locked
Windows 7 Home Premium reported as non-genuine RRS feed

  • Question

  • After upgrading to SP1 I started getting the non geniune pop up.

    I don't have an MSDN key by the looks of it since I got this Windows OEM with my system.

    Updated KB2387530 also failed at the time I installed SP1, but I don't think it has anything to do with the non geniune problem.

    The only thing that looks like a concern is the tampered file line.

    Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 0x8004FE22
    Cached Online Validation Code: 0x0
    Windows Product Key: *****-*****-DCX8W-VVTBQ-FJH9F
    Windows Product Key Hash: 5dDEIjFOFhGuYpiYnPO1K4Ityvk=
    Windows Product ID: 00359-OEM-8702911-70339
    Windows Product ID Type: 3
    Windows License Type: OEM System Builder
    Windows OS version: 6.1.7601.2.00010300.1.0.003
    ID: {704FFDA2-4AA7-46A7-A993-80F976C668E0}(1)
    Is Admin: Yes
    TestCab: 0x0
    LegitcheckControl ActiveX: N/A, hr = 0x80070002
    Signed By: N/A, hr = 0x80070002
    Product Name: Windows 7 Home Premium
    Architecture: 0x00000009
    Build lab: 7601.win7sp1_rtm.101119-1850
    TTS Error:
    Validation Diagnostic:
    Resolution Status: N/A

    Vista WgaER Data-->
    ThreatID(s): N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002

    Windows XP Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    File Exists: No
    Version: N/A, hr = 0x80070002
    WgaTray.exe Signed By: N/A, hr = 0x80070002
    WgaLogon.dll Signed By: N/A, hr = 0x80070002

    OGA Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002
    OGAExec.exe Signed By: N/A, hr = 0x80070002
    OGAAddin.dll Signed By: N/A, hr = 0x80070002

    OGA Data-->
    Office Status: 100 Genuine
    Microsoft Office Home and Student 2007 - 100 Genuine
    OGA Version: N/A, 0x80070002
    Signed By: N/A, hr = 0x80070002
    Office Diagnostics: 025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3_E2AD56EA-765-d003_E2AD56EA-766-0_E2AD56EA-134-80004005

    Browser Data-->
    Proxy settings: N/A
    User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
    Default Browser: C:\Program Files (x86)\Mozilla Firefox\firefox.exe
    Download signed ActiveX controls: Prompt
    Download unsigned ActiveX controls: Disabled
    Run ActiveX controls and plug-ins: Allowed
    Initialize and script ActiveX controls not marked as safe: Disabled
    Allow scripting of Internet Explorer Webbrowser control: Disabled
    Active scripting: Allowed
    Script ActiveX controls marked as safe for scripting: Allowed

    File Scan Data-->

    Other data-->
    Office Details: <GenuineResults><MachineData><UGUID>{704FFDA2-4AA7-46A7-A993-80F976C668E0}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7601.2.00010300.1.0.003</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-FJH9F</PKey><PID>00359-OEM-8702911-70339</PID><PIDType>3</PIDType><SID>S-1-5-21-178759196-485615856-108012173</SID><SYSTEM><Manufacturer>Gigabyte Technology Co., Ltd.</Manufacturer><Model>GA-MA785GT-UD3H</Model></SYSTEM><BIOS><Manufacturer>Award Software International, Inc.</Manufacturer><Version>F3</Version><SMBIOSVersion major="2" minor="4"/><Date>20090916000000.000000+000</Date></BIOS><HWID>8B203E07018400FA</HWID><UserLCID>0C09</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>AUS Eastern Standard Time(GMT+10:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM/><GANotification/></MachineData><Software><Office><Result>100</Result><Products><Product GUID="{91120000-002F-0000-0000-0000000FF1CE}"><LegitResult>100</LegitResult><Name>Microsoft Office Home and Student 2007</Name><Ver>12</Ver><Val>5991E6963E5A738</Val><Hash>NP1kW2crD7x9EChpGTqiWOUjKhk=</Hash><Pid>81602-924-8810074-68589</Pid><PidType>1</PidType></Product></Products><Applications><App Id="16" Version="12" Result="100"/><App Id="18" Version="12" Result="100"/><App Id="1B" Version="12" Result="100"/><App Id="A1" Version="12" Result="100"/></Applications></Office></Software></GenuineResults> 

    Spsys.log Content: 0x80070002

    Licensing Data-->
    Software licensing service version: 6.1.7601.17514

    Name: Windows(R) 7, HomePremium edition
    Description: Windows Operating System - Windows(R) 7, OEM_COA_NSLP channel
    Activation ID: 586bc076-c93d-429a-afe5-a69fbc644e88
    Application ID: 55c92734-d682-4d71-983e-d6ec3f16059f
    Extended PID: 00359-00174-029-170339-02-3081-7601.0000-0572011
    Installation ID: 010586606480553500057233055621311386484281872890298263
    Processor Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88338
    Machine Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88339
    Use License URL: http://go.microsoft.com/fwlink/?LinkID=88341
    Product Key Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88340
    Partial Product Key: FJH9F
    License Status: Licensed
    Remaining Windows rearm count: 4
    Trusted time: 26/02/2011 12:02:07 PM

    Windows Activation Technologies-->
    HrOffline: 0x8004FE22
    HrOnline: N/A
    HealthStatus: 0x0000000000004000
    Event Time Stamp: 2:26:2011 11:44
    ActiveX: Registered, Version: 7.1.7600.16395
    Admin Service: Registered, Version: 7.1.7600.16395
    HealthStatus Bitmask Output:
    Tampered File: %systemroot%\system32\sppcommdlg.dll|sppcommdlg.dll.mui


    HWID Data-->
    HWID Hash Current: NgAAAAEABAABAAIAAAADAAAAAQABAAEA6GFUY5bWVPIQM+CoGIiqknhSxLjqRWI9Ks9eYyis

    OEM Activation 1.0 Data-->
    N/A

    OEM Activation 2.0 Data-->
    BIOS valid for OA 2.0: yes, but no SLIC table
    Windows marker version: N/A
    OEMID and OEMTableID Consistent: N/A
    BIOS Information:
      ACPI Table Name    OEMID Value    OEMTableID Value
      APIC            GBT           GBTUACPI
      FACP            GBT           GBTUACPI
      MCFG            GBT           GBTUACPI
      SSDT            PTLTD         POWERNOW
      TAMG            GBT           GBT   B0

    Saturday, February 26, 2011 1:12 AM

Answers

  • "Seren_Fallstar" wrote in message news:a58298d2-c3bb-4118-80a6-95cd1905cdf2...

    Tried uninstalling the updates (including the service pack) on the same day as the service pack. No luck. The report still comes up with the tamper file

    Also tried the system restore but an error came up and it was cancelled. Any other suggestion or would I have to do a clean install?

     

    Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 0x8004FE22
    Cached Online Validation Code: 0x0
    Windows Product Key: *****-*****-DCX8W-VVTBQ-FJH9F
    Windows Product Key Hash: 5dDEIjFOFhGuYpiYnPO1K4Ityvk=
    Windows Product ID: 00359-OEM-8702911-70339
    Windows Product ID Type: 3
    Windows License Type: OEM System Builder
    Windows OS version: 6.1.7600.2.00010300.0.0.003


     


    Have you been using any kind of Registry Cleaner, or Optimiser? If so, then try reverting any changes it's made.
     
    Other than that, probably your best bet is to do a repair install - see here for instructions....

    --


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    Friday, March 4, 2011 7:11 PM
    Moderator
  • "Seren_Fallstar" wrote in message news:2cf5ecba-e7bb-42af-9c6a-572ea817937a...

    Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 0
    Cached Online Validation Code: 0x0
    Windows Product Key: *****-*****-DCX8W-VVTBQ-FJH9F
    Windows Product Key Hash: 5dDEIjFOFhGuYpiYnPO1K4Ityvk=
    Windows Product ID: 00359-OEM-8702911-70339
    Windows Product ID Type: 3
    Windows License Type: OEM System Builder
    Windows OS version: 6.1.7600.2.00010300.0.0.003



    File Scan Data-->
    File Mismatch: C:\Windows\system32\wat\watadminsvc.exe[7.1.7600.16395], Hr = 0x80092003
    File Mismatch: C:\Windows\system32\wat\watux.exe[7.1.7600.16395], Hr = 0x80092003



    Here is the new log.

    Didn't run a registery cleaner but did run the repair/upgrade install as per article.

    Looks like it got rid of the tamper file warning but now I've got two file mismatches.

    The only noteworthy during the repair install was it said that .NET framework 4 was damaged and needed to be repaired.

    So that could have possible been the issue.


    The mismatches aren't too much of a problem - download and run the WAT update - KB971033 from here:-
     
     
    That should clear the mismatches
    The go and manually validate at http://www.microsoft.com/genuine/validate
    Hopefully, that will clear the last of your errors.
     
    Post a new MGADiag report.
     
    Then download and install Belarc Advisor (www.belarc.com )  and run it, to check that all current security updates are properly installed.
    Then you should be good to go!
     

    --


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    Sunday, March 6, 2011 2:28 AM
    Moderator

All replies

  • Ran the sfc /scannow command under Administrator.

    Came back with an error of

    "Microsoft Windows [Version 6.1.7601]
    Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

    C:\Windows\system32>sfc /scannow

    Beginning system scan.  This process will take some time.

    Beginning verification phase of system scan.
    Verification 100% complete.
    Windows Resource Protection found corrupt files but was unable to fix some of them.
    Details are included in the CBS.Log windir\Logs\CBS\CBS.log. For example
    C:\Windows\Logs\CBS\CBS.log"

    Had a quick look at the log and it is really long, so if someone could point out to me what parts they need, I'll post them up ASAP

    Sunday, February 27, 2011 2:04 PM
  • "Seren_Fallstar" wrote in message news:39c35588-feed-4dd5-8865-e5a00a134688...

    Ran the sfc /scannow command under Administrator.

    Came back with an error of

    "Microsoft Windows [Version 6.1.7601]
    Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

    C:\Windows\system32>sfc /scannow

    Beginning system scan.  This process will take some time.

    Beginning verification phase of system scan.
    Verification 100% complete.
    Windows Resource Protection found corrupt files but was unable to fix some of them.
    Details are included in the CBS.Log windir\Logs\CBS\CBS.log. For example
    C:\Windows\Logs\CBS\CBS.log"

    Had a quick look at the log and it is really long, so if someone could point out to me what parts they need, I'll post them up ASAP


    Please post a new MGADiag report - it may show changes
     
    You can actually check the log yourself - here's the link for instructions...

    --


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    Sunday, February 27, 2011 2:28 PM
    Moderator
  • New report up

    Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 0x8004FE22
    Cached Online Validation Code: 0x0
    Windows Product Key: *****-*****-DCX8W-VVTBQ-FJH9F
    Windows Product Key Hash: 5dDEIjFOFhGuYpiYnPO1K4Ityvk=
    Windows Product ID: 00359-OEM-8702911-70339
    Windows Product ID Type: 3
    Windows License Type: OEM System Builder
    Windows OS version: 6.1.7601.2.00010300.1.0.003
    ID: {704FFDA2-4AA7-46A7-A993-80F976C668E0}(3)
    Is Admin: Yes
    TestCab: 0x0
    LegitcheckControl ActiveX: N/A, hr = 0x80070002
    Signed By: N/A, hr = 0x80070002
    Product Name: Windows 7 Home Premium
    Architecture: 0x00000009
    Build lab: 7601.win7sp1_rtm.101119-1850
    TTS Error:
    Validation Diagnostic:
    Resolution Status: N/A

    Vista WgaER Data-->
    ThreatID(s): N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002

    Windows XP Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    File Exists: No
    Version: N/A, hr = 0x80070002
    WgaTray.exe Signed By: N/A, hr = 0x80070002
    WgaLogon.dll Signed By: N/A, hr = 0x80070002

    OGA Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002
    OGAExec.exe Signed By: N/A, hr = 0x80070002
    OGAAddin.dll Signed By: N/A, hr = 0x80070002

    OGA Data-->
    Office Status: 100 Genuine
    Microsoft Office Home and Student 2007 - 100 Genuine
    OGA Version: N/A, 0x80070002
    Signed By: N/A, hr = 0x80070002
    Office Diagnostics: 025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3

    Browser Data-->
    Proxy settings: N/A
    User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
    Default Browser: C:\Program Files (x86)\Mozilla Firefox\firefox.exe
    Download signed ActiveX controls: Prompt
    Download unsigned ActiveX controls: Disabled
    Run ActiveX controls and plug-ins: Allowed
    Initialize and script ActiveX controls not marked as safe: Disabled
    Allow scripting of Internet Explorer Webbrowser control: Disabled
    Active scripting: Allowed
    Script ActiveX controls marked as safe for scripting: Allowed

    File Scan Data-->

    Other data-->
    Office Details: <GenuineResults><MachineData><UGUID>{704FFDA2-4AA7-46A7-A993-80F976C668E0}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7601.2.00010300.1.0.003</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-FJH9F</PKey><PID>00359-OEM-8702911-70339</PID><PIDType>3</PIDType><SID>S-1-5-21-178759196-485615856-108012173</SID><SYSTEM><Manufacturer>Gigabyte Technology Co., Ltd.</Manufacturer><Model>GA-MA785GT-UD3H</Model></SYSTEM><BIOS><Manufacturer>Award Software International, Inc.</Manufacturer><Version>F3</Version><SMBIOSVersion major="2" minor="4"/><Date>20090916000000.000000+000</Date></BIOS><HWID>8B203E07018400FA</HWID><UserLCID>0C09</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>AUS Eastern Standard Time(GMT+10:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM/><GANotification/></MachineData><Software><Office><Result>100</Result><Products><Product GUID="{91120000-002F-0000-0000-0000000FF1CE}"><LegitResult>100</LegitResult><Name>Microsoft Office Home and Student 2007</Name><Ver>12</Ver><Val>5991E6963E5A738</Val><Hash>NP1kW2crD7x9EChpGTqiWOUjKhk=</Hash><Pid>81602-924-8810074-68589</Pid><PidType>1</PidType></Product></Products><Applications><App Id="16" Version="12" Result="100"/><App Id="18" Version="12" Result="100"/><App Id="1B" Version="12" Result="100"/><App Id="A1" Version="12" Result="100"/></Applications></Office></Software></GenuineResults> 

    Spsys.log Content: 0x80070002

    Licensing Data-->
    Software licensing service version: 6.1.7601.17514

    Name: Windows(R) 7, HomePremium edition
    Description: Windows Operating System - Windows(R) 7, OEM_COA_NSLP channel
    Activation ID: 586bc076-c93d-429a-afe5-a69fbc644e88
    Application ID: 55c92734-d682-4d71-983e-d6ec3f16059f
    Extended PID: 00359-00174-029-170339-02-3081-7601.0000-0572011
    Installation ID: 010586606480553500057233055621311386484281872890298263
    Processor Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88338
    Machine Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88339
    Use License URL: http://go.microsoft.com/fwlink/?LinkID=88341
    Product Key Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88340
    Partial Product Key: FJH9F
    License Status: Licensed
    Remaining Windows rearm count: 4
    Trusted time: 28/02/2011 1:50:35 AM

    Windows Activation Technologies-->
    HrOffline: 0x8004FE22
    HrOnline: N/A
    HealthStatus: 0x0000000000004000
    Event Time Stamp: 2:26:2011 11:44
    ActiveX: Registered, Version: 7.1.7600.16395
    Admin Service: Registered, Version: 7.1.7600.16395
    HealthStatus Bitmask Output:
    Tampered File: %systemroot%\system32\sppcommdlg.dll|sppcommdlg.dll.mui


    HWID Data-->
    HWID Hash Current: OAAAAAEABAABAAIAAAAEAAAAAQABAAEA6GFUY5bWVPIQM+CoGIiqknhSxLjqRWI9Ks/J+V5jKKw=

    OEM Activation 1.0 Data-->
    N/A

    OEM Activation 2.0 Data-->
    BIOS valid for OA 2.0: yes, but no SLIC table
    Windows marker version: N/A
    OEMID and OEMTableID Consistent: N/A
    BIOS Information:
      ACPI Table Name    OEMID Value    OEMTableID Value
      APIC            GBT           GBTUACPI
      FACP            GBT           GBTUACPI
      MCFG            GBT           GBTUACPI
      SSDT            PTLTD         POWERNOW
      TAMG            GBT           GBT   B0


    Sunday, February 27, 2011 2:51 PM
  • Tried reading through the CBS log.

    Have no idea what I am doing.

    Did the updated MGADiag report show anything useful?

    Tuesday, March 1, 2011 10:10 AM
  • "Seren_Fallstar" wrote in message news:b78adc35-e4e1-4497-ba66-d21fe810d22c...

    New report up

    Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 0x8004FE22
    Cached Online Validation Code: 0x0
    Windows Product Key: *****-*****-DCX8W-VVTBQ-FJH9F
    Windows Product Key Hash: 5dDEIjFOFhGuYpiYnPO1K4Ityvk=
    Windows Product ID: 00359-OEM-8702911-70339
    Windows Product ID Type: 3
    Windows License Type: OEM System Builder
    Windows OS version: 6.1.7601.2.00010300.1.0.003

    Windows Activation Technologies-->
    HrOffline: 0x8004FE22
    HrOnline: N/A
    HealthStatus: 0x0000000000004000
    Event Time Stamp: 2:26:2011 11:44
    ActiveX: Registered, Version: 7.1.7600.16395
    Admin Service: Registered, Version: 7.1.7600.16395
    HealthStatus Bitmask Output:
    Tampered File: %systemroot%\system32\sppcommdlg.dll|sppcommdlg.dll.mui




    Sorry - must have missed this yesterday!
    No - no changes (but then I wouldn't have expected any, since the indication is that the problem is with the registry, rather than a file.
     
    The tamper happened probably sometime between the 23-26th Feb,  so it may be worth either uninstalling SP1 or using System Restore to go back to the latest point before that.
     
    --


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    Tuesday, March 1, 2011 10:37 AM
    Moderator
  • As to the system restore point, use the checkbox on the SR screen to 'show more restore points'.
    Colin Barnhorst Windows 7 Ultimate x64 on DIY with 6GB ram.
    Tuesday, March 1, 2011 3:19 PM
    Answerer
  • Tried uninstalling the updates (including the service pack) on the same day as the service pack. No luck. The report still comes up with the tamper file

    Also tried the system restore but an error came up and it was cancelled. Any other suggestion or would I have to do a clean install?

     

    Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 0x8004FE22
    Cached Online Validation Code: 0x0
    Windows Product Key: *****-*****-DCX8W-VVTBQ-FJH9F
    Windows Product Key Hash: 5dDEIjFOFhGuYpiYnPO1K4Ityvk=
    Windows Product ID: 00359-OEM-8702911-70339
    Windows Product ID Type: 3
    Windows License Type: OEM System Builder
    Windows OS version: 6.1.7600.2.00010300.0.0.003
    ID: {201ADA6E-A6C4-41C4-B246-D746F79E827C}(3)
    Is Admin: Yes
    TestCab: 0x0
    LegitcheckControl ActiveX: N/A, hr = 0x80070002
    Signed By: N/A, hr = 0x80070002
    Product Name: Windows 7 Home Premium
    Architecture: 0x00000009
    Build lab: 7600.win7_gdr.101026-1503
    TTS Error:
    Validation Diagnostic:
    Resolution Status: N/A

    Vista WgaER Data-->
    ThreatID(s): N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002

    Windows XP Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    File Exists: No
    Version: N/A, hr = 0x80070002
    WgaTray.exe Signed By: N/A, hr = 0x80070002
    WgaLogon.dll Signed By: N/A, hr = 0x80070002

    OGA Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002
    OGAExec.exe Signed By: N/A, hr = 0x80070002
    OGAAddin.dll Signed By: N/A, hr = 0x80070002

    OGA Data-->
    Office Status: 100 Genuine
    Microsoft Office Home and Student 2007 - 100 Genuine
    OGA Version: N/A, 0x80070002
    Signed By: N/A, hr = 0x80070002
    Office Diagnostics: 025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3

    Browser Data-->
    Proxy settings: N/A
    User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
    Default Browser: C:\Program Files (x86)\Mozilla Firefox\firefox.exe
    Download signed ActiveX controls: Prompt
    Download unsigned ActiveX controls: Disabled
    Run ActiveX controls and plug-ins: Allowed
    Initialize and script ActiveX controls not marked as safe: Disabled
    Allow scripting of Internet Explorer Webbrowser control: Disabled
    Active scripting: Allowed
    Script ActiveX controls marked as safe for scripting: Allowed

    File Scan Data-->

    Other data-->
    Office Details: <GenuineResults><MachineData><UGUID>{201ADA6E-A6C4-41C4-B246-D746F79E827C}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7600.2.00010300.0.0.003</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-FJH9F</PKey><PID>00359-OEM-8702911-70339</PID><PIDType>3</PIDType><SID>S-1-5-21-178759196-485615856-108012173</SID><SYSTEM><Manufacturer>Gigabyte Technology Co., Ltd.</Manufacturer><Model>GA-MA785GT-UD3H</Model></SYSTEM><BIOS><Manufacturer>Award Software International, Inc.</Manufacturer><Version>F3</Version><SMBIOSVersion major="2" minor="4"/><Date>20090916000000.000000+000</Date></BIOS><HWID>8B203E07018400FA</HWID><UserLCID>0C09</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>AUS Eastern Standard Time(GMT+10:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM/><GANotification/></MachineData><Software><Office><Result>100</Result><Products><Product GUID="{91120000-002F-0000-0000-0000000FF1CE}"><LegitResult>100</LegitResult><Name>Microsoft Office Home and Student 2007</Name><Ver>12</Ver><Val>5991E6963E5A738</Val><Hash>NP1kW2crD7x9EChpGTqiWOUjKhk=</Hash><Pid>81602-924-8810074-68589</Pid><PidType>1</PidType></Product></Products><Applications><App Id="16" Version="12" Result="100"/><App Id="18" Version="12" Result="100"/><App Id="1B" Version="12" Result="100"/><App Id="A1" Version="12" Result="100"/></Applications></Office></Software></GenuineResults> 

    Spsys.log Content: 0x80070002

    Licensing Data-->
    Software licensing service version: 6.1.7600.16385

    Name: Windows(R) 7, HomePremium edition
    Description: Windows Operating System - Windows(R) 7, OEM_COA_NSLP channel
    Activation ID: 586bc076-c93d-429a-afe5-a69fbc644e88
    Application ID: 55c92734-d682-4d71-983e-d6ec3f16059f
    Extended PID: 00359-00174-029-170339-02-3081-7601.0000-0572011
    Installation ID: 010586606480553500057233055621311386484281872890298263
    Processor Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88338
    Machine Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88339
    Use License URL: http://go.microsoft.com/fwlink/?LinkID=88341
    Product Key Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88340
    Partial Product Key: FJH9F
    License Status: Licensed
    Remaining Windows rearm count: 3
    Trusted time: 5/03/2011 2:57:14 AM

    Windows Activation Technologies-->
    HrOffline: 0x8004FE22
    HrOnline: N/A
    HealthStatus: 0x0000000000004000
    Event Time Stamp: 3:3:2011 01:51
    ActiveX: Registered, Version: 7.1.7600.16395
    Admin Service: Registered, Version: 7.1.7600.16395
    HealthStatus Bitmask Output:
    Tampered File: %systemroot%\system32\sppcommdlg.dll|sppcommdlg.dll.mui


    HWID Data-->
    HWID Hash Current: OAAAAAEABAABAAIAAAAEAAAAAQABAAEA6GFUY5bWVPIQM+CoGIiqknhSxLjqRWI9Ks/J+V5jKKw=

    OEM Activation 1.0 Data-->
    N/A

    OEM Activation 2.0 Data-->
    BIOS valid for OA 2.0: yes, but no SLIC table
    Windows marker version: N/A
    OEMID and OEMTableID Consistent: N/A
    BIOS Information:
      ACPI Table Name    OEMID Value    OEMTableID Value
      APIC            GBT           GBTUACPI
      FACP            GBT           GBTUACPI
      MCFG            GBT           GBTUACPI
      SSDT            PTLTD         POWERNOW
      TAMG            GBT           GBT   B0


    Friday, March 4, 2011 3:55 PM
  • "Seren_Fallstar" wrote in message news:a58298d2-c3bb-4118-80a6-95cd1905cdf2...

    Tried uninstalling the updates (including the service pack) on the same day as the service pack. No luck. The report still comes up with the tamper file

    Also tried the system restore but an error came up and it was cancelled. Any other suggestion or would I have to do a clean install?

     

    Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 0x8004FE22
    Cached Online Validation Code: 0x0
    Windows Product Key: *****-*****-DCX8W-VVTBQ-FJH9F
    Windows Product Key Hash: 5dDEIjFOFhGuYpiYnPO1K4Ityvk=
    Windows Product ID: 00359-OEM-8702911-70339
    Windows Product ID Type: 3
    Windows License Type: OEM System Builder
    Windows OS version: 6.1.7600.2.00010300.0.0.003


     


    Have you been using any kind of Registry Cleaner, or Optimiser? If so, then try reverting any changes it's made.
     
    Other than that, probably your best bet is to do a repair install - see here for instructions....

    --


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    Friday, March 4, 2011 7:11 PM
    Moderator
  • Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 0
    Cached Online Validation Code: 0x0
    Windows Product Key: *****-*****-DCX8W-VVTBQ-FJH9F
    Windows Product Key Hash: 5dDEIjFOFhGuYpiYnPO1K4Ityvk=
    Windows Product ID: 00359-OEM-8702911-70339
    Windows Product ID Type: 3
    Windows License Type: OEM System Builder
    Windows OS version: 6.1.7600.2.00010300.0.0.003
    ID: {201ADA6E-A6C4-41C4-B246-D746F79E827C}(3)
    Is Admin: Yes
    TestCab: 0x0
    LegitcheckControl ActiveX: N/A, hr = 0x80070002
    Signed By: N/A, hr = 0x80070002
    Product Name: Windows 7 Home Premium
    Architecture: 0x00000009
    Build lab: 7600.win7_rtm.090713-1255
    TTS Error:
    Validation Diagnostic:
    Resolution Status: N/A

    Vista WgaER Data-->
    ThreatID(s): N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002

    Windows XP Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    File Exists: No
    Version: N/A, hr = 0x80070002
    WgaTray.exe Signed By: N/A, hr = 0x80070002
    WgaLogon.dll Signed By: N/A, hr = 0x80070002

    OGA Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002
    OGAExec.exe Signed By: N/A, hr = 0x80070002
    OGAAddin.dll Signed By: N/A, hr = 0x80070002

    OGA Data-->
    Office Status: 100 Genuine
    Microsoft Office Home and Student 2007 - 100 Genuine
    OGA Version: N/A, 0x80070002
    Signed By: N/A, hr = 0x80070002
    Office Diagnostics: 025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3

    Browser Data-->
    Proxy settings: N/A
    User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
    Default Browser: C:\Program Files (x86)\Mozilla Firefox\firefox.exe
    Download signed ActiveX controls: Prompt
    Download unsigned ActiveX controls: Disabled
    Run ActiveX controls and plug-ins: Allowed
    Initialize and script ActiveX controls not marked as safe: Disabled
    Allow scripting of Internet Explorer Webbrowser control: Disabled
    Active scripting: Allowed
    Script ActiveX controls marked as safe for scripting: Allowed

    File Scan Data-->
    File Mismatch: C:\Windows\system32\wat\watadminsvc.exe[7.1.7600.16395], Hr = 0x80092003
    File Mismatch: C:\Windows\system32\wat\watux.exe[7.1.7600.16395], Hr = 0x80092003

    Other data-->
    Office Details: <GenuineResults><MachineData><UGUID>{201ADA6E-A6C4-41C4-B246-D746F79E827C}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7600.2.00010300.0.0.003</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-FJH9F</PKey><PID>00359-OEM-8702911-70339</PID><PIDType>3</PIDType><SID>S-1-5-21-178759196-485615856-108012173</SID><SYSTEM><Manufacturer>Gigabyte Technology Co., Ltd.</Manufacturer><Model>GA-MA785GT-UD3H</Model></SYSTEM><BIOS><Manufacturer>Award Software International, Inc.</Manufacturer><Version>F3</Version><SMBIOSVersion major="2" minor="4"/><Date>20090916000000.000000+000</Date></BIOS><HWID>8B203E07018400FA</HWID><UserLCID>0C09</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>AUS Eastern Standard Time(GMT+10:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM/><GANotification/></MachineData><Software><Office><Result>100</Result><Products><Product GUID="{91120000-002F-0000-0000-0000000FF1CE}"><LegitResult>100</LegitResult><Name>Microsoft Office Home and Student 2007</Name><Ver>12</Ver><Val>5991E6963E5A738</Val><Hash>NP1kW2crD7x9EChpGTqiWOUjKhk=</Hash><Pid>81602-924-8810074-68589</Pid><PidType>1</PidType></Product></Products><Applications><App Id="16" Version="12" Result="100"/><App Id="18" Version="12" Result="100"/><App Id="1B" Version="12" Result="100"/><App Id="A1" Version="12" Result="100"/></Applications></Office></Software></GenuineResults> 

    Spsys.log Content: 0x80070002

    Licensing Data-->
    Software licensing service version: 6.1.7600.16385

    Name: Windows(R) 7, HomePremium edition
    Description: Windows Operating System - Windows(R) 7, OEM_COA_NSLP channel
    Activation ID: 586bc076-c93d-429a-afe5-a69fbc644e88
    Application ID: 55c92734-d682-4d71-983e-d6ec3f16059f
    Extended PID: 00359-00174-029-170339-02-3081-7600.0000-0652011
    Installation ID: 004453713636826340401421531491037721442296542515730871
    Processor Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88338
    Machine Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88339
    Use License URL: http://go.microsoft.com/fwlink/?LinkID=88341
    Product Key Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88340
    Partial Product Key: FJH9F
    License Status: Licensed
    Remaining Windows rearm count: 3
    Trusted time: 6/03/2011 7:49:17 AM

    Windows Activation Technologies-->
    HrOffline: 0x00000000
    HrOnline: 0xC004C532
    HealthStatus: 0x0000000000000000
    Event Time Stamp: 3:6:2011 05:31
    ActiveX: Registered, Version: 7.1.7600.16395
    Admin Service: Registered, Version: 7.1.7600.16395
    HealthStatus Bitmask Output:


    HWID Data-->
    HWID Hash Current: OAAAAAEABAABAAIAAAAEAAAAAQABAAEA6GFUY5bW4KgYiFTyEDOqksS4eFLqRWI9Ks/J+V5jKKw=

    OEM Activation 1.0 Data-->
    N/A

    OEM Activation 2.0 Data-->
    BIOS valid for OA 2.0: yes, but no SLIC table
    Windows marker version: N/A
    OEMID and OEMTableID Consistent: N/A
    BIOS Information:
      ACPI Table Name    OEMID Value    OEMTableID Value
      APIC            GBT           GBTUACPI
      FACP            GBT           GBTUACPI
      MCFG            GBT           GBTUACPI
      SSDT            PTLTD         POWERNOW
      TAMG            GBT           GBT   B0


    Here is the new log.

    Didn't run a registery cleaner but did run the repair/upgrade install as per article.

    Looks like it got rid of the tamper file warning but now I've got two file mismatches.

    The only noteworthy during the repair install was it said that .NET framework 4 was damaged and needed to be repaired.

    So that could have possible been the issue.

    Saturday, March 5, 2011 8:52 PM
  • "Seren_Fallstar" wrote in message news:2cf5ecba-e7bb-42af-9c6a-572ea817937a...

    Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 0
    Cached Online Validation Code: 0x0
    Windows Product Key: *****-*****-DCX8W-VVTBQ-FJH9F
    Windows Product Key Hash: 5dDEIjFOFhGuYpiYnPO1K4Ityvk=
    Windows Product ID: 00359-OEM-8702911-70339
    Windows Product ID Type: 3
    Windows License Type: OEM System Builder
    Windows OS version: 6.1.7600.2.00010300.0.0.003



    File Scan Data-->
    File Mismatch: C:\Windows\system32\wat\watadminsvc.exe[7.1.7600.16395], Hr = 0x80092003
    File Mismatch: C:\Windows\system32\wat\watux.exe[7.1.7600.16395], Hr = 0x80092003



    Here is the new log.

    Didn't run a registery cleaner but did run the repair/upgrade install as per article.

    Looks like it got rid of the tamper file warning but now I've got two file mismatches.

    The only noteworthy during the repair install was it said that .NET framework 4 was damaged and needed to be repaired.

    So that could have possible been the issue.


    The mismatches aren't too much of a problem - download and run the WAT update - KB971033 from here:-
     
     
    That should clear the mismatches
    The go and manually validate at http://www.microsoft.com/genuine/validate
    Hopefully, that will clear the last of your errors.
     
    Post a new MGADiag report.
     
    Then download and install Belarc Advisor (www.belarc.com )  and run it, to check that all current security updates are properly installed.
    Then you should be good to go!
     

    --


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    Sunday, March 6, 2011 2:28 AM
    Moderator
  • Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 0
    Cached Online Validation Code: 0x0
    Windows Product Key: *****-*****-DCX8W-VVTBQ-FJH9F
    Windows Product Key Hash: 5dDEIjFOFhGuYpiYnPO1K4Ityvk=
    Windows Product ID: 00359-OEM-8702911-70339
    Windows Product ID Type: 3
    Windows License Type: OEM System Builder
    Windows OS version: 6.1.7600.2.00010300.0.0.003
    ID: {F4C88CDD-D47B-4FB4-AD98-79C4631510FF}(1)
    Is Admin: Yes
    TestCab: 0x0
    LegitcheckControl ActiveX: N/A, hr = 0x80070002
    Signed By: N/A, hr = 0x80070002
    Product Name: Windows 7 Home Premium
    Architecture: 0x00000009
    Build lab: 7600.win7_rtm.090713-1255
    TTS Error:
    Validation Diagnostic:
    Resolution Status: N/A

    Vista WgaER Data-->
    ThreatID(s): N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002

    Windows XP Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    File Exists: No
    Version: N/A, hr = 0x80070002
    WgaTray.exe Signed By: N/A, hr = 0x80070002
    WgaLogon.dll Signed By: N/A, hr = 0x80070002

    OGA Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002
    OGAExec.exe Signed By: N/A, hr = 0x80070002
    OGAAddin.dll Signed By: N/A, hr = 0x80070002

    OGA Data-->
    Office Status: 100 Genuine
    Microsoft Office Home and Student 2007 - 100 Genuine
    OGA Version: N/A, 0x80070002
    Signed By: N/A, hr = 0x80070002
    Office Diagnostics: 025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3

    Browser Data-->
    Proxy settings: N/A
    User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
    Default Browser: C:\Program Files (x86)\Mozilla Firefox\firefox.exe
    Download signed ActiveX controls: Prompt
    Download unsigned ActiveX controls: Disabled
    Run ActiveX controls and plug-ins: Allowed
    Initialize and script ActiveX controls not marked as safe: Disabled
    Allow scripting of Internet Explorer Webbrowser control: Disabled
    Active scripting: Allowed
    Script ActiveX controls marked as safe for scripting: Allowed

    File Scan Data-->

    Other data-->
    Office Details: <GenuineResults><MachineData><UGUID>{F4C88CDD-D47B-4FB4-AD98-79C4631510FF}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7600.2.00010300.0.0.003</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-FJH9F</PKey><PID>00359-OEM-8702911-70339</PID><PIDType>3</PIDType><SID>S-1-5-21-178759196-485615856-108012173</SID><SYSTEM><Manufacturer>Gigabyte Technology Co., Ltd.</Manufacturer><Model>GA-MA785GT-UD3H</Model></SYSTEM><BIOS><Manufacturer>Award Software International, Inc.</Manufacturer><Version>F3</Version><SMBIOSVersion major="2" minor="4"/><Date>20090916000000.000000+000</Date></BIOS><HWID>8B203E07018400FA</HWID><UserLCID>0C09</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>AUS Eastern Standard Time(GMT+10:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM/><GANotification/></MachineData><Software><Office><Result>100</Result><Products><Product GUID="{91120000-002F-0000-0000-0000000FF1CE}"><LegitResult>100</LegitResult><Name>Microsoft Office Home and Student 2007</Name><Ver>12</Ver><Val>5991E6963E5A738</Val><Hash>NP1kW2crD7x9EChpGTqiWOUjKhk=</Hash><Pid>81602-924-8810074-68589</Pid><PidType>1</PidType></Product></Products><Applications><App Id="16" Version="12" Result="100"/><App Id="18" Version="12" Result="100"/><App Id="1B" Version="12" Result="100"/><App Id="A1" Version="12" Result="100"/></Applications></Office></Software></GenuineResults> 

    Spsys.log Content: 0x80070002

    Licensing Data-->
    Software licensing service version: 6.1.7600.16385

    Name: Windows(R) 7, HomePremium edition
    Description: Windows Operating System - Windows(R) 7, OEM_COA_NSLP channel
    Activation ID: 586bc076-c93d-429a-afe5-a69fbc644e88
    Application ID: 55c92734-d682-4d71-983e-d6ec3f16059f
    Extended PID: 00359-00174-029-170339-02-3081-7600.0000-0652011
    Installation ID: 004453713636826340401421531491037721442296542515730871
    Processor Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88338
    Machine Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88339
    Use License URL: http://go.microsoft.com/fwlink/?LinkID=88341
    Product Key Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88340
    Partial Product Key: FJH9F
    License Status: Licensed
    Remaining Windows rearm count: 3
    Trusted time: 6/03/2011 2:35:20 PM

    Windows Activation Technologies-->
    HrOffline: 0x00000000
    HrOnline: 0x00000000
    HealthStatus: 0x0000000000000000
    Event Time Stamp: 3:6:2011 14:34
    ActiveX: Registered, Version: 7.1.7600.16395
    Admin Service: Registered, Version: 7.1.7600.16395
    HealthStatus Bitmask Output:


    HWID Data-->
    HWID Hash Current: OAAAAAEABAABAAIAAAAEAAAAAQABAAEA6GFUY5bW4KgYiFTyEDOqksS4eFLqRWI9Ks/J+V5jKKw=

    OEM Activation 1.0 Data-->
    N/A

    OEM Activation 2.0 Data-->
    BIOS valid for OA 2.0: yes, but no SLIC table
    Windows marker version: N/A
    OEMID and OEMTableID Consistent: N/A
    BIOS Information:
      ACPI Table Name    OEMID Value    OEMTableID Value
      APIC            GBT           GBTUACPI
      FACP            GBT           GBTUACPI
      MCFG            GBT           GBTUACPI
      SSDT            PTLTD         POWERNOW
      TAMG            GBT           GBT   B0


    Looks like we have a winner.
    I'm running Belarc Advisor now and edit post with results.

    EDIT: I've run Belarc Advisor, it says I'm missing 38 updates for windows.  Should I re-install manually or should I use the windows updater and then run Belarc Advisor again?

    Sunday, March 6, 2011 3:37 AM
  • "Seren_Fallstar" wrote in message news:ce0f6b8f-3a30-44fd-aa58-8b1a7dbc0f9d...

    Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 0
    Cached Online Validation Code: 0x0
    Windows Product Key: *****-*****-DCX8W-VVTBQ-FJH9F
    Windows Product Key Hash: 5dDEIjFOFhGuYpiYnPO1K4Ityvk=
    Windows Product ID: 00359-OEM-8702911-70339
    Windows Product ID Type: 3
    Windows License Type: OEM System Builder
    Windows OS version: 6.1.7600.2.00010300.0.0.003




    Looks like we have a winner.
    I'm running Belarc Advisor now and edit post with results.

    EDIT: I've run Belarc Advisor, it says I'm missing 38 updates for windows.  Should I re-install manually or should I use the windows updater and then run Belarc Advisor again?

    Yep - the report looks good to me, too :)
     
    Use Windows Updates - it should work fine.
    Once you have all the Critical and Important updates installed, run Belarc again to check that they're in, and whether you've missed anything.
    Then you can install the other updates :)
    No need to post any more reports - either MGADiag, or Belarc - unless you hit a snag.
     
     
     

    --


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    Sunday, March 6, 2011 3:59 AM
    Moderator