locked
0x8004fe21 Error RRS feed

  • Question

  • I am having some issues for a while now with the Windows Activation Technologies. I got my computer last year with Windows 7 Home Premium 64 bit installed on it. The copy is genuine and I have been receiving and error 0x8004fe21 constantly. Please help!

    I see a file mismatch and I would like to know what it means.

    MGA Diagnostics Report:

    Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 0x8004FE21
    Cached Online Validation Code: 0x0
    Windows Product Key: *****-*****-*****-*****-F79VJ
    Windows Product Key Hash: BsyeTs3AI0Gy5iyrkPkpJBUA6x4=
    Windows Product ID: 00359-OEM-8802181-71137
    Windows Product ID Type: 3
    Windows License Type: OEM System Builder
    Windows OS version: 6.1.7601.2.00010300.1.0.003
    ID: {B23F42C9-A107-4FAC-BF7E-A261FD05F283}(3)
    Is Admin: Yes
    TestCab: 0x0
    LegitcheckControl ActiveX: N/A, hr = 0x80070002
    Signed By: N/A, hr = 0x80070002
    Product Name: Windows 7 Home Premium
    Architecture: 0x00000009
    Build lab: 7601.win7sp1_gdr.130318-1533
    TTS Error: 
    Validation Diagnostic: 
    Resolution Status: N/A

    Vista WgaER Data-->
    ThreatID(s): N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002

    Windows XP Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    File Exists: No
    Version: N/A, hr = 0x80070002
    WgaTray.exe Signed By: N/A, hr = 0x80070002
    WgaLogon.dll Signed By: N/A, hr = 0x80070002

    OGA Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002
    OGAExec.exe Signed By: N/A, hr = 0x80070002
    OGAAddin.dll Signed By: N/A, hr = 0x80070002

    OGA Data-->
    Office Status: 109 N/A
    OGA Version: N/A, 0x80070002
    Signed By: N/A, hr = 0x80070002
    Office Diagnostics: 025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3

    Browser Data-->
    Proxy settings: N/A
    User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
    Default Browser: C:\Users\RobV\AppData\Local\Google\Chrome\Application\chrome.exe
    Download signed ActiveX controls: Prompt
    Download unsigned ActiveX controls: Disabled
    Run ActiveX controls and plug-ins: Allowed
    Initialize and script ActiveX controls not marked as safe: Disabled
    Allow scripting of Internet Explorer Webbrowser control: Disabled
    Active scripting: Allowed
    Script ActiveX controls marked as safe for scripting: Allowed

    File Scan Data-->
    File Mismatch: C:\Windows\system32\slc.dll[Hr = 0x800b0100]

    Other data-->
    Office Details: <GenuineResults><MachineData><UGUID>{B23F42C9-A107-4FAC-BF7E-A261FD05F283}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7601.2.00010300.1.0.003</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-F79VJ</PKey><PID>00359-OEM-8802181-71137</PID><PIDType>3</PIDType><SID>S-1-5-21-1677731179-2014356099-367847718</SID><SYSTEM><Manufacturer>Gigabyte Technology Co., Ltd.</Manufacturer><Model>To be filled by O.E.M.</Model></SYSTEM><BIOS><Manufacturer>American Megatrends Inc.</Manufacturer><Version>F5</Version><SMBIOSVersion major="2" minor="7"/><Date>20120309000000.000000+000</Date></BIOS><HWID>DA513B07018400FE</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Eastern Standard Time(GMT-05:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM/><GANotification/></MachineData><Software><Office><Result>109</Result><Products/><Applications/></Office></Software></GenuineResults>  

    Spsys.log Content: 0x80070002

    Licensing Data-->
    Software licensing service version: 6.1.7601.17514

    Name: Windows(R) 7, HomePremium edition
    Description: Windows Operating System - Windows(R) 7, OEM_COA_NSLP channel
    Activation ID: 9f83d90f-a151-4665-ae69-30b3f63ec659
    Application ID: 55c92734-d682-4d71-983e-d6ec3f16059f
    Extended PID: 00359-00176-021-871137-02-1033-7601.0000-3582012
    Installation ID: 007813784076880612399772795874966353811336922632780874
    Processor Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88338
    Machine Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88339
    Use License URL: http://go.microsoft.com/fwlink/?LinkID=88341
    Product Key Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88340
    Partial Product Key: F79VJ
    License Status: Licensed
    Remaining Windows rearm count: 1
    Trusted time: 7/14/2013 4:26:22 PM

    Windows Activation Technologies-->
    HrOffline: 0x8004FE21
    HrOnline: N/A
    HealthStatus: 0x0000000000000100
    Event Time Stamp: 7:13:2013 21:38
    ActiveX: Registered, Version: 7.1.7600.16395
    Admin Service: Registered, Version: 7.1.7600.16395
    HealthStatus Bitmask Output:
    Tampered File: %systemroot%\system32\slc.dll|slc.dll.mui


    HWID Data-->
    HWID Hash Current: NgAAAAEAAQABAAIAAQADAAAAAwABAAEAHKIQSXrAcu6Ics5wrkbuFpC0freA2pgRDOa0XZZj

    OEM Activation 1.0 Data-->
    N/A

    OEM Activation 2.0 Data-->
    BIOS valid for OA 2.0: yes, but no SLIC table
    Windows marker version: N/A
    OEMID and OEMTableID Consistent: N/A
    BIOS Information: 
      ACPI Table Name OEMID Value OEMTableID Value
      APIC ALASKA A M I
      FACP ALASKA A M I
      HPET ALASKA A M I
      MCFG ALASKA A M I
      SSDT SataRe SataTabl
      SSDT SataRe SataTabl
      SSDT SataRe SataTabl
      BGRT ALASKA A M I
    Thursday, July 18, 2013 5:47 PM

Answers

  • Please run a full CHKDSK and SFC scan....

     

    Click on Start > All Programs > Accessories

    Right-click on the Command Prompt entry

    Select Run as Administrator and accept the UAC prompt - the Elevated Command Prompt window should pop up.

     

    At the Command prompt, type

     

    CHKDSK C: /R

     

    and hit the Enter key.

    You will be told that the drive is locked,

    and the CHKDSK will run at he next boot - hit the Y key, press Enter, and then reboot.

     

    The CHKDSK will take a few hours depending on the size of the drive, so be patient!

     

    After the CHKDSK has run, Windows should boot normally (possibly after a second auto-reboot) -

    then run the SFC.

     

    SFC -System File Checker - Instructions

    Click on Start > All Programs > Accessories

    Right-click on the Command Prompt entry

    Select Run as Administrator and accept the UAC prompt - the Elevated Command Prompt window should pop up.

     

    At the Command prompt, type

     

    SFC /SCANNOW

     

    and hit the Enter key

     

    Wait for the scan to finish - make a note of any error messages - and then reboot.

     

     

    Copy the CBS.log file created (C:\Windows\Logs\CBS\CBS.log) to your desktop (you can't manipulate it directly) and then compress the copy and upload it to your SkyDrive Public folder (http://skydrive.live.com ) and post a link to it so that I can take a look.

     

    Post a new MGADiag report with details of any error messages encountered.

    Tampered File: %systemroot%\system32\slc.dll|slc.dll.mui


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    No - I do not work for Microsoft, or any of its contractors.

    Sunday, July 21, 2013 9:10 AM
    Moderator
  • Bah!

    Forgot the mandatory /F switch, is all.....

    Try these commands

    Takeown /F C:\Windows\WinSxS\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb\*.*

    Takeown /F C:\Windows\WinSxS\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a\*.*

    ICACLS C:\Windows\WinSxS\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb\*.* /grant Administrators:(F) "NT SERVICE\TrustedInstaller":(F) SYSTEM:(RX) USERS:(RX)

    ICACLS C:\Windows\WinSxS\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a\*.* /grant Administrators:(F) "NT SERVICE\TrustedInstaller":(F) SYSTEM:(RX) USERS:(RX)


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    No - I do not work for Microsoft, or any of its contractors.

    Sunday, July 28, 2013 2:27 PM
    Moderator
  • Good - the SFC scan threw the following results....

    	Line 77183: 2013-07-28 12:43:16, Info                  CSI    00000325 [SR] Repairing 8 components
    	Line 77184: 2013-07-28 12:43:16, Info                  CSI    00000326 [SR] Beginning Verify and Repair transaction
    	Line 77185: 2013-07-28 12:43:16, Info                  CSI    00000327 [SR] Cannot repair member file [l:22{11}]"bootres.dll" of Microsoft-Windows-BootRes, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, file cannot be checked
    	Line 77188: 2013-07-28 12:43:16, Info                  CSI    00000329 [SR] Repairing corrupted file [ml:520{260},l:46{23}]"\??\C:\Windows\System32"\[l:22{11}]"uxtheme.dll" from store
    	Line 77191: 2013-07-28 12:43:16, Info                  CSI    0000032b [SR] Repairing corrupted file [ml:48{24},l:46{23}]"\??\C:\Windows\SysWOW64"\[l:14{7}]"slc.dll" from store
    	Line 77194: 2013-07-28 12:43:16, Info                  CSI    0000032d [SR] Repairing corrupted file [ml:520{260},l:46{23}]"\??\C:\Windows\System32"\[l:14{7}]"slc.dll" from store
    	Line 77197: 2013-07-28 12:43:16, Info                  CSI    0000032f [SR] Repairing corrupted file [ml:48{24},l:46{23}]"\??\C:\Windows\SysWOW64"\[l:22{11}]"uxtheme.dll" from store
    	Line 77198: 2013-07-28 12:43:16, Info                  CSI    00000330 [SR] Cannot repair member file [l:22{11}]"bootres.dll" of Microsoft-Windows-BootRes, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, file cannot be checked
    	Line 77199: 2013-07-28 12:43:16, Info                  CSI    00000331 [SR] This component was referenced by [l:242{121}]"Microsoft-Windows-Client-Features-Package~31bf3856ad364e35~amd64~~6.1.7601.17514.Microsoft-Windows-Client-Features-Update"
    	Line 77202: 2013-07-28 12:43:16, Info                  CSI    00000333 [SR] Repairing corrupted file [ml:48{24},l:46{23}]"\??\C:\Windows\SysWOW64"\[l:22{11}]"themeui.dll" from store
    	Line 77205: 2013-07-28 12:43:16, Info                  CSI    00000335 [SR] Repairing corrupted file [ml:520{260},l:46{23}]"\??\C:\Windows\System32"\[l:22{11}]"themeui.dll" from store
    	Line 77208: 2013-07-28 12:43:17, Info                  CSI    00000337 [SR] Repairing corrupted file [ml:520{260},l:46{23}]"\??\C:\Windows\System32"\[l:32{16}]"themeservice.dll" from store
    	Line 77225: 2013-07-28 12:43:17, Info                  CSI    00000339 [SR] Repair complete
    

    It looks to me as if there's one more file that requires the same treatment.

    Please run the following commands, and we'll check...

    ICACLS C:\Windows\winsxs\amd64_microsoft-windows-bootres_31bf3856ad364e35_6.1.7600.16385_none_9b11b2ca9ba1db4b\bootres.dll

    ICACLS C:\Windows\System32\bootres.dll

    post the results.


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    No - I do not work for Microsoft, or any of its contractors.

    Sunday, July 28, 2013 7:53 PM
    Moderator
  • OK -run the following commands in an Elevated Command Prompt, and then reboot and run another MGADiag report.

    Post the results.

    Takeown /F C:\Windows\System32\bootres.dll

    ICACLS C:\Windows\System32\bootres.dll /grant Administrators:(RX) "NT SERVICE\TrustedInstaller":(F) SYSTEM:(RX) USERS:(RX)

    TAKEOWN /F C:\Windows\winsxs\amd64_microsoft-windows-bootres_31bf3856ad364e35_6.1.7600.16385_none_9b11b2ca9ba1db4b\bootres.dll

    ICACLS C:\Windows\winsxs\amd64_microsoft-windows-bootres_31bf3856ad364e35_6.1.7600.16385_none_9b11b2ca9ba1db4b\bootres.dll /grant Administrators:(RX) "NT SERVICE\TrustedInstaller":(F) SYSTEM:(RX) USERS:(RX)


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    No - I do not work for Microsoft, or any of its contractors.

    • Marked as answer by RobVaivodiss Sunday, July 28, 2013 10:51 PM
    Sunday, July 28, 2013 9:28 PM
    Moderator

All replies

  • Please run a full CHKDSK and SFC scan....

     

    Click on Start > All Programs > Accessories

    Right-click on the Command Prompt entry

    Select Run as Administrator and accept the UAC prompt - the Elevated Command Prompt window should pop up.

     

    At the Command prompt, type

     

    CHKDSK C: /R

     

    and hit the Enter key.

    You will be told that the drive is locked,

    and the CHKDSK will run at he next boot - hit the Y key, press Enter, and then reboot.

     

    The CHKDSK will take a few hours depending on the size of the drive, so be patient!

     

    After the CHKDSK has run, Windows should boot normally (possibly after a second auto-reboot) -

    then run the SFC.

     

    SFC -System File Checker - Instructions

    Click on Start > All Programs > Accessories

    Right-click on the Command Prompt entry

    Select Run as Administrator and accept the UAC prompt - the Elevated Command Prompt window should pop up.

     

    At the Command prompt, type

     

    SFC /SCANNOW

     

    and hit the Enter key

     

    Wait for the scan to finish - make a note of any error messages - and then reboot.

     

     

    Copy the CBS.log file created (C:\Windows\Logs\CBS\CBS.log) to your desktop (you can't manipulate it directly) and then compress the copy and upload it to your SkyDrive Public folder (http://skydrive.live.com ) and post a link to it so that I can take a look.

     

    Post a new MGADiag report with details of any error messages encountered.

    Tampered File: %systemroot%\system32\slc.dll|slc.dll.mui


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    No - I do not work for Microsoft, or any of its contractors.

    Sunday, July 21, 2013 9:10 AM
    Moderator
  • SFC scan could not be completed due to Windows Resource Protection.

    Here is my CBS.log: https://skydrive.live.com/redir?resid=6AD4F53A4C212A7E!212&authkey=!ACX6tLJdMJyEXfU

    New MFADiag still has File Mismatch: C:\Windows\system32\slc.dll[Hr = 0x800b0100]

    Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 0x8004FE21
    Cached Online Validation Code: 0x0
    Windows Product Key: *****-*****-*****-*****-F79VJ
    Windows Product Key Hash: BsyeTs3AI0Gy5iyrkPkpJBUA6x4=
    Windows Product ID: 00359-OEM-8802181-71137
    Windows Product ID Type: 3
    Windows License Type: OEM System Builder
    Windows OS version: 6.1.7601.2.00010300.1.0.003
    ID: {B23F42C9-A107-4FAC-BF7E-A261FD05F283}(3)
    Is Admin: Yes
    TestCab: 0x0
    LegitcheckControl ActiveX: N/A, hr = 0x80070002
    Signed By: N/A, hr = 0x80070002
    Product Name: Windows 7 Home Premium
    Architecture: 0x00000009
    Build lab: 7601.win7sp1_gdr.130318-1533
    TTS Error: 
    Validation Diagnostic: 
    Resolution Status: N/A

    Vista WgaER Data-->
    ThreatID(s): N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002

    Windows XP Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    File Exists: No
    Version: N/A, hr = 0x80070002
    WgaTray.exe Signed By: N/A, hr = 0x80070002
    WgaLogon.dll Signed By: N/A, hr = 0x80070002

    OGA Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002
    OGAExec.exe Signed By: N/A, hr = 0x80070002
    OGAAddin.dll Signed By: N/A, hr = 0x80070002

    OGA Data-->
    Office Status: 109 N/A
    OGA Version: N/A, 0x80070002
    Signed By: N/A, hr = 0x80070002
    Office Diagnostics: 025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3

    Browser Data-->
    Proxy settings: N/A
    User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
    Default Browser: C:\Users\RobV\AppData\Local\Google\Chrome\Application\chrome.exe
    Download signed ActiveX controls: Prompt
    Download unsigned ActiveX controls: Disabled
    Run ActiveX controls and plug-ins: Allowed
    Initialize and script ActiveX controls not marked as safe: Disabled
    Allow scripting of Internet Explorer Webbrowser control: Disabled
    Active scripting: Allowed
    Script ActiveX controls marked as safe for scripting: Allowed

    File Scan Data-->
    File Mismatch: C:\Windows\system32\slc.dll[Hr = 0x800b0100]

    Other data-->
    Office Details: <GenuineResults><MachineData><UGUID>{B23F42C9-A107-4FAC-BF7E-A261FD05F283}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7601.2.00010300.1.0.003</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-F79VJ</PKey><PID>00359-OEM-8802181-71137</PID><PIDType>3</PIDType><SID>S-1-5-21-1677731179-2014356099-367847718</SID><SYSTEM><Manufacturer>Gigabyte Technology Co., Ltd.</Manufacturer><Model>To be filled by O.E.M.</Model></SYSTEM><BIOS><Manufacturer>American Megatrends Inc.</Manufacturer><Version>F5</Version><SMBIOSVersion major="2" minor="7"/><Date>20120309000000.000000+000</Date></BIOS><HWID>DA513B07018400FE</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Eastern Standard Time(GMT-05:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM/><GANotification/></MachineData><Software><Office><Result>109</Result><Products/><Applications/></Office></Software></GenuineResults>  

    Spsys.log Content: 0x80070002

    Licensing Data-->
    Software licensing service version: 6.1.7601.17514

    Name: Windows(R) 7, HomePremium edition
    Description: Windows Operating System - Windows(R) 7, OEM_COA_NSLP channel
    Activation ID: 9f83d90f-a151-4665-ae69-30b3f63ec659
    Application ID: 55c92734-d682-4d71-983e-d6ec3f16059f
    Extended PID: 00359-00176-021-871137-02-1033-7601.0000-3582012
    Installation ID: 007813784076880612399772795874966353811336922632780874
    Processor Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88338
    Machine Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88339
    Use License URL: http://go.microsoft.com/fwlink/?LinkID=88341
    Product Key Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88340
    Partial Product Key: F79VJ
    License Status: Licensed
    Remaining Windows rearm count: 1
    Trusted time: 7/25/2013 11:00:31 PM

    Windows Activation Technologies-->
    HrOffline: 0x8004FE21
    HrOnline: N/A
    HealthStatus: 0x0000000000000100
    Event Time Stamp: 7:25:2013 16:47
    ActiveX: Registered, Version: 7.1.7600.16395
    Admin Service: Registered, Version: 7.1.7600.16395
    HealthStatus Bitmask Output:
    Tampered File: %systemroot%\system32\slc.dll|slc.dll.mui


    HWID Data-->
    HWID Hash Current: NgAAAAEAAQABAAIAAQADAAAAAwABAAEAHKIQSXrAcu6Ics5wrkbuFpC0freA2pgRDOa0XZZj

    OEM Activation 1.0 Data-->
    N/A

    OEM Activation 2.0 Data-->
    BIOS valid for OA 2.0: yes, but no SLIC table
    Windows marker version: N/A
    OEMID and OEMTableID Consistent: N/A
    BIOS Information: 
      ACPI Table Name OEMID Value OEMTableID Value
      APIC ALASKA A M I
      FACP ALASKA A M I
      HPET ALASKA A M I
      MCFG ALASKA A M I
      SSDT SataRe SataTabl
      SSDT SataRe SataTabl
      SSDT SataRe SataTabl
      BGRT ALASKA A M I

    Friday, July 26, 2013 3:02 AM
  • Please download and save  the CheckSUR tool from http://support.microsoft.com/kb/947821

    (you'll need to look in the details for Windows 7, downloading from the Microsoft Download Center)

     

    Run it - The tool can take anywhere from 5 mins to a couple of hours to run (or 'Install') depending on how much it has to do, and may exit silently - it may appear to freeze for most of that time, but be patient.

    The result is logged in the C:\Windows\Logs\CBS\CheckSUR.log file  - and an archive …\checksur.persist.log file

     

    Then zip the CheckSUR.log and upload it to your SkyDrive Public folder so I can take a look - post a link in your reply.

     


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    No - I do not work for Microsoft, or any of its contractors.

    Saturday, July 27, 2013 11:22 AM
    Moderator
  • Alright I ran CheckSUR tool, it installed a hotfix and here is the log:

    https://skydrive.live.com/redir?resid=6AD4F53A4C212A7E!213&authkey=!AKEG2CYVAh2SCuQ

    Saturday, July 27, 2013 12:23 PM
  • The CheckSUR log is normal - for a machine with IE10 installed.

    Looking at the CBS log, the failures appear to be caused by registry problems, as well as file problems.....

    We can try fixing the found file problems, and hope that the registry problems take care of themselves - with any luck this may allow the SFC scan to go a bit further next time we run it

    2013-07-25 22:46:21, Info                  CSI    00000040 [SR] Cannot repair member file [l:30{15}]"winload.exe.mui" of Microsoft-Windows-BootEnvironment-OS-Loader.Resources, Version = 6.1.7600.16385, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture = [l:10{5}]"en-US", VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, file cannot be checked
    2013-07-25 22:46:21, Info                  CSI    00000041 [SR] Cannot repair member file [l:34{17}]"winresume.exe.mui" of Microsoft-Windows-BootEnvironment-OS-Loader.Resources, Version = 6.1.7600.16385, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture = [l:10{5}]"en-US", VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, file cannot be checked
    2013-07-25 22:46:21, Info                  CSI    00000042 [SR] Cannot repair member file [l:22{11}]"winload.exe" of Microsoft-Windows-BootEnvironment-OS-Loader, Version = 6.1.7601.17556, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, file cannot be checked
    2013-07-25 22:46:21, Info                  CSI    00000043 [SR] Cannot repair member file [l:26{13}]"winresume.exe" of Microsoft-Windows-BootEnvironment-OS-Loader, Version = 6.1.7601.17556, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, file cannot be checked
    


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    No - I do not work for Microsoft, or any of its contractors.

    Saturday, July 27, 2013 12:44 PM
    Moderator
  • I've uploaded a file - rvdaa.zip - to my SkyDrive at Noel's SkyDrive

    Please download and save it.

    Right-click on the saved file and select Extract all...

    Change the target to C:\ and click on Extract

    Close all windows (it would be a good idea to print these instructions!)

    Now reboot to the Repair Environment - as soon as the machine restarts, start tapping F8 - this should bring up the Advanced Boot Menu, at the top of which should be the option 'Repair my Computer'

    Pick that

    You'll have to log in with your username and password.

    Pick the option to use a Command Prompt

    At the prompt type

    DIR C:\rvdaa

    hit the enter key - if you get a 'Not Found' error try

    DIR D:\rvdaa

    or

    DIR E:\rvdaa

     

    The drive letter in use when you find the folder will need to be substituted (for<drive>) into the following command...

     

    XCOPY <drive>:\rvdaa  <drive>:\windows\winsxs /y /i /s /v /h

     

    (e.g. XCOPY P:\wfire P:\windows\winsxs /y /i /s /v /h )

     

    run the command (it should take almost no time)and when the prompt returns, type

    EXIT

    and hit the Enter key to exit Command Prompt - reboot to Normal Mode Windows.

    Now run SFC /SCANNOW in an Elevated Command Prompt

    then reboot and upload the new CBS.log file to your SkyDrive Public folder, and post a new link

    Also run a new MGADiag report, and post the result.

     



    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    No - I do not work for Microsoft, or any of its contractors.

    Saturday, July 27, 2013 12:49 PM
    Moderator
  • I did all the steps required and the SFC scan cannot get past verification. 

    Here is a pic of the my cmd screen: http://sdrv.ms/19oLEzN

    Saturday, July 27, 2013 3:57 PM
  • That's OK - please post the new CBS.log file anyhow, as it may give more details.

    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    No - I do not work for Microsoft, or any of its contractors.

    Saturday, July 27, 2013 4:14 PM
    Moderator
  • Alright here is the new CBS: http://sdrv.ms/13lkxNO

    And a new MGADiag:

    Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 0x8004FE21
    Cached Online Validation Code: 0x0
    Windows Product Key: *****-*****-JWJ9Q-GWJVH-F79VJ
    Windows Product Key Hash: BsyeTs3AI0Gy5iyrkPkpJBUA6x4=
    Windows Product ID: 00359-OEM-8802181-71137
    Windows Product ID Type: 3
    Windows License Type: OEM System Builder
    Windows OS version: 6.1.7601.2.00010300.1.0.003
    ID: {B23F42C9-A107-4FAC-BF7E-A261FD05F283}(3)
    Is Admin: Yes
    TestCab: 0x0
    LegitcheckControl ActiveX: N/A, hr = 0x80070002
    Signed By: N/A, hr = 0x80070002
    Product Name: Windows 7 Home Premium
    Architecture: 0x00000009
    Build lab: 7601.win7sp1_gdr.130318-1533
    TTS Error: 
    Validation Diagnostic: 
    Resolution Status: N/A

    Vista WgaER Data-->
    ThreatID(s): N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002

    Windows XP Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    File Exists: No
    Version: N/A, hr = 0x80070002
    WgaTray.exe Signed By: N/A, hr = 0x80070002
    WgaLogon.dll Signed By: N/A, hr = 0x80070002

    OGA Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002
    OGAExec.exe Signed By: N/A, hr = 0x80070002
    OGAAddin.dll Signed By: N/A, hr = 0x80070002

    OGA Data-->
    Office Status: 109 N/A
    OGA Version: N/A, 0x80070002
    Signed By: N/A, hr = 0x80070002
    Office Diagnostics: 025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3

    Browser Data-->
    Proxy settings: N/A
    User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
    Default Browser: C:\Users\RobV\AppData\Local\Google\Chrome\Application\chrome.exe
    Download signed ActiveX controls: Prompt
    Download unsigned ActiveX controls: Disabled
    Run ActiveX controls and plug-ins: Allowed
    Initialize and script ActiveX controls not marked as safe: Disabled
    Allow scripting of Internet Explorer Webbrowser control: Disabled
    Active scripting: Allowed
    Script ActiveX controls marked as safe for scripting: Allowed

    File Scan Data-->
    File Mismatch: C:\Windows\system32\slc.dll[Hr = 0x800b0100]

    Other data-->
    Office Details: <GenuineResults><MachineData><UGUID>{B23F42C9-A107-4FAC-BF7E-A261FD05F283}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7601.2.00010300.1.0.003</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-F79VJ</PKey><PID>00359-OEM-8802181-71137</PID><PIDType>3</PIDType><SID>S-1-5-21-1677731179-2014356099-367847718</SID><SYSTEM><Manufacturer>Gigabyte Technology Co., Ltd.</Manufacturer><Model>To be filled by O.E.M.</Model></SYSTEM><BIOS><Manufacturer>American Megatrends Inc.</Manufacturer><Version>F5</Version><SMBIOSVersion major="2" minor="7"/><Date>20120309000000.000000+000</Date></BIOS><HWID>DA513B07018400FE</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Eastern Standard Time(GMT-05:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM/><GANotification/></MachineData><Software><Office><Result>109</Result><Products/><Applications/></Office></Software></GenuineResults>  

    Spsys.log Content: 0x80070002

    Licensing Data-->
    Software licensing service version: 6.1.7601.17514

    Name: Windows(R) 7, HomePremium edition
    Description: Windows Operating System - Windows(R) 7, OEM_COA_NSLP channel
    Activation ID: 9f83d90f-a151-4665-ae69-30b3f63ec659
    Application ID: 55c92734-d682-4d71-983e-d6ec3f16059f
    Extended PID: 00359-00176-021-871137-02-1033-7601.0000-3582012
    Installation ID: 007813784076880612399772795874966353811336922632780874
    Processor Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88338
    Machine Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88339
    Use License URL: http://go.microsoft.com/fwlink/?LinkID=88341
    Product Key Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88340
    Partial Product Key: F79VJ
    License Status: Licensed
    Remaining Windows rearm count: 1
    Trusted time: 7/27/2013 12:20:18 PM

    Windows Activation Technologies-->
    HrOffline: 0x8004FE21
    HrOnline: N/A
    HealthStatus: 0x0000000000000100
    Event Time Stamp: 7:25:2013 16:47
    ActiveX: Registered, Version: 7.1.7600.16395
    Admin Service: Registered, Version: 7.1.7600.16395
    HealthStatus Bitmask Output:
    Tampered File: %systemroot%\system32\slc.dll|slc.dll.mui


    HWID Data-->
    HWID Hash Current: NgAAAAEAAQABAAIAAQADAAAAAwABAAEAHKIQSXrAcu6Ics5wrkbuFpC0freA2pgRDOa0XZZj

    OEM Activation 1.0 Data-->
    N/A

    OEM Activation 2.0 Data-->
    BIOS valid for OA 2.0: yes, but no SLIC table
    Windows marker version: N/A
    OEMID and OEMTableID Consistent: N/A
    BIOS Information: 
      ACPI Table Name OEMID Value OEMTableID Value
      APIC ALASKA A M I
      FACP ALASKA A M I
      HPET ALASKA A M I
      MCFG ALASKA A M I
      SSDT SataRe SataTabl
      SSDT SataRe SataTabl
      SSDT SataRe SataTabl
      BGRT ALASKA A M I

    Saturday, July 27, 2013 4:20 PM
  • That doesn't appear to have achieved anything - the errors in the SFC log are unchanged :(

     

    Please run the following commands, and post the results.

    DIR C:\Windows\WinSxS\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb\winload.exe

    ATTRIB C:\Windows\WinSxS\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb\winload.exe

    ICACLS C:\Windows\WinSxS\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb\winload.exe

    DIR C:\Windows\System32\slc.dll

    ATTRIB C:\Windows\System32\slc.dll

    ICACLS C:\Windows\System32\slc.dll

     

      Here are some instructions to make life easier :)

    1) To open an Elevated Command Prompt Window (the ECP window), click on Start, All Programs, Accessories – then right-click on Command Prompt, and select Run as Administrator. Accept the UAC prompt. 

    2) To run the commands easier, highlight the block of commands, and right-click on the highlight – select Copy. In the CP Window, click on the black/white icon at top left – select Paste. The commands will run but may not complete the last command, so hit the Enter Key once. 

    3) To copy the results... click on the Black/White icon in the top left, and select Edit... 'Select All', and hit the Enter key - then use Ctrl+V or r-click+Paste to paste it into your response.     


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    No - I do not work for Microsoft, or any of its contractors.

    Saturday, July 27, 2013 5:54 PM
    Moderator
  • Microsoft Windows [Version 6.1.7601]
    Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

    C:\Windows\system32>DIR C:\Windows\WinSxS\amd64_microsoft-windows-b..vironment-o
    s-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb\winload.exe
     Volume in drive C has no label.
     Volume Serial Number is 1AA1-A606

     Directory of C:\Windows\WinSxS\amd64_microsoft-windows-b..vironment-os-loader_3
    1bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb

    02/05/2011  01:06 PM           605,552 winload.exe
                   1 File(s)        605,552 bytes
                   0 Dir(s)  1,644,482,121,728 bytes free

    C:\Windows\system32>
    C:\Windows\system32>ATTRIB C:\Windows\WinSxS\amd64_microsoft-windows-b..vironmen
    t-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb\winload.exe
    A            C:\Windows\WinSxS\amd64_microsoft-windows-b..vironment-os-loader_31
    bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb\winload.exe

    C:\Windows\system32>
    C:\Windows\system32>ICACLS C:\Windows\WinSxS\amd64_microsoft-windows-b..vironmen
    t-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb\winload.exe
    C:\Windows\WinSxS\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e3
    5_6.1.7601.17556_none_b923808583650cfb\winload.exe RobVaivodiss\RobV:(F)

    Successfully processed 1 files; Failed processing 0 files

    C:\Windows\system32>
    C:\Windows\system32>DIR C:\Windows\System32\slc.dll
     Volume in drive C has no label.
     Volume Serial Number is 1AA1-A606

     Directory of C:\Windows\System32

    08/09/2011  11:00 AM            41,472 slc.dll
                   1 File(s)         41,472 bytes
                   0 Dir(s)  1,644,482,097,152 bytes free

    C:\Windows\system32>
    C:\Windows\system32>ATTRIB C:\Windows\System32\slc.dll
    A            C:\Windows\System32\slc.dll

    C:\Windows\system32>
    C:\Windows\system32>ICACLS C:\Windows\System32\slc.dll
    C:\Windows\System32\slc.dll NT SERVICE\TrustedInstaller:(F)
                                BUILTIN\Administrators:(RX)
                                NT AUTHORITY\SYSTEM:(RX)
                                BUILTIN\Users:(RX)

    Successfully processed 1 files; Failed processing 0 files

    C:\Windows\system32>
    Saturday, July 27, 2013 6:00 PM
  • I see what the problem is with the winload.exe file, at least :)

    The permissions are not what they should be - for whatever reason.

    I'm reluctant to draw the conclusion that the same is true of other files in that folder without further checks.

    The data for the slc.dll file is normal - but I suspect that the problem again lies in the winsxs folder

    Please run the following commands, and post the results.

    ICACLS C:\Windows\WinSxS\slc.dll /T

    DIR C:\Windows\WinSxS\slc.dll /S

    ICACLS C:\Windows\WinSxS


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    No - I do not work for Microsoft, or any of its contractors.

    Saturday, July 27, 2013 6:22 PM
    Moderator
  • Microsoft Windows [Version 6.1.7601]
    Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

    C:\Windows\system32>ICACLS C:\Windows\WinSxS\slc.dll /T
    C:\Windows\WinSxS\amd64_microsoft-windows-security-spp-client_31bf3856ad364e35_6
    .1.7601.17514_none_f4c2f729c23f3c2b\slc.dll BUILTIN\Administrators:(F)

                                                NT SERVICE\TrustedInstaller:(F)

                                                NT AUTHORITY\SYSTEM:(RX)

                                                BUILTIN\Users:(RX)

    C:\Windows\WinSxS\x86_microsoft-windows-security-spp-client_31bf3856ad364e35_6.1
    .7601.17514_none_98a45ba609e1caf5\slc.dll BUILTIN\Administrators:(F)

                                              NT SERVICE\TrustedInstaller:(F)

                                              NT AUTHORITY\SYSTEM:(RX)

                                              BUILTIN\Users:(RX)

    Successfully processed 2 files; Failed processing 0 files

    C:\Windows\system32>
    C:\Windows\system32>DIR C:\Windows\WinSxS\slc.dll /S
     Volume in drive C has no label.
     Volume Serial Number is 1AA1-A606

     Directory of C:\Windows\WinSxS\amd64_microsoft-windows-security-spp-client_31bf
    3856ad364e35_6.1.7601.17514_none_f4c2f729c23f3c2b

    07/13/2009  09:41 PM            30,720 slc.dll
                   1 File(s)         30,720 bytes

     Directory of C:\Windows\WinSxS\x86_microsoft-windows-security-spp-client_31bf38
    56ad364e35_6.1.7601.17514_none_98a45ba609e1caf5

    07/13/2009  09:16 PM            27,136 slc.dll
                   1 File(s)         27,136 bytes

         Total Files Listed:
                   2 File(s)         57,856 bytes
                   0 Dir(s)  1,644,486,848,512 bytes free

    C:\Windows\system32>
    C:\Windows\system32>ICACLS C:\Windows\WinSxS
    C:\Windows\WinSxS NT SERVICE\TrustedInstaller:(OI)(CI)(F)
                      BUILTIN\Administrators:(OI)(CI)(RX)
                      NT AUTHORITY\SYSTEM:(OI)(CI)(RX)
                      BUILTIN\Users:(OI)(CI)(RX)

    Successfully processed 1 files; Failed processing 0 files

    C:\Windows\system32>
    Saturday, July 27, 2013 6:28 PM
  • I still can't see what's amiss with the slc.dll file :(

    Let's see if I can at least fix the various files that we already know about.....

    Open an Elevated Command Prompt, and run the following commands...

    ICACLS C:\Windows\WinSxS\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb /grant Administrators:(F) "NT SERVICE\TrustedInstaller":(F) /T

    ICACLS C:\Windows\WinSxS\amd64_microsoft-windows-b..vironment-os-loader.resources_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb /grant Administrators:(F) "NT SERVICE\TrustedInstaller":(F) /T

    If it fails, try running the commands in a normal Command Prompt window.

    Then reboot, and try running SFC again.


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    No - I do not work for Microsoft, or any of its contractors.

    Saturday, July 27, 2013 7:55 PM
    Moderator
  • SFC still fails. Windows Resource Protection still does not allow it to continue past 10% in verification. If it helps, I noticed that the first ICACLS command spit out an Access Denied, but the second one worked. Here is an updated CBS: http://sdrv.ms/18JuPQK

    MGADiag:

    Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 0x8004FE21
    Cached Online Validation Code: 0x0
    Windows Product Key: *****-*****-JWJ9Q-GWJVH-F79VJ
    Windows Product Key Hash: BsyeTs3AI0Gy5iyrkPkpJBUA6x4=
    Windows Product ID: 00359-OEM-8802181-71137
    Windows Product ID Type: 3
    Windows License Type: OEM System Builder
    Windows OS version: 6.1.7601.2.00010300.1.0.003
    ID: {B23F42C9-A107-4FAC-BF7E-A261FD05F283}(3)
    Is Admin: Yes
    TestCab: 0x0
    LegitcheckControl ActiveX: N/A, hr = 0x80070002
    Signed By: N/A, hr = 0x80070002
    Product Name: Windows 7 Home Premium
    Architecture: 0x00000009
    Build lab: 7601.win7sp1_gdr.130318-1533
    TTS Error: 
    Validation Diagnostic: 
    Resolution Status: N/A

    Vista WgaER Data-->
    ThreatID(s): N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002

    Windows XP Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    File Exists: No
    Version: N/A, hr = 0x80070002
    WgaTray.exe Signed By: N/A, hr = 0x80070002
    WgaLogon.dll Signed By: N/A, hr = 0x80070002

    OGA Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002
    OGAExec.exe Signed By: N/A, hr = 0x80070002
    OGAAddin.dll Signed By: N/A, hr = 0x80070002

    OGA Data-->
    Office Status: 109 N/A
    OGA Version: N/A, 0x80070002
    Signed By: N/A, hr = 0x80070002
    Office Diagnostics: 025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3

    Browser Data-->
    Proxy settings: N/A
    User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
    Default Browser: C:\Users\RobV\AppData\Local\Google\Chrome\Application\chrome.exe
    Download signed ActiveX controls: Prompt
    Download unsigned ActiveX controls: Disabled
    Run ActiveX controls and plug-ins: Allowed
    Initialize and script ActiveX controls not marked as safe: Disabled
    Allow scripting of Internet Explorer Webbrowser control: Disabled
    Active scripting: Allowed
    Script ActiveX controls marked as safe for scripting: Allowed

    File Scan Data-->
    File Mismatch: C:\Windows\system32\slc.dll[Hr = 0x800b0100]

    Other data-->
    Office Details: <GenuineResults><MachineData><UGUID>{B23F42C9-A107-4FAC-BF7E-A261FD05F283}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7601.2.00010300.1.0.003</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-F79VJ</PKey><PID>00359-OEM-8802181-71137</PID><PIDType>3</PIDType><SID>S-1-5-21-1677731179-2014356099-367847718</SID><SYSTEM><Manufacturer>Gigabyte Technology Co., Ltd.</Manufacturer><Model>To be filled by O.E.M.</Model></SYSTEM><BIOS><Manufacturer>American Megatrends Inc.</Manufacturer><Version>F5</Version><SMBIOSVersion major="2" minor="7"/><Date>20120309000000.000000+000</Date></BIOS><HWID>DA513B07018400FE</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Eastern Standard Time(GMT-05:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM/><GANotification/></MachineData><Software><Office><Result>109</Result><Products/><Applications/></Office></Software></GenuineResults>  

    Spsys.log Content: 0x80070002

    Licensing Data-->
    Software licensing service version: 6.1.7601.17514

    Name: Windows(R) 7, HomePremium edition
    Description: Windows Operating System - Windows(R) 7, OEM_COA_NSLP channel
    Activation ID: 9f83d90f-a151-4665-ae69-30b3f63ec659
    Application ID: 55c92734-d682-4d71-983e-d6ec3f16059f
    Extended PID: 00359-00176-021-871137-02-1033-7601.0000-3582012
    Installation ID: 007813784076880612399772795874966353811336922632780874
    Processor Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88338
    Machine Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88339
    Use License URL: http://go.microsoft.com/fwlink/?LinkID=88341
    Product Key Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88340
    Partial Product Key: F79VJ
    License Status: Licensed
    Remaining Windows rearm count: 1
    Trusted time: 7/27/2013 4:21:57 PM

    Windows Activation Technologies-->
    HrOffline: 0x8004FE21
    HrOnline: N/A
    HealthStatus: 0x0000000000000100
    Event Time Stamp: 7:25:2013 16:47
    ActiveX: Registered, Version: 7.1.7600.16395
    Admin Service: Registered, Version: 7.1.7600.16395
    HealthStatus Bitmask Output:
    Tampered File: %systemroot%\system32\slc.dll|slc.dll.mui


    HWID Data-->
    HWID Hash Current: NgAAAAEAAQABAAIAAQADAAAAAwABAAEAHKIQSXrAcu6Ics5wrkbuFpC0freA2pgRDOa0XZZj

    OEM Activation 1.0 Data-->
    N/A

    OEM Activation 2.0 Data-->
    BIOS valid for OA 2.0: yes, but no SLIC table
    Windows marker version: N/A
    OEMID and OEMTableID Consistent: N/A
    BIOS Information: 
      ACPI Table Name OEMID Value OEMTableID Value
      APIC ALASKA A M I
      FACP ALASKA A M I
      HPET ALASKA A M I
      MCFG ALASKA A M I
      SSDT SataRe SataTabl
      SSDT SataRe SataTabl
      SSDT SataRe SataTabl
      BGRT ALASKA A M I

    Saturday, July 27, 2013 8:24 PM
  • OK - let's try this set of commands, then... (In an Elevated Command Prompt)

    Takeown C:\Windows\WinSxS\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb /R

    Takeown C:\Windows\WinSxS\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a /R

    ICACLS C:\Windows\WinSxS\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb /grant Administrators:(F) "NT SERVICE\TrustedInstaller":(F) /T

    ICACLS C:\Windows\WinSxS\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a /grant Administrators:(F) "NT SERVICE\TrustedInstaller":(F) /T


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    No - I do not work for Microsoft, or any of its contractors.

    Saturday, July 27, 2013 8:49 PM
    Moderator
  • Here is what CMD returns:

    Microsoft Windows [Version 6.1.7601]
    Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

    C:\Windows\system32>Takeown C:\Windows\WinSxS\amd64_microsoft-windows-b..vironme
    nt-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb /R
    ERROR: Invalid argument/option - 'C:\Windows\WinSxS\amd64_microsoft-windows-b..v
    ironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb'.
    Type "TAKEOWN /?" for usage.

    C:\Windows\system32>
    C:\Windows\system32>Takeown C:\Windows\WinSxS\amd64_microsoft-windows-b..os-load
    er.resources_31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a /R
    ERROR: Invalid argument/option - 'C:\Windows\WinSxS\amd64_microsoft-windows-b..o
    s-loader.resources_31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a'.
    Type "TAKEOWN /?" for usage.

    C:\Windows\system32>
    C:\Windows\system32>ICACLS C:\Windows\WinSxS\amd64_microsoft-windows-b..vironmen
    t-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb /grant Adminis
    trators:(F) "NT SERVICE\TrustedInstaller":(F) /T
    C:\Windows\WinSxS\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e3
    5_6.1.7601.17556_none_b923808583650cfb: Access is denied.
    Successfully processed 0 files; Failed processing 1 files

    C:\Windows\system32>
    C:\Windows\system32>ICACLS C:\Windows\WinSxS\amd64_microsoft-windows-b..os-loade
    r.resources_31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a /grant Admini
    strators:(F) "NT SERVICE\TrustedInstaller":(F) /T
    processed file: C:\Windows\WinSxS\amd64_microsoft-windows-b..os-loader.resources
    _31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a
    C:\Windows\WinSxS\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e3
    5_6.1.7600.16385_en-us_d28dabacfdb4dd1a\winload.efi.mui: Access is denied.
    Successfully processed 1 files; Failed processing 1 files

    C:\Windows\system32>

    Sunday, July 28, 2013 1:18 AM
  • Hmmm - that's an unexpected result - which I can reproduce :(

    I'm not sure why the system is refusing the ownership request.... especially as in this case you are possibly the current owner

    Perhaps we should delete the files first while in RE mode, and fix it that way.

    Let's check the existing permissions on the folders first...

    Run the following commands, and post the results.

    ICACLS C:\Windows\WinSxS\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a

    ICACLS C:\Windows\WinSxS\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    No - I do not work for Microsoft, or any of its contractors.

    Sunday, July 28, 2013 7:31 AM
    Moderator
  • Microsoft Windows [Version 6.1.7601]
    Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

    C:\Windows\system32>ICACLS C:\Windows\WinSxS\amd64_microsoft-windows-b..os-loade
    r.resources_31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a
    C:\Windows\WinSxS\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e3
    5_6.1.7600.16385_en-us_d28dabacfdb4dd1a NT SERVICE\TrustedInstaller:(F)

                                            BUILTIN\Administrators:(F)

                                            NT SERVICE\TrustedInstaller:(I)(OI)(CI)(
    F)

                                            BUILTIN\Administrators:(I)(OI)(CI)(RX)

                                            NT AUTHORITY\SYSTEM:(I)(OI)(CI)(RX)

                                            BUILTIN\Users:(I)(OI)(CI)(RX)

    Successfully processed 1 files; Failed processing 0 files

    C:\Windows\system32>
    C:\Windows\system32>ICACLS C:\Windows\WinSxS\amd64_microsoft-windows-b..vironmen
    t-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb
    C:\Windows\WinSxS\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e3
    5_6.1.7601.17556_none_b923808583650cfb NT SERVICE\TrustedInstaller:(I)(OI)(CI)(F
    )

                                           BUILTIN\Administrators:(I)(OI)(CI)(RX)

                                           NT AUTHORITY\SYSTEM:(I)(OI)(CI)(RX)

                                           BUILTIN\Users:(I)(OI)(CI)(RX)

    Successfully processed 1 files; Failed processing 0 files

    C:\Windows\system32>
    Sunday, July 28, 2013 1:48 PM
  • Interesting - but at least it gives us an opening :)

    Try these commands

    Takeown C:\Windows\WinSxS\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb\*.*

    Takeown C:\Windows\WinSxS\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a\*.*

    ICACLS C:\Windows\WinSxS\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb\*.* /grant Administrators:(F) "NT SERVICE\TrustedInstaller":(F)

    ICACLS C:\Windows\WinSxS\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a\*.* /grant Administrators:(F) "NT SERVICE\TrustedInstaller":(F)


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    No - I do not work for Microsoft, or any of its contractors.

    Sunday, July 28, 2013 2:05 PM
    Moderator
  • Microsoft Windows [Version 6.1.7601]
    Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

    C:\Windows\system32>Takeown C:\Windows\WinSxS\amd64_microsoft-windows-b..vironme
    nt-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb\*.*
    ERROR: Invalid argument/option - 'C:\Windows\WinSxS\amd64_microsoft-windows-b..v
    ironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb\*.*'.
    Type "TAKEOWN /?" for usage.

    C:\Windows\system32>
    C:\Windows\system32>Takeown C:\Windows\WinSxS\amd64_microsoft-windows-b..os-load
    er.resources_31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a\*.*
    ERROR: Invalid argument/option - 'C:\Windows\WinSxS\amd64_microsoft-windows-b..o
    s-loader.resources_31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a\*.*'.
    Type "TAKEOWN /?" for usage.

    C:\Windows\system32>
    C:\Windows\system32>ICACLS C:\Windows\WinSxS\amd64_microsoft-windows-b..vironmen
    t-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb\*.* /grant Adm
    inistrators:(F) "NT SERVICE\TrustedInstaller":(F)
    C:\Windows\WinSxS\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e3
    5_6.1.7601.17556_none_b923808583650cfb\winload.efi: Access is denied.
    Successfully processed 0 files; Failed processing 1 files

    C:\Windows\system32>
    C:\Windows\system32>ICACLS C:\Windows\WinSxS\amd64_microsoft-windows-b..os-loade
    r.resources_31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a\*.* /grant Ad
    ministrators:(F) "NT SERVICE\TrustedInstaller":(F)
    C:\Windows\WinSxS\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e3
    5_6.1.7600.16385_en-us_d28dabacfdb4dd1a\winload.efi.mui: Access is denied.
    Successfully processed 0 files; Failed processing 1 files

    C:\Windows\system32>
    Sunday, July 28, 2013 2:07 PM
  • Oh B&gg%r!

    I'll have to have a play - back later....


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    No - I do not work for Microsoft, or any of its contractors.

    Sunday, July 28, 2013 2:16 PM
    Moderator
  • Bah!

    Forgot the mandatory /F switch, is all.....

    Try these commands

    Takeown /F C:\Windows\WinSxS\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb\*.*

    Takeown /F C:\Windows\WinSxS\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a\*.*

    ICACLS C:\Windows\WinSxS\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb\*.* /grant Administrators:(F) "NT SERVICE\TrustedInstaller":(F) SYSTEM:(RX) USERS:(RX)

    ICACLS C:\Windows\WinSxS\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a\*.* /grant Administrators:(F) "NT SERVICE\TrustedInstaller":(F) SYSTEM:(RX) USERS:(RX)


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    No - I do not work for Microsoft, or any of its contractors.

    Sunday, July 28, 2013 2:27 PM
    Moderator
  • There we go now it worked:

    Microsoft Windows [Version 6.1.7601]
    Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

    C:\Windows\system32>Takeown /F C:\Windows\WinSxS\amd64_microsoft-windows-b..viro
    nment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb\*.*

    SUCCESS: The file (or folder): "C:\Windows\WinSxS\amd64_microsoft-windows-b..vir
    onment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb\winload.e
    fi" now owned by user "RobVaivodiss\RobV".

    SUCCESS: The file (or folder): "C:\Windows\WinSxS\amd64_microsoft-windows-b..vir
    onment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb\winload.e
    xe" now owned by user "RobVaivodiss\RobV".

    SUCCESS: The file (or folder): "C:\Windows\WinSxS\amd64_microsoft-windows-b..vir
    onment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb\winresume
    .efi" now owned by user "RobVaivodiss\RobV".

    SUCCESS: The file (or folder): "C:\Windows\WinSxS\amd64_microsoft-windows-b..vir
    onment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb\winresume
    .exe" now owned by user "RobVaivodiss\RobV".

    C:\Windows\system32>
    C:\Windows\system32>Takeown /F C:\Windows\WinSxS\amd64_microsoft-windows-b..os-l
    oader.resources_31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a\*.*

    SUCCESS: The file (or folder): "C:\Windows\WinSxS\amd64_microsoft-windows-b..os-
    loader.resources_31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a\winload.
    efi.mui" now owned by user "RobVaivodiss\RobV".

    SUCCESS: The file (or folder): "C:\Windows\WinSxS\amd64_microsoft-windows-b..os-
    loader.resources_31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a\winload.
    exe.mui" now owned by user "RobVaivodiss\RobV".

    SUCCESS: The file (or folder): "C:\Windows\WinSxS\amd64_microsoft-windows-b..os-
    loader.resources_31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a\winresum
    e.efi.mui" now owned by user "RobVaivodiss\RobV".

    SUCCESS: The file (or folder): "C:\Windows\WinSxS\amd64_microsoft-windows-b..os-
    loader.resources_31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a\winresum
    e.exe.mui" now owned by user "RobVaivodiss\RobV".

    C:\Windows\system32>
    C:\Windows\system32>ICACLS C:\Windows\WinSxS\amd64_microsoft-windows-b..vironmen
    t-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb\*.* /grant Adm
    inistrators:(F) "NT SERVICE\TrustedInstaller":(F) SYSTEM:(RX) USERS:(RX)
    processed file: C:\Windows\WinSxS\amd64_microsoft-windows-b..vironment-os-loader
    _31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb\winload.efi
    processed file: C:\Windows\WinSxS\amd64_microsoft-windows-b..vironment-os-loader
    _31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb\winload.exe
    processed file: C:\Windows\WinSxS\amd64_microsoft-windows-b..vironment-os-loader
    _31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb\winresume.efi
    processed file: C:\Windows\WinSxS\amd64_microsoft-windows-b..vironment-os-loader
    _31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb\winresume.exe
    Successfully processed 4 files; Failed processing 0 files

    C:\Windows\system32>
    C:\Windows\system32>ICACLS C:\Windows\WinSxS\amd64_microsoft-windows-b..os-loade
    r.resources_31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a\*.* /grant Ad
    ministrators:(F) "NT SERVICE\TrustedInstaller":(F) SYSTEM:(RX) USERS:(RX)
    processed file: C:\Windows\WinSxS\amd64_microsoft-windows-b..os-loader.resources
    _31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a\winload.efi.mui
    processed file: C:\Windows\WinSxS\amd64_microsoft-windows-b..os-loader.resources
    _31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a\winload.exe.mui
    processed file: C:\Windows\WinSxS\amd64_microsoft-windows-b..os-loader.resources
    _31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a\winresume.efi.mui
    processed file: C:\Windows\WinSxS\amd64_microsoft-windows-b..os-loader.resources
    _31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a\winresume.exe.mui
    Successfully processed 4 files; Failed processing 0 files

    C:\Windows\system32>

    Sunday, July 28, 2013 2:29 PM
  • Great - at last!

    Now please run another SFC /SCANNOW, and post the new CBS.log


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    No - I do not work for Microsoft, or any of its contractors.

    Sunday, July 28, 2013 3:05 PM
    Moderator
  • This time the SFC was able to finish. It found some corrupted files and I did a reboot like the scan said. Here is the new CBS:

    http://sdrv.ms/15plj0c

    Sunday, July 28, 2013 5:41 PM
  • Good - the SFC scan threw the following results....

    	Line 77183: 2013-07-28 12:43:16, Info                  CSI    00000325 [SR] Repairing 8 components
    	Line 77184: 2013-07-28 12:43:16, Info                  CSI    00000326 [SR] Beginning Verify and Repair transaction
    	Line 77185: 2013-07-28 12:43:16, Info                  CSI    00000327 [SR] Cannot repair member file [l:22{11}]"bootres.dll" of Microsoft-Windows-BootRes, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, file cannot be checked
    	Line 77188: 2013-07-28 12:43:16, Info                  CSI    00000329 [SR] Repairing corrupted file [ml:520{260},l:46{23}]"\??\C:\Windows\System32"\[l:22{11}]"uxtheme.dll" from store
    	Line 77191: 2013-07-28 12:43:16, Info                  CSI    0000032b [SR] Repairing corrupted file [ml:48{24},l:46{23}]"\??\C:\Windows\SysWOW64"\[l:14{7}]"slc.dll" from store
    	Line 77194: 2013-07-28 12:43:16, Info                  CSI    0000032d [SR] Repairing corrupted file [ml:520{260},l:46{23}]"\??\C:\Windows\System32"\[l:14{7}]"slc.dll" from store
    	Line 77197: 2013-07-28 12:43:16, Info                  CSI    0000032f [SR] Repairing corrupted file [ml:48{24},l:46{23}]"\??\C:\Windows\SysWOW64"\[l:22{11}]"uxtheme.dll" from store
    	Line 77198: 2013-07-28 12:43:16, Info                  CSI    00000330 [SR] Cannot repair member file [l:22{11}]"bootres.dll" of Microsoft-Windows-BootRes, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, file cannot be checked
    	Line 77199: 2013-07-28 12:43:16, Info                  CSI    00000331 [SR] This component was referenced by [l:242{121}]"Microsoft-Windows-Client-Features-Package~31bf3856ad364e35~amd64~~6.1.7601.17514.Microsoft-Windows-Client-Features-Update"
    	Line 77202: 2013-07-28 12:43:16, Info                  CSI    00000333 [SR] Repairing corrupted file [ml:48{24},l:46{23}]"\??\C:\Windows\SysWOW64"\[l:22{11}]"themeui.dll" from store
    	Line 77205: 2013-07-28 12:43:16, Info                  CSI    00000335 [SR] Repairing corrupted file [ml:520{260},l:46{23}]"\??\C:\Windows\System32"\[l:22{11}]"themeui.dll" from store
    	Line 77208: 2013-07-28 12:43:17, Info                  CSI    00000337 [SR] Repairing corrupted file [ml:520{260},l:46{23}]"\??\C:\Windows\System32"\[l:32{16}]"themeservice.dll" from store
    	Line 77225: 2013-07-28 12:43:17, Info                  CSI    00000339 [SR] Repair complete
    

    It looks to me as if there's one more file that requires the same treatment.

    Please run the following commands, and we'll check...

    ICACLS C:\Windows\winsxs\amd64_microsoft-windows-bootres_31bf3856ad364e35_6.1.7600.16385_none_9b11b2ca9ba1db4b\bootres.dll

    ICACLS C:\Windows\System32\bootres.dll

    post the results.


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    No - I do not work for Microsoft, or any of its contractors.

    Sunday, July 28, 2013 7:53 PM
    Moderator
  • Microsoft Windows [Version 6.1.7601]
    Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

    C:\Windows\system32>ICACLS C:\Windows\winsxs\amd64_microsoft-windows-bootres_31b
    f3856ad364e35_6.1.7600.16385_none_9b11b2ca9ba1db4b\bootres.dll
    C:\Windows\winsxs\amd64_microsoft-windows-bootres_31bf3856ad364e35_6.1.7600.1638
    5_none_9b11b2ca9ba1db4b\bootres.dll: The system cannot find the path specified.
    Successfully processed 0 files; Failed processing 1 files

    C:\Windows\system32>
    C:\Windows\system32>ICACLS C:\Windows\System32\bootres.dll
    C:\Windows\System32\bootres.dll RobVaivodiss\RobV:(F)

    Successfully processed 1 files; Failed processing 0 files

    C:\Windows\system32>
    Sunday, July 28, 2013 8:03 PM
  • OK -run the following commands in an Elevated Command Prompt, and then reboot and run another MGADiag report.

    Post the results.

    Takeown /F C:\Windows\System32\bootres.dll

    ICACLS C:\Windows\System32\bootres.dll /grant Administrators:(RX) "NT SERVICE\TrustedInstaller":(F) SYSTEM:(RX) USERS:(RX)

    TAKEOWN /F C:\Windows\winsxs\amd64_microsoft-windows-bootres_31bf3856ad364e35_6.1.7600.16385_none_9b11b2ca9ba1db4b\bootres.dll

    ICACLS C:\Windows\winsxs\amd64_microsoft-windows-bootres_31bf3856ad364e35_6.1.7600.16385_none_9b11b2ca9ba1db4b\bootres.dll /grant Administrators:(RX) "NT SERVICE\TrustedInstaller":(F) SYSTEM:(RX) USERS:(RX)


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    No - I do not work for Microsoft, or any of its contractors.

    • Marked as answer by RobVaivodiss Sunday, July 28, 2013 10:51 PM
    Sunday, July 28, 2013 9:28 PM
    Moderator
  • Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 0
    Cached Online Validation Code: 0x0
    Windows Product Key: *****-*****-JWJ9Q-GWJVH-F79VJ
    Windows Product Key Hash: BsyeTs3AI0Gy5iyrkPkpJBUA6x4=
    Windows Product ID: 00359-OEM-8802181-71137
    Windows Product ID Type: 3
    Windows License Type: OEM System Builder
    Windows OS version: 6.1.7601.2.00010300.1.0.003
    ID: {B23F42C9-A107-4FAC-BF7E-A261FD05F283}(3)
    Is Admin: Yes
    TestCab: 0x0
    LegitcheckControl ActiveX: N/A, hr = 0x80070002
    Signed By: N/A, hr = 0x80070002
    Product Name: Windows 7 Home Premium
    Architecture: 0x00000009
    Build lab: 7601.win7sp1_gdr.130318-1533
    TTS Error: 
    Validation Diagnostic: 
    Resolution Status: N/A

    Vista WgaER Data-->
    ThreatID(s): N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002

    Windows XP Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    File Exists: No
    Version: N/A, hr = 0x80070002
    WgaTray.exe Signed By: N/A, hr = 0x80070002
    WgaLogon.dll Signed By: N/A, hr = 0x80070002

    OGA Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002
    OGAExec.exe Signed By: N/A, hr = 0x80070002
    OGAAddin.dll Signed By: N/A, hr = 0x80070002

    OGA Data-->
    Office Status: 109 N/A
    OGA Version: N/A, 0x80070002
    Signed By: N/A, hr = 0x80070002
    Office Diagnostics: 025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3

    Browser Data-->
    Proxy settings: N/A
    User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
    Default Browser: C:\Users\RobV\AppData\Local\Google\Chrome\Application\chrome.exe
    Download signed ActiveX controls: Prompt
    Download unsigned ActiveX controls: Disabled
    Run ActiveX controls and plug-ins: Allowed
    Initialize and script ActiveX controls not marked as safe: Disabled
    Allow scripting of Internet Explorer Webbrowser control: Disabled
    Active scripting: Allowed
    Script ActiveX controls marked as safe for scripting: Allowed

    File Scan Data-->

    Other data-->
    Office Details: <GenuineResults><MachineData><UGUID>{B23F42C9-A107-4FAC-BF7E-A261FD05F283}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7601.2.00010300.1.0.003</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-F79VJ</PKey><PID>00359-OEM-8802181-71137</PID><PIDType>3</PIDType><SID>S-1-5-21-1677731179-2014356099-367847718</SID><SYSTEM><Manufacturer>Gigabyte Technology Co., Ltd.</Manufacturer><Model>To be filled by O.E.M.</Model></SYSTEM><BIOS><Manufacturer>American Megatrends Inc.</Manufacturer><Version>F5</Version><SMBIOSVersion major="2" minor="7"/><Date>20120309000000.000000+000</Date></BIOS><HWID>DA513B07018400FE</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Eastern Standard Time(GMT-05:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM/><GANotification/></MachineData><Software><Office><Result>109</Result><Products/><Applications/></Office></Software></GenuineResults>  

    Spsys.log Content: 0x80070002

    Licensing Data-->
    Software licensing service version: 6.1.7601.17514

    Name: Windows(R) 7, HomePremium edition
    Description: Windows Operating System - Windows(R) 7, OEM_COA_NSLP channel
    Activation ID: 9f83d90f-a151-4665-ae69-30b3f63ec659
    Application ID: 55c92734-d682-4d71-983e-d6ec3f16059f
    Extended PID: 00359-00176-021-871137-02-1033-7601.0000-3582012
    Installation ID: 007813784076880612399772795874966353811336922632780874
    Processor Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88338
    Machine Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88339
    Use License URL: http://go.microsoft.com/fwlink/?LinkID=88341
    Product Key Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88340
    Partial Product Key: F79VJ
    License Status: Licensed
    Remaining Windows rearm count: 1
    Trusted time: 7/28/2013 5:35:56 PM

    Windows Activation Technologies-->
    HrOffline: 0x00000000
    HrOnline: 0x00000000
    HealthStatus: 0x0000000000000000
    Event Time Stamp: 7:25:2013 16:47
    ActiveX: Registered, Version: 7.1.7600.16395
    Admin Service: Registered, Version: 7.1.7600.16395
    HealthStatus Bitmask Output:


    HWID Data-->
    HWID Hash Current: NgAAAAEAAQABAAIAAQADAAAAAwABAAEAHKIQSXrAcu6Ics5wrkbuFpC0freA2pgRDOa0XZZj

    OEM Activation 1.0 Data-->
    N/A

    OEM Activation 2.0 Data-->
    BIOS valid for OA 2.0: yes, but no SLIC table
    Windows marker version: N/A
    OEMID and OEMTableID Consistent: N/A
    BIOS Information: 
      ACPI Table Name OEMID Value OEMTableID Value
      APIC ALASKA A M I
      FACP ALASKA A M I
      HPET ALASKA A M I
      MCFG ALASKA A M I
      SSDT SataRe SataTabl
      SSDT SataRe SataTabl
      SSDT SataRe SataTabl
      BGRT ALASKA A M I

    Sunday, July 28, 2013 9:36 PM
  • I think we got there :)

    The report looks fine now - you should no longer be seeing notifications, and Windows Updates should work


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    No - I do not work for Microsoft, or any of its contractors.

    Sunday, July 28, 2013 9:59 PM
    Moderator
  • Ok thank you for your help!
    Sunday, July 28, 2013 10:18 PM
  • You're welcome - Good luck.

    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    No - I do not work for Microsoft, or any of its contractors.

    Sunday, July 28, 2013 10:38 PM
    Moderator