locked
Windows 7 Genuine Validation error RRS feed

  • Question

  • So, I got a prompt to have my copy of windows "validated" on my laptop (which I had repaired about a couple months ago). I've been doing windows updates the whole time.  I clicked on the link figured it would be no big deal.  For some reason, it said my copy wasn't valid and was going to disable some features.  It asked me to buy a copy of Windows 7 Home premium.  I was like, "What? This is the OS that comes with this ASUS laptop!"

    Can you help me out?

    Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 0x8004FE21
    Cached Online Validation Code: 0x0
    Windows Product Key: *****-*****-2QWT6-HCQXJ-9YQTR
    Windows Product Key Hash: PVjSC5x6njvqunmbCY3lOD7rYDo=
    Windows Product ID: 00359-OEM-8992687-00007
    Windows Product ID Type: 2
    Windows License Type: OEM SLP
    Windows OS version: 6.1.7601.2.00010300.1.0.003
    ID: {16FFFE26-46D4-4B7C-B67C-8F8DFCD1012A}(1)
    Is Admin: Yes
    TestCab: 0x0
    LegitcheckControl ActiveX: N/A, hr = 0x80070002
    Signed By: N/A, hr = 0x80070002
    Product Name: Windows 7 Home Premium
    Architecture: 0x00000009
    Build lab: 7601.win7sp1_gdr.130318-1533
    TTS Error: 
    Validation Diagnostic: 
    Resolution Status: N/A

    Vista WgaER Data-->
    ThreatID(s): N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002

    Windows XP Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    File Exists: No
    Version: N/A, hr = 0x80070002
    WgaTray.exe Signed By: N/A, hr = 0x80070002
    WgaLogon.dll Signed By: N/A, hr = 0x80070002

    OGA Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002
    OGAExec.exe Signed By: N/A, hr = 0x80070002
    OGAAddin.dll Signed By: N/A, hr = 0x80070002

    OGA Data-->
    Office Status: 109 N/A
    OGA Version: N/A, 0x80070002
    Signed By: N/A, hr = 0x80070002
    Office Diagnostics: 025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3

    Browser Data-->
    Proxy settings: N/A
    User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
    Default Browser: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    Download signed ActiveX controls: Prompt
    Download unsigned ActiveX controls: Disabled
    Run ActiveX controls and plug-ins: Allowed
    Initialize and script ActiveX controls not marked as safe: Disabled
    Allow scripting of Internet Explorer Webbrowser control: Disabled
    Active scripting: Allowed
    Script ActiveX controls marked as safe for scripting: Allowed

    File Scan Data-->

    Other data-->
    Office Details: <GenuineResults><MachineData><UGUID>{16FFFE26-46D4-4B7C-B67C-8F8DFCD1012A}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7601.2.00010300.1.0.003</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-9YQTR</PKey><PID>00359-OEM-8992687-00007</PID><PIDType>2</PIDType><SID>S-1-5-21-1423815676-556462722-1850553604</SID><SYSTEM><Manufacturer>ASUSTeK Computer Inc.</Manufacturer><Model>G74Sx</Model></SYSTEM><BIOS><Manufacturer>American Megatrends Inc.</Manufacturer><Version>G74Sx.203</Version><SMBIOSVersion major="2" minor="6"/><Date>20110923000000.000000+000</Date></BIOS><HWID>BE703F07018400FE</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Central Standard Time(GMT-06:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM><OEMID>_ASUS_</OEMID><OEMTableID>Notebook</OEMTableID></OEM><GANotification/></MachineData><Software><Office><Result>109</Result><Products/><Applications/></Office></Software></GenuineResults>  

    Spsys.log Content: 0x80070002

    Licensing Data-->
    Software licensing service version: 6.1.7601.17514

    Name: Windows(R) 7, HomePremium edition
    Description: Windows Operating System - Windows(R) 7, OEM_SLP channel
    Activation ID: d2c04e90-c3dd-4260-b0f3-f845f5d27d64
    Application ID: 55c92734-d682-4d71-983e-d6ec3f16059f
    Extended PID: 00359-00178-926-800007-02-1033-7600.0000-2092009
    Installation ID: 106595788890230286466760295650773634182053320146529602
    Processor Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88338
    Machine Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88339
    Use License URL: http://go.microsoft.com/fwlink/?LinkID=88341
    Product Key Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88340
    Partial Product Key: 9YQTR
    License Status: Licensed
    Remaining Windows rearm count: 1
    Trusted time: 8/16/2013 10:18:47 PM

    Windows Activation Technologies-->
    HrOffline: 0x8004FE21
    HrOnline: N/A
    HealthStatus: 0x0000000000008700
    Event Time Stamp: 8:16:2013 21:57
    ActiveX: Registered, Version: 7.1.7600.16395
    Admin Service: Registered, Version: 7.1.7600.16395
    HealthStatus Bitmask Output:
    Tampered File: %systemroot%\system32\slc.dll|slc.dll.mui
    Tampered File: %systemroot%\system32\slcext.dll|slcext.dll.mui
    Tampered File: %systemroot%\system32\sppuinotify.dll|sppuinotify.dll.mui
    Tampered File: %systemroot%\system32\sppsvc.exe|sppsvc.exe.mui


    HWID Data-->
    HWID Hash Current: MAAAAAEAAQABAAEAAAACAAAAAwABAAEA+jHe9XY57iOiFyKNpHsCGBTmRurImS5z

    OEM Activation 1.0 Data-->
    N/A

    OEM Activation 2.0 Data-->
    BIOS valid for OA 2.0: yes
    Windows marker version: 0x20001
    OEMID and OEMTableID Consistent: yes
    BIOS Information: 
      ACPI Table Name OEMID Value OEMTableID Value
      APIC _ASUS_ Notebook
      FACP _ASUS_ Notebook
      DBGP _ASUS_ Notebook
      HPET _ASUS_ Notebook
      MCFG _ASUS_ Notebook
      ECDT _ASUS_ Notebook
      SLIC _ASUS_ Notebook
      SSDT PmRef Cpu0Ist
      SSDT PmRef Cpu0Ist
      ASF! INTEL HCG

    Saturday, August 17, 2013 3:25 AM

Answers

  • I must admit, at this point I'm thinking about a repair install of the OS - I don't think a System Restore will do anything.

    It's likely that the problem arises from something that the 'repair shop' did.

     

    Download the SP1 Refresh for your language and edition from the links on these pages...

     

    Heidoc - Microsoft DR Download links

     

    The links are for downloads from the Digital River servers run for MS, so are about as safe as
    you can get :)

     

    Once you have it downloaded, you then need to burn the DVD from it - use either the Windows Disk
    Image Burner, or (better still) your favourite burning application at the slowest speed possible.

     

    Note that you do NOT 'drag and drop' the file to the disk, you must use the 'burn an image'
    option from your app - or you'll end up with a useless coaster :)

     

    Once you have the disk burnt, check that it boots the (or any other) system OK - but do NOT start
    the repair from there - you must start the repair from within a normal Windows boot.

     

    Follow the instructions in this tutorial - http://www.sevenforums.com/tutorials/3413-repair-install.html

    - and they should help you get through it (it's not as difficult as it looks!)

     

    Always ask questions first if you're unsure - either here, or in sevenforums.

     

    Good luck with it!



    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    No - I do not work for Microsoft, or any of its contractors.

    Saturday, September 21, 2013 12:07 PM
    Moderator

All replies

  • Tampered File: %systemroot%\system32\slc.dll|slc.dll.mui
    Tampered File: %systemroot%\system32\slcext.dll|slcext.dll.mui
    Tampered File: %systemroot%\system32\sppuinotify.dll|sppuinotify.dll.mui
    Tampered File: %systemroot%\system32\sppsvc.exe|sppsvc.exe.mui

    Please run a full CHKDSK and SFC scan....

     

    Click on Start > All Programs > Accessories

    Right-click on the Command Prompt entry

    Select Run as Administrator and accept the UAC prompt - the Elevated Command Prompt window should pop up.

     

    At the Command prompt, type

     

    CHKDSK C: /R

     

    and hit the Enter key.

    You will be told that the drive is locked,

    and the CHKDSK will run at he next boot - hit the Y key, press Enter, and then reboot.

     

    The CHKDSK will take a few hours depending on the size of the drive, so be patient!

     

    After the CHKDSK has run, Windows should boot normally (possibly after a second auto-reboot) -

    then run the SFC.

     

    SFC -System File Checker - Instructions

    Click on Start > All Programs > Accessories

    Right-click on the Command Prompt entry

    Select Run as Administrator and accept the UAC prompt - the Elevated Command Prompt window should pop up.

     

    At the Command prompt, type

     

    SFC /SCANNOW

     

    and hit the Enter key

     

    Wait for the scan to finish - make a note of any error messages - and then reboot.

     

     

    Copy the CBS.log file created (C:\Windows\Logs\CBS\CBS.log) to your desktop (you can't manipulate it directly) and then compress the copy and upload it to your SkyDrive Public folder (http://skydrive.live.com ) and post a link to it so that I can take a look.

     

    Post a new MGADiag report with details of any error messages encountered.


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    No - I do not work for Microsoft, or any of its contractors.

    Saturday, August 17, 2013 9:12 AM
    Moderator
  • The chkdsk scan said "clean".

    Here's a link to my CBS.log: https://skydrive.live.com/redir?resid=36CB3D2532BFDEC0!107&authkey=!ABWwY1HH3K7Dud0

    Next MGADIag run:

    Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 0x8004FE21
    Cached Online Validation Code: 0x0
    Windows Product Key: *****-*****-2QWT6-HCQXJ-9YQTR
    Windows Product Key Hash: PVjSC5x6njvqunmbCY3lOD7rYDo=
    Windows Product ID: 00359-OEM-8992687-00007
    Windows Product ID Type: 2
    Windows License Type: OEM SLP
    Windows OS version: 6.1.7601.2.00010300.1.0.003
    ID: {16FFFE26-46D4-4B7C-B67C-8F8DFCD1012A}(3)
    Is Admin: Yes
    TestCab: 0x0
    LegitcheckControl ActiveX: N/A, hr = 0x80070002
    Signed By: N/A, hr = 0x80070002
    Product Name: Windows 7 Home Premium
    Architecture: 0x00000009
    Build lab: 7601.win7sp1_gdr.130318-1533
    TTS Error: 
    Validation Diagnostic: 
    Resolution Status: N/A

    Vista WgaER Data-->
    ThreatID(s): N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002

    Windows XP Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    File Exists: No
    Version: N/A, hr = 0x80070002
    WgaTray.exe Signed By: N/A, hr = 0x80070002
    WgaLogon.dll Signed By: N/A, hr = 0x80070002

    OGA Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002
    OGAExec.exe Signed By: N/A, hr = 0x80070002
    OGAAddin.dll Signed By: N/A, hr = 0x80070002

    OGA Data-->
    Office Status: 109 N/A
    OGA Version: N/A, 0x80070002
    Signed By: N/A, hr = 0x80070002
    Office Diagnostics: 025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3

    Browser Data-->
    Proxy settings: N/A
    User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
    Default Browser: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    Download signed ActiveX controls: Prompt
    Download unsigned ActiveX controls: Disabled
    Run ActiveX controls and plug-ins: Allowed
    Initialize and script ActiveX controls not marked as safe: Disabled
    Allow scripting of Internet Explorer Webbrowser control: Disabled
    Active scripting: Allowed
    Script ActiveX controls marked as safe for scripting: Allowed

    File Scan Data-->

    Other data-->
    Office Details: <GenuineResults><MachineData><UGUID>{16FFFE26-46D4-4B7C-B67C-8F8DFCD1012A}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7601.2.00010300.1.0.003</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-9YQTR</PKey><PID>00359-OEM-8992687-00007</PID><PIDType>2</PIDType><SID>S-1-5-21-1423815676-556462722-1850553604</SID><SYSTEM><Manufacturer>ASUSTeK Computer Inc.</Manufacturer><Model>G74Sx</Model></SYSTEM><BIOS><Manufacturer>American Megatrends Inc.</Manufacturer><Version>G74Sx.203</Version><SMBIOSVersion major="2" minor="6"/><Date>20110923000000.000000+000</Date></BIOS><HWID>BE703F07018400FE</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Central Standard Time(GMT-06:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM><OEMID>_ASUS_</OEMID><OEMTableID>Notebook</OEMTableID></OEM><GANotification/></MachineData><Software><Office><Result>109</Result><Products/><Applications/></Office></Software></GenuineResults>  

    Spsys.log Content: 0x80070002

    Licensing Data-->
    Software licensing service version: 6.1.7601.17514

    Name: Windows(R) 7, HomePremium edition
    Description: Windows Operating System - Windows(R) 7, OEM_SLP channel
    Activation ID: d2c04e90-c3dd-4260-b0f3-f845f5d27d64
    Application ID: 55c92734-d682-4d71-983e-d6ec3f16059f
    Extended PID: 00359-00178-926-800007-02-1033-7600.0000-2092009
    Installation ID: 106595788890230286466760295650773634182053320146529602
    Processor Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88338
    Machine Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88339
    Use License URL: http://go.microsoft.com/fwlink/?LinkID=88341
    Product Key Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88340
    Partial Product Key: 9YQTR
    License Status: Licensed
    Remaining Windows rearm count: 1
    Trusted time: 8/22/2013 10:37:20 AM

    Windows Activation Technologies-->
    HrOffline: 0x8004FE21
    HrOnline: N/A
    HealthStatus: 0x0000000000008700
    Event Time Stamp: 8:22:2013 09:55
    ActiveX: Registered, Version: 7.1.7600.16395
    Admin Service: Registered, Version: 7.1.7600.16395
    HealthStatus Bitmask Output:
    Tampered File: %systemroot%\system32\slc.dll|slc.dll.mui
    Tampered File: %systemroot%\system32\slcext.dll|slcext.dll.mui
    Tampered File: %systemroot%\system32\sppuinotify.dll|sppuinotify.dll.mui
    Tampered File: %systemroot%\system32\sppsvc.exe|sppsvc.exe.mui


    HWID Data-->
    HWID Hash Current: MgAAAAEAAQABAAEAAAACAAAABAABAAEA+jHe9XY57iOiFyKNpHsCGBTmRuqCbMiZLnM=

    OEM Activation 1.0 Data-->
    N/A

    OEM Activation 2.0 Data-->
    BIOS valid for OA 2.0: yes
    Windows marker version: 0x20001
    OEMID and OEMTableID Consistent: yes
    BIOS Information: 
      ACPI Table Name OEMID Value OEMTableID Value
      APIC _ASUS_ Notebook
      FACP _ASUS_ Notebook
      DBGP _ASUS_ Notebook
      HPET _ASUS_ Notebook
      MCFG _ASUS_ Notebook
      ECDT _ASUS_ Notebook
      SLIC _ASUS_ Notebook
      SSDT PmRef Cpu0Ist
      SSDT PmRef Cpu0Ist
      ASF! INTEL HCG

    Thursday, August 22, 2013 3:39 PM
  • While there are no errors in the SFC scan as such, there are errors in the background CBS.log data....

    	Line 529: 2013-08-22 09:50:58, Error                 CBS    Failed to process single phase execution. [HRESULT = 0x8e5e03fb - JET_errPageNotInitialized]
    	Line 63058: 2013-08-22 09:56:44, Error                 CBS    Failed to verify if catalog file \\?\C:\Windows\Servicing\Packages\Package_for_KB2836943~31bf3856ad364e35~amd64~~6.1.1.0.cat is valid. [HRESULT = 0x800b0100 - TRUST_E_NOSIGNATURE]
    	Line 63068: 2013-08-22 09:56:44, Error                 CBS    Delay Initialization Failed [HRESULT = 0x800b0100 - TRUST_E_NOSIGNATURE]
    	Line 63175: 2013-08-22 09:56:47, Error                 CBS    Failed to verify if catalog file \\?\C:\Windows\Servicing\Packages\Package_for_KB2836943~31bf3856ad364e35~amd64~~6.1.1.0.cat is valid. [HRESULT = 0x800b0100 - TRUST_E_NOSIGNATURE]
    	Line 63185: 2013-08-22 09:56:47, Error                 CBS    Delay Initialization Failed [HRESULT = 0x800b0100 - TRUST_E_NOSIGNATURE]
    

    Hopefully, these will be properly identified (and perhaps fixed) by the following....

    Please download and save  the CheckSUR tool from http://support.microsoft.com/kb/947821

    (you'll need to look in the details for Windows 7, downloading from the Microsoft Download Center)

     

    Run it - The tool can take anywhere from 5 mins to a couple of hours to run (or 'Install') depending on how much it has to do, and may exit silently - it may appear to freeze for most of that time, but be patient.

    The result is logged in the C:\Windows\Logs\CBS\CheckSUR.log file  - and an archive …\checksur.persist.log file

     

    Then zip the CheckSUR.log and upload it to your SkyDrive Public folder so I can take a look - post a link in your reply.

     


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    No - I do not work for Microsoft, or any of its contractors.

    Thursday, August 22, 2013 3:49 PM
    Moderator
  • Here's the CheckSUR link: https://skydrive.live.com/redir?resid=36CB3D2532BFDEC0!108&authkey=!APFy3vsZiUbUcZo
    Thursday, August 22, 2013 6:05 PM
  • Great! That has at least given us an easy list to work from :)

    Unavailable repair files:
    	servicing\packages\Microsoft-Windows-IE-Hyphenation-Parent-Package-English~31bf3856ad364e35~~~10.2.9200.16437.mum
    	servicing\packages\Microsoft-Windows-IE-Spelling-Parent-Package-English~31bf3856ad364e35~~~10.2.9200.16437.mum
    	servicing\packages\Package_1_for_KB2836943~31bf3856ad364e35~amd64~~6.1.1.0.mum
    	servicing\packages\Package_1_for_KB2836943~31bf3856ad364e35~amd64~~6.1.1.0.mum
    	servicing\packages\Package_2_for_KB2836943~31bf3856ad364e35~amd64~~6.1.1.0.mum
    	servicing\packages\Package_2_for_KB2836943~31bf3856ad364e35~amd64~~6.1.1.0.mum
    	servicing\packages\Package_4_for_KB2836943~31bf3856ad364e35~amd64~~6.1.1.0.mum
    	servicing\packages\Package_4_for_KB2836943~31bf3856ad364e35~amd64~~6.1.1.0.mum
    	servicing\packages\Package_for_KB2836943_SP1~31bf3856ad364e35~amd64~~6.1.1.0.mum
    	servicing\packages\Package_for_KB2836943_SP1~31bf3856ad364e35~amd64~~6.1.1.0.mum
    	servicing\packages\Package_for_KB2836943~31bf3856ad364e35~amd64~~6.1.1.0.mum
    	servicing\packages\Package_for_KB2836943~31bf3856ad364e35~amd64~~6.1.1.0.mum
    	servicing\packages\Microsoft-Windows-IE-Hyphenation-Parent-Package-English~31bf3856ad364e35~~~10.2.9200.16437.cat
    	servicing\packages\Microsoft-Windows-IE-Spelling-Parent-Package-English~31bf3856ad364e35~~~10.2.9200.16437.cat
    	servicing\packages\Package_1_for_KB2836943~31bf3856ad364e35~amd64~~6.1.1.0.cat
    	servicing\packages\Package_1_for_KB2836943~31bf3856ad364e35~amd64~~6.1.1.0.cat
    	servicing\packages\Package_2_for_KB2836943~31bf3856ad364e35~amd64~~6.1.1.0.cat
    	servicing\packages\Package_2_for_KB2836943~31bf3856ad364e35~amd64~~6.1.1.0.cat
    	servicing\packages\Package_4_for_KB2836943~31bf3856ad364e35~amd64~~6.1.1.0.cat
    	servicing\packages\Package_4_for_KB2836943~31bf3856ad364e35~amd64~~6.1.1.0.cat
    	servicing\packages\Package_for_KB2836943_SP1~31bf3856ad364e35~amd64~~6.1.1.0.cat
    	servicing\packages\Package_for_KB2836943_SP1~31bf3856ad364e35~amd64~~6.1.1.0.cat
    	servicing\packages\Package_for_KB2836943~31bf3856ad364e35~amd64~~6.1.1.0.cat
    	servicing\packages\Package_for_KB2836943~31bf3856ad364e35~amd64~~6.1.1.0.cat
    

    I'lll post a fix protocol later


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    No - I do not work for Microsoft, or any of its contractors.

    Friday, August 23, 2013 6:45 AM
    Moderator
  • I've uploaded a file - jakaa.zip - to my SkyDrive at  Noel's SkyDrive

    Please download and save it.

    Right-click on the downloaded file, and select Extract all…

    Extract to the default location - which will create a new folder  jakaa in the same place.

    Open this folder - there should be one folders inside it (Packages)

     

    Copy the content of the Packages folder to the folder

    C:\Windows\Temp\CheckSur\Servicing\Packages

      

    Now run the CheckSUR tool again (it may take a while)

     

    Post the new CheckSUR.log file, and the CheckSUR.persist.log file.

    Then run another SFC scan, and post the new CBS.log file


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    No - I do not work for Microsoft, or any of its contractors.

    Friday, August 23, 2013 11:27 AM
    Moderator
  • Here's the new CheckSUR log: https://skydrive.live.com/redir?resid=36CB3D2532BFDEC0!109&authkey=!ALoxziLtmIvBelo

    And the new CBS log: https://skydrive.live.com/redir?resid=36CB3D2532BFDEC0!110&authkey=!AJbTu_-ZuONKGow

    Monday, August 26, 2013 4:23 AM
  • Great - the CheckSUR result is now as clear as any machine with IE10 installed, and the SFC scan is also clear.

    Please run a new MGADiag report, and we'll see what remains to be done.


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    No - I do not work for Microsoft, or any of its contractors.

    Monday, August 26, 2013 9:33 AM
    Moderator
  • Here's the latest MDiag report:

    Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 0x8004FE21
    Cached Online Validation Code: 0x0
    Windows Product Key: *****-*****-2QWT6-HCQXJ-9YQTR
    Windows Product Key Hash: PVjSC5x6njvqunmbCY3lOD7rYDo=
    Windows Product ID: 00359-OEM-8992687-00007
    Windows Product ID Type: 2
    Windows License Type: OEM SLP
    Windows OS version: 6.1.7601.2.00010300.1.0.003
    ID: {16FFFE26-46D4-4B7C-B67C-8F8DFCD1012A}(3)
    Is Admin: Yes
    TestCab: 0x0
    LegitcheckControl ActiveX: N/A, hr = 0x80070002
    Signed By: N/A, hr = 0x80070002
    Product Name: Windows 7 Home Premium
    Architecture: 0x00000009
    Build lab: 7601.win7sp1_gdr.130318-1533
    TTS Error: 
    Validation Diagnostic: 
    Resolution Status: N/A

    Vista WgaER Data-->
    ThreatID(s): N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002

    Windows XP Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    File Exists: No
    Version: N/A, hr = 0x80070002
    WgaTray.exe Signed By: N/A, hr = 0x80070002
    WgaLogon.dll Signed By: N/A, hr = 0x80070002

    OGA Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002
    OGAExec.exe Signed By: N/A, hr = 0x80070002
    OGAAddin.dll Signed By: N/A, hr = 0x80070002

    OGA Data-->
    Office Status: 109 N/A
    OGA Version: N/A, 0x80070002
    Signed By: N/A, hr = 0x80070002
    Office Diagnostics: 025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3

    Browser Data-->
    Proxy settings: N/A
    User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
    Default Browser: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    Download signed ActiveX controls: Prompt
    Download unsigned ActiveX controls: Disabled
    Run ActiveX controls and plug-ins: Allowed
    Initialize and script ActiveX controls not marked as safe: Disabled
    Allow scripting of Internet Explorer Webbrowser control: Disabled
    Active scripting: Allowed
    Script ActiveX controls marked as safe for scripting: Allowed

    File Scan Data-->

    Other data-->
    Office Details: <GenuineResults><MachineData><UGUID>{16FFFE26-46D4-4B7C-B67C-8F8DFCD1012A}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7601.2.00010300.1.0.003</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-9YQTR</PKey><PID>00359-OEM-8992687-00007</PID><PIDType>2</PIDType><SID>S-1-5-21-1423815676-556462722-1850553604</SID><SYSTEM><Manufacturer>ASUSTeK Computer Inc.</Manufacturer><Model>G74Sx</Model></SYSTEM><BIOS><Manufacturer>American Megatrends Inc.</Manufacturer><Version>G74Sx.203</Version><SMBIOSVersion major="2" minor="6"/><Date>20110923000000.000000+000</Date></BIOS><HWID>BE703F07018400FE</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Central Standard Time(GMT-06:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM><OEMID>_ASUS_</OEMID><OEMTableID>Notebook</OEMTableID></OEM><GANotification/></MachineData><Software><Office><Result>109</Result><Products/><Applications/></Office></Software></GenuineResults>  

    Spsys.log Content: 0x80070002

    Licensing Data-->
    Software licensing service version: 6.1.7601.17514

    Name: Windows(R) 7, HomePremium edition
    Description: Windows Operating System - Windows(R) 7, OEM_SLP channel
    Activation ID: d2c04e90-c3dd-4260-b0f3-f845f5d27d64
    Application ID: 55c92734-d682-4d71-983e-d6ec3f16059f
    Extended PID: 00359-00178-926-800007-02-1033-7600.0000-2092009
    Installation ID: 105225802186047023797442123162202945484164142635146435
    Processor Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88338
    Machine Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88339
    Use License URL: http://go.microsoft.com/fwlink/?LinkID=88341
    Product Key Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88340
    Partial Product Key: 9YQTR
    License Status: Licensed
    Remaining Windows rearm count: 1
    Trusted time: 8/27/2013 8:51:36 PM

    Windows Activation Technologies-->
    HrOffline: 0x8004FE21
    HrOnline: N/A
    HealthStatus: 0x0000000000008700
    Event Time Stamp: 8:22:2013 09:55
    ActiveX: Registered, Version: 7.1.7600.16395
    Admin Service: Registered, Version: 7.1.7600.16395
    HealthStatus Bitmask Output:
    Tampered File: %systemroot%\system32\slc.dll|slc.dll.mui
    Tampered File: %systemroot%\system32\slcext.dll|slcext.dll.mui
    Tampered File: %systemroot%\system32\sppuinotify.dll|sppuinotify.dll.mui
    Tampered File: %systemroot%\system32\sppsvc.exe|sppsvc.exe.mui


    HWID Data-->
    HWID Hash Current: MAAAAAEAAQABAAEAAAABAAAABAABAAEA+jHe9XY57iOiFyKNAhgU5kbqgmzImS5z

    OEM Activation 1.0 Data-->
    N/A

    OEM Activation 2.0 Data-->
    BIOS valid for OA 2.0: yes
    Windows marker version: 0x20001
    OEMID and OEMTableID Consistent: yes
    BIOS Information: 
      ACPI Table Name OEMID Value OEMTableID Value
      APIC _ASUS_ Notebook
      FACP _ASUS_ Notebook
      DBGP _ASUS_ Notebook
      HPET _ASUS_ Notebook
      MCFG _ASUS_ Notebook
      ECDT _ASUS_ Notebook
      SLIC _ASUS_ Notebook
      SSDT PmRef Cpu0Ist
      SSDT PmRef Cpu0Ist
      ASF! INTEL HCG

    Wednesday, August 28, 2013 1:52 AM
  • OK - please attempt validation at www.microsoft.com/genuine/validate using Internet Explorer

    What happens? - post a new MGADiag report.


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    No - I do not work for Microsoft, or any of its contractors.

    Wednesday, August 28, 2013 11:14 AM
    Moderator
  • I ran the validate in IE and it came back saying the same thing, "Install genuine Windows".

    Here's the report:

    Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 0x8004FE21
    Cached Online Validation Code: 0x0
    Windows Product Key: *****-*****-2QWT6-HCQXJ-9YQTR
    Windows Product Key Hash: PVjSC5x6njvqunmbCY3lOD7rYDo=
    Windows Product ID: 00359-OEM-8992687-00007
    Windows Product ID Type: 2
    Windows License Type: OEM SLP
    Windows OS version: 6.1.7601.2.00010300.1.0.003
    ID: {16FFFE26-46D4-4B7C-B67C-8F8DFCD1012A}(3)
    Is Admin: Yes
    TestCab: 0x0
    LegitcheckControl ActiveX: N/A, hr = 0x80070002
    Signed By: N/A, hr = 0x80070002
    Product Name: Windows 7 Home Premium
    Architecture: 0x00000009
    Build lab: 7601.win7sp1_gdr.130318-1533
    TTS Error: 
    Validation Diagnostic: 
    Resolution Status: N/A

    Vista WgaER Data-->
    ThreatID(s): N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002

    Windows XP Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    File Exists: No
    Version: N/A, hr = 0x80070002
    WgaTray.exe Signed By: N/A, hr = 0x80070002
    WgaLogon.dll Signed By: N/A, hr = 0x80070002

    OGA Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002
    OGAExec.exe Signed By: N/A, hr = 0x80070002
    OGAAddin.dll Signed By: N/A, hr = 0x80070002

    OGA Data-->
    Office Status: 109 N/A
    OGA Version: N/A, 0x80070002
    Signed By: N/A, hr = 0x80070002
    Office Diagnostics: 025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3

    Browser Data-->
    Proxy settings: N/A
    User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
    Default Browser: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    Download signed ActiveX controls: Prompt
    Download unsigned ActiveX controls: Disabled
    Run ActiveX controls and plug-ins: Allowed
    Initialize and script ActiveX controls not marked as safe: Disabled
    Allow scripting of Internet Explorer Webbrowser control: Disabled
    Active scripting: Allowed
    Script ActiveX controls marked as safe for scripting: Allowed

    File Scan Data-->

    Other data-->
    Office Details: <GenuineResults><MachineData><UGUID>{16FFFE26-46D4-4B7C-B67C-8F8DFCD1012A}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7601.2.00010300.1.0.003</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-9YQTR</PKey><PID>00359-OEM-8992687-00007</PID><PIDType>2</PIDType><SID>S-1-5-21-1423815676-556462722-1850553604</SID><SYSTEM><Manufacturer>ASUSTeK Computer Inc.</Manufacturer><Model>G74Sx</Model></SYSTEM><BIOS><Manufacturer>American Megatrends Inc.</Manufacturer><Version>G74Sx.203</Version><SMBIOSVersion major="2" minor="6"/><Date>20110923000000.000000+000</Date></BIOS><HWID>BE703F07018400FE</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Central Standard Time(GMT-06:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM><OEMID>_ASUS_</OEMID><OEMTableID>Notebook</OEMTableID></OEM><GANotification/></MachineData><Software><Office><Result>109</Result><Products/><Applications/></Office></Software></GenuineResults>  

    Spsys.log Content: 0x80070002

    Licensing Data-->
    Software licensing service version: 6.1.7601.17514

    Name: Windows(R) 7, HomePremium edition
    Description: Windows Operating System - Windows(R) 7, OEM_SLP channel
    Activation ID: d2c04e90-c3dd-4260-b0f3-f845f5d27d64
    Application ID: 55c92734-d682-4d71-983e-d6ec3f16059f
    Extended PID: 00359-00178-926-800007-02-1033-7600.0000-2092009
    Installation ID: 105225802186047023797442123162202945484164142635146435
    Processor Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88338
    Machine Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88339
    Use License URL: http://go.microsoft.com/fwlink/?LinkID=88341
    Product Key Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88340
    Partial Product Key: 9YQTR
    License Status: Licensed
    Remaining Windows rearm count: 1
    Trusted time: 8/28/2013 9:41:50 PM

    Windows Activation Technologies-->
    HrOffline: 0x8004FE21
    HrOnline: N/A
    HealthStatus: 0x0000000000008700
    Event Time Stamp: 8:22:2013 09:55
    ActiveX: Registered, Version: 7.1.7600.16395
    Admin Service: Registered, Version: 7.1.7600.16395
    HealthStatus Bitmask Output:
    Tampered File: %systemroot%\system32\slc.dll|slc.dll.mui
    Tampered File: %systemroot%\system32\slcext.dll|slcext.dll.mui
    Tampered File: %systemroot%\system32\sppuinotify.dll|sppuinotify.dll.mui
    Tampered File: %systemroot%\system32\sppsvc.exe|sppsvc.exe.mui


    HWID Data-->
    HWID Hash Current: MAAAAAEAAQABAAEAAAABAAAABAABAAEA+jHe9XY57iOiFyKNAhgU5kbqgmzImS5z

    OEM Activation 1.0 Data-->
    N/A

    OEM Activation 2.0 Data-->
    BIOS valid for OA 2.0: yes
    Windows marker version: 0x20001
    OEMID and OEMTableID Consistent: yes
    BIOS Information: 
      ACPI Table Name OEMID Value OEMTableID Value
      APIC _ASUS_ Notebook
      FACP _ASUS_ Notebook
      DBGP _ASUS_ Notebook
      HPET _ASUS_ Notebook
      MCFG _ASUS_ Notebook
      ECDT _ASUS_ Notebook
      SLIC _ASUS_ Notebook
      SSDT PmRef Cpu0Ist
      SSDT PmRef Cpu0Ist
      ASF! INTEL HCG

    Thursday, August 29, 2013 2:42 AM
  • Odd - that's not touched the file tampers at all :(

    let's have a closer look at one of the file pairs.....

    Open an Elevated Command Prompt, and run the following commands - copy and paste the results to your reply.

    ICACLS C:\Windows\System32\slc.dll
    DIR C:\Windows\System32\slc.dll
    ATTRIB C:\Windows\System32\slc.dll
    ICACLS C:\Windows\System32\en-US\slc.dll.mui
    DIR C:\Windows\System32\en-US\slc.dll.mui
    ATTRIB C:\Windows\System32\en-US\slc.dll.mui
     
    .

      Here are some instructions to make life easier :)

    1) To open an Elevated Command Prompt Window (the ECP window), click on Start, All Programs, Accessories – then right-click on Command Prompt, and select Run as Administrator. Accept the UAC prompt. 

    2) To run the commands easier, highlight the block of commands, and right-click on the highlight – select Copy. In the CP Window, click on the black/white icon at top left – select Paste. The commands will run but may not complete the last command, so hit the Enter Key once. 

    3) To copy the results... click on the Black/White icon in the top left, and select Edit... 'Select All', and hit the Enter key - then use Ctrl+V or r-click+Paste to paste it into your response.     


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    No - I do not work for Microsoft, or any of its contractors.

    Sunday, September 1, 2013 3:13 PM
    Moderator
  • C:\Windows\system32>ICACLS C:\Windows\System32\slc.dll
    C:\Windows\System32\slc.dll NT SERVICE\TrustedInstaller:(F)
                                BUILTIN\Administrators:(RX)
                                NT AUTHORITY\SYSTEM:(RX)
                                BUILTIN\Users:(RX)

    Successfully processed 1 files; Failed processing 0 files

    C:\Windows\system32>DIR C:\Windows\System32\slc.dll
     Volume in drive C is OS
     Volume Serial Number is 5AD7-A2B9

     Directory of C:\Windows\System32

    07/13/2009  08:41 PM            30,720 slc.dll
                   1 File(s)         30,720 bytes
                   0 Dir(s)  245,324,959,744 bytes free

    C:\Windows\system32>ATTRIB C:\Windows\System32\slc.dll
    A            C:\Windows\System32\slc.dll

    C:\Windows\system32>ICACLS C:\windows\System32\en-US\slc.dll.mui
    C:\windows\System32\en-US\slc.dll.mui NT SERVICE\TrustedInstaller:(F)
                                          BUILTIN\Administrators:(RX)
                                          NT AUTHORITY\SYSTEM:(RX)
                                          BUILTIN\Users:(RX)

    Successfully processed 1 files; Failed processing 0 files

    C:\Windows\system32>DIR C:\windows\System32\en-US\slc.dll.mui
     Volume in drive C is OS
     Volume Serial Number is 5AD7-A2B9

     Directory of C:\windows\System32\en-US

    07/13/2009  09:25 PM            54,784 slc.dll.mui
                   1 File(s)         54,784 bytes
                   0 Dir(s)  245,324,881,920 bytes free

    C:\Windows\system32>ATTRIB C:\windows\System32\en-US\slc.dll.mui
    A            C:\windows\System32\en-US\slc.dll.mui

    C:\Windows\system32>
    Saturday, September 7, 2013 2:52 AM
  • That looks normal...

    Please download and save  the CheckSUR tool from http://support.microsoft.com/kb/947821

    (you'll need to look in the details for Windows 7, downloading from the Microsoft Download Center)

     

    Run it - The tool can take anywhere from 5 mins to a couple of hours to run (or 'Install') depending on how much it has to do, and may exit silently - it may appear to freeze for most of that time, but be patient.

    The result is logged in the C:\Windows\Logs\CBS\CheckSUR.log file  - and an archive …\checksur.persist.log file

     

    Then zip the CheckSUR.log and upload it to your SkyDrive Public folder so I can take a look - post a link in your reply.

     


    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    No - I do not work for Microsoft, or any of its contractors.

    Saturday, September 7, 2013 8:27 AM
    Moderator
  • Here's the log:

    https://skydrive.live.com/redir?resid=36CB3D2532BFDEC0!111&authkey=!AMvJwDUXoeATWwE

    Should I just do a system restore and have re install windows?

    Saturday, September 21, 2013 3:24 AM
  • I must admit, at this point I'm thinking about a repair install of the OS - I don't think a System Restore will do anything.

    It's likely that the problem arises from something that the 'repair shop' did.

     

    Download the SP1 Refresh for your language and edition from the links on these pages...

     

    Heidoc - Microsoft DR Download links

     

    The links are for downloads from the Digital River servers run for MS, so are about as safe as
    you can get :)

     

    Once you have it downloaded, you then need to burn the DVD from it - use either the Windows Disk
    Image Burner, or (better still) your favourite burning application at the slowest speed possible.

     

    Note that you do NOT 'drag and drop' the file to the disk, you must use the 'burn an image'
    option from your app - or you'll end up with a useless coaster :)

     

    Once you have the disk burnt, check that it boots the (or any other) system OK - but do NOT start
    the repair from there - you must start the repair from within a normal Windows boot.

     

    Follow the instructions in this tutorial - http://www.sevenforums.com/tutorials/3413-repair-install.html

    - and they should help you get through it (it's not as difficult as it looks!)

     

    Always ask questions first if you're unsure - either here, or in sevenforums.

     

    Good luck with it!



    Noel Paton | Nil Carborundum Illegitemi | CrashFixPC | The Three-toed Sloth
    No - I do not work for Microsoft, or any of its contractors.

    Saturday, September 21, 2013 12:07 PM
    Moderator