locked
My computer keeps popping up and saying windows 7 isnt geniue please help! RRS feed

  • Question

  • I know my windows is activated and it is geniue because I havent had any other windows on it.  It has the windows that came with it and as far as I know no one has bothered my computer.  I did run a program on it and this is what it brought up.

     

    Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 0x8004FE21
    Cached Online Validation Code: N/A, hr = 0xc004f012
    Windows Product Key: *****-*****-WJ2H8-R6B6D-7QJB7
    Windows Product Key Hash: ckKNc+BBPDWmo1LUlOkraNjlQ34=
    Windows Product ID: 00359-OEM-8992687-00006
    Windows Product ID Type: 2
    Windows License Type: OEM SLP
    Windows OS version: 6.1.7601.2.00010300.1.0.003
    ID: {A0A2BB53-4ED9-46EF-85CD-613CFE363A91}(1)
    Is Admin: Yes
    TestCab: 0x0
    LegitcheckControl ActiveX: N/A, hr = 0x80070002
    Signed By: N/A, hr = 0x80070002
    Product Name: Windows 7 Home Premium
    Architecture: 0x00000009
    Build lab: 7601.win7sp1_gdr.110622-1506
    TTS Error:
    Validation Diagnostic:
    Resolution Status: N/A

    Vista WgaER Data-->
    ThreatID(s): N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002

    Windows XP Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    File Exists: No
    Version: N/A, hr = 0x80070002
    WgaTray.exe Signed By: N/A, hr = 0x80070002
    WgaLogon.dll Signed By: N/A, hr = 0x80070002

    OGA Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002
    OGAExec.exe Signed By: N/A, hr = 0x80070002
    OGAAddin.dll Signed By: N/A, hr = 0x80070002

    OGA Data-->
    Office Status: 102
    Microsoft Office Home and Student 2007 - 100 Genuine
    OGA Version: N/A, 0x80070002
    Signed By: N/A, hr = 0x80070002
    Office Diagnostics: 77F760FE-153-80070002_7E90FEE8-175-80070002_025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3_B4D0AA8B-920-80070057

    Browser Data-->
    Proxy settings: N/A
    User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
    Default Browser: C:\Program Files (x86)\Mozilla Firefox\firefox.exe
    Download signed ActiveX controls: Prompt
    Download unsigned ActiveX controls: Disabled
    Run ActiveX controls and plug-ins: Allowed
    Initialize and script ActiveX controls not marked as safe: Disabled
    Allow scripting of Internet Explorer Webbrowser control: Disabled
    Active scripting: Allowed
    Script ActiveX controls marked as safe for scripting: Allowed

    File Scan Data-->
    File Mismatch: C:\Windows\system32\wat\watadminsvc.exe[7.1.7600.16395], Hr = 0x80092003
    File Mismatch: C:\Windows\system32\wat\watux.exe[7.1.7600.16395], Hr = 0x80092003
    File Mismatch: C:\Windows\system32\sppobjs.dll[6.1.7601.17514], Hr = 0x80092003
    File Mismatch: C:\Windows\system32\sppc.dll[6.1.7601.17514], Hr = 0x800b0100
    File Mismatch: C:\Windows\system32\sppcext.dll[6.1.7600.16385], Hr = 0x800b0100
    File Mismatch: C:\Windows\system32\sppwinob.dll[6.1.7601.17514], Hr = 0x80092003
    File Mismatch: C:\Windows\system32\slc.dll[6.1.7600.16385], Hr = 0x800b0100
    File Mismatch: C:\Windows\system32\slcext.dll[6.1.7600.16385], Hr = 0x800b0100
    File Mismatch: C:\Windows\system32\sppuinotify.dll[6.1.7600.16385], Hr = 0x80092003
    File Mismatch: C:\Windows\system32\slui.exe[6.1.7601.17514], Hr = 0x80092003
    File Mismatch: C:\Windows\system32\sppcomapi.dll[6.1.7601.17514], Hr = 0x800b0100
    File Mismatch: C:\Windows\system32\sppcommdlg.dll[6.1.7600.16385], Hr = 0x800b0100
    File Mismatch: C:\Windows\system32\sppsvc.exe[6.1.7601.17514], Hr = 0x80092003
    File Mismatch: C:\Windows\system32\drivers\spsys.sys[6.1.7127.0], Hr = 0x80092003
    File Mismatch: C:\Windows\system32\drivers\spldr.sys[6.1.7127.0], Hr = 0x80092003
    File Mismatch: C:\Windows\system32\systemcpl.dll[6.1.7601.17514], Hr = 0x800b0100
    File Mismatch: C:\Windows\system32\user32.dll[6.1.7601.17514], Hr = 0x800b0100

    Other data-->
    Office Details: <GenuineResults><MachineData><UGUID>{A0A2BB53-4ED9-46EF-85CD-613CFE363A91}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7601.2.00010300.1.0.003</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-7QJB7</PKey><PID>00359-OEM-8992687-00006</PID><PIDType>2</PIDType><SID>S-1-5-21-3540008859-137189953-3034388352</SID><SYSTEM><Manufacturer>Acer           </Manufacturer><Model>Aspire 7741                    </Model></SYSTEM><BIOS><Manufacturer>Phoenix Technologies LTD</Manufacturer><Version>V1.07          </Version><SMBIOSVersion major="2" minor="6"/><Date>20100427000000.000000+000</Date></BIOS><HWID>50043007018400FC</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Eastern Standard Time(GMT-05:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM><OEMID>ACRSYS</OEMID><OEMTableID>ACRPRDCT</OEMTableID></OEM><GANotification/></MachineData><Software><Office><Result>102</Result><Products><Product GUID="{91120000-002F-0000-0000-0000000FF1CE}"><LegitResult>100</LegitResult><Name>Microsoft Office Home and Student 2007</Name><Ver>12</Ver><PidType>19</PidType></Product></Products><Applications><App Id="16" Version="12" Result="100"/><App Id="18" Version="12" Result="100"/><App Id="1B" Version="12" Result="100"/><App Id="A1" Version="12" Result="100"/></Applications></Office></Software></GenuineResults> 

    Spsys.log Content: 0x80070002

    Licensing Data-->
    Software licensing service version: 6.1.7601.17514

    Name: Windows(R) 7, HomePremium edition
    Description: Windows Operating System - Windows(R) 7, OEM_SLP channel
    Activation ID: d2c04e90-c3dd-4260-b0f3-f845f5d27d64
    Application ID: 55c92734-d682-4d71-983e-d6ec3f16059f
    Extended PID: 00359-00178-926-800006-02-1033-7600.0000-0862010
    Installation ID: 004715295876519174228460820935094082079371067385085514
    Processor Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88338
    Machine Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88339
    Use License URL: http://go.microsoft.com/fwlink/?LinkID=88341
    Product Key Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88340
    Partial Product Key: 7QJB7
    License Status: Licensed
    Remaining Windows rearm count: 2
    Trusted time: 9/19/2011 10:15:09 PM

    Windows Activation Technologies-->
    HrOffline: 0x8004FE21
    HrOnline: N/A
    HealthStatus: 0x000000000001EFF0
    Event Time Stamp: 9:18:2011 21:40
    ActiveX: Registered, Version: 7.1.7600.16395
    Admin Service: Registered, Version: 7.1.7600.16395
    HealthStatus Bitmask Output:
    Tampered File: %systemroot%\system32\sppobjs.dll
    Tampered File: %systemroot%\system32\sppc.dll|sppc.dll.mui
    Tampered File: %systemroot%\system32\sppcext.dll|sppcext.dll.mui
    Tampered File: %systemroot%\system32\sppwinob.dll
    Tampered File: %systemroot%\system32\slc.dll|slc.dll.mui
    Tampered File: %systemroot%\system32\slcext.dll|slcext.dll.mui
    Tampered File: %systemroot%\system32\sppuinotify.dll|sppuinotify.dll.mui
    Tampered File: %systemroot%\system32\slui.exe|slui.exe.mui|COM Registration
    Tampered File: %systemroot%\system32\sppcomapi.dll|sppcomapi.dll.mui
    Tampered File: %systemroot%\system32\sppcommdlg.dll|sppcommdlg.dll.mui
    Tampered File: %systemroot%\system32\sppsvc.exe|sppsvc.exe.mui
    Tampered File: %systemroot%\system32\drivers\spsys.sys


    HWID Data-->
    HWID Hash Current: LAAAAAEAAQABAAEAAAABAAAAAgABAAEAeqh2HyCg2Chie1RW9EqiR0w+XF0=

    OEM Activation 1.0 Data-->
    N/A

    OEM Activation 2.0 Data-->
    BIOS valid for OA 2.0: yes
    Windows marker version: 0x20001
    OEMID and OEMTableID Consistent: yes
    BIOS Information:
      ACPI Table Name OEMID Value OEMTableID Value
      APIC   PTLTD     APIC 
      FACP   INTEL   CALPELLA
      HPET   INTEL   CALPELLA
      BOOT   PTLTD   $SBFTBL$
      MCFG   INTEL   CALPELLA
      SLIC   ACRSYS  ACRPRDCT
      SSDT   PmRef  CpuPm


    Can someone help me out and tell me what I need to do?

    Tuesday, September 20, 2011 2:38 AM

Answers

  • No reply from the Original Poster.

    Issue is assumed to be resolved.


    Darin MS
    • Marked as answer by Darin Smith MS Monday, September 26, 2011 9:34 PM
    Monday, September 26, 2011 9:34 PM

All replies

  • You have multiple tampered/file miss matches showing in your MGADiag Report.

    Download & run WATFix. DO NOT attempt to close it. Wait until it is finished.

    It will then reboot your system automatically. Then repost another MGADiag Report.

    Tuesday, September 20, 2011 3:11 AM
  • Note: this "WATFix" software was not created by Microsoft nor is it endorsed by Microsoft. In addition, I personally have not tested this software and can not vouch for it's effectiveness (or lack there of) in resolving this or any other Non-Genuine related issue.  Use At Your Own Risk. 
    Darin MS
    Thursday, September 22, 2011 7:36 PM
  • No reply from the Original Poster.

    Issue is assumed to be resolved.


    Darin MS
    • Marked as answer by Darin Smith MS Monday, September 26, 2011 9:34 PM
    Monday, September 26, 2011 9:34 PM
  • You have multiple tampered/file miss matches showing in your MGADiag Report.

    Download & run WATFix. DO NOT attempt to close it. Wait until it is finished.

    It will then reboot your system automatically. Then repost another MGADiag Report.

    Kaspersky anti-virus reports the following concerning the WATFix I downloaded from the link.  "detected Trojan program 'Trojan-Dropper.Win32.Agent.gbeu'

    As Darin Smith states "Note: this "WATFix" software was not created by Microsoft nor is it endorsed by Microsoft. In addition, I personally have not tested this software and can not vouch for it's effectiveness (or lack there of) in resolving this or any other Non-Genuine related issue.  Use At Your Own Risk."

    I deleted the file and will not use it.

    Monday, November 7, 2011 1:48 PM
  • "PizzaPete" wrote in message news:b799ca74-d322-4746-9073-db1fa46b89a6...

    You have multiple tampered/file miss matches showing in your MGADiag Report.

    Download & run WATFix. DO NOT attempt to close it. Wait until it is finished.

    It will then reboot your system automatically. Then repost another MGADiag Report.

    Kaspersky anti-virus reports the following concerning the WATFix I downloaded from the link.  "detected Trojan program 'Trojan-Dropper.Win32.Agent.gbeu'

    As Darin Smith states "Note: this "WATFix" software was not created by Microsoft nor is it endorsed by Microsoft. In addition, I personally have not tested this software and can not vouch for it's effectiveness (or lack there of) in resolving this or any other Non-Genuine related issue.  Use At Your Own Risk."

    I deleted the file and will not use it.

     
    I can understand your worries – but since you are not the OP, that won’t make any difference to his options.
    MSE does not seem to find anything objectionable with the file in question. – and I see that Kaspersky only identified that variant last night (presumably after you submitted the sample?)
     
    If you have a WGA problem please start a NEW thread of your own, including an MGADiag report so that we can see what YOUR problem is.
     
     

    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    Monday, November 7, 2011 2:49 PM
    Moderator
  • "Noel D Paton" wrote in message news:2c6058fb-f644-497c-920f-1adce2c39f3a...
     
    I can understand your worries – but since you are not the OP, that won’t make any difference to his options.
    MSE does not seem to find anything objectionable with the file in question. – and I see that Kaspersky only identified that variant last night (presumably after you submitted the sample?)
     
    If you have a WGA problem please start a NEW thread of your own, including an MGADiag report so that we can see what YOUR problem is.
     
     

    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
     
    A little further checking showed that Kaspersky had previously tested that file, and NOT had a problem with it.
     

    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    Monday, November 7, 2011 3:55 PM
    Moderator