New
#41
Got any more man?
I'm still hopelessly waiting.
Got any more man?
I'm still hopelessly waiting.
I still think it's something to do with the WBEM folder... but I could be wrong.
Let's get at it a different way...
Please run the following commands in an Elevated Command Prompt
NET STOP CRYPTSVC
REN C:\WINDOWS\SYSTEM32\CATROOT2 CATROOT2OLD
NET START CRYPTSVC
once complete, leave the system alone for at least an hour to rebuild the database, then reboot, and run another MGADiag report and post the results.
Note that this may delete your Update History - but all updates will remain installed, and can be viewed in the Installed Updates listing.
Code:Diagnostic Report (1.9.0027.0): ----------------------------------------- Windows Validation Data--> Validation Code: 50 Cached Online Validation Code: 0x0 Windows Product Key: *****-*****-2QWT6-HCQXJ-9YQTR Windows Product Key Hash: PVjSC5x6njvqunmbCY3lOD7rYDo= Windows Product ID: 00359-OEM-8992687-00007 Windows Product ID Type: 2 Windows License Type: OEM SLP Windows OS version: 6.1.7601.2.00010300.1.0.003 ID: {7A0DBB42-07AB-4879-A922-787E1EA22EC4}(3) Is Admin: Yes TestCab: 0x0 LegitcheckControl ActiveX: N/A, hr = 0x80070002 Signed By: N/A, hr = 0x80070002 Product Name: Windows 7 Home Premium Architecture: 0x00000009 Build lab: 7601.win7sp1_gdr.130318-1533 TTS Error: Validation Diagnostic: Resolution Status: N/A Vista WgaER Data--> ThreatID(s): N/A, hr = 0x80070002 Version: N/A, hr = 0x80070002 Windows XP Notifications Data--> Cached Result: N/A, hr = 0x80070002 File Exists: No Version: N/A, hr = 0x80070002 WgaTray.exe Signed By: N/A, hr = 0x80070002 WgaLogon.dll Signed By: N/A, hr = 0x80070002 OGA Notifications Data--> Cached Result: N/A, hr = 0x80070002 Version: N/A, hr = 0x80070002 OGAExec.exe Signed By: N/A, hr = 0x80070002 OGAAddin.dll Signed By: N/A, hr = 0x80070002 OGA Data--> Office Status: 109 N/A OGA Version: N/A, 0x80070002 Signed By: N/A, hr = 0x80070002 Office Diagnostics: B4D0AA8B-604-645_025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3 Browser Data--> Proxy settings: N/A User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32) Default Browser: C:\Users\asus\AppData\Local\Google\Chrome\Application\chrome.exe Download signed ActiveX controls: Prompt Download unsigned ActiveX controls: Disabled Run ActiveX controls and plug-ins: Allowed Initialize and script ActiveX controls not marked as safe: Disabled Allow scripting of Internet Explorer Webbrowser control: Disabled Active scripting: Allowed Script ActiveX controls marked as safe for scripting: Allowed File Scan Data--> Other data--> Office Details: <GenuineResults><MachineData><UGUID>{7A0DBB42-07AB-4879-A922-787E1EA22EC4}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7601.2.00010300.1.0.003</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-9YQTR</PKey><PID>00359-OEM-8992687-00007</PID><PIDType>2</PIDType><SID>S-1-5-21-3766355003-1165880937-3182644717</SID><SYSTEM><Manufacturer>ASUSTeK COMPUTER INC.</Manufacturer><Model>G75VW</Model></SYSTEM><BIOS><Manufacturer>American Megatrends Inc.</Manufacturer><Version>G75VW.207</Version><SMBIOSVersion major="2" minor="7"/><Date>20120406000000.000000+000</Date></BIOS><HWID>C59C3107018400FE</HWID><UserLCID>0421</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>SE Asia Standard Time(GMT+07:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM><OEMID>_ASUS_</OEMID><OEMTableID>Notebook</OEMTableID></OEM><GANotification/></MachineData><Software><Office><Result>109</Result><Products/><Applications/></Office></Software></GenuineResults> Spsys.log Content: 0x80070002 Licensing Data--> C:\Windows\system32\slmgr.vbs(1131, 5) Microsoft VBScript runtime error: Permission denied Windows Activation Technologies--> HrOffline: 0x00000000 HrOnline: N/A HealthStatus: 0x0000000000000000 Event Time Stamp: N/A ActiveX: Registered, Version: 7.1.7600.16395 Admin Service: Registered, Version: 7.1.7600.16395 HealthStatus Bitmask Output: HWID Data--> HWID Hash Current: MgAAAAIAAQABAAEAAAACAAAAAwABAAEAln3iGyJBdxa0JAbnFIEWZBaDiFuoTgS/lmM= OEM Activation 1.0 Data--> N/A OEM Activation 2.0 Data--> BIOS valid for OA 2.0: yes Windows marker version: 0x20001 OEMID and OEMTableID Consistent: yes BIOS Information: ACPI Table Name OEMID Value OEMTableID Value APIC _ASUS_ Notebook FACP _ASUS_ Notebook HPET _ASUS_ Notebook MCFG _ASUS_ Notebook ECDT _ASUS_ Notebook SLIC _ASUS_ Notebook SSDT PmRef Cpu0Ist SSDT PmRef Cpu0Ist BGRT _ASUS_ Notebook
Last edited by Brink; 25 Feb 2014 at 11:32. Reason: code box
No change...
Ah!
Let's check this....
ICACLS C:\Windows\System32\SLUI.EXE
ICACLS C:\Windows\System32\en-US\SLUI.EXE.mui
ICACLS C:\Windows\System32\SPPSVC.exe
post the results.
Microsoft Windows [Version 6.1.7601]
Copyright (c) 2009 Microsoft Corporation. All rights reserved.
C:\Windows\system32>ICACLS C:\Windows\System32\SLUI.EXE
C:\Windows\System32\SLUI.EXE NT SERVICE\TrustedInstaller:(F)
BUILTIN\Administrators:(RX)
NT AUTHORITY\SYSTEM:(RX)
BUILTIN\Users:(RX)
Successfully processed 1 files; Failed processing 0 files
C:\Windows\system32>ICACLS C:\Windows\System32\en-US\SLUI.EXE.mui
C:\Windows\System32\en-US\SLUI.EXE.mui NT SERVICE\TrustedInstaller:(F)
BUILTIN\Administrators:(RX)
NT AUTHORITY\SYSTEM:(RX)
BUILTIN\Users:(RX)
Successfully processed 1 files; Failed processing 0 files
C:\Windows\system32>ICACLS C:\Windows\System32\SPPSVC.exe
C:\Windows\System32\SPPSVC.exe NT SERVICE\TrustedInstaller:(F)
BUILTIN\Administrators:(RX)
NT AUTHORITY\SYSTEM:(RX)
BUILTIN\Users:(RX)
Successfully processed 1 files; Failed processing 0 files
C:\Windows\system32>
Should i post MGADiag?
hey man, what should i do next?
Sorry about that - real life got in the way! :)
Let's see if the WBEM folder and Catroot folders are properly populated now...
run the following commands, and post the results...
DIR C:\Windows\System32\WBEM\Repository
DIR C:\Windows\System32\WBEM\Performance
DIR C:\Windows\System32\Catroot2
It's okay man, i got busy too sometimes
Results
Microsoft Windows [Version 6.1.7601]
Copyright (c) 2009 Microsoft Corporation. All rights reserved.
C:\Windows\system32>DIR C:\Windows\System32\WBEM\Repository
Volume in drive C is OS
Volume Serial Number is 9617-A7EE
Directory of C:\Windows\System32\WBEM\Repository
22/02/2014 07:35 <DIR> .
22/02/2014 07:35 <DIR> ..
22/02/2014 16:43 4.415.488 INDEX.BTR
22/02/2014 16:43 48.876 MAPPING1.MAP
22/02/2014 07:40 48.876 MAPPING2.MAP
22/02/2014 16:42 48.876 MAPPING3.MAP
22/02/2014 16:43 14.884.864 OBJECTS.DATA
5 File(s) 19.446.980 bytes
2 Dir(s) 52.085.993.472 bytes free
C:\Windows\system32>DIR C:\Windows\System32\WBEM\Performance
Volume in drive C is OS
Volume Serial Number is 9617-A7EE
Directory of C:\Windows\System32\WBEM\Performance
22/02/2014 16:45 <DIR> .
22/02/2014 16:45 <DIR> ..
22/02/2014 16:44 3.631 WmiApRpl.h
22/02/2014 16:45 49.764 WmiApRpl.ini
2 File(s) 53.395 bytes
2 Dir(s) 52.085.993.472 bytes free
C:\Windows\system32>DIR C:\Windows\System32\Catroot2
Volume in drive C is OS
Volume Serial Number is 9617-A7EE
Directory of C:\Windows\System32\Catroot2
18/02/2014 18:02 <DIR> .
18/02/2014 18:02 <DIR> ..
22/02/2014 07:36 32.859 dberr.txt
21/02/2014 23:45 8.192 edb.chk
22/02/2014 07:38 65.536 edb.log
18/02/2014 18:02 65.536 edb00518.log
18/02/2014 18:02 65.536 edb00519.log
18/02/2014 18:02 65.536 edb0051A.log
18/02/2014 18:02 65.536 edb0051B.log
18/02/2014 18:02 65.536 edb0051C.log
18/02/2014 18:02 65.536 edb0051D.log
18/02/2014 18:02 65.536 edb0051E.log
18/02/2014 18:02 65.536 edb0051F.log
18/02/2014 18:02 65.536 edb00520.log
18/02/2014 18:02 65.536 edb00521.log
18/02/2014 18:02 65.536 edb00522.log
18/02/2014 17:47 65.536 edbres00001.jrs
18/02/2014 17:47 65.536 edbres00002.jrs
18/02/2014 17:47 <DIR> {127D0A1D-4EF2-11D1-8608-00C04FC295EE}
18/02/2014 17:47 <DIR> {F750E6C3-38EE-11D1-85E5-00C04FC295EE}
16 File(s) 958.555 bytes
4 Dir(s) 52.085.993.472 bytes free
C:\Windows\system32>