locked
Windows 7 Enterprise was activated successfully but MGADiag Tools reports 0x8004FE21 (...not running genuine Wind RRS feed

  • Question

  • I've been using this copy of Windows 7 Enterprise at work and all that sudden it failed to do update on KB2901112 then it starts to complain not running genuine Windows!

    Then I looked up a thread in this forum pointing to the following MS activation site:

     "http://www.microsoft.com/genuine/validate/DownloadValidationSupport.aspx?displaylang=en"

    but it failed half-way in the "Update Installation" process with the message(0x80070002):


    Hope someone could shed some light on this problem please.

    Thank you.

    -brian.t


    Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 0x8004FE21
    Cached Online Validation Code: 0x0
    Windows Product Key: *****-*****-2VJC9-XBBR8-HVTHH
    Windows Product Key Hash: k/l/EMDQdwK9OvdCkPtHG1YdosE=
    Windows Product ID: 00392-918-5000002-85618
    Windows Product ID Type: 1
    Windows License Type: KMS Client
    Windows OS version: 6.1.7601.2.00010100.1.0.004
    ID: {6F1B9D90-C2CA-4E9C-B700-B531733CBC8A}(3)
    Is Admin: Yes
    TestCab: 0x0
    LegitcheckControl ActiveX: Registered, 1.9.42.0
    Signed By: Microsoft
    Product Name: Windows 7 Enterprise
    Architecture: 0x00000009
    Build lab: 7601.win7sp1_gdr.130828-1532
    TTS Error:
    Validation Diagnostic:
    Resolution Status: N/A

    Vista WgaER Data-->
    ThreatID(s): N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002

    Windows XP Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    File Exists: No
    Version: N/A, hr = 0x80070002
    WgaTray.exe Signed By: N/A, hr = 0x80070002
    WgaLogon.dll Signed By: N/A, hr = 0x80070002

    OGA Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002
    OGAExec.exe Signed By: N/A, hr = 0x80070002
    OGAAddin.dll Signed By: N/A, hr = 0x80070002

    OGA Data-->
    Office Status: 109 N/A
    OGA Version: N/A, 0x80070002
    Signed By: N/A, hr = 0x80070002
    Office Diagnostics: 025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3

    Browser Data-->
    Proxy settings: N/A
    User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
    Default Browser: C:\Public\MozillaFirefox\firefox.exe
    Download signed ActiveX controls: Prompt
    Download unsigned ActiveX controls: Disabled
    Run ActiveX controls and plug-ins: Allowed
    Initialize and script ActiveX controls not marked as safe: Disabled
    Allow scripting of Internet Explorer Webbrowser control: Disabled
    Active scripting: Allowed
    Script ActiveX controls marked as safe for scripting: Allowed

    File Scan Data-->

    Other data-->
    Office Details: <GenuineResults><MachineData><UGUID>{6F1B9D90-C2CA-4E9C-B700-B531733CBC8A}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7601.2.00010100.1.0.004</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-HVTHH</PKey><PID>00392-918-5000002-85618</PID><PIDType>1</PIDType><SID>S-1-5-21-1520537892-1398304305-1270642562</SID><SYSTEM><Manufacturer>Dell Inc.</Manufacturer><Model>OptiPlex 990</Model></SYSTEM><BIOS><Manufacturer>Dell Inc.</Manufacturer><Version>A11</Version><SMBIOSVersion major="2" minor="6"/><Date>20111230000000.000000+000</Date></BIOS><HWID>79813D07018400FE</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>China Standard Time(GMT+08:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM><OEMID>DELL  </OEMID><OEMTableID>CBX3   </OEMTableID></OEM><GANotification/></MachineData><Software><Office><Result>109</Result><Products/><Applications/></Office></Software></GenuineResults>  

    Spsys.log Content: 0x80070002

    Licensing Data-->
    Software licensing service version: 6.1.7601.17514

    Name: Windows(R) 7, Enterprise edition
    Description: Windows Operating System - Windows(R) 7, VOLUME_KMSCLIENT channel
    Activation ID: ae2ee509-1b34-41c0-acb7-6d4650168915
    Application ID: 55c92734-d682-4d71-983e-d6ec3f16059f
    Extended PID: 00392-00170-918-500000-03-1033-7601.0000-0502014
    Installation ID: 010794678700884562215291848350495791000055407785312482
    Partial Product Key: HVTHH
    License Status: Licensed
    Volume activation expiration: 257760 minute(s) (179 day(s))
    Remaining Windows rearm count: 1
    Trusted time: 2/20/2014 9:55:45 AM

    Key Management Service client information
        Client Machine ID (CMID): 554f3c6b-ada3-437f-b0e9-b5f5d89a5a30
        Registered KMS machine name: kms.itsc.cuhk.edu.hk:1688
        KMS machine extended PID: 55041-00168-314-161500-03-1033-7601.0000-3332012
        Activation interval: 120 minutes
        Renewal interval: 10080 minutes
        KMS host caching is enabled

    Windows Activation Technologies-->
    HrOffline: 0x8004FE21
    HrOnline: N/A
    HealthStatus: 0x0000000000000004
    Event Time Stamp: 2:14:2014 22:41
    ActiveX: Registered, Version: 7.1.7600.16395
    Admin Service: Registered, Version: 7.1.7600.16395
    HealthStatus Bitmask Output:
    Tampered File: %systemroot%\system32\wat\npwatweb.dll


    HWID Data-->
    HWID Hash Current: OAAAAAIAAgABAAEAAQACAAAABAABAAEAHKIw8gZRFT986dLVeOeqkXf2Yj1ydfg5HlZyir5BLnM=

    OEM Activation 1.0 Data-->
    N/A

    OEM Activation 2.0 Data-->
    BIOS valid for OA 2.0: yes
    Windows marker version: 0x20001
    OEMID and OEMTableID Consistent: yes
    BIOS Information:
      ACPI Table Name    OEMID Value    OEMTableID Value
      APIC            DELL          CBX3   
      FACP            DELL          CBX3   
      HPET            A M I          PCHHPET
      BOOT            DELL          CBX3    
      MCFG            DELL          SNDYBRDG
      TCPA                    
      SSDT            DELLTP        TPM
      SSDT            DELLTP        TPM
      SSDT            DELLTP        TPM
      DMAR            INTEL         SNB
      SLIC            DELL          CBX3   



    • Edited by brian.t Thursday, February 20, 2014 2:43 AM
    Thursday, February 20, 2014 2:29 AM

Answers

  • HealthStatus Bitmask Output:
    Tampered File: %systemroot%\system32\wat\npwatweb.dll

    The problem appears to be with part of the WAT update KB971033 - the easiest way to fix it should be to uninstall and reinstall the update.

    Close all open windows.

    Open an Elevated Command Prompt window, and type the following command

    wusa /uninstall /kb:971033

    and hit the Enter key

    Accept the warnings/confirmations, and wait for it to complete

    copy and paste the output (if any) from the command prompt window to a reply here,

    Reboot

    reinstall the update from http://support.microsoft.com/kb/971033

    Reboot

    run another MGADiag report, and post it.


    Noel Paton | Nil Carborundum Illegitemi
    CrashFixPC | The Three-toed Sloth
    No - I do not work for Microsoft, or any of its contractors.

    Thursday, February 20, 2014 9:43 AM
    Moderator