New
#11
Upload a new MGADiag report .
Code:Diagnostic Report (1.9.0019.0): ----------------------------------------- WGA Data--> Validation Status: Genuine Validation Code: 0 Cached Validation Code: N/A, hr = 0xc004f012 Windows Product Key: *****-*****-7JVM3-2M9JT-4GQC9 Windows Product Key Hash: ULy+hte2xK1tgks+bRbEWOf1hsQ= Windows Product ID: 00426-OEM-9402033-26291 Windows Product ID Type: 8 Windows License Type: COA SLP Windows OS version: 6.1.7601.2.00010100.1.0.001 ID: {E9EACD4D-1E30-4FC3-93F4-404BEC54062F}(3) Is Admin: Yes TestCab: 0x0 WGA Version: Registered, 1.9.42.0 Signed By: Microsoft Product Name: Windows 7 Ultimate Architecture: 0x00000009 Build lab: 7601.win7sp1_gdr.130318-1533 TTS Error: Validation Diagnostic: Resolution Status: N/A WgaER Data--> ThreatID(s): N/A, hr = 0x80070002 Version: N/A, hr = 0x80070002 WGA Notifications Data--> Cached Result: N/A, hr = 0x80070002 File Exists: No Version: N/A, hr = 0x80070002 WgaTray.exe Signed By: N/A, hr = 0x80070002 WgaLogon.dll Signed By: N/A, hr = 0x80070002 OGA Notifications Data--> Cached Result: N/A, hr = 0x80070002 Version: N/A, hr = 0x80070002 OGAExec.exe Signed By: N/A, hr = 0x80070002 OGAAddin.dll Signed By: N/A, hr = 0x80070002 OGA Data--> Office Status: 109 N/A OGA Version: N/A, 0x80070002 Signed By: N/A, hr = 0x80070002 Office Diagnostics: B4D0AA8B-604-645_B4D0AA8B-604-645_B4D0AA8B-604-645_025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3 Browser Data--> Proxy settings: N/A User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32) Default Browser: C:\Program Files (x86)\Internet Explorer\iexplore.exe Download signed ActiveX controls: Prompt Download unsigned ActiveX controls: Disabled Run ActiveX controls and plug-ins: Allowed Initialize and script ActiveX controls not marked as safe: Disabled Allow scripting of Internet Explorer Webbrowser control: Disabled Active scripting: Allowed Script ActiveX controls marked as safe for scripting: Allowed File Scan Data--> File Mismatch: C:\Windows\system32\wat\watadminsvc.exe[7.1.7600.16395] File Mismatch: C:\Windows\system32\wat\watux.exe[7.1.7600.16395] File Mismatch: C:\Windows\system32\sppobjs.dll[6.1.7601.17514] File Mismatch: C:\Windows\system32\sppc.dll[6.1.7601.17514] File Mismatch: C:\Windows\system32\sppcext.dll[6.1.7600.16385] File Mismatch: C:\Windows\system32\sppwinob.dll[6.1.7601.17514] File Mismatch: C:\Windows\system32\slc.dll[6.1.7600.16385] File Mismatch: C:\Windows\system32\slcext.dll[6.1.7600.16385] File Mismatch: C:\Windows\system32\sppuinotify.dll[6.1.7600.16385] File Mismatch: C:\Windows\system32\slui.exe[6.1.7601.17514] File Mismatch: C:\Windows\system32\sppcomapi.dll[6.1.7601.17514] File Mismatch: C:\Windows\system32\sppcommdlg.dll[6.1.7600.16385] File Mismatch: C:\Windows\system32\sppsvc.exe[6.1.7601.17514] File Mismatch: C:\Windows\system32\drivers\spsys.sys[6.1.7127.0] File Mismatch: C:\Windows\system32\drivers\spldr.sys[6.1.7127.0] File Mismatch: C:\Windows\system32\systemcpl.dll[6.1.7601.17514] File Mismatch: C:\Windows\system32\en-us\user32.dll.mui[6.1.7601.17514] Other data--> Office Details: <GenuineResults><MachineData><UGUID>{E9EACD4D-1E30-4FC3-93F4-404BEC54062F}</UGUID><Version>1.9.0019.0</Version><OS>6.1.7601.2.00010100.1.0.001</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-4GQC9</PKey><PID>00426-OEM-9402033-26291</PID><PIDType>8</PIDType><SID>S-1-5-21-2274270284-221895154-2144399453</SID><SYSTEM><Manufacturer>LENOVO</Manufacturer><Model>4318CTO</Model></SYSTEM><BIOS><Manufacturer>LENOVO</Manufacturer><Version>6NET49WW (1.12 )</Version><SMBIOSVersion major="2" minor="6"/><Date>20100222000000.000000+000</Date></BIOS><HWID>611F3907018400FE</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Eastern Standard Time(GMT-05:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM><OEMID>LENOVO</OEMID><OEMTableID>TP-6N </OEMTableID></OEM><GANotification/></MachineData><Software><Office><Result>109</Result><Products/><Applications/></Office></Software></GenuineResults> Spsys.log Content: 0x80070002 Licensing Data--> Software licensing service version: 6.1.7601.17514 Name: Windows(R) 7, Ultimate edition Description: Windows Operating System - Windows(R) 7, OEM_COA_SLP channel Activation ID: 022a1afb-b893-4190-92c3-8f69a49839fb Application ID: 55c92734-d682-4d71-983e-d6ec3f16059f Extended PID: 00426-00188-020-326291-02-1033-7601.0000-1852013 Installation ID: 010531209143469672205113585786496690779254852925820272 Processor Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88338 Machine Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88339 Use License URL: http://go.microsoft.com/fwlink/?LinkID=88341 Product Key Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88340 Partial Product Key: 4GQC9 License Status: Licensed Remaining Windows rearm count: 2 Trusted time: 7/6/2013 10:52:30 AM Windows Activation Technologies--> HrOffline: 0x8004FE21 HrOnline: 0x00000000 HealthStatus: 0x000000000001EFF0 Event Time Stamp: 7:3:2013 14:00 WAT Activex: Registered WAT Admin Service: Registered HWID Data--> HWID Hash Current: OAAAAAEAAgABAAEAAAACAAAABgABAAEAHKLkZEe2Ht50rkIwkGJIMql5uH72LnY8uPVyir5BdlY= OEM Activation 1.0 Data--> N/A OEM Activation 2.0 Data--> BIOS valid for OA 2.0: yes Windows marker version: 0x20001 OEMID and OEMTableID Consistent: yes BIOS Information: ACPI Table Name OEMID Value OEMTableID Value APIC LENOVO TP-6N FACP LENOVO TP-6N HPET LENOVO TP-6N BOOT LENOVO TP-6N MCFG LENOVO TP-6N SSDT LENOVO TP-6N ECDT LENOVO TP-6N ASF! LENOVO TP-6N SLIC LENOVO TP-6N SSDT LENOVO TP-6N TCPA PTL CRESTLN DMAR INTEL CP_FIELD SSDT LENOVO TP-6N SSDT LENOVO TP-6N SSDT LENOVO TP-6N
starzen
I have asked NoelDP to take a look at your report . He is out of the country so he will have a look at it as soon as he reads my message .
thanks for all the help so far
Mike
Interesting that SF said that it found errors but couldn't repair them - there are no signs of it in the log.
Your File Mismatches are consistent with at least one dll file being unregistered - have you been using any form of Registry Cleaner?
Please run another SFC /SCANNOW and post the new CBS.log file.
Please also run a scan with the CheckSUR tool - it may give us some clues.
Please download and save the CheckSUR tool from http://support.microsoft.com/kb/947821
(you'll need to look in the details for Windows 7, downloading from the Microsoft Download Center)
Run it - The tool can take anywhere from 5 mins to a couple of hours to run (or 'Install') depending on how much it has to do, and may exit silently - it may appear to freeze for most of that time, but be patient.
The result is logged in the C:\Windows\Logs\CBS\CheckSUR.log file - and an archive …\checksur.persist.log file
Then zip the CheckSUR.log and upload it to your SkyDrive Public folder (or other fileshare site) so I can take a look - post a link in your reply.
Log fileCode:Beginning system scan. This process will take some time. Beginning verification phase of system scan. Verification 100% complete. Windows Resource Protection found corrupt files but was unable to fix some of th em. Details are included in the CBS.Log windir\Logs\CBS\CBS.log. For example C:\Windows\Logs\CBS\CBS.log C:\Windows\system32>
will work on the checksur next
thanks
tried to install checksur but am getting the following error
Again, the SFC results are clear, and no background in the rest of the CBS log to indicate a problem.
I suspect I know what the problem is - from the error you got when attempting CheckSUR, it looks like our friend the IRST drivers.
to check this...
Please follow this tutorial and post an MGADiag report - then we can (hopefully) see what the problem is.
https://www.sevenforums.com/windows-updates-activation/234159-windows-genuine-activation-issue-posting-instructions.html
Ignore errors produced when clicking on the Copy button - they simply mean that the tool could not create the backup files for some reason. The data is still copied to the clipboard for pasting to your response.
Woops! - I forgot you'd already post that - never mind.
This is almost certainly NOT the IRST drivers - but it could be a corrupted CATROOT2 folder....
Please run the following commands in an Elevated Command Prompt
NET STOP CRYPTSVC
REN C:\WINDOWS\SYSTEM32\CATROOT2 CATROOT2OLD
NET START CRYPTSVC
once complete, leave the system alone for at least an hour to rebuild the database, then reboot, and run another MGADiag report.
Note that this may delete your Update History - but all updates will remain installed, and can be viewed in the Installed Updates listing.
ok did the catroot rebuild and here is the report. looks like it hasnt changed
Code:Diagnostic Report (1.9.0019.0): ----------------------------------------- WGA Data--> Validation Status: Genuine Validation Code: 0 Cached Validation Code: N/A, hr = 0xc004f012 Windows Product Key: *****-*****-7JVM3-2M9JT-4GQC9 Windows Product Key Hash: ULy+hte2xK1tgks+bRbEWOf1hsQ= Windows Product ID: 00426-OEM-9402033-26291 Windows Product ID Type: 8 Windows License Type: COA SLP Windows OS version: 6.1.7601.2.00010100.1.0.001 ID: {E9EACD4D-1E30-4FC3-93F4-404BEC54062F}(3) Is Admin: Yes TestCab: 0x0 WGA Version: Registered, 1.9.42.0 Signed By: Microsoft Product Name: Windows 7 Ultimate Architecture: 0x00000009 Build lab: 7601.win7sp1_gdr.130318-1533 TTS Error: Validation Diagnostic: Resolution Status: N/A WgaER Data--> ThreatID(s): N/A, hr = 0x80070002 Version: N/A, hr = 0x80070002 WGA Notifications Data--> Cached Result: N/A, hr = 0x80070002 File Exists: No Version: N/A, hr = 0x80070002 WgaTray.exe Signed By: N/A, hr = 0x80070002 WgaLogon.dll Signed By: N/A, hr = 0x80070002 OGA Notifications Data--> Cached Result: N/A, hr = 0x80070002 Version: N/A, hr = 0x80070002 OGAExec.exe Signed By: N/A, hr = 0x80070002 OGAAddin.dll Signed By: N/A, hr = 0x80070002 OGA Data--> Office Status: 109 N/A OGA Version: N/A, 0x80070002 Signed By: N/A, hr = 0x80070002 Office Diagnostics: B4D0AA8B-604-645_B4D0AA8B-604-645_B4D0AA8B-604-645_025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3 Browser Data--> Proxy settings: N/A User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32) Default Browser: C:\Program Files (x86)\Internet Explorer\iexplore.exe Download signed ActiveX controls: Prompt Download unsigned ActiveX controls: Disabled Run ActiveX controls and plug-ins: Allowed Initialize and script ActiveX controls not marked as safe: Disabled Allow scripting of Internet Explorer Webbrowser control: Disabled Active scripting: Allowed Script ActiveX controls marked as safe for scripting: Allowed File Scan Data--> File Mismatch: C:\Windows\system32\wat\watadminsvc.exe[7.1.7600.16395] File Mismatch: C:\Windows\system32\wat\watux.exe[7.1.7600.16395] File Mismatch: C:\Windows\system32\sppobjs.dll[6.1.7601.17514] File Mismatch: C:\Windows\system32\sppc.dll[6.1.7601.17514] File Mismatch: C:\Windows\system32\sppcext.dll[6.1.7600.16385] File Mismatch: C:\Windows\system32\sppwinob.dll[6.1.7601.17514] File Mismatch: C:\Windows\system32\slc.dll[6.1.7600.16385] File Mismatch: C:\Windows\system32\slcext.dll[6.1.7600.16385] File Mismatch: C:\Windows\system32\sppuinotify.dll[6.1.7600.16385] File Mismatch: C:\Windows\system32\slui.exe[6.1.7601.17514] File Mismatch: C:\Windows\system32\sppcomapi.dll[6.1.7601.17514] File Mismatch: C:\Windows\system32\sppcommdlg.dll[6.1.7600.16385] File Mismatch: C:\Windows\system32\sppsvc.exe[6.1.7601.17514] File Mismatch: C:\Windows\system32\drivers\spsys.sys[6.1.7127.0] File Mismatch: C:\Windows\system32\drivers\spldr.sys[6.1.7127.0] File Mismatch: C:\Windows\system32\systemcpl.dll[6.1.7601.17514] File Mismatch: C:\Windows\system32\en-us\user32.dll.mui[6.1.7601.17514] Other data--> Office Details: <GenuineResults><MachineData><UGUID>{E9EACD4D-1E30-4FC3-93F4-404BEC54062F}</UGUID><Version>1.9.0019.0</Version><OS>6.1.7601.2.00010100.1.0.001</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-4GQC9</PKey><PID>00426-OEM-9402033-26291</PID><PIDType>8</PIDType><SID>S-1-5-21-2274270284-221895154-2144399453</SID><SYSTEM><Manufacturer>LENOVO</Manufacturer><Model>4318CTO</Model></SYSTEM><BIOS><Manufacturer>LENOVO</Manufacturer><Version>6NET49WW (1.12 )</Version><SMBIOSVersion major="2" minor="6"/><Date>20100222000000.000000+000</Date></BIOS><HWID>611F3907018400FE</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Eastern Standard Time(GMT-05:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM><OEMID>LENOVO</OEMID><OEMTableID>TP-6N </OEMTableID></OEM><GANotification/></MachineData><Software><Office><Result>109</Result><Products/><Applications/></Office></Software></GenuineResults> Spsys.log Content: 0x80070002 Licensing Data--> Software licensing service version: 6.1.7601.17514 Name: Windows(R) 7, Ultimate edition Description: Windows Operating System - Windows(R) 7, OEM_COA_SLP channel Activation ID: 022a1afb-b893-4190-92c3-8f69a49839fb Application ID: 55c92734-d682-4d71-983e-d6ec3f16059f Extended PID: 00426-00188-020-326291-02-1033-7601.0000-1852013 Installation ID: 010531209143469672205113585786496690779254852925820272 Processor Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88338 Machine Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88339 Use License URL: http://go.microsoft.com/fwlink/?LinkID=88341 Product Key Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88340 Partial Product Key: 4GQC9 License Status: Licensed Remaining Windows rearm count: 2 Trusted time: 7/7/2013 9:01:43 AM Windows Activation Technologies--> HrOffline: 0x8004FE21 HrOnline: 0x00000000 HealthStatus: 0x000000000001EFF0 Event Time Stamp: 7:3:2013 14:00 WAT Activex: Registered WAT Admin Service: Registered HWID Data--> HWID Hash Current: OAAAAAEAAgABAAEAAAACAAAABgABAAEAHKLkZEe2Ht50rkIwkGJIMql5uH72LnY8uPVyir5BdlY= OEM Activation 1.0 Data--> N/A OEM Activation 2.0 Data--> BIOS valid for OA 2.0: yes Windows marker version: 0x20001 OEMID and OEMTableID Consistent: yes BIOS Information: ACPI Table Name OEMID Value OEMTableID Value APIC LENOVO TP-6N FACP LENOVO TP-6N HPET LENOVO TP-6N BOOT LENOVO TP-6N MCFG LENOVO TP-6N SSDT LENOVO TP-6N ECDT LENOVO TP-6N ASF! LENOVO TP-6N SLIC LENOVO TP-6N SSDT LENOVO TP-6N TCPA PTL CRESTLN DMAR INTEL CP_FIELD SSDT LENOVO TP-6N SSDT LENOVO TP-6N SSDT LENOVO TP-6N