locked
This computer is not running genuine windows - resolve online doesnt solve RRS feed

  • Question

  • Ox8004fe21

    downloaded the suggested component, doesn't solve the problem.

    rant the MS genuine advantage diagnostic Tool (1.9.0027.0) and here is the paste

    Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 0x8004FE21
    Cached Online Validation Code: 0x0
    Windows Product Key: *****-*****-HQTQ4-RTPWH-GMT4J
    Windows Product Key Hash: cO111s1qbgi3bR4e262/Ya1ugyA=
    Windows Product ID: 00371-863-9604324-85521
    Windows Product ID Type: 5
    Windows License Type: Retail
    Windows OS version: 6.1.7601.2.00010100.1.0.048
    ID: {9B9B1ED1-4785-4962-8F36-F3B0B7CACF68}(1)
    Is Admin: Yes
    TestCab: 0x0
    LegitcheckControl ActiveX: N/A, hr = 0x80070002
    Signed By: N/A, hr = 0x80070002
    Product Name: Windows 7 Professional
    Architecture: 0x00000000
    Build lab: 7601.win7sp1_gdr.110622-1506
    TTS Error:
    Validation Diagnostic:
    Resolution Status: N/A

    Vista WgaER Data-->
    ThreatID(s): N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002

    Windows XP Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    File Exists: No
    Version: N/A, hr = 0x80070002
    WgaTray.exe Signed By: N/A, hr = 0x80070002
    WgaLogon.dll Signed By: N/A, hr = 0x80070002

    OGA Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002
    OGAExec.exe Signed By: N/A, hr = 0x80070002
    OGAAddin.dll Signed By: N/A, hr = 0x80070002

    OGA Data-->
    Office Status: 100 Genuine
    2007 Microsoft Office system - 100 Genuine
    OGA Version: N/A, 0x80070002
    Signed By: N/A, hr = 0x80070002
    Office Diagnostics: 025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3_E2AD56EA-765-d003_E2AD56EA-766-0_E2AD56EA-134-80004005

    Browser Data-->
    Proxy settings: N/A
    User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
    Default Browser: C:\Program Files\Mozilla Firefox\firefox.exe
    Download signed ActiveX controls: Prompt
    Download unsigned ActiveX controls: Disabled
    Run ActiveX controls and plug-ins: Allowed
    Initialize and script ActiveX controls not marked as safe: Disabled
    Allow scripting of Internet Explorer Webbrowser control: Disabled
    Active scripting: Allowed
    Script ActiveX controls marked as safe for scripting: Allowed

    File Scan Data-->

    Other data-->
    Office Details: <GenuineResults><MachineData><UGUID>{9B9B1ED1-4785-4962-8F36-F3B0B7CACF68}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7601.2.00010100.1.0.048</OS><Architecture>x32</Architecture><PKey>*****-*****-*****-*****-GMT4J</PKey><PID>00371-863-9604324-85521</PID><PIDType>5</PIDType><SID>S-1-5-21-68197677-116003855-2165320957</SID><SYSTEM><Manufacturer>Hewlett-Packard</Manufacturer><Model>HP Compaq dc5750 Small Form Factor</Model></SYSTEM><BIOS><Manufacturer>Hewlett-Packard</Manufacturer><Version>786E3 v02.25</Version><SMBIOSVersion major="2" minor="4"/><Date>20070518000000.000000+000</Date></BIOS><HWID>680C3307018400F8</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Eastern Standard Time(GMT-05:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM><OEMID>HPQOEM</OEMID><OEMTableID>SLIC-BPC</OEMTableID></OEM><GANotification/></MachineData><Software><Office><Result>100</Result><Products><Product GUID="{91120000-0031-0000-0000-0000000FF1CE}"><LegitResult>100</LegitResult><Name>2007 Microsoft Office system</Name><Ver>12</Ver><Val>7E58469022C633A</Val><Hash>5VO3DTQsT/JJuu3SgyYqpaeFcs8=</Hash><Pid>89451-413-6231045-66884</Pid><PidType>1</PidType></Product></Products><Applications><App Id="15" Version="12" Result="100"/><App Id="16" Version="12" Result="100"/><App Id="18" Version="12" Result="100"/><App Id="19" Version="12" Result="100"/><App Id="1A" Version="12" Result="100"/><App Id="1B" Version="12" Result="100"/></Applications></Office></Software></GenuineResults>  

    Spsys.log Content: 0x80070002

    Licensing Data-->
    Software licensing service version: 6.1.7601.17514

    Name: Windows(R) 7, Professional edition
    Description: Windows Operating System - Windows(R) 7, RETAIL channel
    Activation ID: e838d943-63ed-4a0b-9fb1-47152908acc9
    Application ID: 55c92734-d682-4d71-983e-d6ec3f16059f
    Extended PID: 00371-00170-863-960432-01-1033-7601.0000-0602012
    Installation ID: 009965223254031482429073254163020096196201950016177231
    Processor Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88338
    Machine Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88339
    Use License URL: http://go.microsoft.com/fwlink/?LinkID=88341
    Product Key Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88340
    Partial Product Key: GMT4J
    License Status: Licensed
    Remaining Windows rearm count: 4
    Trusted time: 3/5/2012 4:16:55 PM

    Windows Activation Technologies-->
    HrOffline: 0x8004FE21
    HrOnline: N/A
    HealthStatus: 0x000000000003EFFF
    Event Time Stamp: 3:1:2012 04:12
    ActiveX: Registered, Version: 7.1.7600.16395
    Admin Service: Registered, Version: 7.1.7600.16395
    HealthStatus Bitmask Output:
    Tampered File: %systemroot%\system32\wat\watadminsvc.exe
    Tampered File: %systemroot%\system32\wat\watweb.dll
    Tampered File: %systemroot%\system32\wat\npwatweb.dll
    Tampered File: %systemroot%\system32\wat\watux.exe
    Tampered File: %systemroot%\system32\sppobjs.dll
    Tampered File: %systemroot%\system32\sppc.dll|sppc.dll.mui
    Tampered File: %systemroot%\system32\sppcext.dll|sppcext.dll.mui
    Tampered File: %systemroot%\system32\sppwinob.dll
    Tampered File: %systemroot%\system32\slc.dll|slc.dll.mui
    Tampered File: %systemroot%\system32\slcext.dll|slcext.dll.mui
    Tampered File: %systemroot%\system32\sppuinotify.dll|sppuinotify.dll.mui
    Tampered File: %systemroot%\system32\slui.exe|slui.exe.mui|COM Registration
    Tampered File: %systemroot%\system32\sppcomapi.dll|sppcomapi.dll.mui
    Tampered File: %systemroot%\system32\sppcommdlg.dll|sppcommdlg.dll.mui
    Tampered File: %systemroot%\system32\sppsvc.exe|sppsvc.exe.mui
    Tampered File: %systemroot%\system32\drivers\spsys.sys
    Tampered File: %systemroot%\system32\drivers\spldr.sys


    HWID Data-->
    HWID Hash Current: NAAAAAEABAABAAMAAAABAAAAAQABAAEAeqiMKobGEoSQpriRlnOu1M5wkMu2TiC96mCOtg==

    OEM Activation 1.0 Data-->
    N/A

    OEM Activation 2.0 Data-->
    BIOS valid for OA 2.0: yes
    Windows marker version: 0x0
    OEMID and OEMTableID Consistent: yes
    BIOS Information:
      ACPI Table Name    OEMID Value    OEMTableID Value
      APIC            COMPAQ        HP_RS485
      FACP            COMPAQ        HP_RS485
      MCFG            COMPAQ        HP_RS485
      ASF!            COMPAQ        HP_RS485
      TCPA            COMPAQ        HP_RS485
      SLIC            HPQOEM        SLIC-BPC

    Monday, March 5, 2012 9:22 PM

Answers

  • No further reply from the Original Poster.

    Issue is assumed to be resolved.


    Darin MS

    Tuesday, March 13, 2012 7:38 PM

All replies

  • "Scott_armonk" wrote in message news:9121ccab-1c1f-40cb-af49-d2282982dd2d...

    Ox8004fe21

    downloaded the suggested component, doesn't solve the problem.

    rant the MS genuine advantage diagnostic Tool (1.9.0027.0) and here is the paste

    Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 0x8004FE21
    Cached Online Validation Code: 0x0
    Windows Product Key: *****-*****-HQTQ4-RTPWH-GMT4J
    Windows Product Key Hash: cO111s1qbgi3bR4e262/Ya1ugyA=
    Windows Product ID: 00371-863-9604324-85521
    Windows Product ID Type: 5
    Windows License Type: Retail
    Windows OS version: 6.1.7601.2.00010100.1.0.048


     

    Since the files don’t appear also in the File Mismatches area, this is not the ‘usual problem’.
     
    I’m uncertain as to the cause of this – but it’s almost certainly a registry error somewhere.
    the trick is to find out where!
     
    Let’s start with an obvious possibility – the Cryptography service:-
     
    Please run the following command from an Elevated Command Prompt window(1)
     
    Copy and paste set of commands below into the window – once completed, hit the Enter Key to ensure that the last command has run (2)
     
     
    SC QUERYEX CRYPTSVC
    SC QUERYEX CRYPTSVC
    SC SDSHOW CRYPTSVC
    ICACLS C:\Windows\System32\sppc.dll
    ICACLS C:\Windows\System32\slc.dll
    ICACLS C:\Windows\System32\slcext.dll
    ICACLS C:\Windows\System32\sppcomapi.dll
    ICACLS C:\Windows\System32\sppsvc.exe
    ICACLS C:\Windows\System32\SPPWMI.DLL
    ICACLS C:\Windows\System32\SPP.DLL
    ICACLS C:\Windows\System32\SLWGA.DLL
    REG QUERY HKU
    REG QUERY HKU\S-1-5-20
    REG QUERY HKU\S-1-5-20\Environment
    REG QUERY HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-20
     
     
    Copy the whole output to your response(3) ;)
     
     
    1) To open an Elevated Command Prompt Window (the CP window), click on Start, All Programs, Accessories – then right-click on Command Prompt, and select Run as Administrator. Accept the UAC prompt.
    2) To run the commands easier, highlight the block of commands, and right-click on the highlight – select Copy. In the CP Windows, click on the black/white icon at top left – select Paste. The commands will run but may not complete the last command, so hit the Enter Key once.
    3) To copy the results... click on the Black/White icon in the top left, and select Edit... 'Select All', and hit the Enter key - then use Ctrl+V or r-click+Paste to paste it into your response.

    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    Monday, March 5, 2012 10:18 PM
    Moderator
  • Microsoft Windows [Version 6.1.7601]
    Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

    C:\Windows\system32>SC QUERYEX CRYPTSVC

    SERVICE_NAME: CRYPTSVC
            TYPE               : 20  WIN32_SHARE_PROCESS
            STATE              : 4  RUNNING
                                    (STOPPABLE, NOT_PAUSABLE, ACCEPTS_SHUTDOWN)
            WIN32_EXIT_CODE    : 0  (0x0)
            SERVICE_EXIT_CODE  : 0  (0x0)
            CHECKPOINT         : 0x0
            WAIT_HINT          : 0x0
            PID                : 1368
            FLAGS              :

    C:\Windows\system32>SC QUERYEX CRYPTSVC

    SERVICE_NAME: CRYPTSVC
            TYPE               : 20  WIN32_SHARE_PROCESS
            STATE              : 4  RUNNING
                                    (STOPPABLE, NOT_PAUSABLE, ACCEPTS_SHUTDOWN)
            WIN32_EXIT_CODE    : 0  (0x0)
            SERVICE_EXIT_CODE  : 0  (0x0)
            CHECKPOINT         : 0x0
            WAIT_HINT          : 0x0
            PID                : 1368
            FLAGS              :

    C:\Windows\system32>SC SDSHOW CRYPTSVC

    D:(A;;CCLCSWRPWPDTLOCRRC;;;SY)(A;;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;BA)(A;;CCLCSWLOCR
    RC;;;IU)(A;;CCLCSWLOCRRC;;;SU)S:(AU;FA;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;WD)

    C:\Windows\system32>ICACLS C:\Windows\System32\sppc.dll
    C:\Windows\System32\sppc.dll NT SERVICE\TrustedInstaller:(F)
                                 BUILTIN\Administrators:(RX)
                                 NT AUTHORITY\SYSTEM:(RX)
                                 BUILTIN\Users:(RX)

    Successfully processed 1 files; Failed processing 0 files

    C:\Windows\system32>ICACLS C:\Windows\System32\slc.dll
    C:\Windows\System32\slc.dll NT SERVICE\TrustedInstaller:(F)
                                BUILTIN\Administrators:(RX)
                                NT AUTHORITY\SYSTEM:(RX)
                                BUILTIN\Users:(RX)

    Successfully processed 1 files; Failed processing 0 files

    C:\Windows\system32>ICACLS C:\Windows\System32\slcext.dll
    C:\Windows\System32\slcext.dll NT SERVICE\TrustedInstaller:(F)
                                   BUILTIN\Administrators:(RX)
                                   NT AUTHORITY\SYSTEM:(RX)
                                   BUILTIN\Users:(RX)

    Successfully processed 1 files; Failed processing 0 files

    C:\Windows\system32>ICACLS C:\Windows\System32\sppcomapi.dll
    C:\Windows\System32\sppcomapi.dll NT SERVICE\TrustedInstaller:(F)
                                      BUILTIN\Administrators:(RX)
                                      NT AUTHORITY\SYSTEM:(RX)
                                      BUILTIN\Users:(RX)

    Successfully processed 1 files; Failed processing 0 files

    C:\Windows\system32>ICACLS C:\Windows\System32\sppsvc.exe
    C:\Windows\System32\sppsvc.exe NT SERVICE\TrustedInstaller:(F)
                                   BUILTIN\Administrators:(RX)
                                   NT AUTHORITY\SYSTEM:(RX)
                                   BUILTIN\Users:(RX)

    Successfully processed 1 files; Failed processing 0 files

    C:\Windows\system32>ICACLS C:\Windows\System32\SPPWMI.DLL
    C:\Windows\System32\SPPWMI.DLL NT SERVICE\TrustedInstaller:(F)
                                   BUILTIN\Administrators:(RX)
                                   NT AUTHORITY\SYSTEM:(RX)
                                   BUILTIN\Users:(RX)

    Successfully processed 1 files; Failed processing 0 files

    C:\Windows\system32>ICACLS C:\Windows\System32\SPP.DLL
    C:\Windows\System32\SPP.DLL NT SERVICE\TrustedInstaller:(F)
                                BUILTIN\Administrators:(RX)
                                NT AUTHORITY\SYSTEM:(RX)
                                BUILTIN\Users:(RX)

    Successfully processed 1 files; Failed processing 0 files

    C:\Windows\system32>ICACLS C:\Windows\System32\SLWGA.DLL
    C:\Windows\System32\SLWGA.DLL NT SERVICE\TrustedInstaller:(F)
                                  BUILTIN\Administrators:(RX)
                                  NT AUTHORITY\SYSTEM:(RX)
                                  BUILTIN\Users:(RX)

    Successfully processed 1 files; Failed processing 0 files

    C:\Windows\system32>REG QUERY HKU

    HKEY_USERS\.DEFAULT
    HKEY_USERS\S-1-5-19
    HKEY_USERS\S-1-5-20
    HKEY_USERS\S-1-5-21-68197677-116003855-2165320957-1000
    HKEY_USERS\S-1-5-21-68197677-116003855-2165320957-1000_Classes
    HKEY_USERS\S-1-5-18

    C:\Windows\system32>REG QUERY HKU\S-1-5-20

    HKEY_USERS\S-1-5-20\AppEvents
    HKEY_USERS\S-1-5-20\Console
    HKEY_USERS\S-1-5-20\Control Panel
    HKEY_USERS\S-1-5-20\Environment
    HKEY_USERS\S-1-5-20\EUDC
    HKEY_USERS\S-1-5-20\Keyboard Layout
    HKEY_USERS\S-1-5-20\Network
    HKEY_USERS\S-1-5-20\Printers
    HKEY_USERS\S-1-5-20\Software
    HKEY_USERS\S-1-5-20\System

    C:\Windows\system32>REG QUERY HKU\S-1-5-20\Environment

    HKEY_USERS\S-1-5-20\Environment
        TEMP    REG_EXPAND_SZ    %USERPROFILE%\AppData\Local\Temp
        TMP    REG_EXPAND_SZ    %USERPROFILE%\AppData\Local\Temp


    C:\Windows\system32>REG QUERY HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\
    ProfileList\S-1-5-20
    Tuesday, March 6, 2012 4:25 PM
  • "Scott_armonk" wrote in message news:a3ffb10f-7cf4-44e0-a7db-c18ab7792c61...
    Microsoft Windows [Version 6.1.7601]
    Copyright (c) 2009 Microsoft Corporation.  All rights reserved.



    C:\Windows\system32>REG QUERY HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\
    ProfileList\S-1-5-20
     
     
    All the rest of the reports look fine – but this last did not actually run.
    I  doubt that it’s relevant, but please try it again  -if it doesn’t run, hit the Enter key, and that should force it

    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    Tuesday, March 6, 2012 7:38 PM
    Moderator
  • should i only run that last one? or run the entire string of commands?
    Tuesday, March 6, 2012 8:16 PM
  • here is what i got when i ran the whole thing again AND hit the enter key at the end

    Microsoft Windows [Version 6.1.7601]
    Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

    C:\Windows\system32>SC QUERYEX CRYPTSVC

    SERVICE_NAME: CRYPTSVC
            TYPE               : 20  WIN32_SHARE_PROCESS
            STATE              : 4  RUNNING
                                    (STOPPABLE, NOT_PAUSABLE, ACCEPTS_SHUTDOWN)
            WIN32_EXIT_CODE    : 0  (0x0)
            SERVICE_EXIT_CODE  : 0  (0x0)
            CHECKPOINT         : 0x0
            WAIT_HINT          : 0x0
            PID                : 1368
            FLAGS              :

    C:\Windows\system32>SC QUERYEX CRYPTSVC

    SERVICE_NAME: CRYPTSVC
            TYPE               : 20  WIN32_SHARE_PROCESS
            STATE              : 4  RUNNING
                                    (STOPPABLE, NOT_PAUSABLE, ACCEPTS_SHUTDOWN)
            WIN32_EXIT_CODE    : 0  (0x0)
            SERVICE_EXIT_CODE  : 0  (0x0)
            CHECKPOINT         : 0x0
            WAIT_HINT          : 0x0
            PID                : 1368
            FLAGS              :

    C:\Windows\system32>SC SDSHOW CRYPTSVC

    D:(A;;CCLCSWRPWPDTLOCRRC;;;SY)(A;;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;BA)(A;;CCLCSWLOCR
    RC;;;IU)(A;;CCLCSWLOCRRC;;;SU)S:(AU;FA;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;WD)

    C:\Windows\system32>ICACLS C:\Windows\System32\sppc.dll
    C:\Windows\System32\sppc.dll NT SERVICE\TrustedInstaller:(F)
                                 BUILTIN\Administrators:(RX)
                                 NT AUTHORITY\SYSTEM:(RX)
                                 BUILTIN\Users:(RX)

    Successfully processed 1 files; Failed processing 0 files

    C:\Windows\system32>ICACLS C:\Windows\System32\slc.dll
    C:\Windows\System32\slc.dll NT SERVICE\TrustedInstaller:(F)
                                BUILTIN\Administrators:(RX)
                                NT AUTHORITY\SYSTEM:(RX)
                                BUILTIN\Users:(RX)

    Successfully processed 1 files; Failed processing 0 files

    C:\Windows\system32>ICACLS C:\Windows\System32\slcext.dll
    C:\Windows\System32\slcext.dll NT SERVICE\TrustedInstaller:(F)
                                   BUILTIN\Administrators:(RX)
                                   NT AUTHORITY\SYSTEM:(RX)
                                   BUILTIN\Users:(RX)

    Successfully processed 1 files; Failed processing 0 files

    C:\Windows\system32>ICACLS C:\Windows\System32\sppcomapi.dll
    C:\Windows\System32\sppcomapi.dll NT SERVICE\TrustedInstaller:(F)
                                      BUILTIN\Administrators:(RX)
                                      NT AUTHORITY\SYSTEM:(RX)
                                      BUILTIN\Users:(RX)

    Successfully processed 1 files; Failed processing 0 files

    C:\Windows\system32>ICACLS C:\Windows\System32\sppsvc.exe
    C:\Windows\System32\sppsvc.exe NT SERVICE\TrustedInstaller:(F)
                                   BUILTIN\Administrators:(RX)
                                   NT AUTHORITY\SYSTEM:(RX)
                                   BUILTIN\Users:(RX)

    Successfully processed 1 files; Failed processing 0 files

    C:\Windows\system32>ICACLS C:\Windows\System32\SPPWMI.DLL
    C:\Windows\System32\SPPWMI.DLL NT SERVICE\TrustedInstaller:(F)
                                   BUILTIN\Administrators:(RX)
                                   NT AUTHORITY\SYSTEM:(RX)
                                   BUILTIN\Users:(RX)

    Successfully processed 1 files; Failed processing 0 files

    C:\Windows\system32>ICACLS C:\Windows\System32\SPP.DLL
    C:\Windows\System32\SPP.DLL NT SERVICE\TrustedInstaller:(F)
                                BUILTIN\Administrators:(RX)
                                NT AUTHORITY\SYSTEM:(RX)
                                BUILTIN\Users:(RX)

    Successfully processed 1 files; Failed processing 0 files

    C:\Windows\system32>ICACLS C:\Windows\System32\SLWGA.DLL
    C:\Windows\System32\SLWGA.DLL NT SERVICE\TrustedInstaller:(F)
                                  BUILTIN\Administrators:(RX)
                                  NT AUTHORITY\SYSTEM:(RX)
                                  BUILTIN\Users:(RX)

    Successfully processed 1 files; Failed processing 0 files

    C:\Windows\system32>REG QUERY HKU

    HKEY_USERS\.DEFAULT
    HKEY_USERS\S-1-5-19
    HKEY_USERS\S-1-5-20
    HKEY_USERS\S-1-5-21-68197677-116003855-2165320957-1000
    HKEY_USERS\S-1-5-21-68197677-116003855-2165320957-1000_Classes
    HKEY_USERS\S-1-5-18

    C:\Windows\system32>REG QUERY HKU\S-1-5-20

    HKEY_USERS\S-1-5-20\AppEvents
    HKEY_USERS\S-1-5-20\Console
    HKEY_USERS\S-1-5-20\Control Panel
    HKEY_USERS\S-1-5-20\Environment
    HKEY_USERS\S-1-5-20\EUDC
    HKEY_USERS\S-1-5-20\Keyboard Layout
    HKEY_USERS\S-1-5-20\Network
    HKEY_USERS\S-1-5-20\Printers
    HKEY_USERS\S-1-5-20\Software
    HKEY_USERS\S-1-5-20\System

    C:\Windows\system32>REG QUERY HKU\S-1-5-20\Environment

    HKEY_USERS\S-1-5-20\Environment
        TEMP    REG_EXPAND_SZ    %USERPROFILE%\AppData\Local\Temp
        TMP    REG_EXPAND_SZ    %USERPROFILE%\AppData\Local\Temp


    C:\Windows\system32>REG QUERY HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\
    ProfileList\S-1-5-20
    ERROR: Invalid syntax.
    Type "REG QUERY /?" for usage.

    C:\Windows\system32>

    Tuesday, March 6, 2012 8:20 PM
  • "Scott_armonk" wrote in message news:61b1d2af-903d-4bf0-823f-53018b9e959b...
    should i only run that last one? or run the entire string of commands?
     
     
    Whatever takes your fancy – but I only need the last one :)
     

    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    Tuesday, March 6, 2012 8:20 PM
    Moderator
  • as you can see above, i ran it and got the invalid syntax error, any suggestions?

    can you give me the exact item you would like me to run alone and let me try that?

    Tuesday, March 6, 2012 8:32 PM
  • "Scott_armonk" wrote in message news:129d9749-f032-4396-b5bb-e1964044c494...

    as you can see above, i ran it and got the invalid syntax error, any suggestions?

    can you give me the exact item you would like me to run alone and let me try that?

    My fault, I’m afraid – I neglected to insert the proper quoting.....
     
    REG QUERY "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-20"
     
    is what it should read (if the site doesn’t change the quotes for me!)
     
     
    Sorry about that.... this is a little deeper than it’s normal to go for most problems.

    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    Tuesday, March 6, 2012 9:36 PM
    Moderator
  • Microsoft Windows [Version 6.1.7601]
    Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

    C:\Windows\system32>REG QUERY "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion
    \ProfileList\S-1-5-20"

    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-
    5-20
        ProfileImagePath    REG_EXPAND_SZ    C:\Windows\ServiceProfiles\NetworkServi
    ce
        Flags    REG_DWORD    0x0
        State    REG_DWORD    0x0


    C:\Windows\system32>
    C:\Windows\system32>
    Tuesday, March 6, 2012 10:13 PM
  • "Scott_armonk" wrote in message news:4526ef26-bff5-4730-9840-8542f48775c6...
    Microsoft Windows [Version 6.1.7601]
    Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

    C:\Windows\system32>REG QUERY "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion
    \ProfileList\S-1-5-20"

    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-
    5-20
        ProfileImagePath    REG_EXPAND_SZ    C:\Windows\ServiceProfiles\NetworkServi
    ce
        Flags    REG_DWORD    0x0
        State    REG_DWORD    0x0


    C:\Windows\system32>
    C:\Windows\system32>
     
    That looks OK – please check the data on the file
    C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT
    It should be dated the time you last booted the computer, as it is re-written every boot.
     

    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    Wednesday, March 7, 2012 10:34 AM
    Moderator
  • not finding this file in the folder
    Wednesday, March 7, 2012 2:22 PM
  • OK _ this may be the problem.

    Please open an Elevated Command prompt window(1), and run (2) the following commands

    ICACLS C:\windows\serviceprofiles\networkservice

    ICACLS C:\windows\serviceprofiles\networkservice\NTUSER.DAT

    ICACLS C:\windows\serviceprofiles

    Post the results in your response (3)

    1) To open an Elevated Command Prompt Window (the CP window), click on
    Start, All Programs, Accessories – then right-click on Command Prompt, and
    select Run as Administrator. Accept the UAC prompt.

    2) To run the commands easier, highlight the block of commands, and
    right-click on the highlight – select Copy. In the CP Windows, click on the
    black/white icon at top left – select Paste. The commands will run but may not
    complete the last command, so hit the Enter Key once.

    3) To copy the results... click on the Black/White icon in the top left,
    and select Edit... 'Select All', and hit the Enter key - then use Ctrl+V or
    r-click+Paste to paste it into your response.


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth

    Wednesday, March 7, 2012 2:38 PM
    Moderator
  • Microsoft Windows [Version 6.1.7601]
    Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

    C:\Windows\system32>ICACLS C:\windows\serviceprofiles\networkservice
    C:\windows\serviceprofiles\networkservice NT AUTHORITY\SYSTEM:(OI)(CI)(F)
                                              BUILTIN\Administrators:(OI)(CI)(F)
                                              NT AUTHORITY\NETWORK SERVICE:(OI)(CI)(
    F)
                                              sdinhofer-PC\sdinhofer:(OI)(CI)(F)

    Successfully processed 1 files; Failed processing 0 files

    C:\Windows\system32>ICACLS C:\windows\serviceprofiles\networkservice\NTUSER.DAT^
    'IICACLS' is not recognized as an internal or external command,
    operable program or batch file.

    C:\Windows\system32>ICACLS C:\windows\serviceprofiles\networkservice\NTUSER.DAT
    C:\windows\serviceprofiles\networkservice\NTUSER.DAT NT AUTHORITY\SYSTEM:(F)
                                                         BUILTIN\Administrators:(F)
                                                         sdinhofer-PC\sdinhofer:(F)

    Successfully processed 1 files; Failed processing 0 files

    C:\Windows\system32>ICACLS C:\windows\serviceprofiles
    C:\windows\serviceprofiles NT SERVICE\TrustedInstaller:(I)(F)
                               NT SERVICE\TrustedInstaller:(I)(CI)(IO)(F)
                               NT AUTHORITY\SYSTEM:(I)(F)
                               NT AUTHORITY\SYSTEM:(I)(OI)(CI)(IO)(F)
                               BUILTIN\Administrators:(I)(F)
                               BUILTIN\Administrators:(I)(OI)(CI)(IO)(F)
                               BUILTIN\Users:(I)(RX)
                               BUILTIN\Users:(I)(OI)(CI)(IO)(GR,GE)
                               CREATOR OWNER:(I)(OI)(CI)(IO)(F)

    Successfully processed 1 files; Failed processing 0 files

    C:\Windows\system32>
    Thursday, March 8, 2012 1:09 PM
  • still not finding the .dat file inC:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT

    the folder Network service, does have 10 subfolders (AppData, Desktop, documents, downloads, favorits, links, music, pictures, saved games, videos)

    Thursday, March 8, 2012 1:11 PM
  • "Scott_armonk" wrote in message news:de1d76d5-cf3a-4274-9532-e47eccd943f9...

    still not finding the .dat file inC:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT

    the folder Network service, does have 10 subfolders (AppData, Desktop, documents, downloads, favorits, links, music, pictures, saved games, videos)

    The command prompt appears to be able to find it :)
     
    C:\windows\serviceprofiles\networkservice\NTUSER.DAT
    C:\windows\serviceprofiles\networkservice\NTUSER.DAT NT AUTHORITY\SYSTEM:(F)
    BUILTIN\Administrators:(F)
    sdinhofer-PC\sdinhofer:(F)
    However, the permissions for it are odd, to say the least. They should be inherited from the parent folder, but seem to be explicit.
    The parent folder’s permissions are OK.
    The missing permissions are actually the important ones -
     
    Please open an Elevated Command Prompt window, and run the following commands
     
    ICACLS C:\windows\serviceprofiles\networkservice\NTUSER.DAT /GRANT "NT AUTHORITY\Network Service":(F)
    ICACLS C:\windows\serviceprofiles\networkservice\NTUSER.DAT
     
    post the results after a reboot, together with a new MGADiag report.
     

    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    Thursday, March 8, 2012 8:11 PM
    Moderator
  • Microsoft Windows [Version 6.1.7601]
    Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

    C:\Windows\system32>ICACLS C:\windows\serviceprofiles\networkservice\NTUSER.DAT
    /GRANT "NT AUTHORITY\Network Service":(F)
    processed file: C:\windows\serviceprofiles\networkservice\NTUSER.DAT
    Successfully processed 1 files; Failed processing 0 files

    C:\Windows\system32>ICACLS C:\windows\serviceprofiles\networkservice\NTUSER.DAT
    Friday, March 9, 2012 1:44 PM
  • "Scott_armonk" wrote in message news:6273b8f7-8731-4237-9da1-0060d2d5010b...
    Microsoft Windows [Version 6.1.7601]
    Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

    C:\Windows\system32>ICACLS C:\windows\serviceprofiles\networkservice\NTUSER.DAT
    /GRANT "NT AUTHORITY\Network Service":(F)
    processed file: C:\windows\serviceprofiles\networkservice\NTUSER.DAT
    Successfully processed 1 files; Failed processing 0 files

    C:\Windows\system32>ICACLS C:\windows\serviceprofiles\networkservice\NTUSER.DAT
     
    Need you to hit the Enter key after the last one to complete it – but it looks as if the initial command functioned properly (the second is just to display the results).
     
     
    Reboot, and run another MGADiag report.

    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    Friday, March 9, 2012 1:55 PM
    Moderator
  • Microsoft Windows [Version 6.1.7601]
    Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

    C:\Windows\system32>ICACLS C:\windows\serviceprofiles\networkservice\NTUSER.DAT
    C:\windows\serviceprofiles\networkservice\NTUSER.DAT NT AUTHORITY\NETWORK SERVIC
    E:(F)
                                                         NT AUTHORITY\SYSTEM:(F)
                                                         BUILTIN\Administrators:(F)
                                                         sdinhofer-PC\sdinhofer:(F)

    Successfully processed 1 files; Failed processing 0 files

    C:\Windows\system32>

    Going to reboot and run MGADiag report again

    Friday, March 9, 2012 2:28 PM
  • Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 0x8004FE21
    Cached Online Validation Code: 0x0
    Windows Product Key: *****-*****-HQTQ4-RTPWH-GMT4J
    Windows Product Key Hash: cO111s1qbgi3bR4e262/Ya1ugyA=
    Windows Product ID: 00371-863-9604324-85521
    Windows Product ID Type: 5
    Windows License Type: Retail
    Windows OS version: 6.1.7601.2.00010100.1.0.048
    ID: {9B9B1ED1-4785-4962-8F36-F3B0B7CACF68}(3)
    Is Admin: Yes
    TestCab: 0x0
    LegitcheckControl ActiveX: N/A, hr = 0x80070002
    Signed By: N/A, hr = 0x80070002
    Product Name: Windows 7 Professional
    Architecture: 0x00000000
    Build lab: 7601.win7sp1_gdr.110622-1506
    TTS Error:
    Validation Diagnostic:
    Resolution Status: N/A

    Vista WgaER Data-->
    ThreatID(s): N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002

    Windows XP Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    File Exists: No
    Version: N/A, hr = 0x80070002
    WgaTray.exe Signed By: N/A, hr = 0x80070002
    WgaLogon.dll Signed By: N/A, hr = 0x80070002

    OGA Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002
    OGAExec.exe Signed By: N/A, hr = 0x80070002
    OGAAddin.dll Signed By: N/A, hr = 0x80070002

    OGA Data-->
    Office Status: 100 Genuine
    2007 Microsoft Office system - 100 Genuine
    OGA Version: N/A, 0x80070002
    Signed By: N/A, hr = 0x80070002
    Office Diagnostics: 025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3

    Browser Data-->
    Proxy settings: N/A
    User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
    Default Browser: C:\Program Files\Mozilla Firefox\firefox.exe
    Download signed ActiveX controls: Prompt
    Download unsigned ActiveX controls: Disabled
    Run ActiveX controls and plug-ins: Allowed
    Initialize and script ActiveX controls not marked as safe: Disabled
    Allow scripting of Internet Explorer Webbrowser control: Disabled
    Active scripting: Allowed
    Script ActiveX controls marked as safe for scripting: Allowed

    File Scan Data-->

    Other data-->
    Office Details: <GenuineResults><MachineData><UGUID>{9B9B1ED1-4785-4962-8F36-F3B0B7CACF68}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7601.2.00010100.1.0.048</OS><Architecture>x32</Architecture><PKey>*****-*****-*****-*****-GMT4J</PKey><PID>00371-863-9604324-85521</PID><PIDType>5</PIDType><SID>S-1-5-21-68197677-116003855-2165320957</SID><SYSTEM><Manufacturer>Hewlett-Packard</Manufacturer><Model>HP Compaq dc5750 Small Form Factor</Model></SYSTEM><BIOS><Manufacturer>Hewlett-Packard</Manufacturer><Version>786E3 v02.25</Version><SMBIOSVersion major="2" minor="4"/><Date>20070518000000.000000+000</Date></BIOS><HWID>680C3307018400F8</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Eastern Standard Time(GMT-05:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM><OEMID>HPQOEM</OEMID><OEMTableID>SLIC-BPC</OEMTableID></OEM><GANotification/></MachineData><Software><Office><Result>100</Result><Products><Product GUID="{91120000-0031-0000-0000-0000000FF1CE}"><LegitResult>100</LegitResult><Name>2007 Microsoft Office system</Name><Ver>12</Ver><Val>7E58469022C633A</Val><Hash>5VO3DTQsT/JJuu3SgyYqpaeFcs8=</Hash><Pid>89451-413-6231045-66884</Pid><PidType>1</PidType></Product></Products><Applications><App Id="15" Version="12" Result="100"/><App Id="16" Version="12" Result="100"/><App Id="18" Version="12" Result="100"/><App Id="19" Version="12" Result="100"/><App Id="1A" Version="12" Result="100"/><App Id="1B" Version="12" Result="100"/></Applications></Office></Software></GenuineResults>  

    Spsys.log Content: 0x80070002

    Licensing Data-->
    Software licensing service version: 6.1.7601.17514

    Name: Windows(R) 7, Professional edition
    Description: Windows Operating System - Windows(R) 7, RETAIL channel
    Activation ID: e838d943-63ed-4a0b-9fb1-47152908acc9
    Application ID: 55c92734-d682-4d71-983e-d6ec3f16059f
    Extended PID: 00371-00170-863-960432-01-1033-7601.0000-0602012
    Installation ID: 009965223254031482429073254163020096196201950016177231
    Processor Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88338
    Machine Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88339
    Use License URL: http://go.microsoft.com/fwlink/?LinkID=88341
    Product Key Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88340
    Partial Product Key: GMT4J
    License Status: Licensed
    Remaining Windows rearm count: 4
    Trusted time: 3/9/2012 9:39:30 AM

    Windows Activation Technologies-->
    HrOffline: 0x8004FE21
    HrOnline: N/A
    HealthStatus: 0x000000000003EFFF
    Event Time Stamp: 3:8:2012 04:16
    ActiveX: Registered, Version: 7.1.7600.16395
    Admin Service: Registered, Version: 7.1.7600.16395
    HealthStatus Bitmask Output:
    Tampered File: %systemroot%\system32\wat\watadminsvc.exe
    Tampered File: %systemroot%\system32\wat\watweb.dll
    Tampered File: %systemroot%\system32\wat\npwatweb.dll
    Tampered File: %systemroot%\system32\wat\watux.exe
    Tampered File: %systemroot%\system32\sppobjs.dll
    Tampered File: %systemroot%\system32\sppc.dll|sppc.dll.mui
    Tampered File: %systemroot%\system32\sppcext.dll|sppcext.dll.mui
    Tampered File: %systemroot%\system32\sppwinob.dll
    Tampered File: %systemroot%\system32\slc.dll|slc.dll.mui
    Tampered File: %systemroot%\system32\slcext.dll|slcext.dll.mui
    Tampered File: %systemroot%\system32\sppuinotify.dll|sppuinotify.dll.mui
    Tampered File: %systemroot%\system32\slui.exe|slui.exe.mui|COM Registration
    Tampered File: %systemroot%\system32\sppcomapi.dll|sppcomapi.dll.mui
    Tampered File: %systemroot%\system32\sppcommdlg.dll|sppcommdlg.dll.mui
    Tampered File: %systemroot%\system32\sppsvc.exe|sppsvc.exe.mui
    Tampered File: %systemroot%\system32\drivers\spsys.sys
    Tampered File: %systemroot%\system32\drivers\spldr.sys


    HWID Data-->
    HWID Hash Current: NAAAAAEABAABAAMAAAABAAAAAQABAAEAeqiMKobGEoSQpriRlnOu1M5wkMu2TiC96mCOtg==

    OEM Activation 1.0 Data-->
    N/A

    OEM Activation 2.0 Data-->
    BIOS valid for OA 2.0: yes
    Windows marker version: 0x0
    OEMID and OEMTableID Consistent: yes
    BIOS Information:
      ACPI Table Name    OEMID Value    OEMTableID Value
      APIC            COMPAQ        HP_RS485
      FACP            COMPAQ        HP_RS485
      MCFG            COMPAQ        HP_RS485
      ASF!            COMPAQ        HP_RS485
      TCPA            COMPAQ        HP_RS485
      SLIC            HPQOEM        SLIC-BPC

    Friday, March 9, 2012 2:42 PM
  • "Scott_armonk" wrote in message news:f6bbdff4-0112-474d-8445-1206c492a898...
    Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 0x8004FE21
    Cached Online Validation Code: 0x0
    Windows Product Key: *****-*****-HQTQ4-RTPWH-GMT4J
    Windows Product Key Hash: cO111s1qbgi3bR4e262/Ya1ugyA=
    Windows Product ID: 00371-863-9604324-85521
    Windows Product ID Type: 5
    Windows License Type: Retail
    Windows OS version: 6.1.7601.2.00010100.1.0.048


    Other data-->
    SYSTEM><Manufacturer>Hewlett-Packard</Manufacturer><Model>HP Compaq dc5750 Small Form Factor</Model></SYSTEM><BIOS><Manufacturer>Hewlett-Packard</Manufacturer><Version>786E3 v02.25</Version><SMBIOSVersion major="2" minor="4"/><Date>20070518000000.000000+000</Date></BIOS

    Licensing Data-->
    Software licensing service version: 6.1.7601.17514

    Name: Windows(R) 7, Professional edition
    Description: Windows Operating System - Windows(R) 7, RETAIL channel
    Partial Product Key: GMT4J
    License Status: Licensed
    Remaining Windows rearm count: 4
    Trusted time: 3/9/2012 9:39:30 AM


    OEM Activation 2.0 Data-->
    BIOS valid for OA 2.0: yes
    Windows marker version: 0x0
    OEMID and OEMTableID Consistent: yes
    BIOS Information:
      TCPA            COMPAQ        HP_RS485
      SLIC            HPQOEM        SLIC-BPC

    We seem to have got an improvement – although how much of one is open for debate! :)
    I really am stretching the bounds of what can be done in a forum context here...
    Your License type appears to be a genuine Retail one – but there’s this strange thread at http://www.rxx.co.il/TextPage_EN.aspx?ID=6892655
    which makes me wonder....
     
    Perhaps the best thing you could do is use the WGA Support links......
    WGA Support can be found here-
    North America: http://support.microsoft.com/contactus/cu_sc_genadv_master?ws=support&ws=support#tab4

    Outside North America:
    http://support.microsoft.com/contactus/?ws=support#tab0

    Please let us know if (and how) MS manage to repair the problem without a repair install of the OS - it would be useful for future reference!
     
     

    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    Friday, March 9, 2012 7:21 PM
    Moderator
  • argghhhhh!!!!

    if you are telling me that wiping the machine will solve this, that is probably easy enough for me to do as hard as it is, i can do it, thoughts?

    Friday, March 9, 2012 8:08 PM
  • "Scott_armonk" wrote in message news:90644116-da15-4332-b758-8698f6d6b257...

    argghhhhh!!!!

    if you are telling me that wiping the machine will solve this, that is probably easy enough for me to do as hard as it is, i can do it, thoughts?

    A clean install is always the last resort – a repair install is preferable, if it works.
     
    What I would suggest is that you back up your data to external media, then attempt a repair install - http://www.sevenforums.com/tutorials/3413-repair-install.html?ltr=R
     
     

    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    Friday, March 9, 2012 8:46 PM
    Moderator
  • i went to that site, called the number and they had me reactivate the product, restart the machine and voila, the error message comes up an hour later!

    WHAT is the problem? who do i reach to solve it? they verified that i have a valid product key.

    i throw my hands up here, you guys are running the diagnostics with me and seeing way more than those guys...

    any ideas or suggestions/

    Friday, March 9, 2012 8:57 PM
  • You went to what site? - the last one I directed you to was instructions for a reinstall.

    If you mean that you went to the WGA support site, and were directed to re-activate - What else did they get you to do?

    Please post a new MGADiag report.


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth

    Friday, March 9, 2012 9:12 PM
    Moderator
  • No further reply from the Original Poster.

    Issue is assumed to be resolved.


    Darin MS

    Tuesday, March 13, 2012 7:38 PM
  • Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 0x8004FE21
    Cached Online Validation Code: 0x0
    Windows Product Key: *****-*****-HQTQ4-RTPWH-GMT4J
    Windows Product Key Hash: cO111s1qbgi3bR4e262/Ya1ugyA=
    Windows Product ID: 00371-863-9604324-85521
    Windows Product ID Type: 5
    Windows License Type: Retail
    Windows OS version: 6.1.7601.2.00010100.1.0.048
    ID: {9B9B1ED1-4785-4962-8F36-F3B0B7CACF68}(3)
    Is Admin: Yes
    TestCab: 0x0
    LegitcheckControl ActiveX: N/A, hr = 0x80070002
    Signed By: N/A, hr = 0x80070002
    Product Name: Windows 7 Professional
    Architecture: 0x00000000
    Build lab: 7601.win7sp1_gdr.110622-1506
    TTS Error:
    Validation Diagnostic:
    Resolution Status: N/A

    Vista WgaER Data-->
    ThreatID(s): N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002

    Windows XP Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    File Exists: No
    Version: N/A, hr = 0x80070002
    WgaTray.exe Signed By: N/A, hr = 0x80070002
    WgaLogon.dll Signed By: N/A, hr = 0x80070002

    OGA Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002
    OGAExec.exe Signed By: N/A, hr = 0x80070002
    OGAAddin.dll Signed By: N/A, hr = 0x80070002

    OGA Data-->
    Office Status: 100 Genuine
    2007 Microsoft Office system - 100 Genuine
    OGA Version: N/A, 0x80070002
    Signed By: N/A, hr = 0x80070002
    Office Diagnostics: 025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3

    Browser Data-->
    Proxy settings: N/A
    User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
    Default Browser: C:\Program Files\Mozilla Firefox\firefox.exe
    Download signed ActiveX controls: Prompt
    Download unsigned ActiveX controls: Disabled
    Run ActiveX controls and plug-ins: Allowed
    Initialize and script ActiveX controls not marked as safe: Disabled
    Allow scripting of Internet Explorer Webbrowser control: Disabled
    Active scripting: Allowed
    Script ActiveX controls marked as safe for scripting: Allowed

    File Scan Data-->

    Other data-->
    Office Details: <GenuineResults><MachineData><UGUID>{9B9B1ED1-4785-4962-8F36-F3B0B7CACF68}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7601.2.00010100.1.0.048</OS><Architecture>x32</Architecture><PKey>*****-*****-*****-*****-GMT4J</PKey><PID>00371-863-9604324-85521</PID><PIDType>5</PIDType><SID>S-1-5-21-68197677-116003855-2165320957</SID><SYSTEM><Manufacturer>Hewlett-Packard</Manufacturer><Model>HP Compaq dc5750 Small Form Factor</Model></SYSTEM><BIOS><Manufacturer>Hewlett-Packard</Manufacturer><Version>786E3 v02.25</Version><SMBIOSVersion major="2" minor="4"/><Date>20070518000000.000000+000</Date></BIOS><HWID>680C3307018400F8</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Eastern Standard Time(GMT-05:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM><OEMID>HPQOEM</OEMID><OEMTableID>SLIC-BPC</OEMTableID></OEM><GANotification/></MachineData><Software><Office><Result>100</Result><Products><Product GUID="{91120000-0031-0000-0000-0000000FF1CE}"><LegitResult>100</LegitResult><Name>2007 Microsoft Office system</Name><Ver>12</Ver><Val>7E58469022C633A</Val><Hash>5VO3DTQsT/JJuu3SgyYqpaeFcs8=</Hash><Pid>89451-413-6231045-66884</Pid><PidType>1</PidType></Product></Products><Applications><App Id="15" Version="12" Result="100"/><App Id="16" Version="12" Result="100"/><App Id="18" Version="12" Result="100"/><App Id="19" Version="12" Result="100"/><App Id="1A" Version="12" Result="100"/><App Id="1B" Version="12" Result="100"/></Applications></Office></Software></GenuineResults>  

    Spsys.log Content: 0x80070002

    Licensing Data-->
    Software licensing service version: 6.1.7601.17514

    Name: Windows(R) 7, Professional edition
    Description: Windows Operating System - Windows(R) 7, RETAIL channel
    Activation ID: e838d943-63ed-4a0b-9fb1-47152908acc9
    Application ID: 55c92734-d682-4d71-983e-d6ec3f16059f
    Extended PID: 00371-00170-863-960432-01-1033-7601.0000-0692012
    Installation ID: 009965223254031482429073254163020096196201950016177231
    Processor Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88338
    Machine Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88339
    Use License URL: http://go.microsoft.com/fwlink/?LinkID=88341
    Product Key Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88340
    Partial Product Key: GMT4J
    License Status: Licensed
    Remaining Windows rearm count: 4
    Trusted time: 3/13/2012 4:39:59 PM

    Windows Activation Technologies-->
    HrOffline: 0x8004FE21
    HrOnline: N/A
    HealthStatus: 0x000000000003EFFF
    Event Time Stamp: 3:8:2012 05:16
    ActiveX: Registered, Version: 7.1.7600.16395
    Admin Service: Registered, Version: 7.1.7600.16395
    HealthStatus Bitmask Output:
    Tampered File: %systemroot%\system32\wat\watadminsvc.exe
    Tampered File: %systemroot%\system32\wat\watweb.dll
    Tampered File: %systemroot%\system32\wat\npwatweb.dll
    Tampered File: %systemroot%\system32\wat\watux.exe
    Tampered File: %systemroot%\system32\sppobjs.dll
    Tampered File: %systemroot%\system32\sppc.dll|sppc.dll.mui
    Tampered File: %systemroot%\system32\sppcext.dll|sppcext.dll.mui
    Tampered File: %systemroot%\system32\sppwinob.dll
    Tampered File: %systemroot%\system32\slc.dll|slc.dll.mui
    Tampered File: %systemroot%\system32\slcext.dll|slcext.dll.mui
    Tampered File: %systemroot%\system32\sppuinotify.dll|sppuinotify.dll.mui
    Tampered File: %systemroot%\system32\slui.exe|slui.exe.mui|COM Registration
    Tampered File: %systemroot%\system32\sppcomapi.dll|sppcomapi.dll.mui
    Tampered File: %systemroot%\system32\sppcommdlg.dll|sppcommdlg.dll.mui
    Tampered File: %systemroot%\system32\sppsvc.exe|sppsvc.exe.mui
    Tampered File: %systemroot%\system32\drivers\spsys.sys
    Tampered File: %systemroot%\system32\drivers\spldr.sys


    HWID Data-->
    HWID Hash Current: NAAAAAEABAABAAMAAAABAAAAAQABAAEAeqiMKobGEoSQpriRlnOu1M5wkMu2TiC96mCOtg==

    OEM Activation 1.0 Data-->
    N/A

    OEM Activation 2.0 Data-->
    BIOS valid for OA 2.0: yes
    Windows marker version: 0x0
    OEMID and OEMTableID Consistent: yes
    BIOS Information:
      ACPI Table Name    OEMID Value    OEMTableID Value
      APIC            COMPAQ        HP_RS485
      FACP            COMPAQ        HP_RS485
      MCFG            COMPAQ        HP_RS485
      ASF!            COMPAQ        HP_RS485
      TCPA            COMPAQ        HP_RS485
      SLIC            HPQOEM        SLIC-BPC

    Tuesday, March 13, 2012 8:40 PM
  • "Scott_armonk" wrote in message news:cbd436da-3166-4e79-a8a4-cf6846f2f3bf...
    Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 0x8004FE21
    Cached Online Validation Code: 0x0
    Windows Product Key: *****-*****-HQTQ4-RTPWH-GMT4J
    Windows Product Key Hash: cO111s1qbgi3bR4e262/Ya1ugyA=
    Windows Product ID: 00371-863-9604324-85521
    Windows Product ID Type: 5
    Windows License Type: Retail
    Windows OS version: 6.1.7601.2.00010100.1.0.048
    ID: {9B9B1ED1-4785-4962-8F36-F3B0B7CACF68}(3)
    Is Admin: Yes
    TestCab: 0x0
    LegitcheckControl ActiveX: N/A, hr = 0x80070002
    Signed By: N/A, hr = 0x80070002
    Product Name: Windows 7 Professional


    Windows Activation Technologies-->
    HrOffline: 0x8004FE21
    HrOnline: N/A
    HealthStatus: 0x000000000003EFFF
    Event Time Stamp: 3:8:2012 05:16
    ActiveX: Registered, Version: 7.1.7600.16395
    Admin Service: Registered, Version: 7.1.7600.16395
    HealthStatus Bitmask Output:
    Tampered File: %systemroot%\system32\wat\watadminsvc.exe
    Tampered File: %systemroot%\system32\wat\watweb.dll
    Tampered File: %systemroot%\system32\wat\npwatweb.dll
    Tampered File: %systemroot%\system32\wat\watux.exe
    Tampered File: %systemroot%\system32\sppobjs.dll
    Tampered File: %systemroot%\system32\sppc.dll|sppc.dll.mui
    Tampered File: %systemroot%\system32\sppcext.dll|sppcext.dll.mui
    Tampered File: %systemroot%\system32\sppwinob.dll
    Tampered File: %systemroot%\system32\slc.dll|slc.dll.mui
    Tampered File: %systemroot%\system32\slcext.dll|slcext.dll.mui
    Tampered File: %systemroot%\system32\sppuinotify.dll|sppuinotify.dll.mui
    Tampered File: %systemroot%\system32\slui.exe|slui.exe.mui|COM Registration
    Tampered File: %systemroot%\system32\sppcomapi.dll|sppcomapi.dll.mui
    Tampered File: %systemroot%\system32\sppcommdlg.dll|sppcommdlg.dll.mui
    Tampered File: %systemroot%\system32\sppsvc.exe|sppsvc.exe.mui
    Tampered File: %systemroot%\system32\drivers\spsys.sys
    Tampered File: %systemroot%\system32\drivers\spldr.sys




    Still the same story, I’m afraid.
    I’m out of ideas, now – I can only suggest either
    1) contact MS WGA Support
    2) go for a repair install
    or
    3) a clean install
     

    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    Tuesday, March 13, 2012 9:04 PM
    Moderator
  • going to give the repair install a shot, problaby not until Monday.. will advise
    Friday, March 16, 2012 3:26 PM
  • "Scott_armonk" wrote in message news:d85b5b87-2c81-43ae-8348-46b1691dfe0a...
    going to give the repair install a shot, problaby not until Monday.. will advise
     
    Good Luck!
     

    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    Friday, March 16, 2012 3:35 PM
    Moderator
  • Ox8004fe21

    downloaded the suggested component, doesn't solve the problem.

    rant the MS genuine advantage diagnostic Tool (1.9.0027.0) and here is the paste

    Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 0x8004FE21
    Cached Online Validation Code: 0x0
    Windows Product Key: *****-*****-HQTQ4-RTPWH-GMT4J
    Windows Product Key Hash: cO111s1qbgi3bR4e262/Ya1ugyA=
    Windows Product ID: 00371-863-9604324-85521
    Windows Product ID Type: 5
    Windows License Type: Retail
    Windows OS version: 6.1.7601.2.00010100.1.0.048
    ID: {9B9B1ED1-4785-4962-8F36-F3B0B7CACF68}(1)
    Is Admin: Yes
    TestCab: 0x0
    LegitcheckControl ActiveX: N/A, hr = 0x80070002
    Signed By: N/A, hr = 0x80070002
    Product Name: Windows 7 Professional
    Architecture: 0x00000000
    Build lab: 7601.win7sp1_gdr.110622-1506
    TTS Error:
    Validation Diagnostic:
    Resolution Status: N/A

    Vista WgaER Data-->
    ThreatID(s): N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002

    Windows XP Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    File Exists: No
    Version: N/A, hr = 0x80070002
    WgaTray.exe Signed By: N/A, hr = 0x80070002
    WgaLogon.dll Signed By: N/A, hr = 0x80070002

    OGA Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002
    OGAExec.exe Signed By: N/A, hr = 0x80070002
    OGAAddin.dll Signed By: N/A, hr = 0x80070002

    OGA Data-->
    Office Status: 100 Genuine
    2007 Microsoft Office system - 100 Genuine
    OGA Version: N/A, 0x80070002
    Signed By: N/A, hr = 0x80070002
    Office Diagnostics: 025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3_E2AD56EA-765-d003_E2AD56EA-766-0_E2AD56EA-134-80004005

    Browser Data-->
    Proxy settings: N/A
    User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
    Default Browser: C:\Program Files\Mozilla Firefox\firefox.exe
    Download signed ActiveX controls: Prompt
    Download unsigned ActiveX controls: Disabled
    Run ActiveX controls and plug-ins: Allowed
    Initialize and script ActiveX controls not marked as safe: Disabled
    Allow scripting of Internet Explorer Webbrowser control: Disabled
    Active scripting: Allowed
    Script ActiveX controls marked as safe for scripting: Allowed

    File Scan Data-->

    Other data-->
    Office Details: <GenuineResults><MachineData><UGUID>{9B9B1ED1-4785-4962-8F36-F3B0B7CACF68}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7601.2.00010100.1.0.048</OS><Architecture>x32</Architecture><PKey>*****-*****-*****-*****-GMT4J</PKey><PID>00371-863-9604324-85521</PID><PIDType>5</PIDType><SID>S-1-5-21-68197677-116003855-2165320957</SID><SYSTEM><Manufacturer>Hewlett-Packard</Manufacturer><Model>HP Compaq dc5750 Small Form Factor</Model></SYSTEM><BIOS><Manufacturer>Hewlett-Packard</Manufacturer><Version>786E3 v02.25</Version><SMBIOSVersion major="2" minor="4"/><Date>20070518000000.000000+000</Date></BIOS><HWID>680C3307018400F8</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Eastern Standard Time(GMT-05:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM><OEMID>HPQOEM</OEMID><OEMTableID>SLIC-BPC</OEMTableID></OEM><GANotification/></MachineData><Software><Office><Result>100</Result><Products><Product GUID="{91120000-0031-0000-0000-0000000FF1CE}"><LegitResult>100</LegitResult><Name>2007 Microsoft Office system</Name><Ver>12</Ver><Val>7E58469022C633A</Val><Hash>5VO3DTQsT/JJuu3SgyYqpaeFcs8=</Hash><Pid>89451-413-6231045-66884</Pid><PidType>1</PidType></Product></Products><Applications><App Id="15" Version="12" Result="100"/><App Id="16" Version="12" Result="100"/><App Id="18" Version="12" Result="100"/><App Id="19" Version="12" Result="100"/><App Id="1A" Version="12" Result="100"/><App Id="1B" Version="12" Result="100"/></Applications></Office></Software></GenuineResults>  

    Spsys.log Content: 0x80070002

    Licensing Data-->
    Software licensing service version: 6.1.7601.17514

    Name: Windows(R) 7, Professional edition
    Description: Windows Operating System - Windows(R) 7, RETAIL channel
    Activation ID: e838d943-63ed-4a0b-9fb1-47152908acc9
    Application ID: 55c92734-d682-4d71-983e-d6ec3f16059f
    Extended PID: 00371-00170-863-960432-01-1033-7601.0000-0602012
    Installation ID: 009965223254031482429073254163020096196201950016177231
    Processor Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88338
    Machine Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88339
    Use License URL: http://go.microsoft.com/fwlink/?LinkID=88341
    Product Key Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88340
    Partial Product Key: GMT4J
    License Status: Licensed
    Remaining Windows rearm count: 4
    Trusted time: 3/5/2012 4:16:55 PM

    Windows Activation Technologies-->
    HrOffline: 0x8004FE21
    HrOnline: N/A
    HealthStatus: 0x000000000003EFFF
    Event Time Stamp: 3:1:2012 04:12
    ActiveX: Registered, Version: 7.1.7600.16395
    Admin Service: Registered, Version: 7.1.7600.16395
    HealthStatus Bitmask Output:
    Tampered File: %systemroot%\system32\wat\watadminsvc.exe
    Tampered File: %systemroot%\system32\wat\watweb.dll
    Tampered File: %systemroot%\system32\wat\npwatweb.dll
    Tampered File: %systemroot%\system32\wat\watux.exe
    Tampered File: %systemroot%\system32\sppobjs.dll
    Tampered File: %systemroot%\system32\sppc.dll|sppc.dll.mui
    Tampered File: %systemroot%\system32\sppcext.dll|sppcext.dll.mui
    Tampered File: %systemroot%\system32\sppwinob.dll
    Tampered File: %systemroot%\system32\slc.dll|slc.dll.mui
    Tampered File: %systemroot%\system32\slcext.dll|slcext.dll.mui
    Tampered File: %systemroot%\system32\sppuinotify.dll|sppuinotify.dll.mui
    Tampered File: %systemroot%\system32\slui.exe|slui.exe.mui|COM Registration
    Tampered File: %systemroot%\system32\sppcomapi.dll|sppcomapi.dll.mui
    Tampered File: %systemroot%\system32\sppcommdlg.dll|sppcommdlg.dll.mui
    Tampered File: %systemroot%\system32\sppsvc.exe|sppsvc.exe.mui
    Tampered File: %systemroot%\system32\drivers\spsys.sys
    Tampered File: %systemroot%\system32\drivers\spldr.sys


    HWID Data-->
    HWID Hash Current: NAAAAAEABAABAAMAAAABAAAAAQABAAEAeqiMKobGEoSQpriRlnOu1M5wkMu2TiC96mCOtg==

    OEM Activation 1.0 Data-->
    N/A

    OEM Activation 2.0 Data-->
    BIOS valid for OA 2.0: yes
    Windows marker version: 0x0
    OEMID and OEMTableID Consistent: yes
    BIOS Information:
      ACPI Table Name    OEMID Value    OEMTableID Value
      APIC            COMPAQ        HP_RS485
      FACP            COMPAQ        HP_RS485
      MCFG            COMPAQ        HP_RS485
      ASF!            COMPAQ        HP_RS485
      TCPA            COMPAQ        HP_RS485
      SLIC            HPQOEM        SLIC-BPC




    • Proposed as answer by msabry11 Monday, March 19, 2012 2:23 PM
    • Edited by msabry11 Monday, March 19, 2012 2:24 PM msabry986300@hotmail.com
    • Unproposed as answer by Noel D PatonModerator Monday, March 19, 2012 2:29 PM
    Monday, March 19, 2012 2:21 PM