Suddenly Windows 7 is not genuine

Microsoft Windows [Version 6.1.7601]
Copyright (c) 2009 Microsoft Corporation. All rights reserved.

C:\Windows\system32>NET START VSS
The Volume Shadow Copy service is starting.
The Volume Shadow Copy service was started successfully.


C:\Windows\system32>SC QC VSS
[SC] QueryServiceConfig SUCCESS

SERVICE_NAME: VSS
TYPE : 10 WIN32_OWN_PROCESS
START_TYPE : 3 DEMAND_START
ERROR_CONTROL : 1 NORMAL
BINARY_PATH_NAME : C:\Windows\system32\vssvc.exe
LOAD_ORDER_GROUP :
TAG : 0
DISPLAY_NAME : Volume Shadow Copy
DEPENDENCIES : RPCSS
SERVICE_START_NAME : LocalSystem

C:\Windows\system32>SC QUERYEX VSS

SERVICE_NAME: VSS
TYPE : 10 WIN32_OWN_PROCESS
STATE : 4 RUNNING
(STOPPABLE, NOT_PAUSABLE, ACCEPTS_SHUTDOWN)
WIN32_EXIT_CODE : 0 (0x0)
SERVICE_EXIT_CODE : 0 (0x0)
CHECKPOINT : 0x0
WAIT_HINT : 0x0
PID : 7012
FLAGS :

C:\Windows\system32>VSSADMIN LIST WRITERS
vssadmin 1.1 - Volume Shadow Copy Service administrative command-line tool
(C) Copyright 2001-2005 Microsoft Corp.


C:\Windows\system32>
 

My Computer My Computer

At a glance

Windows 7 Home Premium 64bits
OS
Windows 7 Home Premium 64bits
OH DEAR!
I've only seen that once before - and palmed the 'client' off on the MS ITPro forum.....

Their response was
<quote>
I suggest you can try the following:

1. Re-registered the following DLLs.
a. Net stop vss
b. Net stop swprv
c. Go to system32 folder by typing
d. CD %systemroot%\system32
regsvr32 ole32.dll
regsvr32 vss_ps.dll
Vssvc /Register
regsvr32 /i swprv.dll
regsvr32 /i eventcls.dll
regsvr32 es.dll
regsvr32 stdprov.dll
regsvr32 vssui.dll
regsvr32 msxml.dll
regsvr32 msxml3.dll
regsvr32 msxml4.dll
regsvr32 Vssapi.dll
regsvr32 Vssui.dll
e. Net start vss
f. Net start swprv
2. Disable all security program (such as McAfee) to check whether this is the issue. 3. Test the issue in Clean Boot mode.
4. Refer to the following article to check the issue.
Event ID 8194

</quote>

Unfortunately, there was no feedback as to whether it worked or not.
 
Last edited:

My Computer My Computer

At a glance

Win 7 x64 Home Premium (and x86 VirtualBox VM...i3 370M/i7 6500U8GB - finally :)/8GBit's an i3, dude!/dual Intel&nVidia
Computer type
Laptop
Computer Manufacturer/Model Number
Asus K52F or Lenovo B51-80
OS
Win 7 x64 Home Premium (and x86 VirtualBox VM)/Win10
CPU
i3 370M/i7 6500U
Motherboard
Asus/Lenovo
Memory
8GB - finally :)/8GB
Graphics Card(s)
it's an i3, dude!/dual Intel&nVidia
Sound Card
onboard
Monitor(s) Displays
15.6" built-in
Screen Resolution
1366x768/1920x1080
Hard Drives
750GB Seagate internal
Sundry external drives attached to other computers on the local network
1TB SSD on the Lenovo
PSU
n/a
Internet Speed
as much as I can get - usually on a dongle/phone, so <1MB/s
Antivirus
MSE/Defender
Browser
IE11/12/Edge/Chrome/FF(if I must)
I did all the tasks in 1.

this is the result:
Microsoft Windows [Version 6.1.7601]
Copyright (c) 2009 Microsoft Corporation. All rights reserved.

C:\Windows\system32>Net stop vss
The Volume Shadow Copy service is not started.

More help is available by typing NET HELPMSG 3521.


C:\Windows\system32>Net stop swprv
The Microsoft Software Shadow Copy Provider service is not started.

More help is available by typing NET HELPMSG 3521.


C:\Windows\system32>cd %systemroot%\system32

C:\Windows\system32>regsvr32 ole32.dll

C:\Windows\system32>regsvr32 vss_ps.dll

C:\Windows\system32>Vssvc /Register

C:\Windows\system32>regsvr32 /i swprv.dll

C:\Windows\system32>regsvr32 /i eventcls.dll

C:\Windows\system32>regsvr32 es.dll

C:\Windows\system32>regsvr32 stdprov.dll

C:\Windows\system32>regsvr32 vssui.dll

C:\Windows\system32>regsvr32 msxml.dll

C:\Windows\system32>regsvr32 msxml3.dll

C:\Windows\system32>regsvr32 msxml4.dll

C:\Windows\system32>regsvr32 Vssapi.dll

C:\Windows\system32>regsvr32 Vssui.dll

C:\Windows\system32>Net start vss
The Volume Shadow Copy service is starting.
The Volume Shadow Copy service was started successfully.


C:\Windows\system32>Net start swprv
The Microsoft Software Shadow Copy Provider service is starting.
The Microsoft Software Shadow Copy Provider service was started successfully.


C:\Windows\system32>

and the errors that showed up:
error1.png

error2.png

error3.png


I am going to reboot and try 2. 3. and 4.
 

My Computer My Computer

At a glance

Windows 7 Home Premium 64bits
OS
Windows 7 Home Premium 64bits
After reboot I am still running the same error when I try to create a restore point.
error.png


I am running Windows essential and I could not find how to deactivate it.

I dont really understand what to do with:
4. Refer to the following article to check the issue.
Event ID 8194

:( ... Do you think you can help me further? This is bad, isn't it?
 

My Computer My Computer

At a glance

Windows 7 Home Premium 64bits
OS
Windows 7 Home Premium 64bits
Interestingly I got axactly the same results in my test rig :)
Please run (Elevated Command Prompt)
VSSADMIN LIST WRITERS
after a reboot and see what it says now
 

My Computer My Computer

At a glance

Win 7 x64 Home Premium (and x86 VirtualBox VM...i3 370M/i7 6500U8GB - finally :)/8GBit's an i3, dude!/dual Intel&nVidia
Computer type
Laptop
Computer Manufacturer/Model Number
Asus K52F or Lenovo B51-80
OS
Win 7 x64 Home Premium (and x86 VirtualBox VM)/Win10
CPU
i3 370M/i7 6500U
Motherboard
Asus/Lenovo
Memory
8GB - finally :)/8GB
Graphics Card(s)
it's an i3, dude!/dual Intel&nVidia
Sound Card
onboard
Monitor(s) Displays
15.6" built-in
Screen Resolution
1366x768/1920x1080
Hard Drives
750GB Seagate internal
Sundry external drives attached to other computers on the local network
1TB SSD on the Lenovo
PSU
n/a
Internet Speed
as much as I can get - usually on a dongle/phone, so <1MB/s
Antivirus
MSE/Defender
Browser
IE11/12/Edge/Chrome/FF(if I must)
It is not very talkative:

Microsoft Windows [Version 6.1.7601]
Copyright (c) 2009 Microsoft Corporation. All rights reserved.

C:\Windows\system32>VSSADMIN LIST WRITERS
vssadmin 1.1 - Volume Shadow Copy Service administrative command-line tool
(C) Copyright 2001-2005 Microsoft Corp.


C:\Windows\system32>
 

My Computer My Computer

At a glance

Windows 7 Home Premium 64bits
OS
Windows 7 Home Premium 64bits
OK
let's see if this does anything.
Open an Elevated COmmand Prompt, and run the following commands....

Net Stop Winmgmt
CD /D %Windir%\system32\wbem
Ren Repository Repository.old
Net Start Winmgmt

WAIT 10 minutes, then reboot.
Then try the VSSADMIN LIST WRITERS again - if you get any output this time, run another MGADiag report.

 

My Computer My Computer

At a glance

Win 7 x64 Home Premium (and x86 VirtualBox VM...i3 370M/i7 6500U8GB - finally :)/8GBit's an i3, dude!/dual Intel&nVidia
Computer type
Laptop
Computer Manufacturer/Model Number
Asus K52F or Lenovo B51-80
OS
Win 7 x64 Home Premium (and x86 VirtualBox VM)/Win10
CPU
i3 370M/i7 6500U
Motherboard
Asus/Lenovo
Memory
8GB - finally :)/8GB
Graphics Card(s)
it's an i3, dude!/dual Intel&nVidia
Sound Card
onboard
Monitor(s) Displays
15.6" built-in
Screen Resolution
1366x768/1920x1080
Hard Drives
750GB Seagate internal
Sundry external drives attached to other computers on the local network
1TB SSD on the Lenovo
PSU
n/a
Internet Speed
as much as I can get - usually on a dongle/phone, so <1MB/s
Antivirus
MSE/Defender
Browser
IE11/12/Edge/Chrome/FF(if I must)
Ren Repository Repository.old
access is denied...

I still did the following requests and I am now waiting before reboot. Please let me know if I should cancel the procedure due the failure of command:
Ren Repository Repository.old
 

My Computer My Computer

At a glance

Windows 7 Home Premium 64bits
OS
Windows 7 Home Premium 64bits
Interesting
please run the following command

ICACLS C:\Windows\System32\WBEM\Repository

post the results
 

My Computer My Computer

At a glance

Win 7 x64 Home Premium (and x86 VirtualBox VM...i3 370M/i7 6500U8GB - finally :)/8GBit's an i3, dude!/dual Intel&nVidia
Computer type
Laptop
Computer Manufacturer/Model Number
Asus K52F or Lenovo B51-80
OS
Win 7 x64 Home Premium (and x86 VirtualBox VM)/Win10
CPU
i3 370M/i7 6500U
Motherboard
Asus/Lenovo
Memory
8GB - finally :)/8GB
Graphics Card(s)
it's an i3, dude!/dual Intel&nVidia
Sound Card
onboard
Monitor(s) Displays
15.6" built-in
Screen Resolution
1366x768/1920x1080
Hard Drives
750GB Seagate internal
Sundry external drives attached to other computers on the local network
1TB SSD on the Lenovo
PSU
n/a
Internet Speed
as much as I can get - usually on a dongle/phone, so <1MB/s
Antivirus
MSE/Defender
Browser
IE11/12/Edge/Chrome/FF(if I must)
Microsoft Windows [Version 6.1.7601]
Copyright (c) 2009 Microsoft Corporation. All rights reserved.

C:\Windows\system32>ICACLS C:\Windows\System32\WBEM\Repository
C:\Windows\System32\WBEM\Repository BUILTIN\Users:(RX)
BUILTIN\Users:(OI)(CI)(IO)(GR,GE)
NT AUTHORITY\NETWORK SERVICE:(R)
NT AUTHORITY\NETWORK SERVICE:(OI)(CI)(IO)(GR
)
No mapping between account names and securit
y IDs was done.
(R,W)
No mapping between account names and securit
y IDs was done.
(OI)(CI)(IO)(GR,GW)
BUILTIN\Administrators:(F)
BUILTIN\Administrators:(OI)(CI)(IO)(F)
NT AUTHORITY\SYSTEM:(F)
NT AUTHORITY\SYSTEM:(OI)(CI)(IO)(F)
OWNER RIGHTS:(OI)(CI)(IO)(Rc)

Successfully processed 1 files; Failed processing 0 files

C:\Windows\system32>

hehe. that's a lot of bad faces :)
 

My Computer My Computer

At a glance

Windows 7 Home Premium 64bits
OS
Windows 7 Home Premium 64bits
That's normal - let's look at the files themselves....

ICACLS C:\Windows\System32\WBEM\Repository\*.*
 

My Computer My Computer

At a glance

Win 7 x64 Home Premium (and x86 VirtualBox VM...i3 370M/i7 6500U8GB - finally :)/8GBit's an i3, dude!/dual Intel&nVidia
Computer type
Laptop
Computer Manufacturer/Model Number
Asus K52F or Lenovo B51-80
OS
Win 7 x64 Home Premium (and x86 VirtualBox VM)/Win10
CPU
i3 370M/i7 6500U
Motherboard
Asus/Lenovo
Memory
8GB - finally :)/8GB
Graphics Card(s)
it's an i3, dude!/dual Intel&nVidia
Sound Card
onboard
Monitor(s) Displays
15.6" built-in
Screen Resolution
1366x768/1920x1080
Hard Drives
750GB Seagate internal
Sundry external drives attached to other computers on the local network
1TB SSD on the Lenovo
PSU
n/a
Internet Speed
as much as I can get - usually on a dongle/phone, so <1MB/s
Antivirus
MSE/Defender
Browser
IE11/12/Edge/Chrome/FF(if I must)
Microsoft Windows [Version 6.1.7601]
Copyright (c) 2009 Microsoft Corporation. All rights reserved.

C:\Windows\system32>ICACLS C:\Windows\System32\WBEM\Repository\*.*
C:\Windows\System32\WBEM\Repository\INDEX.BTR BUILTIN\Users:(I)(RX)
NT AUTHORITY\NETWORK SERVICE:(I)(R
)
No mapping between account names a
nd security IDs was done.
(I)(R,W)
BUILTIN\Administrators:(I)(F)
NT AUTHORITY\SYSTEM:(I)(F)
OWNER RIGHTS:(I)(Rc)

C:\Windows\System32\WBEM\Repository\MAPPING1.MAP BUILTIN\Users:(I)(RX)
NT AUTHORITY\NETWORK SERVICE:(I
)(R)
No mapping between account name
s and security IDs was done.
(I)(R,W)
BUILTIN\Administrators:(I)(F)
NT AUTHORITY\SYSTEM:(I)(F)
OWNER RIGHTS:(I)(Rc)

C:\Windows\System32\WBEM\Repository\MAPPING2.MAP BUILTIN\Users:(I)(RX)
NT AUTHORITY\NETWORK SERVICE:(I
)(R)
No mapping between account name
s and security IDs was done.
(I)(R,W)
BUILTIN\Administrators:(I)(F)
NT AUTHORITY\SYSTEM:(I)(F)
OWNER RIGHTS:(I)(Rc)

C:\Windows\System32\WBEM\Repository\MAPPING3.MAP BUILTIN\Users:(I)(RX)
NT AUTHORITY\NETWORK SERVICE:(I
)(R)
No mapping between account name
s and security IDs was done.
(I)(R,W)
BUILTIN\Administrators:(I)(F)
NT AUTHORITY\SYSTEM:(I)(F)
OWNER RIGHTS:(I)(Rc)

C:\Windows\System32\WBEM\Repository\OBJECTS.DATA BUILTIN\Users:(I)(RX)
NT AUTHORITY\NETWORK SERVICE:(I
)(R)
No mapping between account name
s and security IDs was done.
(I)(R,W)
BUILTIN\Administrators:(I)(F)
NT AUTHORITY\SYSTEM:(I)(F)
OWNER RIGHTS:(I)(Rc)

Successfully processed 5 files; Failed processing 0 files

C:\Windows\system32>
 

My Computer My Computer

At a glance

Windows 7 Home Premium 64bits
OS
Windows 7 Home Premium 64bits
Ok - I think I know what the problem is.... The files are in use :)
Now all I have to do is work out which service is using them :(
 

My Computer My Computer

At a glance

Win 7 x64 Home Premium (and x86 VirtualBox VM...i3 370M/i7 6500U8GB - finally :)/8GBit's an i3, dude!/dual Intel&nVidia
Computer type
Laptop
Computer Manufacturer/Model Number
Asus K52F or Lenovo B51-80
OS
Win 7 x64 Home Premium (and x86 VirtualBox VM)/Win10
CPU
i3 370M/i7 6500U
Motherboard
Asus/Lenovo
Memory
8GB - finally :)/8GB
Graphics Card(s)
it's an i3, dude!/dual Intel&nVidia
Sound Card
onboard
Monitor(s) Displays
15.6" built-in
Screen Resolution
1366x768/1920x1080
Hard Drives
750GB Seagate internal
Sundry external drives attached to other computers on the local network
1TB SSD on the Lenovo
PSU
n/a
Internet Speed
as much as I can get - usually on a dongle/phone, so <1MB/s
Antivirus
MSE/Defender
Browser
IE11/12/Edge/Chrome/FF(if I must)
Nope - the only controlling service I cna find is the Winmgmt service.
Ah! I see the problem :)

Try this instead ...

Net Stop Winmgmt /Y
CD /D %Windir%\system32\wbem

Ren Repository Repository.old
Net Start Winmgmt
 

My Computer My Computer

At a glance

Win 7 x64 Home Premium (and x86 VirtualBox VM...i3 370M/i7 6500U8GB - finally :)/8GBit's an i3, dude!/dual Intel&nVidia
Computer type
Laptop
Computer Manufacturer/Model Number
Asus K52F or Lenovo B51-80
OS
Win 7 x64 Home Premium (and x86 VirtualBox VM)/Win10
CPU
i3 370M/i7 6500U
Motherboard
Asus/Lenovo
Memory
8GB - finally :)/8GB
Graphics Card(s)
it's an i3, dude!/dual Intel&nVidia
Sound Card
onboard
Monitor(s) Displays
15.6" built-in
Screen Resolution
1366x768/1920x1080
Hard Drives
750GB Seagate internal
Sundry external drives attached to other computers on the local network
1TB SSD on the Lenovo
PSU
n/a
Internet Speed
as much as I can get - usually on a dongle/phone, so <1MB/s
Antivirus
MSE/Defender
Browser
IE11/12/Edge/Chrome/FF(if I must)
Access is still denied for Ren Repository Repository.old

Microsoft Windows [Version 6.1.7601]
Copyright (c) 2009 Microsoft Corporation. All rights reserved.

C:\Windows\system32>Net Stop Winmgmt /Y
The Windows Management Instrumentation service is stopping.
The Windows Management Instrumentation service could not be stopped.


C:\Windows\system32>CD /D %Windir%\system32\wbem

C:\Windows\System32\wbem>Ren Repository Repository.old
Access is denied.

C:\Windows\System32\wbem>Net Start Winmgmt
The requested service has already been started.

More help is available by typing NET HELPMSG 2182.


C:\Windows\System32\wbem>
 

My Computer My Computer

At a glance

Windows 7 Home Premium 64bits
OS
Windows 7 Home Premium 64bits
That's not the problem :)
The problem is that Winmgmt isn't allowing itself to be stopped.
let's see whether that can be fixed easily....

SC QC WINMGMT
SC QUERYEX WINMGMT
SC SDSHOW WINMGMT
SC QPRIVS WINMGMT
SC QSIDTYPE WINMGMT

post the results
 

My Computer My Computer

At a glance

Win 7 x64 Home Premium (and x86 VirtualBox VM...i3 370M/i7 6500U8GB - finally :)/8GBit's an i3, dude!/dual Intel&nVidia
Computer type
Laptop
Computer Manufacturer/Model Number
Asus K52F or Lenovo B51-80
OS
Win 7 x64 Home Premium (and x86 VirtualBox VM)/Win10
CPU
i3 370M/i7 6500U
Motherboard
Asus/Lenovo
Memory
8GB - finally :)/8GB
Graphics Card(s)
it's an i3, dude!/dual Intel&nVidia
Sound Card
onboard
Monitor(s) Displays
15.6" built-in
Screen Resolution
1366x768/1920x1080
Hard Drives
750GB Seagate internal
Sundry external drives attached to other computers on the local network
1TB SSD on the Lenovo
PSU
n/a
Internet Speed
as much as I can get - usually on a dongle/phone, so <1MB/s
Antivirus
MSE/Defender
Browser
IE11/12/Edge/Chrome/FF(if I must)
C:\Windows\System32\wbem>SC QC WINMGMT
[SC] QueryServiceConfig SUCCESS

SERVICE_NAME: WINMGMT
TYPE : 20 WIN32_SHARE_PROCESS
START_TYPE : 2 AUTO_START
ERROR_CONTROL : 0 IGNORE
BINARY_PATH_NAME : C:\Windows\system32\svchost.exe -k netsvcs
LOAD_ORDER_GROUP :
TAG : 0
DISPLAY_NAME : Windows Management Instrumentation
DEPENDENCIES : RPCSS
SERVICE_START_NAME : localSystem

C:\Windows\System32\wbem>SC QUERYEX WINMGMT

SERVICE_NAME: WINMGMT
TYPE : 20 WIN32_SHARE_PROCESS
STATE : 4 RUNNING
(STOPPABLE, PAUSABLE, ACCEPTS_SHUTDOWN)
WIN32_EXIT_CODE : 0 (0x0)
SERVICE_EXIT_CODE : 0 (0x0)
CHECKPOINT : 0x0
WAIT_HINT : 0x0
PID : 336
FLAGS :

C:\Windows\System32\wbem>SC SDSHOW WINMGMT

D:(A;;CCLCSWRPWPDTLOCRRC;;;SY)(A;;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;BA)(A;;CCLCSWLOCR
RC;;;IU)(A;;CCLCSWLOCRRC;;;SU)S:(AU;FA;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;WD)

C:\Windows\System32\wbem>SC QPRIVS WINMGMT
[SC] QueryServiceConfig2 SUCCESS

SERVICE_NAME: WINMGMT
PRIVILEGES :

C:\Windows\System32\wbem>SC QSIDTYPE WINMGMT
[SC] QueryServiceConfig2 SUCCESS

SERVICE_NAME: WINMGMT
SERVICE_SID_TYPE: UNRESTRICTED

C:\Windows\System32\wbem>
 

My Computer My Computer

At a glance

Windows 7 Home Premium 64bits
OS
Windows 7 Home Premium 64bits

My Computer My Computer

At a glance

Win 7 x64 Home Premium (and x86 VirtualBox VM...i3 370M/i7 6500U8GB - finally :)/8GBit's an i3, dude!/dual Intel&nVidia
Computer type
Laptop
Computer Manufacturer/Model Number
Asus K52F or Lenovo B51-80
OS
Win 7 x64 Home Premium (and x86 VirtualBox VM)/Win10
CPU
i3 370M/i7 6500U
Motherboard
Asus/Lenovo
Memory
8GB - finally :)/8GB
Graphics Card(s)
it's an i3, dude!/dual Intel&nVidia
Sound Card
onboard
Monitor(s) Displays
15.6" built-in
Screen Resolution
1366x768/1920x1080
Hard Drives
750GB Seagate internal
Sundry external drives attached to other computers on the local network
1TB SSD on the Lenovo
PSU
n/a
Internet Speed
as much as I can get - usually on a dongle/phone, so <1MB/s
Antivirus
MSE/Defender
Browser
IE11/12/Edge/Chrome/FF(if I must)
The command Ren Repository Repository.old was successful after a clean boot!
 

My Computer My Computer

At a glance

Windows 7 Home Premium 64bits
OS
Windows 7 Home Premium 64bits
Ahah!
good - the obvious question then becomes what was blocking it.
More on that later.
reboot while still in 'clean boot', then reset the clean boot to normal and reboot again
what result do you get now from
VSSADMIN LIST WRITERS
?
 

My Computer My Computer

At a glance

Win 7 x64 Home Premium (and x86 VirtualBox VM...i3 370M/i7 6500U8GB - finally :)/8GBit's an i3, dude!/dual Intel&nVidia
Computer type
Laptop
Computer Manufacturer/Model Number
Asus K52F or Lenovo B51-80
OS
Win 7 x64 Home Premium (and x86 VirtualBox VM)/Win10
CPU
i3 370M/i7 6500U
Motherboard
Asus/Lenovo
Memory
8GB - finally :)/8GB
Graphics Card(s)
it's an i3, dude!/dual Intel&nVidia
Sound Card
onboard
Monitor(s) Displays
15.6" built-in
Screen Resolution
1366x768/1920x1080
Hard Drives
750GB Seagate internal
Sundry external drives attached to other computers on the local network
1TB SSD on the Lenovo
PSU
n/a
Internet Speed
as much as I can get - usually on a dongle/phone, so <1MB/s
Antivirus
MSE/Defender
Browser
IE11/12/Edge/Chrome/FF(if I must)
Back
Top