Question about Microsoft Windows Server Standard 2003 for PC

Open Question

Is there any Group Policy for "TrustedInstaller"

We are needing to add the -nomerge or (noframemerging) switch in the Windows 7 registry remotely for 300 machines. However, the registry key is locked and I don’t see how I can modify it. It only allows “TrustedInstaller” to modify the key. We need a Group Policy or script method that can change all 300 machines. I do not want to remotely login to 300 system and change the key ownership manually. You would think after all the problems with this Microsoft would have added a Group Policy for this. Any help would be greatly appreciated!

Posted by on

Ad

3 Suggested Answers

6ya6ya
  • 2 Answers

SOURCE:

Hi there,
Save hours of searching online or wasting money on unnecessary repairs by talking to a 6YA Expert who can help you resolve this issue over the phone in a minute or two.

Best thing about this new service is that you are never placed on hold and get to talk to real repairmen in the US.

Here's a link to this great service

Good luck!

Posted on Jan 02, 2017

Ad
myob247
  • 1342 Answers

SOURCE: need a 25 character product key for microsoft word 2000

Go HERE and download the MagicJellyBean. It will retrieve your Microsoft keys for you.

Posted on May 06, 2008

Ad
  • 214 Answers

SOURCE: Diagnostic Report (1.9.0027.0):

change your product key into a genuine product key SIMPLE

Posted on Jun 28, 2010

Add Your Answer

Uploading: 0%

my-video-file.mp4

Complete. Click "Add" to insert your video. Add

×

Loading...
Loading...

Related Questions:

1 Answer

How to fix access denaid probems.


Open the Local Group Policy Editor Applies To: Windows 7, Windows 8, Windows Server 2008 R2, Windows Server 2012
You can open the Local Group Policy Editor by using the command line or by using the Microsoft Management Console (MMC).
To open the Local Group Policy Editor from the command line
  • Click Start , type gpedit.msc in the Start Search box, and then press ENTER .
To open the Local Group Policy Editor as an MMC snap-in
  1. Open MMC. (Click Start , click in the Start Search box, type mmc , and then press ENTER .)
  2. On the File menu, click Add/Remove Snap-in .
  3. In the Add or Remove Snap-ins dialog box, click Group Policy Object Editor , and then click Add .
  4. In the Select Group Policy Object dialog box, click Browse .
  5. Click This computer to edit the Local Group Policy object, or click Users to edit Administrator, Non-Administrator, or per-user Local Group Policy objects.
  6. Click Finish .

Jan 28, 2016 | Computers & Internet

Tip

Fix Windows 7 Error ?Windows is Not Genuine? Error code 0×80070005


f63627f.png

Those users running genuine version of Windows 7 provided with their hardware platform reported that immediately after log on they were presented with following error message. “Windows is not genuine. Your computer might not be running a counterfeit copy of Windows. 0×80070005.”
Some other symptoms of associated with this issue are,
The computer desktop background is black, and you receive the following error message on the bottom right corner of the screen:
“This copy of Windows is not genuine”
You receive the following error message when you view the System Properties: (Control Panel / System and Security / System)
“You must activate today. Activate Windows now”
If you try to use slmgr.vbs /dlv to view the licensing status, you receive the following message:
Error: 0×80070005 Access denied: the requested action requires elevated privileges
Microsoft is fully aware of this issue and provided following explanation for the issue,
There is a lack of permissions in the registry key HKU\S-1-5-20. The Network Service account must have full control and read permissions over that registry key.
This situation may be the result of applying a Plug and Play Group Policy object (GPO).
To resolve this issue, you can either disable the policy setting (Method A), or edit the permissions to provide the Licensing Service the required permissions (Method B).
Method A: Disable the Plug and Play Policy

1. Determine the source of the policy . To do this, follow these steps:
a. On the client experiencing the Activation error, run the Resultant Set of Policy wizard by clicking Start, Run and entering rsop.msc as the command.
b. Visit the following location:
Computer Configuration / Policies / Windows Settings /Security Settings / System Services /
If the Plug and Play service is configured through a Group Policy setting, you see it here with settings other than Not Defined. Additionally, you can see which Group Policy is applying this setting.
2. Disable the Group Policy settings and force the Group Policy to be reapplied.
a. Edit the Group Policy that is identified in Step 1 and change the setting to “Not Defined.” Or, follow the section below to add the required permissions for the Network Service account.
b. Force the Group Policy setting to reapply: gpupdate /force (a restart of the client is sometimes required)
Method B: Edit the permissions of the Group Policy:

1. Open the Group Policy that is identified in Method A, Step 1 above, and open the corresponding Group Policy setting.
2. Click the Edit Security button, and then click the Advanced button.
3. In the Advanced Security Settings for Plug and Play window click Add and then add the SERVICE account. Then, click OK
4. Select the following permissions in the Allow section and then click OK:
Query template, Query status, Enumerate dependents, Interrogate, User-defined control, Read permissions
Note: The Previous rights are the minimum required permissions.
5. Run gpupdate /force after you apply the previous permissions to the Group Policy setting.
6. Verify that the appropriate permissions are applied with the following command:
sc sdshow plugplay
The following are the rights applied to the Plug and Play service in SDDL:
D:(A;;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;SY)
(A;;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;BA)
(A;;CCLCSWLOCRRC;;;IU)
(A;;CCLCSWLOCRRC;;;SU)
S:(AU;FA;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;WD)
(A;;CC LC SW LO CR RC ;;;SU is an Access Control Entry (ACE) that allows the following rights to “SU” (SDDL_SERVICE – Service logon user)
A: Access Allowed
CC: Create Child
LC: List Children
SW: Self Write
LO: List Object
CR: Control Access
RC: Read Control
SU: Service Logon User
Note: If there are no GPO’s in place, then another activity may have changed the default registry permissions. To work around this issue, perform the following steps:
1. On the computer that is out of tolerance, start Registry Editor.
2. Right-click the registry key HKEY_USERS\S-1-5-20, and select Permissions…
3. If the NETWORK SERVICE is not present, click Add…
4. In Enter the object names to select type Network Service and then click Check Names and OK.
5. Select the NETWORK SERVICE and Grant Full Control and Read permissions.
6. Restart the computer.
7. After the restart, the system may require activation. Complete the activation.

on Jul 15, 2010 | Computers & Internet

Tip

Fix Windows 7 Error ?Windows is Not Genuine? Error code 0×80070005


To resolve this issue, you can either disable the policy setting (Method A), or edit the permissions to provide the Licensing Service the required permissions (Method B).
Method A: Disable the Plug and Play Policy 1. Determine the source of the policy . To do this, follow these steps:

a. On the client experiencing the Activation error, run the Resultant Set of Policy wizard by clicking Start, Run and entering rsop.msc as the command.

b. Visit the following location:

Computer Configuration / Policies / Windows Settings /Security Settings / System Services /


If the Plug and Play service is configured through a Group Policy setting, you see it here with settings other than Not Defined. Additionally, you can see which Group Policy is applying this setting.

2. Disable the Group Policy settings and force the Group Policy to be reapplied.

a. Edit the Group Policy that is identified in Step 1 and change the setting to “Not Defined.” Or, follow the section below to add the required permissions for the Network Service account.

b. Force the Group Policy setting to reapply: gpupdate /force (a restart of the client is sometimes required)
Method B: Edit the permissions of the Group Policy: 1. Open the Group Policy that is identified in Method A, Step 1 above, and open the corresponding Group Policy setting.

2. Click the Edit Security button, and then click the Advanced button.

3. In the Advanced Security Settings for Plug and Play window click Add and then add the SERVICE account. Then, click OK

4. Select the following permissions in the Allow section and then click OK:
Query template, Query status, Enumerate dependents, Interrogate, User-defined control, Read permissions

Note: The Previous rights are the minimum required permissions.

5. Run gpupdate /force after you apply the previous permissions to the Group Policy setting.

6. Verify that the appropriate permissions are applied with the following command:

sc sdshow plugplay


The following are the rights applied to the Plug and Play service in SDDL:

D:(A;;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;SY)

(A;;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;BA)

(A;;CCLCSWLOCRRC;;;IU)

(A;;CCLCSWLOCRRC;;;SU)

S:(AU;FA;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;WD)

(A;;CC LC SW LO CR RC ;;;SU is an Access Control Entry (ACE) that allows the following rights to “SU” (SDDL_SERVICE – Service logon user)

A: Access Allowed

CC: Create Child

LC: List Children

SW: Self Write

LO: List Object

CR: Control Access

RC: Read Control

SU: Service Logon User

Note: If there are no GPO’s in place, then another activity may have changed the default registry permissions. To work around this issue, perform the following steps:

1. On the computer that is out of tolerance, start Registry Editor.

2. Right-click the registry key HKEY_USERS\S-1-5-20, and select Permissions…

3. If the NETWORK SERVICE is not present, click Add…

4. In Enter the object names to select type Network Service and then click Check Names and OK.

5. Select the NETWORK SERVICE and Grant Full Control and Read permissions.

6. Restart the computer.

7. After the restart, the system may require activation. Complete the activation.

on May 19, 2010 | Computers & Internet

1 Answer

I have genuine windows 7 but computer says that it is not genuine


To resolve this issue, you can either disable the policy setting (Method A), or edit the permissions to provide the Licensing Service the required permissions (Method B). Method A: Disable the Plug and Play Policy
1. Determine the source of the policy. To do this, follow these steps:
a. On the client experiencing the Activation error, run the Resultant Set of Policy wizard by clicking Start, Run and entering rsop.msc as the command.
b. Visit the following location:
Computer Configuration / Policies / Windows Settings /Security Settings / System Services /
If the Plug and Play service is configured through a Group Policy setting, you see it here with settings other than Not Defined. Additionally, you can see which Group Policy is applying this setting.

2. Disable the Group Policy settings and force the Group Policy to be reapplied.
a. Edit the Group Policy that is identified in Step 1 and change the setting to "Not Defined." Or, follow the section below to add the required permissions for the Network Service account.
b. Force the Group Policy setting to reapply: gpupdate /force (a restart of the client is sometimes required)
Method B: Edit the permissions of the Group Policy:
1. Open the Group Policy that is identified in Method A, Step 1 above, and open the corresponding Group Policy setting.
2. Click the Edit Security button, and then click the Advanced button.
3. In the Advanced Security Settings for Plug and Play window click Add and then add the SERVICE account. Then, click OK
4. Select the following permissions in the Allow section and then click OK:
Query template
Query status
Enumerate dependents
Interrogate
User-defined control
Read permissions
Note: The Previous rights are the minimum required permissions.
5. Run gpupdate /force after you apply the previous permissions to the Group Policy setting.
6. Verify that the appropriate permissions are applied with the following command:
sc sdshow plugplay
The following are the rights applied to the Plug and Play service in SDDL:

D:(A;;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;SY)
(A;;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;BA)
(A;;CCLCSWLOCRRC;;;IU)
(A;;CCLCSWLOCRRC;;;SU)
S:(AU;FA;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;WD)
(A;;CC LC SW LO CR RC ;;;SU is an Access Control Entry (ACE) that allows the following rights to "SU" (SDDL_SERVICE - Service logon user)
A: Access Allowed
CC: Create Child
LC: List Children
SW: Self Write
LO: List Object
CR: Control Access
RC: Read Control
SU: Service Logon User
Note: If there are no GPO's in place, then another activity may have changed the default registry permissions. To work around this issue, perform the following steps:
  1. On the computer that is out of tolerance, start Registry Editor.
  2. Right-click the registry key HKEY_USERS\S-1-5-20, and select Permissions...
  3. If the NETWORK SERVICE is not present, click Add...
  4. In Enter the object names to select type Network Service and then click Check Names and OK.
  5. Select the NETWORK SERVICE and Grant Full Control and Read permissions.
  6. Restart the computer.
  7. After the restart, the system may require activation. Complete the activation.
If you think this solution helps you then your token of appreciation in the form of Rating and a testimonial will be esteemed.
Thank you and Keep Visiting FixYa!

Apr 13, 2011 | Microsoft Windows 7 Ultimate 32 & 64 BIT

1 Answer

Disabled task manager


1. Verity that the "Local Group Policy" or "Domain Group Policy" doesn’t block you from using

"Task Manager".

1.1 "Local Group Policy"

a. Go to "Start" -> "Run" -> Write "Gpedit.msc" and press on "Enter" button.

b. Navigate to "User Configuration" -> "Administrative Templates" -> "System" -> "Ctrl+Alt+Del Options"

c. In the right side of the screen verity that "Remove Task Manager"" option set to "Disable" or "Not Configured".

d. Close "Gpedit.msc" MMC.

e. Go to "Start" -> "Run" -> Write "gpupdate /force" and press on "Enter" button.

Note: If you are using Windows 2000, please follow KB q227302 instead stage "e".

Using SECEDIT to Force a Group Policy Refresh Immediately
http://support.microsoft.com/kb/q227302/


1.2 "Domain Group Policy"

a. Contact you local IT support team.


2. Verity correct registry settings::

a. Go to "Start" -> "Run" -> Write "regedit" and press on "Enter" button.


Warning: Modifying your registry can cause serious problems that may require you to reinstall your operating system.
Always backup your files before doing this registry hack.

b. Navigate to the following registry keys and verity that following settings set to default:

Windows Registry Editor Version 5.00

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=dword:00000000

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Group Policy Objects\LocalUser\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=dword:00000000

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\]
"DisableTaskMgr"=dword:00000000

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"DisableCAD"=dword:00000000

c. Reboot the computer.

May 23, 2009 | Microsoft Windows XP Professional SP2

Tip

How to Solve " Registry Editing has been disabled by your Administrator"


Methods to Remove the Registry Editing Restriction
Method 1 :- Using REG.EXE Console Tool

  • Click Start, Run and type this command
REG add HKCUSoftwareMicrosoftWindowsCurrentVersionPoliciesSystem /v DisableRegistryTools /t REG_DWORD /d 0 /f
You should be able to launch Tweak UI, as well as the Registry Editor.
Method 2 :- Using the Group Policy Editor (Windows XP Only)
  • Click Start, Run and type gpedit.msc and press Enter
  • Goto the following location User Configuration | Administrative Templates | System
  • Double-click Disable Registry editing tools and set it to Not Configured
  • Exit the Group Policy Editor
Note:- If the setting already reads Not Configured, set it to Enabled and click Apply . Then revert it back to Not Configured. This ensures that the DisableRegistryTools registry value is removed successfully.





on Jan 12, 2010 | Computers & Internet

1 Answer

My task manager has been disabled due to virus attack. help me


There is a registry hack to enable or disable Windows NT TaskManager. The same registry hack applies to Windows 2000 and Windows XP. Hive: HKEY_CURRENT_USER
Key: Software\Microsoft\Windows\CurrentVersion\Policies\System
Name: DisableTaskMgr
Type: REG_DWORD
Value: 1=Enablethis key, that is DISABLE TaskManager
Value: 0=Disablethis key, that is Don't Disable, Enable TaskManager

As part of the enhanced management available in Windows 2000 and Windows XP, rather than risking a registry change, as an administrator you can enable or disable Windows 2000 Pro or Windows XP Pro's TaskManager using Group Policy Editor. This can be applied to the local policy. Note: if you are trying to override your organizations group policy, you can't. As soon as you re-authenticate to the domain, the domain or OU Group Policy will rewrite the registry setting. But if the TaskManager was accidently disabled or you need to control this item for a set of standalone boxes this is for you:
  • Click Start
  • Click Run
  • Enter gpedit.msc in the Open box and click OK
  • In the Group Policy settings window
    • Select User Configuration
    • Select Administrative Templates
    • Select System
    • Select Ctrl+Alt+Delete options
    • Select Remove Task Manager
    • Double-click the Remove Task Manager option
And as I mentioned above, since the policy is Remove Task Manager, by disabling the policy, you are enabling the Task Manager.

Mar 23, 2009 | Internet Grisoft AVG Security Full...

3 Answers

Desktop properties (desktop and screensaver tab is missing)


The following is solved me
Well if anyone is interested and for general knowledge these are the 3entries that were killing the Desktop and Screen Saver tabs in XP. Hupigon13 seems to be at the root of it all.

Quote: Microsoft.Windows.System: Settings (Registry change, fixed)
HKEY_USERSS-1-5-21-1343024091-1060284298-1011862931-1004SoftwareMicrosoftWindowsCurrentVersionPoliciesSystemNoDispBackgroundPage!=W=0

Microsoft.Windows.System: User settings (Registry change, fixed)
HKEY_USERSS-1-5-21-1343024091-1060284298-1011862931-1004SoftwareMicrosoftWindowsCurrentVersionPoliciesSystemNoDispScrSavPage!=W=0

Hupigon13: Settings (Registry value, fixed)
HKEY_LOCAL_MACHINESYSTEMControlSet001ServicessrImagePath=...SystemRoot...

Read full story here
http://forum.osnn.net/showthread.php?s=f44e1bb094fbae9305c9f0c9999c52e7&p=841430#post841430

Jul 16, 2008 | A4tech PK5

2 Answers

How to by-pass windows' screeensaver password


hi dear

in the login box
press ctrl+alt +del

fill user name : administrator
and left the passord blank
enter




oke
cropp

Mar 21, 2008 | Toshiba Satellite A60 Notebook

Not finding what you are looking for?
Microsoft Windows Server Standard 2003 for PC Logo

Related Topics:

1,184 people viewed this question

Ask a Question

Usually answered in minutes!

Top Microsoft Computers & Internet Experts

Ekse

Level 3 Expert

13434 Answers

Les Dickinson
Les Dickinson

Level 3 Expert

18429 Answers

Alun Cox

Level 3 Expert

2679 Answers

Are you a Microsoft Computer and Internet Expert? Answer questions, earn points and help others

Answer questions

Manuals & User Guides

Loading...