS.log file to your desktop (it will copy, even if you can't open the original).

    Once on the deskyop, please upload it to either your SkyDrive, or your preferred fileshare site.

    As far as your Product Key is concerned, we'd best check for malware first -

    Please download and install Malwarebytes Anti-malware (free version) www.malwarebytes.org and update it, and run a full scan (DO NOT enable the Real-Time protection option!) in your main account, and Quick scans in any other user accounts.

    Delete everything it finds   

    Once that's complete, run the Licensing store repair again - you'll need to modify line 6 to read

    6) Type: rename tokens.dat tokens.bar3

    Then post a new MGADiag report.


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth

    • Proposed as answer by Darin Smith MS Friday, June 15, 2012 8:42 PM
    • Unproposed as answer by NCash Saturday, June 16, 2012 8:00 AM
    Friday, June 15, 2012 8:25 PM
    Moderator
  • I get the following mesage: "An unauthorised change was made to Windows at it must be restored"

    I have Malwarebytes for the past year or so and run daily quickscans and weekly full scan.
    I also use Symantec and MSFT Security Essentials as antivrus softwares on my system.

    :(

    Saturday, June 16, 2012 3:54 AM
  • You CANNOT have two anti-virus programs installed without creating problems.

    I would recommend removing Norton, and running the Norton Removal tool to get rid of the dregs for the moment at least.

    https://www-secure.symantec.com/norton-support/jsp/help-solutions.jsp?lg=english&ct=united+states&docid=20080710133834EN&product=home&version=1&pvid=f-home


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth

    Saturday, June 16, 2012 9:10 AM
    Moderator
  • Done everything as you said so far. Here is the mgadiag report:

    Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 50
    Cached Online Validation Code: N/A, hr = 0xc004f012
    Windows Product Key: *****-*****-73CQT-WMF7J-3Q6C9
    Windows Product Key Hash: KaFG+RmurcM3ZxzWyfEP9WtPUJw=
    Windows Product ID: 00359-OEM-8992687-00010
    Windows Product ID Type: 2
    Windows License Type: OEM SLP
    Windows OS version: 6.1.7601.2.00010300.1.0.003
    ID: {8D1E9B27-24E3-4A73-8F70-A6E7E80D492A}(1)
    Is Admin: Yes
    TestCab: 0x0
    LegitcheckControl ActiveX: N/A, hr = 0x80070002
    Signed By: N/A, hr = 0x80070002
    Product Name: Windows 7 Home Premium
    Architecture: 0x00000009
    Build lab: 7601.win7sp1_gdr.120330-1504
    TTS Error:
    Validation Diagnostic:
    Resolution Status: N/A

    Vista WgaER Data-->
    ThreatID(s): N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002

    Windows XP Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    File Exists: No
    Version: N/A, hr = 0x80070002
    WgaTray.exe Signed By: N/A, hr = 0x80070002
    WgaLogon.dll Signed By: N/A, hr = 0x80070002

    OGA Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002
    OGAExec.exe Signed By: N/A, hr = 0x80070002
    OGAAddin.dll Signed By: N/A, hr = 0x80070002

    OGA Data-->
    Office Status: 109 N/A
    OGA Version: N/A, 0x80070002
    Signed By: N/A, hr = 0x80070002
    Office Diagnostics: B4D0AA8B-604-645_025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3

    Browser Data-->
    Proxy settings: N/A
    User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
    Default Browser: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    Download signed ActiveX controls: Prompt
    Download unsigned ActiveX controls: Disabled
    Run ActiveX controls and plug-ins: Allowed
    Initialize and script ActiveX controls not marked as safe: Disabled
    Allow scripting of Internet Explorer Webbrowser control: Disabled
    Active scripting: Allowed
    Script ActiveX controls marked as safe for scripting: Allowed

    File Scan Data-->

    Other data-->
    Office Details: <GenuineResults><MachineData><UGUID>{8D1E9B27-24E3-4A73-8F70-A6E7E80D492A}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7601.2.00010300.1.0.003</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-3Q6C9</PKey><PID>00359-OEM-8992687-00010</PID><PIDType>2</PIDType><SID>S-1-5-21-3723680985-2778147882-3160419957</SID><SYSTEM><Manufacturer>Hewlett-Packard</Manufacturer><Model>HP Pavilion dm4 Notebook PC     </Model></SYSTEM><BIOS><Manufacturer>Hewlett-Packard</Manufacturer><Version>F.27</Version><SMBIOSVersion major="2" minor="6"/><Date>20111221000000.000000+000</Date></BIOS><HWID>308A3C07018400FC</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Eastern Standard Time(GMT-05:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM><OEMID>HPQOEM</OEMID><OEMTableID>SLIC-MPC</OEMTableID></OEM><GANotification/></MachineData><Software><Office><Result>109</Result><Products/><Applications/></Office></Software></GenuineResults> 

    Spsys.log Content: 0x80070002

    Licensing Data-->
    Software licensing service version: 6.1.7601.17514
    Error: product key not found.

    Windows Activation Technologies-->
    HrOffline: 0x00000000
    HrOnline: 0xC004F022
    HealthStatus: 0x0000000000000000
    Event Time Stamp: 6:15:2012 09:26
    ActiveX: Registered, Version: 7.1.7600.16395
    Admin Service: Registered, Version: 7.1.7600.16395
    HealthStatus Bitmask Output:


    HWID Data-->
    HWID Hash Current: LgAAAAIAAQABAAEAAQABAAAAAQABAAEA6GHEXdQEUQtKvOb2tOehRQ61koNcXQ==

    OEM Activation 1.0 Data-->
    N/A

    OEM Activation 2.0 Data-->
    BIOS valid for OA 2.0: yes
    Windows marker version: 0x20001
    OEMID and OEMTableID Consistent: yes
    BIOS Information:
      ACPI Table Name OEMID Value OEMTableID Value
      APIC   HP      SLIC-MPC
      FACP   HP      SLIC-MPC
      HPET   HP      SLIC-MPC
      BOOT   HP      SLIC-MPC
      MCFG   HP      SLIC-MPC
      ASF!   HP      SLIC-MPC
      SLIC   HPQOEM  SLIC-MPC
      SSDT   TrmRef  PtidDevc
      SSDT   TrmRef  PtidDevc
      SSDT   TrmRef  PtidDevc
      SSDT   TrmRef  PtidDevc
      ASPT   HP      SLIC-MPC
      SSDT   TrmRef  PtidDevc

    Sunday, June 17, 2012 5:43 AM
  • "NCash" wrote in message news:ba7efb1c-f0eb-4f1a-904a-4c186385b66f...

    Done everything as you said so far. Here is the mgadiag report:

    Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 50
    Cached Online Validation Code: N/A, hr = 0xc004f012
    Windows Product Key: *****-*****-73CQT-WMF7J-3Q6C9
    Windows Product Key Hash: KaFG+RmurcM3ZxzWyfEP9WtPUJw=
    Windows Product ID: 00359-OEM-8992687-00010
    Windows Product ID Type: 2
    Windows License Type: OEM SLP
    Windows OS version: 6.1.7601.2.00010300.1.0.003

    Other data-->
    BIOS><Manufacturer>Hewlett-Packard</Manufacturer><Version>F.27</Version><SMBIOSVersion major="2" minor="6"/><Date>20111221000000.000000+000</Date></BIOS

     

    Licensing Data-->
    Software licensing service version: 6.1.7601.17514
    Error: product key not found.

    Windows Activation Technologies-->
    HrOffline: 0x00000000
    HrOnline: 0xC004F022

     
     
    Still the same - try the Licensing Store fix again,
     
    You'll need to change the target name in line 6 to the following
    6) Type: rename tokens.dat tokens.bar2
     
    (if you get a 'duplicate or missing' error then increase the numeric until it works).
     

    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    Sunday, June 17, 2012 12:16 PM
    Moderator
  • I went uptill 13 but still could not find the files - error:windows cannot find the specified file

    The activation tool is also not running and I get error saying that I need to reinstall or restore windows system files to run activation tool.

    Should I call the windows support staff?

    Monday, June 18, 2012 4:09 AM
  • Ahah!

    not often we actually see that - for whatever resoon the system is actually unable to crete the proper tokens file.

    please run the following commands in an Elevated command prompt, and post the results.

    ICACLS %windir%\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft

    ICACLS %windir%\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform /T

      Here are some instructions to make life easier :)
    1) To open an Elevated Command Prompt Window (the CP window), click on Start, All Programs, Accessories – then right-click on Command Prompt, and select Run as Administrator. Accept the UAC prompt. 
    2) To run the commands easier, highlight the block of commands, and right-click on the highlight – select Copy. In the CP Windows, click on the black/white icon at top left – select Paste. The commands will run but may not complete the last command, so hit the Enter Key once. 
    3) To copy the results... click on the Black/White icon in the top left, and select Edit... 'Select All', and hit the Enter key - then use Ctrl+V or r-click+Paste to paste it into your response.     


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth

    Monday, June 18, 2012 9:13 AM
    Moderator
  • ok..So I did what you said. Here is what was the response:

    Microsoft Windows [Version 6.1.7601]
    Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

    C:\Windows\system32>ICACLS %windir%\ServiceProfiles\NetworkService\AppData\Roami
    ng\Microsoft
    C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft NT AUTHORITY
    \SYSTEM:(I)(OI)(CI)(F)
                                                                        BUILTIN\Admi
    nistrators:(I)(OI)(CI)(F)
                                                                        NT AUTHORITY
    \NETWORK SERVICE:(I)(OI)(CI)(F)

    Successfully processed 1 files; Failed processing 0 files

    C:\Windows\system32>
    C:\Windows\system32>ICACLS %windir%\ServiceProfiles\NetworkService\AppData\Roami
    ng\Microsoft\SoftwareProtectionPlatform /T
    C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProt
    ectionPlatform NT AUTHORITY\SYSTEM:(I)(OI)(CI)(F)

                   BUILTIN\Administrators:(I)(OI)(CI)(F)

                   NT AUTHORITY\NETWORK SERVICE:(I)(OI)(CI)(F)

    C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProt
    ectionPlatform\Cache NT AUTHORITY\SYSTEM:(OI)(CI)(F)

                         BUILTIN\Administrators:(OI)(CI)(F)

                         NT SERVICE\sppsvc:(OI)(CI)(R,W,D)

                         Everyone:(OI)(CI)(R)

    C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProt
    ectionPlatform\tokens.bar NT AUTHORITY\SYSTEM:(I)(F)

                              BUILTIN\Administrators:(I)(F)

                              NT AUTHORITY\NETWORK SERVICE:(I)(F)

    C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProt
    ectionPlatform\tokens.bar3 NT AUTHORITY\SYSTEM:(I)(F)

                               BUILTIN\Administrators:(I)(F)

                               NT AUTHORITY\NETWORK SERVICE:(I)(F)

    C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProt
    ectionPlatform\Cache\cache.dat NT AUTHORITY\SYSTEM:(I)(F)

                                   BUILTIN\Administrators:(I)(F)

                                   NT SERVICE\sppsvc:(I)(R,W,D)

                                   Everyone:(I)(R)

    Successfully processed 5 files; Failed processing 0 files

    C:\Windows\system32>

    Thursday, June 21, 2012 4:56 PM
  • Ahah! - the tokens.dat file doesn't exist - which is why you're not getting sensible responses.

    This means that there is corruption in the registry, or there is a redirect in operation.

    Please run the following commands and post the results

    DIR C:\WIndows\ServiceProfiles

    REG QUERY HKU

    REG QUERY HKU\S-1-5-20

    REG QUERY "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-20"


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth

    Thursday, June 21, 2012 5:19 PM
    Moderator
  • Noel, The tokens.dat file did exist as I was able to change it the first you asked me to. But since then the system shows it is deviod of any Product Id while earlier I could atleast see the OEM Product key. I did as you said, here are the results (hopefully there isn't any information contained in this report which I shouldn't be posting online):

    Microsoft Windows [Version 6.1.7601]
    Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

    C:\Windows\system32>DIR C:\WIndows\ServiceProfiles
     Volume in drive C has no label.
     Volume Serial Number is AA7D-F1BF

     Directory of C:\WIndows\ServiceProfiles

    06/16/2012  11:54 AM    <DIR>          .
    06/16/2012  11:54 AM    <DIR>          ..
    06/16/2012  12:10 PM    <DIR>          LocalService
    06/16/2012  12:10 PM    <DIR>          NetworkService
                   0 File(s)              0 bytes
                   4 Dir(s)  347,516,801,024 bytes free

    C:\Windows\system32>
    C:\Windows\system32>REG QUERY HKU

    HKEY_USERS\.DEFAULT
    HKEY_USERS\S-1-5-19
    HKEY_USERS\S-1-5-20
    HKEY_USERS\S-1-5-21-3723680985-2778147882-3160419957-1000
    HKEY_USERS\S-1-5-21-3723680985-2778147882-3160419957-1000_Classes
    HKEY_USERS\S-1-5-18

    C:\Windows\system32>
    C:\Windows\system32>REG QUERY HKU\S-1-5-20

    HKEY_USERS\S-1-5-20\AppEvents
    HKEY_USERS\S-1-5-20\Console
    HKEY_USERS\S-1-5-20\Control Panel
    HKEY_USERS\S-1-5-20\Environment
    HKEY_USERS\S-1-5-20\EUDC
    HKEY_USERS\S-1-5-20\Keyboard Layout
    HKEY_USERS\S-1-5-20\Network
    HKEY_USERS\S-1-5-20\Printers
    HKEY_USERS\S-1-5-20\Software
    HKEY_USERS\S-1-5-20\System

    C:\Windows\system32>
    C:\Windows\system32>REG QUERY "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion
    \ProfileList\S-1-5-20"

    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-
    5-20
        ProfileImagePath    REG_EXPAND_SZ    C:\Windows\ServiceProfiles\NetworkServi
    ce
        Flags    REG_DWORD    0x0
        State    REG_DWORD    0x0


    C:\Windows\system32>

    Thursday, June 21, 2012 6:20 PM
  • That all looks normal.

    Please check the following - I need to think about what to do next, as it's very similar to a long (100+post) thread I had in Vista some time ago.

    DIR C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform /s

    DIR C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform /ah /s

    DIR C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform /ar /s

    DIR C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform /as /s

    post the results, and also tell me whether the files appear in Windows Explorer - sometimes there is a mismatch - make sure that you have hidden files and Protected files enabled in File options View.


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth

    Thursday, June 21, 2012 6:41 PM
    Moderator
  • hmm.. here is what I get:

    Microsoft Windows [Version 6.1.7601]
    Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

    C:\Windows\system32>DIR C:\Windows\ServiceProfiles\NetworkService\AppData\Roamin
    g\Microsoft\SoftwareProtectionPlatform /s
     Volume in drive C has no label.
     Volume Serial Number is AA7D-F1BF

     Directory of C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsof
    t\SoftwareProtectionPlatform

    06/15/2012  11:47 PM    <DIR>          .
    06/15/2012  11:47 PM    <DIR>          ..
    07/14/2009  12:46 AM    <DIR>          Cache
    06/13/2012  11:17 AM         7,145,451 tokens.bar
    06/14/2012  09:21 PM            16,452 tokens.bar3
                   2 File(s)      7,161,903 bytes

     Directory of C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsof
    t\SoftwareProtectionPlatform\Cache

    07/14/2009  12:46 AM    <DIR>          .
    07/14/2009  12:46 AM    <DIR>          ..
    06/15/2012  12:23 AM             3,040 cache.dat
                   1 File(s)          3,040 bytes

         Total Files Listed:
                   3 File(s)      7,164,943 bytes
                   5 Dir(s)  347,351,494,656 bytes free

    C:\Windows\system32>
    C:\Windows\system32>DIR C:\Windows\ServiceProfiles\NetworkService\AppData\Roamin
    g\Microsoft\SoftwareProtectionPlatform /ah /s
     Volume in drive C has no label.
     Volume Serial Number is AA7D-F1BF
    File Not Found

    C:\Windows\system32>
    C:\Windows\system32>DIR C:\Windows\ServiceProfiles\NetworkService\AppData\Roamin
    g\Microsoft\SoftwareProtectionPlatform /ar /s
     Volume in drive C has no label.
     Volume Serial Number is AA7D-F1BF
    File Not Found

    C:\Windows\system32>
    C:\Windows\system32>DIR C:\Windows\ServiceProfiles\NetworkService\AppData\Roamin
    g\Microsoft\SoftwareProtectionPlatform /as /s
     Volume in drive C has no label.
     Volume Serial Number is AA7D-F1BF
    File Not Found

    C:\Windows\system32>

    I tried searching for the files in the explorer. I can't find them there but in the SoftwareProtectionPlatform folder I could see tokens.bar and tokens.bar3 files which were created on June 13th and 14th, 2012 resp.

    Thursday, June 21, 2012 8:26 PM
  • That confirms that the tokens.dat file hasn't been recreated the way it should have been - I need to do some tests, so I'll be back tomorrow with suggestions.

    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth

    Thursday, June 21, 2012 8:52 PM
    Moderator
  • "NCash" wrote in message news:382fc89f-6cae-4d96-91e3-3e1cb5d6d923...

    hmm.. here is what I get:

    Microsoft Windows [Version 6.1.7601]
    Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

    C:\Windows\system32>DIR C:\Windows\ServiceProfiles\NetworkService\AppData\Roamin
    g\Microsoft\SoftwareProtectionPlatform /s
    Volume in drive C has no label.
    Volume Serial Number is AA7D-F1BF

    Directory of C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsof
    t\SoftwareProtectionPlatform

    06/15/2012  11:47 PM    <DIR>          ..
    06/15/2012  11:47 PM    <DIR>          ...
    07/14/2009  12:46 AM    <DIR>          Cache
    06/13/2012  11:17 AM         7,145,451 tokens.bar
    06/14/2012  09:21 PM            16,452 tokens.bar3
                   2 File(s)      7,161,903 bytes

    Directory of C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsof
    t\SoftwareProtectionPlatform\Cache

    07/14/2009  12:46 AM    <DIR>          ..
    07/14/2009  12:46 AM    <DIR>          ...
    06/15/2012  12:23 AM             3,040 cache.dat
                   1 File(s)          3,040 bytes

         Total Files Listed:
                   3 File(s)      7,164,943 bytes
                   5 Dir(s)  347,351,494,656 bytes free

    C:\Windows\system32>
    C:\Windows\system32>DIR C:\Windows\ServiceProfiles\NetworkService\AppData\Roamin
    g\Microsoft\SoftwareProtectionPlatform /ah /s
    Volume in drive C has no label.
    Volume Serial Number is AA7D-F1BF
    File Not Found

    C:\Windows\system32>
    C:\Windows\system32>DIR C:\Windows\ServiceProfiles\NetworkService\AppData\Roamin
    g\Microsoft\SoftwareProtectionPlatform /ar /s
    Volume in drive C has no label.
    Volume Serial Number is AA7D-F1BF
    File Not Found

    C:\Windows\system32>
    C:\Windows\system32>DIR C:\Windows\ServiceProfiles\NetworkService\AppData\Roamin
    g\Microsoft\SoftwareProtectionPlatform /as /s
    Volume in drive C has no label.
    Volume Serial Number is AA7D-F1BF
    File Not Found

    C:\Windows\system32>

    I tried searching for the files in the explorer. I can't find them there but in the SoftwareProtectionPlatform folder I could see tokens.bar and tokens.bar3 files which were created on June 13th and 14th, 2012 resp.

     
     
    Please reboot and run the following commands (check the web page, as I may update the list through the day) and post the results.
     
    ATTRIB C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT
    DIR C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT /ah
    ICACLS C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT
    reg load HKU\Test "C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT"
    ICACLS C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\SoftwareProtectionPlatform /t
     

    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    • Marked as answer by Darin Smith MS Wednesday, June 27, 2012 8:08 PM
    • Unmarked as answer by NCash Wednesday, June 27, 2012 8:55 PM
    Friday, June 22, 2012 4:10 PM
    Moderator
  • No reply from the original Poster.

    Issue is assumed to be resolved.


    Darin MS

    Wednesday, June 27, 2012 8:08 PM
  • Noel, Here are results buddy.. thanks for your patience. i masked personal info with XXXXXXs.

    Microsoft Windows [Version 6.1.7601]
    Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

    C:\Windows\system32>ATTRIB C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT
    A  SH   I    C:\Windows\ServiceProfiles\NetworkService\ntuser.dat

    C:\Windows\system32>
    C:\Windows\system32>DIR C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT /ah

     Volume in drive C has no label.
     Volume Serial Number is AA7D-F1BF

     Directory of C:\Windows\ServiceProfiles\NetworkService

    06/27/2012  03:23 PM           524,288 ntuser.dat
                   1 File(s)        524,288 bytes
                   0 Dir(s)  348,126,130,176 bytes free

    C:\Windows\system32>
    C:\Windows\system32>ICACLS C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT
    C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT NT AUTHORITY\SYSTEM:(I)(F)
                                                         BUILTIN\Administrators:(I)(
    F)
                                                         NT AUTHORITY\NETWORK SERVIC
    E:(I)(F)
                                                         xxxxxx\xxxxxxx:(
    I)(F)

    Successfully processed 1 files; Failed processing 0 files

    C:\Windows\system32> reg load HKU\Test "C:\Windows\ServiceProfiles\NetworkServic
    e\NTUSER.DAT"
    ERROR: The process cannot access the file because it is being used by another pr
    ocess.

    C:\Windows\system32>
    C:\Windows\system32>ICACLS C:\Windows\ServiceProfiles\NetworkService\AppData\Roa
    ming\SoftwareProtectionPlatform /t

    Wednesday, June 27, 2012 8:59 PM
  • "NCash" wrote in message news:b1f6217e-f400-4efc-9148-cfb15383b5b8...

    Noel, Here are results buddy.. thanks for your patience. i masked personal info with XXXXXXs.

     

    C:\Windows\system32>
    C:\Windows\system32>ICACLS C:\Windows\ServiceProfiles\NetworkService\AppData\Roa
    ming\SoftwareProtectionPlatform /t

    You didn't hit the Enter key at the end :)
    Everything else looks normal enough - the error message is almost always generated in a properly functioning profile, as the file is mostly in use anyhow.
     
    Please run that last command again, as it is fairly important.
     

    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    Thursday, June 28, 2012 11:13 AM
    Moderator
  • Ooops ..my mistake. I am reposting the results.

    Microsoft Windows [Version 6.1.7601]

    Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

    C:\Windows\system32>ATTRIB C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT

    A  SH   I    C:\Windows\ServiceProfiles\NetworkService\ntuser.dat

    C:\Windows\system32>

    C:\Windows\system32>DIR C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT /ah

     Volume in drive C has no label.

     Volume Serial Number is AA7D-F1BF

     Directory of C:\Windows\ServiceProfiles\NetworkService

    06/27/2012  11:46 PM           524,288 ntuser.dat

                   1 File(s)        524,288 bytes

                   0 Dir(s)  347,787,816,960 bytes free

    C:\Windows\system32>

    C:\Windows\system32>ICACLS C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT

    C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT NT AUTHORITY\SYSTEM:(I)(F)

                                                         BUILTIN\Administrators:(I)(

    F)

                                                         NT AUTHORITY\NETWORK SERVIC

    E:(I)(F)

                                                         XXXXX\Xxxxx Xxxxx:(

    I)(F)

    Successfully processed 1 files; Failed processing 0 files

    C:\Windows\system32> reg load HKU\Test "C:\Windows\ServiceProfiles\NetworkServic

    e\NTUSER.DAT"

    ERROR: The process cannot access the file because it is being used by another pr

    ocess.

    C:\Windows\system32>

    C:\Windows\system32>ICACLS C:\Windows\ServiceProfiles\NetworkService\AppData\Roa

    ming\SoftwareProtectionPlatform /t

    C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProt

    ectionPlatform NT AUTHORITY\SYSTEM:(I)(OI)(CI)(F)

                   BUILTIN\Administrators:(I)(OI)(CI)(F)

                   NT AUTHORITY\NETWORK SERVICE:(I)(OI)(CI)(F)

                   XXXXX\Xxxxx Xxxxx:(I)(OI)(CI)(F)

    C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProt

    ectionPlatform\Cache NT AUTHORITY\SYSTEM:(OI)(CI)(F)

                         BUILTIN\Administrators:(OI)(CI)(F)

                         NT SERVICE\sppsvc:(OI)(CI)(R,W,D)

                         Everyone:(OI)(CI)(R)

    C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProt

    ectionPlatform\tokens.bar NT AUTHORITY\SYSTEM:(I)(F)

                              BUILTIN\Administrators:(I)(F)

                              NT AUTHORITY\NETWORK SERVICE:(I)(F)

                              XXXXX\Xxxxx Xxxxx:(I)(F)

    C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProt

    ectionPlatform\tokens.bar3 NT AUTHORITY\SYSTEM:(I)(F)

                               BUILTIN\Administrators:(I)(F)

                               NT AUTHORITY\NETWORK SERVICE:(I)(F)

                               XXXXX\Xxxxx Xxxxx:(I)(F)

    C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProt

    ectionPlatform\Cache\cache.dat NT AUTHORITY\SYSTEM:(I)(F)

                                   BUILTIN\Administrators:(I)(F)

                                   NT SERVICE\sppsvc:(I)(R,W,D)

                                   Everyone:(I)(R)

    Successfully processed 5 files; Failed processing 0 files

    C:\Windows\system32>

    Thursday, June 28, 2012 2:42 PM
  • easily done :)

    The tokens.dat file is still missing - but the folder permissions seem to be OK.

    I need to play - back later.


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth

    Thursday, June 28, 2012 3:54 PM
    Moderator
  • "Noel D Paton" wrote in message news:0d4b8f02-79c0-4bfa-8ed8-ca6be8a3dfe7...

    easily done :)

    The tokens.dat file is still missing - but the folder permissions seem to be OK.

    I need to play - back later.


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth

    .... sorry - it's going to be tomorrow.
     
    I'm beginning to think that this may not be solvable in a forum context - Unless you're prepared for a long exchange (perhaps a couple more weeks) I doubt that we'll find a solution without a reinstall (either a repair or reformat/reinstall).
     
    That being the case, I would suggest that you contact WGA Support and see of you can get them to assist (although I'm happy to carry on if you prefer)
     
     
    Outside North America:
     
    Please let us know if (and how) MS manage to repair the problem without a repair install of the OS - it would be useful for future reference!    
     
     
     
     
     

    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    Thursday, June 28, 2012 5:36 PM
    Moderator