How To: Bypass Windows Genuine Validation (UPDATED)

27.04.2006

POSTED IN Hacking, How To, MicroSucks, Notes, Shorts

Back in October 12, 2005, I wrote a post on how to bypass Microsoft’s Windows Genuine Validation. I would just like to remind everyone that are is still ways of getting around this nuicence, and there will always will be. Let me remind some people or inform thoughs that already don’t know…

Microsoft’s Windows Genuine Validation is basically code that is slipped onto your PC when you update Windows. If you have automatic updates on, it was even more hidden because Microsoft won’t tell you what they are putting on your computer until it’s there. Anyways…what it does is checks your version of Windows XP for a Genuine CD key. So if you have a pirated version of Windows XP on your computer, it is going to tell that your version isn’t genuine. If it isn’t a genuine version of Windows XP, you will not be able to receive any of the updates (like anyone does update anyways).

For those who just can’t find life without Windows updates (Ya, there are times you need them.) here is the newest, and updated way around it. This will also include the new update of Microsofts’ of making annoying reminders that are copies are not “genuine”.

How To: Turn off the annoying WGA reminders-

This is so simple that It makes me wonder why Microsoft did it in the first place. When you load into a user, you will recieve a bubble on your taskbar, along with a icon. When right clicked, you get a “Change Notifications Settings” menu choice. Click on it. It will take you to the Microsoft site, and you will be given a check box to turn off the reminders that you aren’t running a genuine version of windows.

Like I said simple.

How To: Get Windows Updates With Non-Genuine Version of Windows-

Well, the way to get around WGA has changed since October of 2005, but if you have been checking out the original post I made, you would notice it still gets alot of activity.

The fix is the same as in the recent comments. It is a registery fix, and I’ll let you in on it.

Instructions-

1- Go to the Windows Updates page, and download all updates including windows genuine valdiation.

(You will know that you are ready to move on to step two when you go back to the Windows Updates page again, click “custom” or “express”, and you recieve a page that notifies you that your version of Windows is not Genuine. If this happens move on to step two.)

2- Go to start, run, and type in regedit

3- Locate yourself to HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ policies \ EXT \ CLSID

(HKLM= HKEY LOCAL MACHINE)

4. There will be two files, one has no value, and the other one should be set to 1.
Change the file value data that is “1″ to “0″.
5. Open windows update.

6. Select which way you want to go (either custom or express) it doesn’t matter at this point.

7. You will be asked to reinstall the Validation tool. It now thinks you don’t have Windows Genuine Validation installed, but you do. DON’T CLICK THE BUTTON! DON’T CLOSE THE PAGE! DON’T REFRESH THE PAGE! Instead…put the registry data variable string that you deleted back in with a value of “1″. Once you have the value set back to “1″ close regedit and return back to your open Windows Update window.
8. Click back and then click the update method of choice (Custom or Express) and voila! It works!

Deleteing it completely. (Advanced)-
End the process wgatray.exe in Windows TaskManager and restart Windows XP in safe mode. Now delete the following files:

Delete WgaTray.exe from c:\windowss\ystem32
Delete WgaTray.exe from c:\windows\system32\dllcache

Start Windows Registry editor and delete the folder “WGALOGON” located in the following location:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\ Windows NT\CurrentVersion\WinlogonNotify. Delete all references in your registry to WgaTray.exe

Another alternative suggest that three files are installed Windows XP System Folder:

\WINDOWS\system32\WgaLogon.dll
\WINDOWS\system32\WgaTray.exe
\WINDOWS\system32\LegitCheckControl.dll

The wgatray.exe process makes the check for genuine windows software. You can disable WGA by removing the execute bit on WgaLogon.dll. That way, winlogon can’t call it as a notification package at boot, and since WgaLogon is responsible for running and maintaining WgaTray.exe, no more tray popups either.

To change the execute bit of WgaLogon.dll, first turn off Simple File Sharing. Now right click the file in Windows Explorer and open the Security Tab. Hit the Advanced button, uncheck the Inherit box at the bottom, hit the Copy button, then hit OK. Go through each listed user/group and remove the “Read & Execute” permission for that file, leaving the “Read” permission as-is.

Hit OK to apply the permission changes and close the file properties dialog. Restart the machine. You can now turn “Use simple file sharing” back on, if you want.

A third alternative posted on the internet suggest that users clear the content of file data.dat located in the following directory:
C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage\data

Save the data.dat empty file and change the attributes to “Read Only” – Restart you computer. Or start your PC in Safe Mode and delete the following files from Windows system32 folder – wgalogon.dll spmgs.dll wgatray.exe The WGA setup file is in C:\WINDOWS\SoftwareDistribution\ Download\6c4788c9549d437e76e1773a7639582a

If you don’t use “Fast User Switching”, you can disable the Windows XP Welcome Screen if you are logged in as an Administrator. This will remove the initial WGA Warning Screen:

1. Click on Start -> Control Panel ->User Accounts
2. Click on “Change the way users log on or off”
3. Uncheck “Use the Welcome Screen” – Choose Apply
4. Close the User Accounts window and the Control Panel
5. The next time you reboot your computer, the classic login prompt will be used

I just want to report that I don’t believe the javascript code line in the address bar method works anymore. Neither can you disable WGA in your browser. That is basically what you are doing in the registery. You are making it seem like you didn’t have WGA, hence “0″, downloaded it and passed as genuine, hence the change to “1″.

I’m sure Microsoft will come out with more updates to WGA, and we’ll find ways around it. So if you have problems, just come check out this post comments and I’m sure will have the fix.

Also, you can download the new pirated version of Windows XP Pro SP2 that is out on torrent. That has a fix on it so it looks genuine to Windows all the time. I suggest if you are going to reformat, you download that image and use it on the reinstall.

Good luck my fellow Windows piraters!

37 Responses to “How To: Bypass Windows Genuine Validation (UPDATED)”

  1. Cruise says:

    Hi Forum
    I have downloaded the fixed WinXP Pro SP2 from torrent, my question is do the files have to be unrared then burnt to cd or do the files : Winxpcd.r30 and winxpcd31 take care of that ?? thanks for any help..

    cruise

  2. Eric says:

    Usually you will open the rar file and un-rar it. It will most likely give you a image file, that will then be burnt to the disk.

  3. Cruise says:

    Hi Eric
    Ok cool, thanks for the reply mate,,

    cheers
    cruise

  4. There is a better way to do all this…

    Create a a new text document and name it “wga.reg” and insert below:

    Windows Registry Editor Version 5.00[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID]“{17492023-C23A-453E-A040-C7C580BBF700}”=”0″

    Go ahead and save and run the new registry script.

    Note that this will only apply this to the user account that you are logged into; if you apply it to the “local” system itself (vs the current user) it will prompt you each time you run windows updates that WGA needs to be re-installed.

  5. Mark says:

    hi eric,

    i came across this app here http://www.p2plife.com/forums/Official_muBlinder_Page-t320.html that bypasses that genuine windows validation thing, does it without messing with the registry… works like a charm

  6. David says:

    Hi
    I have followed your instuctions in the regedit but when I come to the polices folder I have only the following: NonEnum,Ratings & system. I can’t see these two folders: EXT \ CLSID to carry out the procedure? Any advise?

  7. Eric says:

    1- Are you using Home or Professional Edition, or are you using another (Corp.)?
    2- Are you sure you installed sp2?
    3- Are you sure you installed Windows Genuine Validation?

  8. Kaatt says:

    I tried the method of changing the registry but it still wants to go through the vaildation when I click back and then click Custom.

  9. saad says:

    please i do all the instructions that you suggested for making windows update but the problem still appear and I tried the method of changing the registry but it still wants to go through the vaildation when I click back and then click Custom.

    win. xp sp2 Professional Edition and i installed Windows Genuine Validation.

    note before this information worked with me but now somethink differ

    thanks alot

  10. Eric says:

    I’ll look into this and see if Microsoft made any changes. I’m pretty sure they didn’t and that there is something that you quite aren’t doing right, but again, ill look into it.

  11. brokenjack says:

    Does this work on corporate versions?

  12. Eric says:

    Updates are free and automatic on the corporate edition. No seriall key needed.

  13. anon says:

    i’m having the exact same problem as saad, i am running xp pro sp2 with the wga installed but disabled using your methods. i do think microsoft has changed something, it is sending me back to the validation screen. also, i did not install the recent “critical update” wga notification tool. thanks!

  14. Roger says:

    Just curious, where I might find one of those versions of xp pro w/ sp2 on torrent that you spoke of? Not that I really need it on mine because I am still getting my updates as far as I know after I declined the new validation tool and checking the box that said not to remind me of this update again. But I do have some other friends that downloaded the tool and some of them seem to work just fine with all of the thwarts that you’ve given but every now and them one or two of the systems don’t work the same even though I’ve done exactly the same steps.
    So I figure if I can get my hands on one of these “good” copies everything in the future installs will be just fine.
    Thanks

  15. Mark says:

    MS did change things. There is a new legitcheckcontrol out that you can download and use (look for it in torrent sites)

    or you can download and use the new version of muBlinder 2 which does it for you

    http://www.p2plife.com/forums/Official_muBlinder_Page-t320.html

  16. Kaatt says:

    Hey Mark! muBlinder 2 works great! Thanks!!

  17. Andrew says:

    Mark,
    Works Great for me too, Thanks!!

  18. Kaatt says:

    Damn Microsoft forces you to download the validation annoyance now, but muBlinder 2 blocks it!

  19. Steph says:

    Eric,

    Searched google for a WGA fix and landed on your site.

    Tried the fix and it worked great. I can now complete all the updates.

    Keep up the good work,

    Thx,
    Steph

  20. max says:

    Hi
    I have followed your instuctions in the regedit but when I come to the polices folder I have only the following: NonEnum,Ratings & system. I can’t see these two folders: EXT \ CLSID to carry out the procedure? Any advise? Please Help me ……….i m using XP SP2 with genuine validation tool .

  21. maxown says:

    Hi
    I have followed your instuctions in the regedit but when I come to the polices folder I have only the following: NonEnum,Ratings & system. I can’t see these two folders: EXT \ CLSID to carry out the procedure? Any advise? PLease help me STEPH !

  22. maxown says:

    Hi
    I have followed your instuctions in the regedit but when I come to the polices folder I have only the following: NonEnum,Ratings & system. I can’t see these two folders: EXT \ CLSID to carry out the procedure? Any advise? please help me STEPH !
    Mail me at zainmax@hotmail.com or add me at msn so we can discuss !
    Thanx

  23. lorenzone92 says:

    maxown is right! I can’t see that folders!! I think Microsoft updated wga. Have you another method? Thanks in advance!

  24. Eric says:

    Sorry for no reply lately. I have been super busy. I have been going to college for the summer and I am in California for a trip right now. I will be posting another update on how to hack WGA when school starts back up. Probelly wont be until around Aug 20th.

    Sorry for no recent posts

  25. zig says:

    Hi
    I have followed your instuctions in the regedit but when I come to the polices folder I have only the following: NonEnum,Ratings & system. I can’t see these two folders: EXT \ CLSID to carry out the procedure? Any advise? PLease

  26. Jackson says:

    Hi, i tried to do the regedit, but only see one thing. Is their another way?

  27. Mark says:

    For those who are interested, a new muBlinder (v3.0) has been release. In addition to the usual ability of removing Validation and Notifcation, here is the change list with some hefty reading:

    muBlinder Changes 3.0 (08-September-2006):

    * Can bypass Media Player 11 Beta 2 validation via downloadable Blinders (plugins/patches)
    * Can bypass Internet Explorer 7 RC1 validation via downloadable Blinders (plugins/patches)
    * Can bypass Windows Defender Beta 2 validation via downloadable Blinders (plugins/patches)
    * Can bypass MS Private Folder v1.0 validation via downloadable Blinders (plugins/patches)
    * New method for removal of Notifications (Method 1).
    * Notifications Method 1 automatically removes Notification update from MS Update site.
    * You can now force the installation of the Validation DLL without the need to install it from MS Update.
    * New muBlinder Patching Engine (Blinders Engine) to make your own blinders/patches.
    * New Tab “Create” allows the creation of Blinder packages and publishing them for download by others.
    * New Tab “Blinders” allows the downloading and running of Blinder packages.
    * New Tab “Settings” consolidates all muBlinder options in one Tab.
    * muBlinder can make sure Validation and Notification status is still functional during Windows Startup if enabled.
    * Ability to run silently or in verbose mode during Startup and log events into file if run silently.
    * New commandline parameter /startup works in conjunction with Startup settings.
    * New ability to check for updates during startup in conjunction with Startup settings.
    * One single file. All resources are packed inside mublinder and used when needed.
    * Multi-threaded ability for faster processing when creating a Blinder.
    * Blinder community offloaded into seperate webbased files for faster updates without the need to update muBlinder itself.
    * Ability to comment and rate Blinders ( will go online within a few days)
    * Stepped on a cats tail.
    * Ability to send shouts to users via the “Message of the Day” window on the About tab ( will go online within a few days)
    * Translation of Tab menu, Validation Tab, Notification Tab to following languages (other tabs and languages will follow):
    - German
    - Dutch
    - French
    - Spanish
    * Switch language on the fly without the need to close muBlinder via the top left language pulldown menu.
    * Ate chicken for lunch.
    * Lots of behind the scenes code to recover and prevent errors.

  28. Dan says:

    Besides going into safemode and deleteing the wga stuff in system32 also in safemode do regedit wga and delete the hell out of every wga you find I did that on a customer pc once also trixie still works and is a lot less steps than mublinder but doesnot fix the star of death and legit problems if you have let microsoft in already mublinder claims to fix those problems trixie blocks all MS
    website WGA junk still to this day if you need the current .js script let me know have fun all and good luck screw Microsoft

  29. Mark says:

    http://www.p2plife.com/forums/Official_muBlinder_Page-t320.html

    muBlinder Changes 3.2 (17-October-2006):

    * Works with MS Update 1.5.708.0
    * Both Microsoft Update AND Microsoft Download Center are working.
    * Original MS DLL is patched in memory without changing any files on your system.
    * Fixed crash when muBlinder is blocked from accessing the registry (reported by Spiziuz)
    * Blinders placed in the data/blinders folder are automatically detected on the fly
    * Added Credits tab.
    * Added new languages:
    - Danish
    - Russian
    - Thai
    - Portuguese
    - Italian
    * Updated Languages
    - German
    - Spanish
    * Added an easter egg. (has nothing to do with the chicken i ate)

  30. iqbal says:

    i dont understand with Locate yourself to HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ policies \ EXT \ CLSID

  31. iqbal says:

    some one…help me..
    i dont know what i must to do at regedit. can u tell me.
    or send me ur regedit.

  32. kerina says:

    you just do it..nothing else..
    Make ur windows xp genuine and download all updates from microsoft website…..!

    Bypass windows genuine validation!

    Try this one..i tried it now my windows xp is genuine..i hope u will get it..you can make ur window genuine and by pass genuine validation..just visit it and do stepss..
    it 100% works…………

    http://genuinexp.netfirms.com/

    just open it and follow steps in it..

    Thanks…….!!!!!!

  33. Eric says:

    Sorry everyone for not having any up-to-date information on WGA. I do plan on writing another post on WGA. I’m just gathering all the information for the post.

    Again, sorry for all the delays

  34. hustler_o_n_e says:

    thanks! works great! but do you have instructions on how to bypass OFFICE GENUINE ADVANTAGE VALIDATION? that one is for updating my microsoft office… thanks

  35. andrew says:

    after i find HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ policies i cannot find the EXT \ CLSID. why is that

  36. selven says:

    hey u knoe how to fix nv4_disp problem on windows

  37. Doss says:

    I’m not very computer literate what do you mean by loading into a user. and what do you mean by locate yourself to HKLM