Solved Windows OS Declared Not Genuine/tried many things

Route 414

New member
Local time
12:13 PM
Messages
10
Location
The Socialist Republic of New Jersey
I hope I posted this right.


Code:
Diagnostic Report (1.9.0027.0):
-----------------------------------------
Windows Validation Data-->

Validation Code: 0
Cached Online Validation Code: 0x0
Windows Product Key: *****-*****-JKHXW-D9W83-FJQKD
Windows Product Key Hash: AYaBykmfTHUVW5whGaYMeVJn0/U=
Windows Product ID: 00359-OEM-8992687-00249
Windows Product ID Type: 2
Windows License Type: OEM SLP
Windows OS version: 6.1.7601.2.00010300.1.0.003
ID: {2322B13A-21A7-4DAC-ABE5-65934992CB3A}(3)
Is Admin: Yes
TestCab: 0x0
LegitcheckControl ActiveX: N/A, hr = 0x80070002
Signed By: N/A, hr = 0x80070002
Product Name: Windows 7 Home Premium
Architecture: 0x00000009
Build lab: 7601.win7sp1_ldr.160317-0600
TTS Error: 
Validation Diagnostic: 
Resolution Status: N/A

Vista WgaER Data-->
ThreatID(s): N/A, hr = 0x80070002
Version: N/A, hr = 0x80070002

Windows XP Notifications Data-->
Cached Result: N/A, hr = 0x80070002
File Exists: No
Version: N/A, hr = 0x80070002
WgaTray.exe Signed By: N/A, hr = 0x80070002
WgaLogon.dll Signed By: N/A, hr = 0x80070002

OGA Notifications Data-->
Cached Result: N/A, hr = 0x80070002
Version: N/A, hr = 0x80070002
OGAExec.exe Signed By: N/A, hr = 0x80070002
OGAAddin.dll Signed By: N/A, hr = 0x80070002

OGA Data-->
Office Status: 109 N/A
OGA Version: N/A, 0x80070002
Signed By: N/A, hr = 0x80070002
Office Diagnostics: 025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3

Browser Data-->
Proxy settings: N/A
User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
Default Browser: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Download signed ActiveX controls: Prompt
Download unsigned ActiveX controls: Disabled
Run ActiveX controls and plug-ins: Allowed
Initialize and script ActiveX controls not marked as safe: Disabled
Allow scripting of Internet Explorer Webbrowser control: Disabled
Active scripting: Allowed
Script ActiveX controls marked as safe for scripting: Allowed

File Scan Data-->

Other data-->
Office Details: <GenuineResults><MachineData><UGUID>{2322B13A-21A7-4DAC-ABE5-65934992CB3A}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7601.2.00010300.1.0.003</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-FJQKD</PKey><PID>00359-OEM-8992687-00249</PID><PIDType>2</PIDType><SID>S-1-5-21-398858359-1869519540-514900614</SID><SYSTEM><Manufacturer>LENOVO</Manufacturer><Model>2342CTO</Model></SYSTEM><BIOS><Manufacturer>LENOVO</Manufacturer><Version>G1ETB2WW (2.72 )</Version><SMBIOSVersion major="2" minor="7"/><Date>20170131000000.000000+000</Date></BIOS><HWID>46FA0E00018400FE</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Eastern Standard Time(GMT-05:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM><OEMID>LENOVO</OEMID><OEMTableID>TP-G1   </OEMTableID></OEM><GANotification/></MachineData><Software><Office><Result>109</Result><Products/><Applications/></Office></Software></GenuineResults>  

Spsys.log Content: 0x80070002

Licensing Data-->
Software licensing service version: 6.1.7601.17514

Name: Windows(R) 7, HomePremium edition
Description: Windows Operating System - Windows(R) 7, OEM_SLP channel
Activation ID: d2c04e90-c3dd-4260-b0f3-f845f5d27d64
Application ID: 55c92734-d682-4d71-983e-d6ec3f16059f
Extended PID: 00359-00178-926-800249-02-1033-7601.0000-2522012
Installation ID: 009462333742618083462566697346092502485843241351821481
Processor Certificate URL: [url="http://go.microsoft.com/fwlink/?LinkID=88338"]http://go.microsoft.com/fwlink/?LinkID=88338[/url]
Machine Certificate URL: [url="http://go.microsoft.com/fwlink/?LinkID=88339"]http://go.microsoft.com/fwlink/?LinkID=88339[/url]
Use License URL: [url="http://go.microsoft.com/fwlink/?LinkID=88341"]http://go.microsoft.com/fwlink/?LinkID=88341[/url]
Product Key Certificate URL: [url="http://go.microsoft.com/fwlink/?LinkID=88340"]http://go.microsoft.com/fwlink/?LinkID=88340[/url]
Partial Product Key: FJQKD
License Status: Licensed
Remaining Windows rearm count: 2
Trusted time: 6/2/2017 9:23:40 PM

Windows Activation Technologies-->
HrOffline: 0x00000000
HrOnline: 0x00000000
HealthStatus: 0x0000000000000000
Event Time Stamp: 6:2:2017 20:16
ActiveX: Registered, Version: 7.1.7600.16395
Admin Service: Registered, Version: 7.1.7600.16395
HealthStatus Bitmask Output:


HWID Data-->
HWID Hash Current: LgAAAAAAAQABAAEAAAABAAAABAABAAEAln1gZcBR2m1aykBoRGJCfhLXRhqWYw==

OEM Activation 1.0 Data-->
N/A

OEM Activation 2.0 Data-->
BIOS valid for OA 2.0: yes
Windows marker version: 0x20001
OEMID and OEMTableID Consistent: yes
BIOS Information: 
  ACPI Table Name	OEMID Value	OEMTableID Value
  APIC			LENOVO		TP-G1   
  FACP			LENOVO		TP-G1   
  HPET			LENOVO		TP-G1   
  MCFG			LENOVO		TP-G1   
  SLIC			LENOVO		TP-G1   
  TCPA			PTL		LENOVO
  SSDT			LENOVO		TP-SSDT2
  SSDT			LENOVO		TP-SSDT2
  SSDT			LENOVO		TP-SSDT2
  ECDT			LENOVO		TP-G1   
  FPDT			LENOVO		TP-G1   
  ASF!			LENOVO		TP-G1   
  UEFI			LENOVO		TP-G1   
  UEFI			LENOVO		TP-G1   
  POAT			LENOVO		TP-G1   
  SSDT			LENOVO		TP-SSDT2
  SSDT			LENOVO		TP-SSDT2
  UEFI			LENOVO		TP-G1   
  DBG2			LENOVO		TP-G1
 
Last edited by a moderator:

My Computer My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Lenovo
OS
Windows 7 64 Home Premium
CPU
i5
Memory
Crucial Sport 8 gigs (2x4)
Graphics Card(s)
n/a
Hard Drives
Samsung EVO 500 gigs
Antivirus
Avast
Browser
Chrome
Hi Route414,

Nothing wrong with that report or key.

What i can see from your report
BIOS updated sometime this year,
i suspect its broken the activation process,(did you read the notes about it beforehand, not for W7??)
If my suspicions are correct roll it back, and you should be Genuine again, but you may have to recreate the licence store.


Roy
 

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
medionl/Aspire 6930G/acer x55a
OS
W7 home premium 32bit/W7HP 64bit/w10 tp insider ring
CPU
E5300 dual core
Motherboard
medion MS7366
Memory
3gb
Graphics Card(s)
Nvidia Geforce 7100 Nforce 630i
Monitor(s) Displays
avixc
Internet Speed
n (isp resticted to 72)
Antivirus
mse/pands
Browser
palemoon
Other Info
Belkin Fd7050 n USB using Railink RT2870 drivers, more upto date
Hi Roy; thanks much for your reply. I apologize if I posted incorrectly. For a little background I did not know of these forums until yesterday. If I had I would have come to you guys first because when I followed steps on another forum as directed and responded with the information they asked for I never received further help.

Anyway, as for the BIOS update I was having this issue long before I updated that BIOS which I did just prior to joining this forum (again, not realizing this site existed). Long story short this laptop is strictly for business and used only as I am on the road. When I started getting "Windows is Not Genuine" I tried over several months a number of resolves via recommendations on the internet but none worked. So I laid it aside for awhile. But I took it up again because my work will require this functioning properly.

As for the Key the last three segments - JKHXW-D9W83-FJQKD are not part of my KEY. I have no clue why the diagnostic report gives these letters. I have checked and rechecked my KEY to verify that what is reported does not match what my sticker lists. My KEY/this OS is 100% legitimate and I have no illegal software installed.

Other things I did before coming here:

1. Several security scans (Malwarebytes; ESET NOD32; AVAST) show no infections.
2. The Samsung SSD is running good as per the Samsung Magician utility tool and is recognized in the BIOS.
3. As you know the motherboard has the latest BIOS successfully installed.
4. This laptop has never been dropped or abused and it looks brand new.
5. The screen that you can access under control panel concerning basic information about my system states that neither the processor nor the RAM is available as well as my validation key and yet the Device Manager recognizes them.
6. There are no Yellow Triangles in any category under Device manager.
7. I can’t run the installed Lenovo Diagnostic Tool from the desktop as it freezes all the time but from the BIOS I can and my system passed every test including motherboard.

Windows System File Checker would not run under normal mode and said, "Windows Resource Protection could not start the repair service." However, I rebooted into Safe Mode and it ran reporting: "Windows Resource Protection did not find any integrity violations."

I have received this message: "On a computer running Microsoft Windows non-core edition, run 'slui.exe 0x2a 0x8007426 to display the error text."

A friend of mine who is an IT professional particularly in security and virus/malware removal had me run Farbar Recovery Scan Tool (FRST) (x64) to see if I had a deep infection and reported that he found no infections.

However, it reported that the TrustedInstaller.exe kept failing to engage over and over with the faulting module name: cbscore.dll repeatedly identified. One other thing is cited and that is sspsv.exe and it is a Window service that enables the download, installation, and enforcement of digital licenses for Windows and Windows applications. There is more but I’ll stop.

Again, thanks
 

My Computer My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Lenovo
OS
Windows 7 64 Home Premium
CPU
i5
Memory
Crucial Sport 8 gigs (2x4)
Graphics Card(s)
n/a
Hard Drives
Samsung EVO 500 gigs
Antivirus
Avast
Browser
Chrome
Hi Route414,

The FULL key is 27GBM-Y4QQC-JKHXW-D9W83-FJQKD
It was entered by Lenovo at thier factory, its the same key on every one of thier W7 Home Premium comps.
The key on the COA sticker is your back-up DO NOT post it, its unique.

Right back to your problem, the FRST report backs up what i said in my last post
Can you copy me the additions file created by Farbar, its in C >programs>FRST>logs

We have to recreate the Licence store, this should reset
SPPSVC software protection service
and let CBScore and TrustedIinstaller run


) Click Start button.
2) Type: CMD.exe into the 'Search programs and files' field
3) Right-Click on CMD.exe and select Run as Administrator
4) Type: net stop sppsvc (It may ask you if you are sure, select yes)
Note: the Software Protection service may not be running, this is ok.
5) Type: cd %windir%\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform
6) Type: rename tokens.dat tokens.bar
7) Type: cd %windir%\system32
8) Type: net start sppsvc
9) Type: slui.exe
10) After a couple of seconds Windows Activation dialog will appear. You may be asked to re-activate and/or re-enter your product key or Activation may occur automatically.

If you are asked for your Key, use the one on the COA sticker on the machine's case

Reboot and try the oldest dated update - did it install?


Roy


After thought please uninstall any 3rd party AV and use MSE for the moment

And has your IT friend got a W7 home premium SP1 disc, if so a repair install is an easy out NO loss of data.
 

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
medionl/Aspire 6930G/acer x55a
OS
W7 home premium 32bit/W7HP 64bit/w10 tp insider ring
CPU
E5300 dual core
Motherboard
medion MS7366
Memory
3gb
Graphics Card(s)
Nvidia Geforce 7100 Nforce 630i
Monitor(s) Displays
avixc
Internet Speed
n (isp resticted to 72)
Antivirus
mse/pands
Browser
palemoon
Other Info
Belkin Fd7050 n USB using Railink RT2870 drivers, more upto date
Code:
Additions File is too long so I need to post it in two parts.

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 31-05-2017
Ran by Jim (31-05-2017 18:02:31)
Running from C:\Users\Jim\Desktop
Windows 7 Home Premium Service Pack 1 (X64) (2012-09-17 20:37:56)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-398858359-1869519540-514900614-500 - Administrator - Disabled)
Guest (S-1-5-21-398858359-1869519540-514900614-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-398858359-1869519540-514900614-1002 - Limited - Enabled)
Jim (S-1-5-21-398858359-1869519540-514900614-1001 - Administrator - Enabled) => C:\Users\Jim

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 22.0.0.153 - Adobe Systems Incorporated)
Adobe Flash Player 25 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 25.0.0.171 - Adobe Systems Incorporated)
Adobe Flash Player 25 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 25.0.0.171 - Adobe Systems Incorporated)
Adobe Reader X (10.1.16) MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-AA0000000001}) (Version: 10.1.16 - Adobe Systems Incorporated)
ALTools Update (HKLM-x32\...\ALUpdate_is1) (Version: v11.4.28.1 - ESTsoft Corp.)
ALZip 8.51 (HKLM-x32\...\ALZip_is1) (Version: v8.51 - ESTsoft Corp.)
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 17.4.2294 - AVAST Software)
Burn.Now 4.5 (x32 Version: 4.5.0 - Corel Corporation) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 4.02 - Piriform)
Corel Burn.Now Lenovo Edition (HKLM-x32\...\InstallShield_{A3BE3F1E-2472-4211-8735-E8239BE49D9F}) (Version: 4.5.0 - Corel Corporation)
Corel DVD MovieFactory 7 (x32 Version: 7.0.0 - Corel Corporation) Hidden
Corel DVD MovieFactory Lenovo Edition (HKLM-x32\...\InstallShield_{50F68032-B5B7-4513-9116-C978DBD8F27A}) (Version: 7.0.0 - Corel Corporation)
Corel WinDVD (HKLM-x32\...\{5C1F18D2-F6B7-4242-B803-B5A78648185D}) (Version: 10.0.6.392 - Corel Inc.)
Create Recovery Media (HKLM-x32\...\{50DC5136-21E8-48BC-97E5-1AD055F6B0B6}) (Version: 1.20.0.00 - Lenovo Group Limited)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Direct DiscRecorder (x32 Version: 1.00.0000 - Corel Corporation) Hidden
Disable AMT Profile Synchronization Pop-up for Windows XP/Vista/7 (HKLM\...\DisableAMTPopup) (Version: 1.00 - )
Dolby Advanced Audio v2 (HKLM-x32\...\{B9E70C7A-9F85-4A39-A4A3-BFA3C3BF7613}) (Version: 7.2.8000.17 - Dolby Laboratories Inc)
ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version: - )
e-Sword (HKLM-x32\...\{118071AB-6572-4FAD-A1FD-67264C994350}) (Version: 10.01.0000 - Rick Meyers)
Evernote v. 4.2.3 (HKLM-x32\...\{F761359C-9CED-45AE-9A51-9D6605CD55C4}) (Version: 4.2.3.15 - Evernote Corp.)
Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 7.1.5.425 - Foxit Software Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 58.0.3029.110 - Google Inc.)
Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.8231.2252 - Google Inc.)
Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.33.5 - Google Inc.) Hidden
HP FWUpdateEDO2 (HKLM-x32\...\{415FA9AD-DA10-4ABE-97B6-5051D4795C90}) (Version: 1.2.0.0 - Hewlett-Packard)
HP Officejet Pro 8600 Basic Device Software (HKLM\...\{791A06E2-340F-43B0-8FAB-62D151339362}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)
HP Support Solutions Framework (HKLM-x32\...\{FC3C2B77-6800-48C6-A15D-9D1031130C16}) (Version: 11.51.0049 - Hewlett-Packard Company)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
HPDiagnosticAlert (x32 Version: 1.00.0001 - Microsoft) Hidden
Integrated Camera Driver Installer Package Ver.1.2.1.18 (HKLM-x32\...\{A78800AF-1779-4AE8-8EBE-16E1BE727C71}) (Version: 1.2.1.18 - RICOH)
Intel AppUp(SM) center (HKLM-x32\...\Intel AppUp(SM) center 33057) (Version: 3.6.1.33057.10 - Intel)
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.0.3.1427 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.18.10.3359 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 3.0.0.66956 - Intel Corporation)
Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.9.254 - Intel Corporation)
Intel(R) WiDi (HKLM\...\{728985C5-A04B-457C-9D62-15360F3EAF85}) (Version: 3.1.29.0 - Intel Corporation)
Intel(R) Wireless Display (HKLM\...\{28EF7372-9087-4AC3-9B9F-D9751FCDF830}) (Version: - )
Intel® PROSet/Wireless Software (HKLM-x32\...\{a9888f41-68ae-43df-bd7d-d93405a44106}) (Version: 17.13.11 - Intel Corporation)
Intel® Trusted Connect Service Client (HKLM\...\{09536BA1-E498-4CC3-B834-D884A67D7E34}) (Version: 1.23.605.1 - Intel Corporation)
Java 8 Update 131 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180131F0}) (Version: 8.0.1310.11 - Oracle Corporation)
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
League of Legends (HKLM-x32\...\{92606477-9366-4D3B-8AE3-6BE4B29727AB}) (Version: 1.3 - Riot Games)
Lenovo Active Protection System (HKLM\...\{46A84694-59EC-48F0-964C-7E76E9F8A2ED}) (Version: 1.82.00.14 - Lenovo)
Lenovo Auto Scroll Utility (HKLM\...\LenovoAutoScrollUtility) (Version: 1.11 - )
Lenovo On Screen Display (HKLM\...\OnScreenDisplay) (Version: 8.80.10 - Lenovo)
Lenovo Patch Utility (HKLM-x32\...\{6E6E7725-C7BC-4C39-8B3F-14B67331A120}) (Version: 1.3.0.9 - Lenovo Group Limited)
Lenovo Patch Utility (x32 Version: 1.4.0.4 - Lenovo Group Limited) Hidden
Lenovo Patch Utility 64 bit (HKLM\...\{0369F866-2CE0-4EB9-B426-88FA122C6E82}) (Version: 1.3.0.9 - Lenovo Group Limited)
Lenovo Patch Utility 64 bit (Version: 1.4.0.4 - Lenovo Group Limited) Hidden
Lenovo Power Management Driver (HKLM\...\Power Management Driver) (Version: 1.67.10.15 - Lenovo)
Lenovo Registration (HKLM-x32\...\{6707C034-ED6B-4B6A-B21F-969B3606FBDE}) (Version: 1.0.4 - Lenovo Inc.)
Lenovo SimpleTap (HKLM\...\{BF601122-9F0A-41A9-BA06-3158D9FB4B80}) (Version: 3.2.0004.00 - Lenovo Group Limited)
Lenovo Solution Center (HKLM\...\{7BB9AAFD-3350-49C8-92D1-833AAFF9E74E}) (Version: 3.4.003.013 - Lenovo)
Lenovo System Update (HKLM-x32\...\{25C64847-B900-48AD-A164-1B4F9B774650}) (Version: 5.07.0053 - Lenovo)
Lenovo User Guide (HKLM-x32\...\{13F59938-C595-479C-B479-F171AB9AF64F}) (Version: 1.0.0009.00 - Lenovo Group Limited)
Lenovo Warranty Information (HKLM-x32\...\{FD4EC278-C1B1-4496-99ED-C0BE1B0AA521}) (Version: 1.0.0005.00 - Lenovo)
Lenovo Welcome (HKLM-x32\...\{2DC26D10-CC6A-494F-BEA3-B5BC21126D5E}) (Version: 3.1.0020.00 - Lenovo Group Limited)
Logos Bible Software (HKLM-x32\...\{D9D58101-8601-49C1-8601-CDF6B33E8006}) (Version: 7.96.37 - Faithlife Corporation)
Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Message Center Plus (HKLM\...\{EE4D9822-C7F3-4386-8703-889CDDA22FAA}) (Version: 3.4.0001.00 - Lenovo Group Limited)
Metric Collection SDK (x32 Version: 1.1.0005.00 - Lenovo Group Limited) Hidden
Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft Office Home and Student 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Mozilla Firefox 47.0 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 47.0 (x86 en-US)) (Version: 47.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 47.0.0.5999 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Nalpeiron License Management (x32 Version: 6.3.9.1 - Nalpeiron) Hidden
Nitro Pro 7 (HKLM\...\{8E0790DA-185E-4DC1-8A88-750B2A6218FD}) (Version: 7.4.1.4 - Nitro PDF Software)
PDF-Viewer (HKLM\...\{A278382D-4F1B-4D47-9885-8523F7261E8D}_is1) (Version: 2.5.311.0 - Tracker Software Products Ltd)
Power Manager (HKLM-x32\...\{DAC01CEE-5BAE-42D5-81FC-B687E84E8405}) (Version: 6.67.5 - Lenovo Group Limited)
RapidBoot HDD Accelerator (HKLM-x32\...\Fastboot) (Version: 1.00.0802 - Lenovo)
RapidBoot Shield (HKLM\...\{5E2652DF-743F-482B-A593-C95F431A5769}) (Version: 1.23 - Lenovo)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7040 - Realtek Semiconductor Corp.)
Registry Patch to Enable Maximum Power Saving on WiFi Adapters for Windows 7 (HKLM\...\EnablePS) (Version: 1.00 - )
RICOH_Media_Driver_v2.14.18.01 (HKLM-x32\...\{FE041B02-234C-4AAA-9511-80DF6482A458}) (Version: 2.14.18.01 - RICOH)
SafeZone Stable 3.55.2393.596 (x32 Version: 3.55.2393.596 - Avast Software) Hidden
Samsung Data Migration (HKLM-x32\...\{D4DE3DB4-7734-47E5-8D92-B80146311406}) (Version: 2.7 - Samsung)
Samsung Magician (HKLM-x32\...\{29AE3F9F-7158-4ca7-B1ED-28A73ECDB215}_is1) (Version: 4.5.1 - Samsung Electronics)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft)
Skype Click to Call (HKLM-x32\...\{873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B}) (Version: 8.5.0.9167 - Microsoft Corporation)
Skype™ 7.36 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.36.101 - Skype Technologies S.A.)
SugarSync Manager (HKLM-x32\...\SugarSync) (Version: 1.9.61.90905 - SugarSync, Inc.)
ThinkPad UltraNav Driver (HKLM\...\SynTPDeinstKey) (Version: 16.2.19.7 - )
ThinkVantage Access Connections (HKLM-x32\...\{8E537894-A559-4D60-B3CB-F4485E3D24E3}) (Version: 6.25.65 - Lenovo)
ThinkVantage Access Connections (HKLM-x32\...\{9C551D9B-5D36-46A2-9414-F658D934B129}) (Version: 5.93 - Lenovo)
ThinkVantage Communications Utility (HKLM\...\{88C6A6D9-324C-46E8-BA87-563D14021442}_is1) (Version: 3.0.34.0 - Lenovo)
VIP Access (HKLM-x32\...\{E8D46836-CD55-453C-A107-A59EC51CB8DC}) (Version: 2.0.5.13 - VeriSign)
WhoCrashed 5.01 (HKLM\...\WhoCrashed_is1) (Version: - Resplendence Software Projects Sp.)
Windows Driver Package - Intel (e1cexpress) Net (01/11/2012 11.15.16.0) (HKLM\...\EC2A0F2B229770EC589265FCF2B4839A0C221993) (Version: 01/11/2012 11.15.16.0 - Intel)
Windows Driver Package - Intel System (01/11/2012 9.3.0.1020) (HKLM\...\09839A9B5EDA69DA2DCC34637B5140AAF8A53B44) (Version: 01/11/2012 9.3.0.1020 - Intel)
Windows Driver Package - Intel System (08/26/2011 9.3.0.1011) (HKLM\...\9D7CD466F7FC8B18FF1B84943B7BB8648D17FCE8) (Version: 08/26/2011 9.3.0.1011 - Intel)
Windows Driver Package - Intel System (08/26/2011 9.3.0.1011) (HKLM\...\D8EF6CACF49BD33CC1FACD124C8CC2B1A8E8AE35) (Version: 08/26/2011 9.3.0.1011 - Intel)
Windows Driver Package - Intel USB (08/26/2011 9.3.0.1011) (HKLM\...\97EE1802A0385A37DE6323FA39EC76BEB2D73E41) (Version: 08/26/2011 9.3.0.1011 - Intel)
Windows Driver Package - Lenovo 1.65.05.20 (02/29/2012 1.65.05.20) (HKLM\...\E3535F123E7F666D573665142F90D3E5004DC326) (Version: 02/29/2012 1.65.05.20 - Lenovo)
Windows Driver Package - Synaptics (SynTP) Mouse (04/06/2012 16.1.1.0) (HKLM\...\64B3C27E4CF7B6AD920184EFFF6C488C55EF2892) (Version: 04/06/2012 16.1.1.0 - Synaptics)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation)
Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {006EE913-B8F5-46AD-A5E7-C75B2B675EFD} - System32\Tasks\Games\UpdateCheck_S-1-5-21-398858359-1869519540-514900614-1001
Task: {02965E43-449F-4474-B4E0-9022B46C22B3} - System32\Tasks\TVT\TVSUUpdateTask_UserLogOn => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [2017-05-09] ()
Task: {0D6B8C18-5F26-4DD9-A4BF-4B0A4C9D1E03} - System32\Tasks\Lenovo Active Protection System => C:\Windows\system32\TpShUI.exe [2017-03-21] (Lenovo.)
Task: {13EC42C7-2B2E-4D27-93A4-356FFAFD9506} - System32\Tasks\Lenovo\SimpleTap\Start SimpleTap for SKIPPACK.Jim => C:\Program Files\Lenovo\SimpleTap\SimpleTap.exe [2012-05-15] (Lenovo)
Task: {19DA64D2-5A6E-4261-916D-98CF5065C671} - System32\Tasks\Lenovo\LSC\LSCHardwareScan => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2017-02-14] (Lenovo)
Task: {40D4B7ED-497D-43C5-8575-1434CBC844EF} - System32\Tasks\Lenovo\SimpleTap\Start SimpleTap for TWISTEDTIMES.Jim => C:\Program Files\Lenovo\SimpleTap\SimpleTap.exe [2012-05-15] (Lenovo)
Task: {4C322830-2864-4BB7-A0C2-F559C8194513} - System32\Tasks\SafeZone scheduled Autoupdate 1448591225 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2017-03-22] (Avast Software)
Task: {4F3FFCF8-E894-494D-956A-90AB3743F3BE} - System32\Tasks\Lenovo\LSC\LSCTaskService => C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCTaskService.exe 
Task: {58912F1C-0272-4585-9EA3-FC012ABB9AB9} - System32\Tasks\GoogleUpdateTaskMachineCore1cf68a857842fca => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-19] (Google Inc.)
Task: {5D3DC959-53A7-4CB1-A0CC-4661485C2D4D} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\Lenovo\Lenovo Solution Center\App\LSC.Services.UpdateStatusService.exe [2017-02-14] ()
Task: {5FD0AB70-5C13-4576-84C2-C201AB97D573} - System32\Tasks\Microsoft\Windows\PLA\LSC Memory => Rundll32.exe C:\Windows\system32\pla.dll,PlaHost "LSC Memory" "$(Arg0)"
Task: {643FAF23-95FD-4B1D-B4CA-D9B9BDB9B874} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-02-02] (Adobe Systems Incorporated)
Task: {6478ACB4-1A66-48FF-BDCC-70D20353944A} - System32\Tasks\DiskUpdate => C:\SWTOOLS\OSFIXES\DISKUPDT\DiskUpdate.exe [2009-02-09] ()
Task: {6A0767FC-6856-4739-A0EA-F15ED952672C} - System32\Tasks\PMTask => C:\Program Files (x86)\ThinkPad\Utilities\PwmIdTsv.exe [2015-04-17] (Lenovo Group Limited)
Task: {73707E0B-8589-43ED-83F1-2B96D176DE5A} - System32\Tasks\SamsungMagician => C:\Program Files (x86)\Samsung\Samsung Magician\Samsung Magician.exe [2014-09-28] (Samsung Electronics.)
Task: {7930E00D-11B5-4DFB-A51D-0B114BF606E1} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [2017-05-09] ()
Task: {83A105A1-0A8C-4A03-A55C-5D5E3C17BE29} - System32\Tasks\Lenovo\LSC\Lenovo Solution Center Notifications => C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe [2017-02-14] (Lenovo)
Task: {8583AD42-90E4-4F20-AE62-9B6BA9CB7DE7} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-05-20] (Adobe Systems Incorporated)
Task: {8935E22E-3967-45F5-BDC2-16A1CDC2EDB1} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-05-24] (Piriform Ltd)
Task: {8F3E4B58-3758-4AD7-9BF9-274B3C953231} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2017-05-19] (AVAST Software)
Task: {974695A4-E09E-4EBB-8A71-1127B46858B0} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-19] (Google Inc.)
Task: {AB9A410B-2EEC-4FF6-90C7-472469159FC9} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2017-05-19] (AVAST Software)
Task: {B782BC3A-220C-4E6A-BF24-6CA33A5E240E} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 35 => %ProgramFiles(x86)%\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe 
Task: {BF9A838D-DDCE-453D-8792-0E71DC7B2FFC} - System32\Tasks\Private Internet Access Startup => C:\Program Files\pia_manager\pia_manager.exe 
Task: {D3AA2259-B713-48FE-A9C9-325AD19AAF03} - System32\Tasks\Lenovo\Message Center Plus Launcher => C:\Program Files (x86)\Lenovo\message center plus\mcplaunch.exe [2015-03-23] (Lenovo)
Task: {E83C5EB9-6A8D-4BAF-969E-EACB52FEE2CA} - System32\Tasks\Synaptics TouchPad Enhancements => \Program Files\Synaptics\SynTP\SynTPEnh.exe 
Task: {F230349B-48B1-4DCA-AC2E-6938EAD1A935} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program => C:\Program Files\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2013-08-08] (Lenovo)
Task: {FFBF339C-59F8-4087-BEE8-77ABBEC5504D} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 => C:\Program Files (x86)\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2015-07-01] (Lenovo)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\Lenovo Active Protection System.job => C:\Windows\system32\TpShUI.exe
 
Last edited by a moderator:

My Computer My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Lenovo
OS
Windows 7 64 Home Premium
CPU
i5
Memory
Crucial Sport 8 gigs (2x4)
Graphics Card(s)
n/a
Hard Drives
Samsung EVO 500 gigs
Antivirus
Avast
Browser
Chrome
Code:
==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

==================== Loaded Modules (Whitelisted) ==============

2012-09-09 01:27 - 2015-04-17 06:07 - 00105472 ____N () C:\Program Files (x86)\ThinkPad\Utilities\US\PWMRT64V.DLL
2012-09-09 01:24 - 2012-03-19 02:09 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2017-05-19 22:59 - 2017-05-19 22:59 - 00162024 _____ () c:\Program Files\AVAST Software\Avast\x64\vaarclient.dll
2017-05-19 22:59 - 2017-05-19 22:59 - 00825960 _____ () C:\Program Files\AVAST Software\Avast\x64\ffl2.dll
2017-05-19 22:59 - 2017-05-19 22:59 - 00275776 _____ () c:\Program Files\AVAST Software\Avast\x64\StreamBack.dll
2017-05-19 22:59 - 2017-05-19 22:59 - 00170216 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2017-05-19 22:59 - 2017-05-19 22:59 - 00176992 _____ () C:\Program Files\AVAST Software\Avast\event_routing_rpc.dll
2017-05-19 22:59 - 2017-05-19 22:59 - 00223224 _____ () C:\Program Files\AVAST Software\Avast\tasks_core.dll
2017-05-30 21:35 - 2017-05-30 21:35 - 05991936 _____ () C:\Program Files\AVAST Software\Avast\defs\17053004\algo.dll
2017-05-19 22:59 - 2017-05-19 22:59 - 00684656 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll
2017-05-19 22:59 - 2017-05-19 22:59 - 00230632 _____ () C:\Program Files\AVAST Software\Avast\streamback.dll
2017-05-31 17:54 - 2017-05-31 17:54 - 06097640 _____ () C:\Program Files\AVAST Software\Avast\defs\17053102\algo.dll
2012-09-09 01:33 - 2012-01-17 02:29 - 00030512 ____N () C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBServiceps.dll
2012-09-09 01:27 - 2011-08-02 07:58 - 02201088 _____ () C:\Program Files\Lenovo\Communications Utility\cxcore210.dll
2012-09-09 01:27 - 2011-08-02 07:58 - 02085888 _____ () C:\Program Files\Lenovo\Communications Utility\cv210.dll
2012-09-09 01:37 - 2012-07-12 08:59 - 00891392 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\QtNetwork4.dll
2012-09-09 01:37 - 2012-07-12 08:59 - 02281984 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\QtCore4.dll
2012-09-09 01:37 - 2012-07-12 08:59 - 00322048 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\log4cplus.dll
2012-09-09 01:37 - 2012-07-12 08:59 - 00339456 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\QtXml4.dll
2012-09-09 01:37 - 2012-07-12 08:59 - 00400384 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\sqlite3.dll
2012-09-09 01:37 - 2012-07-12 08:59 - 00016896 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\featureController.dll
2012-09-09 01:37 - 2012-07-12 08:59 - 00062976 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\osEvents.dll
2012-09-09 01:37 - 2012-07-12 08:59 - 00195584 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\libgsoap.dll
2012-09-09 01:37 - 2012-07-12 08:59 - 00062464 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\zlib1.dll
2012-09-09 01:37 - 2012-07-12 08:59 - 00446976 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\deviceProfile.dll
2012-09-09 01:37 - 2012-07-12 08:59 - 00019456 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\eventsSender.dll
2012-09-09 01:37 - 2012-07-12 08:59 - 00062976 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\serviceManagerStarter.dll
2015-04-08 20:45 - 2014-09-28 17:59 - 00019872 _____ () C:\Program Files (x86)\Samsung\Samsung Magician\SAMSUNG_SSD.dll
2017-05-19 22:59 - 2017-05-19 22:59 - 00997896 _____ () C:\Program Files\AVAST Software\Avast\AvChrome.dll
2017-05-19 22:59 - 2017-05-19 22:59 - 67717632 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2017-05-19 22:59 - 2017-05-19 22:59 - 00291824 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll
2012-09-09 01:22 - 2012-02-20 23:09 - 01198872 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Windows:nlsPreferences [0]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-13 22:34 - 2009-06-10 17:00 - 00000824 _____ C:\Windows\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-398858359-1869519540-514900614-1001\Control Panel\Desktop\\Wallpaper -> 
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

MSCONFIG\startupreg: AvastUI.exe => "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{E816DB15-9232-4239-93FB-7A8000978108}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{628F5948-6014-49BD-A673-EE13B4E9E18D}] => (Allow) LPort=2869
FirewallRules: [{A197CB7E-76FE-4D99-85A4-F5709462C51A}] => (Allow) LPort=1900
FirewallRules: [{EC4F9491-1F67-4AEA-9E6B-CBDF5E3EF48E}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
FirewallRules: [{42B2E20B-4B42-45C4-B304-59381D2DD2F1}] => (Allow) C:\Program Files (x86)\Windows Live\Mesh\MOE.exe
FirewallRules: [{34D7424A-E1E3-49EF-B1A8-310129410243}] => (Allow) C:\Program Files\Intel Corporation\Intel WiDi\WiDiApp.exe
FirewallRules: [TCP Query User{9F5C7EC1-616B-4C48-A56F-F575812B21BA}C:\program files (x86)\intel\intelappstore\bin\ismagent.exe] => (Block) C:\program files (x86)\intel\intelappstore\bin\ismagent.exe
FirewallRules: [UDP Query User{E3F70B93-5752-4BBE-96D8-E2BA87D48AB0}C:\program files (x86)\intel\intelappstore\bin\ismagent.exe] => (Block) C:\program files (x86)\intel\intelappstore\bin\ismagent.exe
FirewallRules: [TCP Query User{05DE03B9-5499-40B2-B91F-102DCE7ADA72}C:\program files (x86)\intel\intelappstore\bin\ismagent.exe] => (Block) C:\program files (x86)\intel\intelappstore\bin\ismagent.exe
FirewallRules: [UDP Query User{1B15799E-12E8-4D60-8A72-D36B9D1CD42B}C:\program files (x86)\intel\intelappstore\bin\ismagent.exe] => (Block) C:\program files (x86)\intel\intelappstore\bin\ismagent.exe
FirewallRules: [{7D2BDC86-66A3-4FB9-BAA1-F25DC9ED4039}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8600\bin\FaxApplications.exe
FirewallRules: [{E63A0865-515E-4D94-ADC0-8B12B5EB87A2}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8600\bin\DigitalWizards.exe
FirewallRules: [{803166F3-DA4A-4276-8181-79CF1F3C3712}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8600\bin\SendAFax.exe
FirewallRules: [{0354343A-ECFE-42A9-B891-03E5035A60A0}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8600\Bin\DeviceSetup.exe
FirewallRules: [{E8898840-78B5-4971-BABB-EF3EE3CD5EF4}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8600\Bin\HPNetworkCommunicator.exe
FirewallRules: [{27F2DCEA-6A09-4C6E-BD17-BE72566ECDBB}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8600\Bin\HPNetworkCommunicatorCom.exe
FirewallRules: [{B203FD48-1D28-47B8-B4E0-130D216D7854}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{7BF4A4A1-DE32-47EB-83EC-AF151B0D8AA8}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{6FDA6195-D8FD-43DD-858E-AB88D7B9A511}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [UDP Query User{A8DD1B7E-B218-4E27-9C11-7813B142F9F9}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [{1B416593-02F9-47B6-94AE-9F868510CC06}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
FirewallRules: [{11B3D7A4-DC79-4D34-9AC5-E1BD1FE22ED6}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{A0A2DCEA-4938-4D41-8747-BE45B641D5AD}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{DAD81588-FBD2-460B-B8C7-8DB0FDA0EBB2}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{D1577C34-A1BA-408C-AC78-1149ECF88FBC}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe
FirewallRules: [{93CBB7D1-53C8-4251-8086-E816F48B8DE8}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe
FirewallRules: [{48601238-9665-4C97-B45E-4A1B47521D15}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.596\SZBrowser.exe
FirewallRules: [{7029EF5D-F985-4FC3-BE4A-349041DD093B}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Restore Points =========================


==================== Faulty Device Manager Devices =============

Name: Teredo Tunneling Pseudo-Interface
Description: Microsoft Teredo Tunneling Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: =========================

Application errors:
==================
Error: (05/31/2017 06:02:37 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: TrustedInstaller.exe, version: 6.1.7601.17514, time stamp: 0x4ce7989b
Faulting module name: cbscore.dll, version: 6.1.7601.18766, time stamp: 0x54e4390d
Exception code: 0xc0000005
Fault offset: 0x00000000000dcc06
Faulting process id: 0x1e44
Faulting application start time: 0x01d2da599d2fd892
Faulting application path: C:\Windows\servicing\TrustedInstaller.exe
Faulting module path: C:\Windows\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.1.7601.18766_none_675144b3de10d6f7\cbscore.dll
Report Id: daeaabb4-464c-11e7-bb9e-0021cccbb660

Error: (05/31/2017 06:02:36 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: TrustedInstaller.exe, version: 6.1.7601.17514, time stamp: 0x4ce7989b
Faulting module name: cbscore.dll, version: 6.1.7601.18766, time stamp: 0x54e4390d
Exception code: 0xc0000005
Fault offset: 0x00000000000dcc06
Faulting process id: 0x1e04
Faulting application start time: 0x01d2da599cc71c06
Faulting application path: C:\Windows\servicing\TrustedInstaller.exe
Faulting module path: C:\Windows\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.1.7601.18766_none_675144b3de10d6f7\cbscore.dll
Report Id: da81ef28-464c-11e7-bb9e-0021cccbb660

Error: (05/31/2017 06:02:07 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: TrustedInstaller.exe, version: 6.1.7601.17514, time stamp: 0x4ce7989b
Faulting module name: cbscore.dll, version: 6.1.7601.18766, time stamp: 0x54e4390d
Exception code: 0xc0000005
Fault offset: 0x00000000000dcc06
Faulting process id: 0x1d20
Faulting application start time: 0x01d2da598b427b82
Faulting application path: C:\Windows\servicing\TrustedInstaller.exe
Faulting module path: C:\Windows\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.1.7601.18766_none_675144b3de10d6f7\cbscore.dll
Report Id: c8ffb004-464c-11e7-bb9e-0021cccbb660

Error: (05/31/2017 06:01:37 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: TrustedInstaller.exe, version: 6.1.7601.17514, time stamp: 0x4ce7989b
Faulting module name: cbscore.dll, version: 6.1.7601.18766, time stamp: 0x54e4390d
Exception code: 0xc0000005
Fault offset: 0x00000000000dcc06
Faulting process id: 0x17d8
Faulting application start time: 0x01d2da5979577fcc
Faulting application path: C:\Windows\servicing\TrustedInstaller.exe
Faulting module path: C:\Windows\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.1.7601.18766_none_675144b3de10d6f7\cbscore.dll
Report Id: b714b44e-464c-11e7-bb9e-0021cccbb660

Error: (05/31/2017 06:01:16 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: sppsvc.exe, version: 6.1.7601.17514, time stamp: 0x4ce7bd64
Faulting module name: sppsvc.exe, version: 6.1.7601.17514, time stamp: 0x4ce7bd64
Exception code: 0xc0000005
Fault offset: 0x00000000000c0c0c
Faulting process id: 0x1ff0
Faulting application start time: 0x01d2da596c4ac931
Faulting application path: C:\Windows\system32\sppsvc.exe
Faulting module path: C:\Windows\system32\sppsvc.exe
Report Id: aafc7b7d-464c-11e7-bb9e-0021cccbb660

Error: (05/31/2017 06:01:07 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: TrustedInstaller.exe, version: 6.1.7601.17514, time stamp: 0x4ce7989b
Faulting module name: cbscore.dll, version: 6.1.7601.18766, time stamp: 0x54e4390d
Exception code: 0xc0000005
Fault offset: 0x00000000000dcc06
Faulting process id: 0xee0
Faulting application start time: 0x01d2da59676b4efd
Faulting application path: C:\Windows\servicing\TrustedInstaller.exe
Faulting module path: C:\Windows\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.1.7601.18766_none_675144b3de10d6f7\cbscore.dll
Report Id: a52a123a-464c-11e7-bb9e-0021cccbb660

Error: (05/31/2017 06:00:36 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: TrustedInstaller.exe, version: 6.1.7601.17514, time stamp: 0x4ce7989b
Faulting module name: cbscore.dll, version: 6.1.7601.18766, time stamp: 0x54e4390d
Exception code: 0xc0000005
Fault offset: 0x00000000000dcc06
Faulting process id: 0x12bc
Faulting application start time: 0x01d2da595578e63f
Faulting application path: C:\Windows\servicing\TrustedInstaller.exe
Faulting module path: C:\Windows\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.1.7601.18766_none_675144b3de10d6f7\cbscore.dll
Report Id: 93387c21-464c-11e7-bb9e-0021cccbb660

Error: (05/31/2017 06:00:06 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: TrustedInstaller.exe, version: 6.1.7601.17514, time stamp: 0x4ce7989b
Faulting module name: cbscore.dll, version: 6.1.7601.18766, time stamp: 0x54e4390d
Exception code: 0xc0000005
Fault offset: 0x00000000000dcc06
Faulting process id: 0x1f70
Faulting application start time: 0x01d2da5943797a32
Faulting application path: C:\Windows\servicing\TrustedInstaller.exe
Faulting module path: C:\Windows\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.1.7601.18766_none_675144b3de10d6f7\cbscore.dll
Report Id: 81516b1d-464c-11e7-bb9e-0021cccbb660

Error: (05/31/2017 05:59:36 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: TrustedInstaller.exe, version: 6.1.7601.17514, time stamp: 0x4ce7989b
Faulting module name: cbscore.dll, version: 6.1.7601.18766, time stamp: 0x54e4390d
Exception code: 0xc0000005
Fault offset: 0x00000000000dcc06
Faulting process id: 0x1cec
Faulting application start time: 0x01d2da59318432f1
Faulting application path: C:\Windows\servicing\TrustedInstaller.exe
Faulting module path: C:\Windows\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.1.7601.18766_none_675144b3de10d6f7\cbscore.dll
Report Id: 6f4280fd-464c-11e7-bb9e-0021cccbb660

Error: (05/31/2017 05:59:07 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: TrustedInstaller.exe, version: 6.1.7601.17514, time stamp: 0x4ce7989b
Faulting module name: cbscore.dll, version: 6.1.7601.18766, time stamp: 0x54e4390d
Exception code: 0xc0000005
Fault offset: 0x00000000000dcc06
Faulting process id: 0x1e70
Faulting application start time: 0x01d2da591fffe28c
Faulting application path: C:\Windows\servicing\TrustedInstaller.exe
Faulting module path: C:\Windows\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.1.7601.18766_none_675144b3de10d6f7\cbscore.dll
Report Id: 5dbd4df3-464c-11e7-bb9e-0021cccbb660


System errors:
=============
Error: (05/31/2017 06:02:37 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Windows Modules Installer service terminated unexpectedly. It has done this 14 time(s).

Error: (05/31/2017 06:02:36 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Windows Modules Installer service terminated unexpectedly. It has done this 13 time(s).

Error: (05/31/2017 06:02:07 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Windows Modules Installer service terminated unexpectedly. It has done this 12 time(s).

Error: (05/31/2017 06:01:37 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Windows Modules Installer service terminated unexpectedly. It has done this 11 time(s).

Error: (05/31/2017 06:01:17 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Software Protection service terminated unexpectedly. It has done this 5 time(s).

Error: (05/31/2017 06:01:07 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Windows Modules Installer service terminated unexpectedly. It has done this 10 time(s).

Error: (05/31/2017 06:00:37 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Windows Modules Installer service terminated unexpectedly. It has done this 9 time(s).

Error: (05/31/2017 06:00:07 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Windows Modules Installer service terminated unexpectedly. It has done this 8 time(s).

Error: (05/31/2017 05:59:36 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Windows Modules Installer service terminated unexpectedly. It has done this 7 time(s).

Error: (05/31/2017 05:59:07 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Windows Modules Installer service terminated unexpectedly. It has done this 6 time(s).


CodeIntegrity:
===================================
Date: 2014-12-27 18:50:35.963
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

Date: 2014-12-27 15:08:07.956
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

Date: 2014-12-27 10:36:13.760
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

Date: 2014-12-27 10:36:12.793
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

Date: 2014-12-20 15:40:11.263
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

Date: 2014-12-20 15:40:10.841
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

Date: 2014-12-19 19:46:57.108
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

Date: 2014-12-18 11:42:03.792
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

Date: 2014-11-28 22:08:19.651
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

Date: 2014-11-28 22:08:18.720
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i5-3320M CPU @ 2.60GHz
Percentage of memory in use: 25%
Total physical RAM: 7889.51 MB
Available physical RAM: 5891.21 MB
Total Virtual: 15777.21 MB
Available Virtual: 13794.8 MB

==================== Drives ================================

Drive c: (Windows7_OS) (Fixed) (Total:465.66 GB) (Free:376.6 GB) NTFS ==>[system with boot components (obtained from drive)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 465.8 GB) (Disk ID: 2D90933F)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=465.7 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================
 
Last edited by a moderator:

My Computer My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Lenovo
OS
Windows 7 64 Home Premium
CPU
i5
Memory
Crucial Sport 8 gigs (2x4)
Graphics Card(s)
n/a
Hard Drives
Samsung EVO 500 gigs
Antivirus
Avast
Browser
Chrome
I followed your steps exactly and when I entered step 8 net start sppsvc the CMD stated that the software protection started successfully. When I entered slui.exe I received the warning concerning Windows Activation: "An error has occurred." Code: 0xC0020017 The RPC Server is unavailable.

Oops! Did not see your after thought about disabling my antivirus. I myself have two Windows 7 64 disks for my home PC as well as my son's laptop.
 
Last edited:

My Computer My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Lenovo
OS
Windows 7 64 Home Premium
CPU
i5
Memory
Crucial Sport 8 gigs (2x4)
Graphics Card(s)
n/a
Hard Drives
Samsung EVO 500 gigs
Antivirus
Avast
Browser
Chrome
Hi Route414,
can you run this tool, copy/paste the output
http://www.sysnative.com/niemiro/apps/SFCFix.exe

For the SLUI error RPC server unavailable, are you allowing remote connections.

and can you navigate to here, see screenshot, do you have the same permissions
(the other users should only have 2 ticks in them)

Roy
 

Attachments

  • route414.PNG
    route414.PNG
    14.1 KB · Views: 53

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
medionl/Aspire 6930G/acer x55a
OS
W7 home premium 32bit/W7HP 64bit/w10 tp insider ring
CPU
E5300 dual core
Motherboard
medion MS7366
Memory
3gb
Graphics Card(s)
Nvidia Geforce 7100 Nforce 630i
Monitor(s) Displays
avixc
Internet Speed
n (isp resticted to 72)
Antivirus
mse/pands
Browser
palemoon
Other Info
Belkin Fd7050 n USB using Railink RT2870 drivers, more upto date
SFCFix version 3.0.0.0 by niemiro.
Start time: 2017-06-04 15:31:32.538
Microsoft Windows 7 Service Pack 1 - amd64
Not using a script file.




AutoAnalysis::
SUMMARY: No corruptions were detected.
AutoAnalysis:: directive completed successfully.




Successfully processed all directives.



Failed to generate a complete zip file. Upload aborted.


SFCFix version 3.0.0.0 by niemiro has completed.
Currently storing 0 datablocks.
Finish time: 2017-06-04 15:40:41.207
----------------------EOF-----------------------
Code:



How do I access CbsCore.dll?

Thanks,
Jim
 

My Computer My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Lenovo
OS
Windows 7 64 Home Premium
CPU
i5
Memory
Crucial Sport 8 gigs (2x4)
Graphics Card(s)
n/a
Hard Drives
Samsung EVO 500 gigs
Antivirus
Avast
Browser
Chrome
Hi Jim,

C:\Windows\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.1.7601.18766_none_675144b3de10d6f7\cbscore.dll

all one line
note it should be 954kb

Roy
 

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
medionl/Aspire 6930G/acer x55a
OS
W7 home premium 32bit/W7HP 64bit/w10 tp insider ring
CPU
E5300 dual core
Motherboard
medion MS7366
Memory
3gb
Graphics Card(s)
Nvidia Geforce 7100 Nforce 630i
Monitor(s) Displays
avixc
Internet Speed
n (isp resticted to 72)
Antivirus
mse/pands
Browser
palemoon
Other Info
Belkin Fd7050 n USB using Railink RT2870 drivers, more upto date
Pleas pardon my ignorance but where do type this? Would it be > Start > Computer > C Drive > and then type in what you gave in the Search? Because when I did I did not get the attached image what you gave in post #8 which meanss I did something really wrong. The following is a brief a amount of what I got via Notepad after my search:

C b s E x e c u t e S t a t e I n i t i a t e R o l l b a c k C b s E x e c u t e S t a t e F a i l e d C b s E x e c u t e S t a t e C o m p l e t e C b s E x e c u t e S t a t e S c a v e n g e I n v a l i d E x e c u t e S t a t e | C b s E x e c u t e S t a t e F l a g R o l l b a c k | C b s E x e c u t e S t a t e F l a g U n d o R o l l b a c k | C b s E x e c u t e S t a t e F l a g D r i v e r s F a i l e d | C b s E x e c u t e S t a t e F l a g P r i m i t i v e s F a i l e d | C b s E x e c u t e S t a t e F l a g A d v a n c e d I n s t a l l e r s F a i l e d | C b s E x e c u t e S t a t e F l a g F o r c e C a n c e l Failed to initialize perf tracing. Continuing without it. Invalid Malloc pointer passed in. Invalid TiLockProcess function passed in. Invalid TiUnlockProcess function passed in. Invalid InstanceCreated callback passed in. Invalid InstanceDestroyed callback passed in. Invalid RequireShutdownProcessing callback passed in. Invalid ClassFactory pointer passed in. C b s C h e c k R e f C o u n t S o f t w a r e \ M i c r o s o f t \ T r a c i n g CbsCheckRefCount flag is set, CBS object addref/release information will be saved to log Failed to get Core DLL's path. Failed to find the cbscore.dll in the path: %S Failed to copy core DLL path into servicing stack directory string: %S w d s c o r e . d l l Failed getting reboot in progress volatile key Kernel transactions are disabled, continuing without transaction support. Failed to load and initialize KTM, continuing without transaction support. Failed to load KERNEL32 DLL for MUI functions. Failed to determine servicing stack version. Failed to initialize core resources. Failed to load DPX DLL. Failed to load WCP DLL. Failed to load DrUpdate DLL. Failed to load CfgMgr32 DLL. Failed to load SrClient DLL, continuing without restore point support. Failed to set IMalloc for CSI. Failed to set Error Report Callbackfor CSI. Failed to initialize session manager. Failed to initialize component analyzer Failed to initialize execution engine. Failed to create class factory. Failed creating NoActiveSessions event Failed to initialize SQM. Continuing without it. Startup: Begin processing, registering for winlogon notification. The image has been damaged by an offline servicing failure and no further servicing is allowed. Startup: Failed to get current progress information. Startup: Failed determining the execute state Startup: current ExecuteState is %S Startup: Failed registering for Winlogon Notification, continuing without it. Startup: Windows is in Safe Mode. Startup: Failed disabling LKG Startup: Initializing driver operations queue. Startup: Failed initializing driver operation queue Startup: Initializing advanced operation queue. Startup: Failed to get store. Startup: Failed to get advanced store. Startup: Failed to get CSI store. Failed waiting for SC autostart event Failed opening driver update context Startup: scavenging during service startup was interrupted, skipping it for now. Startup: Failed determining if poqexec is still needed Startup: SafeMode: Safemode entered while needing to process Stage Drivers, cancelling the transaction. Startup: SafeMode: Safemode entered while needing to process Primitives, rolling back and cancelling the transaction. Startup: SafeMode: Safemode entered while needing to process the advanced operation queue, rolling back and cancelling the transaction. Startup: SafeMode: Advanced Installer rollback is in progress. Allowing the user to login, and keeping the rollback pending. Startup: SafeMode: Rollback in progress, allowing safemode execution of driver and primitives rollback. P r e P r i m i t i v e s F r e e S p a c e P e r L a n g u a g e P r e P r i m i t i v e s F r e e S p a c e Startup: Not enough free space to complete the operation. Startup: A possible hang was detected on the last boot. Startup: Setup is in progress, skipping rollback phases and the error will be returned to Setup. Failed disabling device installation. Failed disabling device installation, rebooting and trying again Failed enabling device installs and waiting Startup: Processing advanced operation queue, startupPhase: %d Startup: Advanced operation queue requires restart to complete processing. Startup: Primitive operations were successfully rolled back. Startup: Failed to process advanced operation queue, startupPhase: %d. Primitives are still pending. Startup: POQ has not been processed yet, aborting startup processing. Startup processing will be attempted again. Startup: Primitive operations failed, startupPhase: %d. The transaction will be cancelled. Startup: Failed to process advanced operation queue, startupPhase: %d. A rollback transaction will be created. Startup: Completed rollback, startupPhase: %d. Startup: Rollback failed, startupPhase: %d. Startup: Failed to process advanced operation queue, startupPhase: %u. ResolvePendingTransaction ended with an unexpected disposition Startup: Failed to initiate a rollback transaction. A restart will be performed, prior to trying again. Startup: Failed to process advanced operation queue. Drivers and primitives will be rolled back and a restart initiated. Failed moving PoqExec from SetupExecute key to Cbs key Startup: Failed to process advanced operation queue. Rolling back primitives. Failed enabling device installation. Requesting a restart. Startup: Failed to cancel pending transactions. Startup: Failed getting list of packages failed due to driver problems. Startup: Attempting to force cancel the rollback transaction. Startup: Failed force cancelling the rollback transaction. Startup: Failed to report force cancelling the rollback transaction. Startup: ensuring that device installs have been re-enabled Startup: No progress detected while scavenging. Startup: No progress detected while needing to process Stage Drivers, rolling back and cancelling the transaction. Startup: No progress detected while needing to process Primitives, rolling back and cancelling the transaction. Startup: No progress detected while needing to process the advanced operation queue, rolling back and cancelling the transaction. Startup: No progress detected while trying to initiate a rollback after primitives failure. Startup: No progress detected while trying to initiate a rollback after AI/GC failure. Startup: No progress detected while trying to rollback staging of drivers. Startup: No progress detected while trying to rollback drivers and primitives. Startup: No progress detected while trying to rollback unstaging of drivers. Startup: No progress detected while trying to undo-rollback unstaging of drivers. Startup: No progress detected while trying to perform rollback device installs. Startup: No progress detected while trying to perform rollback AIs. Startup: No progress detected while rollback was pending, force cancelling the transaction. Failed closing driver update context Startup: Previous pended transaction was cancelled, mark all packages with the error Startup: Failed to process all pending packages, ignoring failure and continuing. Startup: Failed to notify session manager on startup finish. Startup: Retrying failed packages. Startup: Failed retrying pending victims: hr: 0x%lx Startup: Retry delayed by pending reboot; making sure we remain auto-start and don't clean up the package store. Startup: start scavenging at service startup Startup: Scavenging returned with disposition: %d Startup: Failed, restart required to clean up. Startup: Failed, restart required to try again. Startup: Success, restart required to continue processing. Startup: Processing complete. Startup: Failed enabling LKG NonStart: Checking to ensure startup processing was not required. NonStart: Windows is in Safe Mode. NonStart: Failed to get store. NonStart: Failed to get advanced store. NonStart: Failed to check if still pending. NonStart: Startup processing is required unexpectedly, scheduled Trusted Installer for auto-start again. NonStart: Success, startup processing not required as expected. Warning: Failed to scavenge CSI store. Shtd: Prepare for shutdown processing. Shtd: Failed to get current progress information. P r e s h u t d o w n T i m e o u t S y s t e m \ C u r r e n t C o n t r o l S e t \ S e r v i c e s \ T r u s t e d I n s t a l l e r Failed reading PreshutdownTimeout from the registry B l o c k T i m e I n c r e m e n t Failed reading BlockTimeIncrement from the registry Shtd: PreshutdownTimeout: %ldms, BlockTimeIncrement: %ldms Shtd: Failed to create shutdown processing event. Shtd: Failed to create progress thread. Shtd: progress thread terminated normally Shtd: Failed waiting for progress thread to terminate. Wait result: 0x%x Shtd: Failed to notify session manager on shutdown start with hr: 0x%x Shtd: Begin shutdown processing. Failed preparing for shutdown processing. Shtd: Windows is in Safe Mode. Shtd: failed waiting for active sessions to complete with object 0x%x Shtd: Entered process lock. Shtd: Initializing driver operations queue. Shtd: Failed initializing driver operation queue Shtd: Failed determining the execute state Shtd: current ExecuteState is %S Shtd: Not enough free space to complete the operation. SQM: Failed to wait for pending uploads. Shtd: Shutdown processing complete. Shtd: Failed to notify session manager on shutdown finish with hr: 0x%x Failed to finalize execution engine. S e r v i c e s \ T r u s t e d I n s t a l l e r Failed to get system registry key to change Trusted Installer to auto-start service S Y S T E M \ C u r r e n t C o n t r o l S e t \ S e r v i c e s \ T r u s t e d I n s t a l l e r Failed to open TrustedInstaller service key. S t a r t Failed to change Trusted Installer to auto-start service. Failed to register for Winlogon Notifications Failed to enable backup and restore privileges for the process hosting CBS core. Failed StringCchCopyNW. %40ws %15d %15d
Failed StringCbPrintfA. Failed to write filter driver file. FilterFindFirst FilterFindNext FilterFindClose Failed to get Windows directory. s y s t e m 3 2 \ F l t L i b . d l l % w s \ % w s Fail to generate FLBLIB file name. Fail to generate driverlist file name. Failed to create filter driver list file. Failed to load fltlib.dll. Failed to get proc address FilterFindFirst. Failed to get proc address FilterFindNext. Failed to get proc address FilterFindClose. Failed to get mini filter info. Failed to get windows directory for FlushNtfsETWLog Failed to allocate sczFlushPath path from windows directory: %S Failed to ensure backslash termination for windir Failed to allocate NtfsETWLog path Failed to ensure the NtfsETWLogging directory exists: %S Failed to ensure backslash termination for flushPath Failed to allocate full NtfsETWLog path Failed to copy FlushPath name to pEvtProps->LogFileNameOffset: %S N t f s L o g FlushTraceW failed to flush NtfsLog to %S
Code:
 
Last edited:

My Computer My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Lenovo
OS
Windows 7 64 Home Premium
CPU
i5
Memory
Crucial Sport 8 gigs (2x4)
Graphics Card(s)
n/a
Hard Drives
Samsung EVO 500 gigs
Antivirus
Avast
Browser
Chrome
Hi Jim,
sorry probobly the way a laid it out.
Same way as you got to the additions file, just a longer route.

If the problem is becoming time(work wise) sensitive then as i said earlier, try a repair install NO loss of data.


Roy
 

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
medionl/Aspire 6930G/acer x55a
OS
W7 home premium 32bit/W7HP 64bit/w10 tp insider ring
CPU
E5300 dual core
Motherboard
medion MS7366
Memory
3gb
Graphics Card(s)
Nvidia Geforce 7100 Nforce 630i
Monitor(s) Displays
avixc
Internet Speed
n (isp resticted to 72)
Antivirus
mse/pands
Browser
palemoon
Other Info
Belkin Fd7050 n USB using Railink RT2870 drivers, more upto date
Hi Roy. Did anything in my previous post make any sense to you, i.e. some revealing information or was it just a whole lot of useless rambling? If not I'll post it in full. If yes then do you have any directives on how one goes about doing a repair install? I'll follow a link if need be.

Jim
 

My Computer My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Lenovo
OS
Windows 7 64 Home Premium
CPU
i5
Memory
Crucial Sport 8 gigs (2x4)
Graphics Card(s)
n/a
Hard Drives
Samsung EVO 500 gigs
Antivirus
Avast
Browser
Chrome

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Home made Desktop
OS
Windows 10 Pro. 64/ version 1709 Windows 7 Pro/64
CPU
Intel i7-6800K @ 4.3
Motherboard
ASUS X-99 Deluxe II
Memory
Corsair Platinum 16 gig @2400
Graphics Card(s)
EVGA GTX 1070 OC
Monitor(s) Displays
Asus 27" LED LCD/VE278Q
Screen Resolution
1920-1080 or 1280-720 HDMI
Hard Drives
INTEL SSD 730-240 Gb Sata 3.0/
PSU
EVGA Platium 1200W
Case
Phanteks Luxe Tempered Glass 8 fans/ one radiator
Cooling
XSPC/ Water Cooled CPU
Keyboard
Das 4 Professional
Mouse
Logitech M705/MX Anywhere 2-S
Internet Speed
100 mbits
Antivirus
Microsoft Security Essentials/ Malwarebytes Premium 3.0/ SAS
Browser
I.E. 11 default/Firefox/ ISP Time Warner Cable/Spectrum
Other Info
LG BluRay Burner/
Sound system-KLipsch-THX/
Icy Dock ssd Hot Swap bays.
My apology for being a week late in response but my family and I are dealing with my father who is under the care of Hospice and so as you can imagine my time has been tied up with this dynamic.

Anyway, I started the Repair Install as per the link that Layback Bear provided. All went smoothly until Step 12 where it said that there wasn't enough space on Drive E. The thing is there is no Drive E. There is only C. I attempted two other times with the repair install and kept getting the error message. I also repeated the search for a E drive and/or partition but none was displayed anywhere. I was all set to relay the message here when the following took place:

1. I suddenly get the message on my desktop screen that there is an Update for Samsung Magician software and would I like to do so. I clicked yes. Then after I updated the software I accessed it and I was told my SSD firmware was old (weird because I would periodically check this aspect of the SSD and I was told it was all good). I updated to the latest.

2. As soon as I updated the firmware I get a message from Lenovo that I have a critical update from Intel concerning Intel's Management and Security Status software. Now prior to all this I kept getting error messages that this Intel Software could not function properly and that the IA had stopped working. I updated it successfully.

I have absolutely no clue why I never received these notifications from Samsung and Lenovo before until tonight considering I have had issues trying to rectify my Windows is Not Genuine issue for several months.

3. So on a hunch I went ahead and tried searching and updating Windows updates. I almost fell to the floor when it successfully found them and installed them.

Now I am being prompted that I have 20 days to activate Windows. It also asks if I want to change my Product ID Code #. What listed now is not my ID Code on my sticker. So change it and activate, yes?
 
Last edited:

My Computer My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Lenovo
OS
Windows 7 64 Home Premium
CPU
i5
Memory
Crucial Sport 8 gigs (2x4)
Graphics Card(s)
n/a
Hard Drives
Samsung EVO 500 gigs
Antivirus
Avast
Browser
Chrome
Hi Route414,
No worries about the time delays, got the same kinda problem with me Mum.

Yes please use the key on your COA sticker.

Didn't Know about Samsung drivers causing validation problems
Intels RST driver yes - see it quite regularly
They were probobly inter dependent on each other

Hope things go well.

Roy
 

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
medionl/Aspire 6930G/acer x55a
OS
W7 home premium 32bit/W7HP 64bit/w10 tp insider ring
CPU
E5300 dual core
Motherboard
medion MS7366
Memory
3gb
Graphics Card(s)
Nvidia Geforce 7100 Nforce 630i
Monitor(s) Displays
avixc
Internet Speed
n (isp resticted to 72)
Antivirus
mse/pands
Browser
palemoon
Other Info
Belkin Fd7050 n USB using Railink RT2870 drivers, more upto date
Hi Roy,

Very sorry to hear about your mom. These times can be most difficult.

I want you to know that my Windows activation was successful. I really believe the culprit was the Intel RST driver. I want to thank you so much for your tremendous help and patience. The help I gained here was outstanding and I learned a number of things in the process. It is always good when you can learn new things.

Sincerely,
Jim
 

My Computer My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Lenovo
OS
Windows 7 64 Home Premium
CPU
i5
Memory
Crucial Sport 8 gigs (2x4)
Graphics Card(s)
n/a
Hard Drives
Samsung EVO 500 gigs
Antivirus
Avast
Browser
Chrome
Back
Top