=~=~=~=~=~=~=~=~=~=~=~= PuTTY log 2022.12.13 20:20:59 =~=~=~=~=~=~=~=~=~=~=~= (ntoskrnl/kd64/kdinit.c:74) ----------------------------------------------------- (ntoskrnl/kd64/kdinit.c:75) ReactOS 0.4.15-x86-dev (Build 20221213-0.4.15-dev-5517-g9762ef9) (Commit 9762ef948094394987a6cf7594e85847c24cceb6) (ntoskrnl/kd64/kdinit.c:76) 1 System Processor [1000 MB Memory] (ntoskrnl/kd64/kdinit.c:80) Command Line: DEBUG DEBUGPORT=COM1 BAUDRATE=115200 SOS (ntoskrnl/kd64/kdinit.c:81) ARC Paths: multi(0)disk(0)rdisk(0)partition(1) \ multi(0)disk(0)rdisk(0)partition(1) \ReactOS\ (ntoskrnl/ke/i386/cpu.c:722) Prefetch Cache: 64 bytes L2 Cache: 2097152 bytes L2 Cache Line: 64 bytes L2 Cache Associativity: 8 (hal/halx86/acpi/halacpi.c:782) ACPI Timer at: 4008h (EXT: 256) (hal/halx86/acpi/halacpi.c:891) ACPI 2.0 Detected. Tables: [XSDT] [FACP] (ntoskrnl/mm/ARM3/mminit.c:1452) HAL I/O Mapping at FFFE0000 is unsafe (ntoskrnl/ke/i386/cpu.c:1038) No support for SYSENTER detected. (ntoskrnl/mm/mminit.c:134) 0x80000000 - 0x83000000 Boot Loaded Image (ntoskrnl/mm/mminit.c:138) 0xB0000000 - 0xB08CB000 PFN Database (ntoskrnl/mm/mminit.c:142) 0xB08CB000 - 0xB27BB000 ARM3 Non Paged Pool (ntoskrnl/mm/mminit.c:146) 0xB9400000 - 0xBB400000 System View Space (ntoskrnl/mm/mminit.c:150) 0xBB400000 - 0xC0000000 Session Space (ntoskrnl/mm/mminit.c:153) 0xC0000000 - 0xC03FFFFF Page Tables (ntoskrnl/mm/mminit.c:156) 0xC0300000 - 0xC0300FFF Page Directories (ntoskrnl/mm/mminit.c:159) 0xC0400000 - 0xC07FFFFF Hyperspace (ntoskrnl/mm/mminit.c:162) 0xC1000000 - 0xE0FFFFFF System Cache (ntoskrnl/mm/mminit.c:166) 0xE1000000 - 0xECC00000 ARM3 Paged Pool (ntoskrnl/mm/mminit.c:169) 0xECC00000 - 0xF7BE0000 System PTE Space (ntoskrnl/mm/mminit.c:172) 0xF7BE0000 - 0xFFBE0000 Non Paged Pool Expansion PTE Space (ntoskrnl/config/cmcheck.c:25) CmCheckRegistry(0xB27AB008, 2) is UNIMPLEMENTED! ACPI Compatible Eisa/Isa HAL Detected WARNING: ArbBuildAssignmentOrdering at sdk/lib/drivers/arbiter/arbiter.c:275 is UNIMPLEMENTED! WARNING: ArbBuildAssignmentOrdering at sdk/lib/drivers/arbiter/arbiter.c:275 is UNIMPLEMENTED! WARNING: ArbBuildAssignmentOrdering at sdk/lib/drivers/arbiter/arbiter.c:275 is UNIMPLEMENTED! WARNING: ArbBuildAssignmentOrdering at sdk/lib/drivers/arbiter/arbiter.c:275 is UNIMPLEMENTED! WARNING: ArbBuildAssignmentOrdering at sdk/lib/drivers/arbiter/arbiter.c:275 is UNIMPLEMENTED! (ntoskrnl/io/pnpmgr/pnproot.c:531) Failed to read the LogConf key for Root\COMPOSITE_BATTERY\0000 (ntoskrnl/io/pnpmgr/pnproot.c:531) Failed to read the LogConf key for Root\System\0000 (ntoskrnl/io/iomgr/driver.c:634) '\Driver\sacdrv' initialization failed, status (0xc0000037) (ntoskrnl/io/iomgr/driver.c:83) Deleting driver object '\Driver\sacdrv' (ntoskrnl/mm/ARM3/sysldr.c:942) Leaking driver: sacdrv.sys (ntoskrnl/io/iomgr/driver.c:899) Driver 'SACDRV.SYS' load failed, status (c0000365) (drivers/ksfilter/swenum/swenum.c:428) SWENUM loaded (hal/halx86/legacy/bus/pcibus.c:816) WARNING: PCI Slot Resource Assignment is FOOBAR (drivers/storage/port/scsiport/fdo.c:328) Found device of type 0 at controller 0 bus 0 tid 0 lun 0, PDO: B221D038 (drivers/storage/port/scsiport/fdo.c:328) Found device of type 5 at controller 0 bus 0 tid 1 lun 0, PDO: B221C038 (drivers/storage/port/scsiport/fdo.c:328) Found device of type 9 at controller 0 bus 1 tid 0 lun 0, PDO: B221B038 (drivers/storage/port/scsiport/fdo.c:328) Found device of type 5 at controller 1 bus 0 tid 0 lun 0, PDO: B21E4038 (drivers/storage/port/scsiport/fdo.c:328) Found device of type 5 at controller 1 bus 0 tid 1 lun 0, PDO: B21E3038 (drivers/storage/port/scsiport/fdo.c:328) Found device of type 9 at controller 1 bus 1 tid 0 lun 0, PDO: B21E2038 (drivers/ksfilter/swenum/swenum.c:369) SWENUM AddDevice (drivers/ksfilter/ks/swenum.c:1538) KsCreateBusEnumObject Devices BusDeviceObject B21E18E0 (drivers/ksfilter/swenum/swenum.c:107) SwDispatchPnp ChildDevice 0 Request d (drivers/ksfilter/swenum/swenum.c:128) SwDispatchPnp KsServiceBusEnumPnpRequest Status c00000bb (drivers/ksfilter/swenum/swenum.c:141) SwDispatchPnp KsGetBusEnumPnpDeviceObject Status 0 (drivers/ksfilter/swenum/swenum.c:107) SwDispatchPnp ChildDevice 0 Request 0 (drivers/ksfilter/swenum/swenum.c:128) SwDispatchPnp KsServiceBusEnumPnpRequest Status 0 (drivers/ksfilter/swenum/swenum.c:107) SwDispatchPnp ChildDevice 0 Request 9 (drivers/ksfilter/swenum/swenum.c:128) SwDispatchPnp KsServiceBusEnumPnpRequest Status c00000bb (drivers/ksfilter/swenum/swenum.c:141) SwDispatchPnp KsGetBusEnumPnpDeviceObject Status 0 (drivers/ksfilter/swenum/swenum.c:107) SwDispatchPnp ChildDevice 0 Request 14 (drivers/ksfilter/swenum/swenum.c:128) SwDispatchPnp KsServiceBusEnumPnpRequest Status c00000bb (drivers/ksfilter/swenum/swenum.c:141) SwDispatchPnp KsGetBusEnumPnpDeviceObject Status 0 (drivers/ksfilter/swenum/swenum.c:107) SwDispatchPnp ChildDevice 0 Request 7 (drivers/ksfilter/swenum/swenum.c:128) SwDispatchPnp KsServiceBusEnumPnpRequest Status 0 (drivers/ksfilter/swenum/swenum.c:107) SwDispatchPnp ChildDevice 1 Request 13 (drivers/ksfilter/swenum/swenum.c:107) SwDispatchPnp ChildDevice 1 Request 9 (drivers/ksfilter/swenum/swenum.c:107) SwDispatchPnp ChildDevice 1 Request 13 (drivers/ksfilter/swenum/swenum.c:107) SwDispatchPnp ChildDevice 1 Request 13 (drivers/ksfilter/swenum/swenum.c:107) SwDispatchPnp ChildDevice 1 Request 13 (drivers/ksfilter/swenum/swenum.c:107) SwDispatchPnp ChildDevice 1 Request c (drivers/ksfilter/swenum/swenum.c:107) SwDispatchPnp ChildDevice 1 Request 15 (drivers/ksfilter/swenum/swenum.c:107) SwDispatchPnp ChildDevice 1 Request a (drivers/ksfilter/swenum/swenum.c:107) SwDispatchPnp ChildDevice 1 Request b (ntoskrnl/io/pnpmgr/pnpres.c:648) Resource conflict: IRQ (0xa 0xa vs. 0xa 0xa) (ntoskrnl/io/pnpmgr/pnpres.c:648) Resource conflict: IRQ (0xa 0xa vs. 0xa 0xa) (drivers/storage/ide/pciidex/pdo.c:430) IRP_MJ_PNP / IRP_MN_QUERY_DEVICE_RELATIONS / Unknown type 0x0 (drivers/storage/ide/pciidex/pdo.c:430) IRP_MJ_PNP / IRP_MN_QUERY_DEVICE_RELATIONS / Unknown type 0x0 (drivers/ksfilter/swenum/swenum.c:107) SwDispatchPnp ChildDevice 0 Request 7 (drivers/ksfilter/swenum/swenum.c:128) SwDispatchPnp KsServiceBusEnumPnpRequest Status 0 (ntoskrnl/io/iomgr/driver.c:634) '\Driver\BusLogic' initialization failed, status (0xc00000c0) (ntoskrnl/io/iomgr/driver.c:83) Deleting driver object '\Driver\BusLogic' (ntoskrnl/mm/ARM3/sysldr.c:942) Leaking driver: buslogic.sys (ntoskrnl/mm/ARM3/sysldr.c:415) multi(0)disk(0)rdisk(0)partition(1)\ReactOS\System32\drivers\scsiport.sys (ntoskrnl/io/iomgr/driver.c:899) Driver 'BUSLOGIC.SYS' load failed, status (c0000365) (drivers/storage/port/scsiport/ioctl.c:542) unknown ioctl code: 0x4D0018 (drivers/storage/port/scsiport/ioctl.c:542) unknown ioctl code: 0x4DC010 (drivers/storage/port/scsiport/ioctl.c:542) unknown ioctl code: 0x4D0010 (drivers/storage/port/scsiport/ioctl.c:542) unknown ioctl code: 0x4D0004 BOOT DRIVERS LOADED (drivers/storage/port/scsiport/ioctl.c:542) unknown ioctl code: 0x66001B (ntoskrnl/mm/ARM3/sysldr.c:169) Loading: \SystemRoot\System32\drivers\sysaudio.sys at F7599000 with f pages (ntoskrnl/mm/ARM3/sysldr.c:169) Loading: \SystemRoot\system32\drivers\kmixer.sys at F741C000 with 17d pages (drivers/wdm/audio/filters/kmixer/kmixer.c:108) KMixer.sys loaded (drivers/ksfilter/swenum/swenum.c:107) SwDispatchPnp ChildDevice 1 Request d (drivers/ksfilter/swenum/swenum.c:107) SwDispatchPnp ChildDevice 1 Request 0 (drivers/ksfilter/ks/swenum.c:812) KspStartBusDevice Name \Device\KSENUM00000001 DeviceName {a7c7a5b0-5af3-11d1-9ced-00a024bf0407}&{9b365890-165f-11d0-a195-0020afd156e4} Instance {9b365890-165f-11d0-a195-0020afd156e4} Started (drivers/ksfilter/swenum/swenum.c:107) SwDispatchPnp ChildDevice 1 Request 9 (drivers/ksfilter/swenum/swenum.c:107) SwDispatchPnp ChildDevice 1 Request 14 (drivers/ksfilter/swenum/swenum.c:107) SwDispatchPnp ChildDevice 1 Request 7 (ntoskrnl/mm/ARM3/sysldr.c:169) Loading: \SystemRoot\System32\drivers\processr.sys at F7413000 with 9 pages (ntoskrnl/mm/ARM3/sysldr.c:169) Loading: \SystemRoot\system32\drivers\vgapnp.sys at F7406000 with d pages (ntoskrnl/mm/ARM3/sysldr.c:169) Loading: \SystemRoot\system32\drivers\videoprt.sys at F73D9000 with 2d pages (ntoskrnl/io/pnpmgr/pnpres.c:648) Resource conflict: IRQ (0xb 0xb vs. 0xb 0xb) (ntoskrnl/io/pnpmgr/pnpres.c:112) Satisfying memory requirement with 0xa0000 (length: 0x20000) (ntoskrnl/io/pnpmgr/pnpres.c:648) Resource conflict: IRQ (0xb 0xb vs. 0xb 0xb) (ntoskrnl/mm/ARM3/sysldr.c:169) Loading: \SystemRoot\System32\drivers\pcnet.sys at F73CA000 with f pages (ntoskrnl/io/pnpmgr/pnpres.c:648) Resource conflict: IRQ (0xa 0xa vs. 0xa 0xa) (ntoskrnl/io/pnpmgr/pnpres.c:648) Resource conflict: IRQ (0xa 0xa vs. 0xa 0xa) (ntoskrnl/mm/ARM3/sysldr.c:169) Loading: \SystemRoot\system32\drivers\ac97.sys at F7382000 with 45 pages (ntoskrnl/mm/ARM3/sysldr.c:169) Loading: \SystemRoot\system32\drivers\portcls.sys at F7326000 with 5c pages (ntoskrnl/mm/ARM3/sysldr.c:169) Loading: \SystemRoot\system32\drivers\drmk.sys at F731C000 with a pages (ntoskrnl/io/pnpmgr/pnpres.c:648) Resource conflict: IRQ (0xb 0xb vs. 0xb 0xb) (ntoskrnl/io/pnpmgr/pnpres.c:648) Resource conflict: IRQ (0xb 0xb vs. 0xb 0xb) (drivers/wdm/audio/backpln/portcls/interrupt.cpp:240) Vector 59 Level 16 Flags 0 Affinity 1 (drivers/wdm/audio/backpln/portcls/interrupt.cpp:254) CInterruptSync::Connect result 0 (ntoskrnl/mm/ARM3/sysldr.c:169) Loading: \SystemRoot\System32\drivers\i8042prt.sys at F7301000 with 1b pages (drivers/input/i8042prt/hwhacks.c:231) SMBiosTables HACK, see CORE-14867 (ntoskrnl/mm/ARM3/sysldr.c:169) Loading: \SystemRoot\System32\drivers\kbdclass.sys at F72ED000 with 14 pages (ntoskrnl/io/pnpmgr/pnpres.c:648) Resource conflict: IRQ (0x1 0x1 vs. 0x1 0x1) (ntoskrnl/io/pnpmgr/pnpres.c:648) Resource conflict: IRQ (0x1 0x1 vs. 0x1 0x1) (ntoskrnl/mm/ARM3/sysldr.c:169) Loading: \SystemRoot\System32\drivers\mouclass.sys at F72DF000 with e pages (ntoskrnl/io/pnpmgr/pnpres.c:648) Resource conflict: IRQ (0xc 0xc vs. 0xc 0xc) (ntoskrnl/io/pnpmgr/pnpres.c:648) Resource conflict: IRQ (0xc 0xc vs. 0xc 0xc) (ntoskrnl/mm/ARM3/sysldr.c:169) Loading: \SystemRoot\System32\drivers\parport.sys at F72D4000 with b pages (drivers/parallel/parport/parport.c:127) Parport DriverEntry (drivers/parallel/parport/fdo.c:391) AddDevice(B20BD5A8 B21C2AD8) (drivers/parallel/parport/fdo.c:25) AddDeviceInternal() (drivers/parallel/parport/fdo.c:514) FdoPnp() (drivers/parallel/parport/fdo.c:589) IRP_MJ_PNP / IRP_MN_FILTER_RESOURCE_REQUIREMENTS (ntoskrnl/io/pnpmgr/pnpres.c:648) Resource conflict: IRQ (0x7 0x7 vs. 0x7 0x7) (ntoskrnl/io/pnpmgr/pnpres.c:648) Resource conflict: IRQ (0x7 0x7 vs. 0x7 0x7) (drivers/parallel/parport/fdo.c:514) FdoPnp() (drivers/parallel/parport/fdo.c:547) IRP_MJ_PNP / IRP_MN_START_DEVICE (drivers/parallel/parport/fdo.c:116) FdoStartDevice () (drivers/parallel/parport/fdo.c:160) Port: BaseAddress 0x378 Length 8 (drivers/parallel/parport/fdo.c:160) Port: BaseAddress 0x778 Length 8 (drivers/parallel/parport/fdo.c:174) Interrupt: Level 20 Vector 55 (drivers/parallel/parport/fdo.c:195) New LPT port: Base 0x378 (drivers/parallel/parport/fdo.c:514) FdoPnp() (drivers/parallel/parport/fdo.c:593) Unknown minor function 0x9 (drivers/parallel/parport/fdo.c:514) FdoPnp() (drivers/parallel/parport/fdo.c:593) Unknown minor function 0x14 (drivers/parallel/parport/fdo.c:514) FdoPnp() (drivers/parallel/parport/fdo.c:571) IRP_MJ_PNP / IRP_MN_QUERY_DEVICE_RELATIONS / BusRelations (drivers/parallel/parport/fdo.c:351) FdoQueryBusRelations() (drivers/parallel/parport/fdo.c:233) FdoCreateRawParallelPdo() (drivers/parallel/parport/fdo.c:378) Done (drivers/parallel/parport/pdo.c:165) PdoPnp() (ntoskrnl/io/pnpmgr/devaction.c:235) IopInitiatePnpIrp(BusQueryDeviceID) failed (Status c00000bb) (ntoskrnl/io/pnpmgr/devaction.c:1212) IopCreateDeviceInstancePath() failed with status 0xc00000bb (ntoskrnl/mm/ARM3/sysldr.c:169) Loading: \SystemRoot\System32\drivers\serial.sys at F72C1000 with 13 pages (ntoskrnl/io/pnpmgr/pnpres.c:631) Resource conflict: Port (0x3f8 to 0x400 vs. 0x3f8 to 0x400) (ntoskrnl/io/pnpmgr/pnpres.c:648) Resource conflict: IRQ (0x4 0x4 vs. 0x4 0x4) (ntoskrnl/io/pnpmgr/pnpres.c:631) Resource conflict: Port (0x3f8 to 0x400 vs. 0x3f8 to 0x400) (ntoskrnl/io/pnpmgr/pnpres.c:648) Resource conflict: IRQ (0x4 0x4 vs. 0x4 0x4) (ntoskrnl/io/pnpmgr/devaction.c:1736) Leaking device ACPI\PNP0501\1, refCount = 3 (ntoskrnl/mm/ARM3/sysldr.c:169) Loading: \SystemRoot\System32\drivers\cmbatt.sys at F72AA000 with 17 pages (ntoskrnl/mm/ARM3/sysldr.c:169) Loading: \SystemRoot\System32\drivers\battc.sys at F72A1000 with 9 pages (ntoskrnl/mm/ARM3/sysldr.c:169) Loading: \SystemRoot\System32\drivers\wmilib.sys at F7299000 with 8 pages WARNING: AcpiInterfaceNotificationsRegister at drivers/bus/acpi/interface.c:80 is UNIMPLEMENTED! (ntoskrnl/mm/ARM3/sysldr.c:169) Loading: \SystemRoot\System32\drivers\cdrom.sys at F703C000 with 25d pages WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: WDFKEY 4DF760D0, QueryULong, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: WDFKEY 4DF4A620, QueryULong, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! (ntoskrnl/po/power.c:901) PowerInformationLevel 0x42 is UNIMPLEMENTED! Have a nice day. WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: WDFKEY 4DF4A620, QueryULong, !STATUS! (drivers/storage/port/scsiport/ioctl.c:542) unknown ioctl code: 0x2D1C80 (drivers/storage/port/scsiport/ioctl.c:542) unknown ioctl code: 0x560038 (drivers/storage/port/scsiport/ioctl.c:542) unknown ioctl code: 0x4D0018 (drivers/storage/port/scsiport/ioctl.c:542) unknown ioctl code: 0x4DC010 (drivers/storage/port/scsiport/ioctl.c:542) unknown ioctl code: 0x4D0010 (drivers/storage/port/scsiport/ioctl.c:542) unknown ioctl code: 0x4D0004 WDFTrace: WDFDEVICE 4E0B9810 !devobj 00000000 created, but EvtDriverDeviceAdd returned status !STATUS! or failure in creation WDFTrace: Deleting !devobj 00000000, WDFDEVICE 4E0B9810, attached to !devobj 00000000 WDFTrace: WDFKEY 4DF71A80, QueryULong, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: WDFKEY 4DF4A620, QueryULong, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! (ntoskrnl/po/power.c:901) PowerInformationLevel 0x42 is UNIMPLEMENTED! Have a nice day. WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: WDFKEY 4DF4A620, QueryULong, !STATUS! (drivers/storage/port/scsiport/ioctl.c:542) unknown ioctl code: 0x2D1C80 (drivers/storage/port/scsiport/ioctl.c:542) unknown ioctl code: 0x560038 (ntoskrnl/ex/work.c:355) EX: Work Queue Deadlock detected: 1 (ntoskrnl/ex/work.c:357) Dynamic threads queued 1 (drivers/storage/port/scsiport/ioctl.c:542) unknown ioctl code: 0x4D0018 (drivers/storage/port/scsiport/ioctl.c:542) unknown ioctl code: 0x4DC010 (drivers/storage/port/scsiport/ioctl.c:542) unknown ioctl code: 0x4D0010 (drivers/storage/port/scsiport/ioctl.c:542) unknown ioctl code: 0x4D0004 WDFTrace: WDFDEVICE 4E0DD4D0 !devobj 00000000 created, but EvtDriverDeviceAdd returned status !STATUS! or failure in creation WDFTrace: Deleting !devobj 00000000, WDFDEVICE 4E0DD4D0, attached to !devobj 00000000 WDFTrace: WDFDEVICE 4E0DD4D0 !devobj 00000000 created, but EvtDriverDeviceAdd returned status !STATUS! or failure in creation WDFTrace: Deleting !devobj 00000000, WDFDEVICE 4E0DD4D0, attached to !devobj 00000000 WDFTrace: WDFKEY 4E0DD738, QueryULong, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: WDFKEY 4DF4A620, QueryULong, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! (ntoskrnl/po/power.c:901) PowerInformationLevel 0x42 is UNIMPLEMENTED! Have a nice day. WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: new WDFKEY object open failed, !STATUS! WDFTrace: WDFKEY 4DF4A620, QueryULong, !STATUS! (drivers/storage/port/scsiport/ioctl.c:542) unknown ioctl code: 0x2D1C80 (drivers/storage/port/scsiport/ioctl.c:542) unknown ioctl code: 0x560038 (drivers/storage/port/scsiport/ioctl.c:542) unknown ioctl code: 0x4D0018 (drivers/storage/port/scsiport/ioctl.c:542) unknown ioctl code: 0x4DC010 (drivers/storage/port/scsiport/ioctl.c:542) unknown ioctl code: 0x4D0010 (drivers/storage/port/scsiport/ioctl.c:542) unknown ioctl code: 0x4D0004 (ntoskrnl/mm/ARM3/sysldr.c:169) Loading: \SystemRoot\system32\drivers\floppy.sys at F701E000 with 1a pages (ntoskrnl/io/iomgr/driver.c:634) '\Driver\Floppy' initialization failed, status (0xc000000e) (ntoskrnl/io/iomgr/driver.c:83) Deleting driver object '\Driver\Floppy' (ntoskrnl/mm/ARM3/sysldr.c:942) Leaking driver: floppy.sys (ntoskrnl/io/iomgr/driver.c:2019) IopInitializeDriverModule() failed (Status c0000365) (ntoskrnl/mm/ARM3/sysldr.c:169) Loading: \SystemRoot\system32\drivers\fs_rec.sys at F700B000 with f pages (ntoskrnl/mm/ARM3/sysldr.c:169) Loading: \SystemRoot\system32\drivers\null.sys at F7002000 with 9 pages (ntoskrnl/mm/ARM3/sysldr.c:169) Loading: \SystemRoot\system32\drivers\beep.sys at F6FF9000 with 9 pages (ntoskrnl/mm/ARM3/sysldr.c:169) Loading: \SystemRoot\system32\drivers\blue.sys at F6FEA000 with f pages (ntoskrnl/mm/ARM3/sysldr.c:169) Loading: \SystemRoot\system32\drivers\msfs.sys at F6FDF000 with b pages (ntoskrnl/mm/ARM3/sysldr.c:169) Loading: \SystemRoot\system32\drivers\npfs.sys at F6FBA000 with 25 pages (ntoskrnl/mm/ARM3/sysldr.c:169) Loading: \SystemRoot\System32\drivers\tcpip.sys at F6F4A000 with 70 pages NDIS_STATUS_MEDIA_CONNECT Unhandled event type: 6 (ntoskrnl/mm/ARM3/sysldr.c:169) Loading: \SystemRoot\system32\drivers\ndisuio.sys at F6F36000 with 10 pages (ntoskrnl/mm/ARM3/sysldr.c:169) Loading: \SystemRoot\system32\drivers\afd.sys at F6F03000 with 33 pages (drivers/storage/port/scsiport/ioctl.c:542) unknown ioctl code: 0x4DC010 (drivers/storage/port/scsiport/ioctl.c:542) unknown ioctl code: 0x4D0010 (drivers/storage/port/scsiport/ioctl.c:542) unknown ioctl code: 0x4DC010 (drivers/storage/port/scsiport/ioctl.c:542) unknown ioctl code: 0x4D0010 (drivers/storage/port/scsiport/ioctl.c:542) unknown ioctl code: 0x4DC010 (drivers/storage/port/scsiport/ioctl.c:542) unknown ioctl code: 0x4D0010 (drivers/storage/port/scsiport/ioctl.c:542) unknown ioctl code: 0x4DC010 (drivers/storage/port/scsiport/ioctl.c:542) unknown ioctl code: 0x4D0010 (drivers/parallel/parport/pdo.c:165) PdoPnp() (ntoskrnl/io/pnpmgr/devaction.c:235) IopInitiatePnpIrp(BusQueryDeviceID) failed (Status c00000bb) (ntoskrnl/io/pnpmgr/devaction.c:1212) IopCreateDeviceInstancePath() failed with status 0xc00000bb WARNING: RtlCreateTagHeap at sdk/lib/rtl/heap.c:4037 is UNIMPLEMENTED! (ntoskrnl/mm/ARM3/sysldr.c:169) Loading: \SystemRoot\system32\drivers\cdfs.sys at F6E94000 with 54 pages (base/system/smss/pagefile.c:929) SMSS:PFILE: Open volume `\??\D:\' failed with status C0000022 (base/system/smss/pagefile.c:929) SMSS:PFILE: Open volume `\??\E:\' failed with status C0000022 (base/system/smss/pagefile.c:929) SMSS:PFILE: Open volume `\??\F:\' failed with status C0000022 WARNING: IoInitializeCrashDump at ntoskrnl/io/iomgr/iomgr.c:659 is UNIMPLEMENTED! Boot took 33262290894 cycles! Interrupts: 1760 System Calls: 34758 Context Switches: 1163 (ntoskrnl/config/cmsysini.c:1184) CmpGetRegistryPath: ConfigPath = '\SystemRoot\System32\Config\' (ntoskrnl/config/cmsysini.c:1184) CmpGetRegistryPath: ConfigPath = '\SystemRoot\System32\Config\' (ntoskrnl/config/cmsysini.c:1184) CmpGetRegistryPath: ConfigPath = '\SystemRoot\System32\Config\' (ntoskrnl/config/cmsysini.c:1184) CmpGetRegistryPath: ConfigPath = '\SystemRoot\System32\Config\' (ntoskrnl/config/cmsysini.c:1184) CmpGetRegistryPath: ConfigPath = '\SystemRoot\System32\Config\' (ntoskrnl/config/cmsysini.c:1184) CmpGetRegistryPath: ConfigPath = '\SystemRoot\System32\Config\' (ntoskrnl/config/cmsysini.c:1184) CmpGetRegistryPath: ConfigPath = '\SystemRoot\System32\Config\' (ntoskrnl/config/cmcheck.c:25) CmCheckRegistry(0xB1DB7008, 0) is UNIMPLEMENTED! (ntoskrnl/config/cmcheck.c:25) CmCheckRegistry(0xB1DB8008, 0) is UNIMPLEMENTED! (ntoskrnl/config/cmcheck.c:25) CmCheckRegistry(0xB1DB9008, 0) is UNIMPLEMENTED! (ntoskrnl/config/cmcheck.c:25) CmCheckRegistry(0xB1DBA380, 0) is UNIMPLEMENTED! (ntoskrnl/mm/ARM3/session.c:795) Session 0 is ready to go: 0xBF7F0000 0xF6EF9000, 145f 0xB1DBB6B8 (ntoskrnl/mm/ARM3/sysldr.c:169) Loading: \SystemRoot\System32\win32k.sys at F6B38000 with 34c pages (ntoskrnl/mm/ARM3/sysldr.c:169) Loading: \SystemRoot\System32\ftfd.dll at F69E4000 with 154 pages KdSystemDebugControl is unimplemented! KdSystemDebugControl is unimplemented! (dll/win32/kernel32/client/loader.c:386) LoadLibraryExW(\??\C:\ReactOS\system32\csrss.exe) failing with status c000000f (win32ss/drivers/videoprt/videoprt.c:1227) FIXME: Support calling VideoPortEnumerateChildren again! (win32ss/user/ntuser/winsta.c:243) err: Invalid window station handle (win32ss/user/ntuser/clipboard.c:31) err: Cannot open winsta (dll/win32/kernel32/client/loader.c:386) LoadLibraryExW(\??\C:\ReactOS\System32\winlogon.exe) failing with status c000000f (win32ss/user/ntuser/winsta.c:537) err: Initializing input window station (win32ss/user/ntuser/class.c:2365) err: SYSTEMCUR(ARROW) == NULL, should not happen!! (win32ss/user/ntuser/class.c:2365) err: SYSTEMCUR(ARROW) == NULL, should not happen!! (win32ss/user/ntuser/class.c:2365) err: SYSTEMCUR(ARROW) == NULL, should not happen!! (win32ss/user/ntuser/class.c:2365) err: SYSTEMCUR(ARROW) == NULL, should not happen!! (win32ss/user/ntuser/class.c:2365) err: SYSTEMCUR(ARROW) == NULL, should not happen!! (win32ss/user/ntuser/class.c:2365) err: SYSTEMCUR(ARROW) == NULL, should not happen!! (win32ss/user/ntuser/desktop.c:3354) err: The process 0xB1A8E568 'winlogon.exe' didn't have an assigned startup desktop before, assigning it now! (win32ss/user/ntuser/desktop.c:3292) err: Attempted to change thread desktop although the thread has windows! (win32ss/user/winsrv/usersrv/init.c:171) We are logged off (ntoskrnl/mm/ARM3/sysldr.c:169) Loading: \SystemRoot\System32\kbdgr.dll at F699F000 with 5 pages (ntoskrnl/mm/ARM3/sysldr.c:2466) Skipping NT 4 driver @ F699F000 (ntoskrnl/kdbg/kdb_symbols.c:232) Trying \SystemRoot\System32\kbdgr.dll (win32ss/user/ntuser/callback.c:1093) err: GetCharsetInfo Failed!! (ntoskrnl/mm/ARM3/sysldr.c:169) Loading: \SystemRoot\System32\kbdus.dll at F699A000 with 5 pages (ntoskrnl/mm/ARM3/sysldr.c:2466) Skipping NT 4 driver @ F699A000 (win32ss/user/ntuser/callback.c:1093) err: GetCharsetInfo Failed!! (ntoskrnl/kdbg/kdb_symbols.c:232) Trying \SystemRoot\System32\kbdus.dll (base/system/services/services.c:64) CheckSetup() (win32ss/gdi/eng/mouse.c:811) Failed to lock the DC. WARNING: HvHiveWillShrink at sdk/lib/cmlib/hivewrt.c:280 is UNIMPLEMENTED! WARNING: HvpWriteLog at sdk/lib/cmlib/hivewrt.c:29 is UNIMPLEMENTED! fixme:(dll/win32/rpcrt4/rpc_server.c:1736) (0x1000): stub (base/system/services/services.c:185) ScmLogEvent: RegisterEventSourceW failed 1722 WARNING: getMacAddress at base/services/dcomlaunch/network.c:32 is UNIMPLEMENTED! (base/services/dcomlaunch/network.c:136) Failed finding a proper MAC address, will generate seed (base/system/services/services.c:185) ScmLogEvent: RegisterEventSourceW failed 1722 (ntoskrnl/mm/ARM3/sysldr.c:169) Loading: \SystemRoot\System32\framebuf.dll at F6918000 with c pages (base/system/services/services.c:185) ScmLogEvent: RegisterEventSourceW failed 1722 (base/system/services/services.c:185) ScmLogEvent: RegisterEventSourceW failed 1722 WARNING: LDEVOBJ_bUnloadImage at win32ss/gdi/eng/ldevobj.c:290 is UNIMPLEMENTED! err:(win32ss/user/user32/windows/cursoricon.c:25) Loading System Cursors err:(dll/win32/lsasrv/lsarpc.c:1452) LsapOpenDbObject(Accounts/S-1-5-11) failed (Status 0xc0000034) err:(dll/win32/lsasrv/lsarpc.c:1452) LsapOpenDbObject(Accounts/S-1-5-5-0-7749) failed (Status 0xc0000034) err:(dll/win32/lsasrv/lsarpc.c:1452) LsapOpenDbObject(Accounts/S-1-2-0) failed (Status 0xc0000034) (base/system/services/database.c:345) AdjustTokenPrivileges() succeeded, but with not all privileges assigned (dll/win32/userenv/profile.c:2056) Loading profile S-1-5-20 err:(win32ss/user/user32/misc/dllmain.c:623) hIconSmWindows 00020070 hIconWindows 0002006E (win32ss/user/ntuser/callback.c:1149) err: hIconSmWindows 00020070 hIconWindows 0002006E (win32ss/user/ntuser/desktop.c:3292) err: Attempted to change thread desktop although the thread has windows! err:(win32ss/user/user32/windows/window.c:524) CreateWindowExW RegisterSystemControls fixme:(dll/win32/imm32/ctf.c:77) (04070407) (ntoskrnl/config/cmcheck.c:25) CmCheckRegistry(0xB19E53E8, 0) is UNIMPLEMENTED! fixme:(dll/win32/imm32/ctf.c:77) (00000000) Boot took 40583291262 cycles! Interrupts: 3085 System Calls: 52000 Context Switches: 3945 (ntoskrnl/config/cmcontrl.c:270) CmpSaveBootControlSet(1) (win32ss/user/ntuser/desktop.c:1353) err: ptiLastInput is CLEARED!! err:(../dll/win32/imm32/imm.c:957) hImc was NULL err:(../dll/win32/imm32/imm.c:1044) pClientImc was NULL err:(../dll/win32/imm32/imm.c:957) hImc was NULL err:(../dll/win32/imm32/imm.c:957) hImc was NULL err:(../dll/win32/imm32/imm.c:1044) pClientImc was NULL err:(dll/win32/lsasrv/lsarpc.c:1452) LsapOpenDbObject(Accounts/S-1-5-21-781419036-1993330872-121138756-513) failed (Status 0xc0000034) err:(dll/win32/lsasrv/lsarpc.c:1452) LsapOpenDbObject(Accounts/S-1-5-11) failed (Status 0xc0000034) err:(dll/win32/lsasrv/lsarpc.c:1452) LsapOpenDbObject(Accounts/S-1-5-5-0-7880) failed (Status 0xc0000034) err:(dll/win32/lsasrv/lsarpc.c:1452) LsapOpenDbObject(Accounts/S-1-2-0) failed (Status 0xc0000034) err:(../dll/win32/imm32/imm.c:957) hImc was NULL err:(../dll/win32/imm32/imm.c:1044) pClientImc was NULL err:(../dll/win32/imm32/imm.c:957) hImc was NULL fixme:(dll/win32/imm32/ctf.c:77) (04070407) (dll/win32/userenv/profile.c:2056) Loading profile S-1-5-21-781419036-1993330872-121138756-500 (dll/win32/userenv/profile.c:211) IncrementRefCount(S-1-5-20 00000000) (base/system/services/database.c:345) AdjustTokenPrivileges() succeeded, but with not all privileges assigned (dll/win32/userenv/environment.c:296) RegOpenKeyExW() failed (Error 2) (ntoskrnl/config/cmcheck.c:25) CmCheckRegistry(0xB19D6008, 0) is UNIMPLEMENTED! (dll/win32/userenv/profile.c:211) IncrementRefCount(S-1-5-21-781419036-1993330872-121138756-500 00000000) WARNING: SfcWLEventLogon at dll/win32/sfc_os/sfc_os.c:214 is UNIMPLEMENTED! (win32ss/user/winsrv/usersrv/init.c:171) We are logged on err:(base/system/winlogon/sas.c:464) Failed to open enumeration: 8 (win32ss/user/ntuser/desktop.c:3292) err: Attempted to change thread desktop although the thread has windows! (win32ss/user/ntuser/desktop.c:1353) err: ptiLastInput is CLEARED!! Boot took 41551168614 cycles! Interrupts: 3177 System Calls: 57957 Context Switches: 4928 fixme:(dll/win32/rpcrt4/rpc_server.c:1736) (0x1000): stub (base/services/umpnpmgr/install.c:118) Installing: HTREE\ROOT\0 err:(dll/win32/lsasrv/lsarpc.c:1452) LsapOpenDbObject(Accounts/S-1-5-11) failed (Status 0xc0000034) err:(dll/win32/lsasrv/lsarpc.c:1452) LsapOpenDbObject(Accounts/S-1-5-5-0-9144) failed (Status 0xc0000034) err:(dll/win32/lsasrv/lsarpc.c:1452) LsapOpenDbObject(Accounts/S-1-2-0) failed (Status 0xc0000034) (base/system/services/database.c:345) AdjustTokenPrivileges() succeeded, but with not all privileges assigned (dll/win32/userenv/profile.c:2052) Profile S-1-5-20 already loaded (dll/win32/userenv/profile.c:211) IncrementRefCount(S-1-5-20 00000000) (base/system/services/database.c:345) AdjustTokenPrivileges() succeeded, but with not all privileges assigned (dll/win32/userenv/environment.c:296) RegOpenKeyExW() failed (Error 2) DHCPCSVC: Adapter Name: [{e53b0724-0cfa-414f-92b3-4f8875fa9e4b}] (dynamic) fixme:(dll/win32/rpcrt4/rpc_server.c:1736) (0x1000): stub (base/services/umpnpmgr/umpnpmgr.c:179) Removal pending: ACPI\PNP0501\1 err:(dll/win32/newdev/newdev.c:1014) DevInstallW failed with error 2 (base/services/umpnpmgr/install.c:245) InstallDevice failed for DeviceInstance 'HTREE\ROOT\0' (dll/win32/kernel32/client/loader.c:386) LoadLibraryExW(rshell.dll) failing with status c0000135 fixme:(dll/win32/imm32/ctf.c:77) (04070407) fixme:(win32ss/printing/providers/localspl/monitors.c:265) InitializePrintMonitor2 loaded. fixme:(win32ss/printing/providers/localspl/monitors.c:304) InitializePrintMonitorList Handle 002351C0 fixme:(win32ss/printing/providers/localspl/forms.c:234) InitializeFormList fixme:(win32ss/printing/providers/localspl/printerdrivers.c:784) LocalGetPrinterDriverDirectory((null), Windows NT x86, 1, 0083F02C, 520, 0083F028) fixme:(win32ss/printing/providers/localspl/printerdrivers.c:828) => L"C:\\ReactOS\\System32\\spool\\drivers\\w32x86" fixme:(win32ss/printing/providers/localspl/printerdrivers.c:110) DriverPath : C:\ReactOS\System32\spool\drivers\w32x86\3\UniDrv.dll fixme:(dll/win32/shdocvw/shdocvw_main.c:215) (), stub! Audio Service main() * Service starting Registering service control handler... Service status handle 2324976 Creating audio device list Creating file mapping Mapping view of file Device list created Registering for device notifications fixme:(dll/win32/setupapi/cfgmgr.c:613) CMP_RegisterNotification(002379F0 0082FF3C 1 0082FF20) fixme:(dll/win32/setupapi/cfgmgr.c:656) Register a service fixme:(dll/win32/setupapi/cfgmgr.c:667) Register service: AudioSrv (base/services/umpnpmgr/rpcserver.c:4622) PNP_RegisterNotification(00000000 0 'AudioSrv' 00238128 32 0x1 00238168 260 00238154) (base/services/umpnpmgr/rpcserver.c:4642) DBT_DEVTYP_DEVICEINTERFACE Starting system audio services Starting sysaudio service fixme:(dll/win32/comctl32/toolbar.c:394) [000200C8] TBSTYLE_REGISTERDROP not implemented err:(base/services/wkssvc/wkssvc.c:82) ServiceInit() err:(base/services/wkssvc/rpcserver.c:61) RpcServerListen() failed (Status 6b1) (base/services/w32time/w32time.c:171) Entered SetTime. (base/services/w32time/w32time.c:192) Time Server is 'pool.ntp.org'. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000001 DesiredAccess = 0x00100001 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE10F31A8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-32-544 SD Group SID -> S-1-5-18 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 92 Acl->AceCount -> 4 ================== 0# ACE DUMP INFO ================== Ace -> 0xE10F31C4 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x001200a0 Ace SID -> S-1-1-0 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE10F31D8 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x001f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 2# ACE DUMP INFO ================== Ace -> 0xE10F31EC Ace->Header -> 0x00180000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x001f01ff Ace SID -> S-1-5-32-544 Ace->Header.AceSize -> 24 Ace->Header.AceFlags: ================== 3# ACE DUMP INFO ================== Ace -> 0xE10F3204 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x001200a9 Ace SID -> S-1-5-12 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1736D98 Token->ImageFileName -> services.exe Token->TokenSource.SourceName -> "Advapi " Token->TokenSource.SourceIdentifier -> 0.9145 Token primary group SID -> S-1-5-20 Token user and groups SIDs: 0# S-1-5-20 1# S-1-5-20 2# S-1-5-32-545 3# S-1-5-11 4# S-1-5-5-0-9144 5# S-1-2-0 6# S-1-1-0 7# S-1-5-6 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000001 Granted access rights -> 0x001200a0 Denied access rights -> 0x00000000 (ntoskrnl/io/iomgr/file.c:581) Traverse access failed! err:(base/services/srvsvc/rpcserver.c:64) RpcServerListen() failed (Status 6b1) err:(dll/win32/advapi32/service/scm.c:2951) RStartServiceW() failed (Error 1056) Failed to start service sysaudio 420 Starting wdmaud service (ntoskrnl/mm/ARM3/sysldr.c:169) Loading: \SystemRoot\System32\drivers\wdmaud.sys at F6548000 with 3a pages (drivers/ksfilter/ks/connectivity.c:281) ZwOpenKey() failed with status 0xc0000034 (sdk/lib/drivers/sound/mmixer/controls.c:481) MMixerCountMixerControls PinId 11 is not connected by any node (base/services/wuauserv/wuauserv.c:45) WU UpdateServiceStatus() called fixme:(dll/win32/imm32/ctf.c:77) (04070407) fixme:(dll/win32/imm32/ctf.c:77) (04070407) (drivers/ksfilter/ks/connectivity.c:281) ZwOpenKey() failed with status 0xc0000034 (sdk/lib/drivers/sound/mmixer/controls.c:481) MMixerCountMixerControls PinId 11 is not connected by any node (drivers/wdm/audio/backpln/portcls/pin_wavecyclic.cpp:1246) CPortPinWaveCyclic::Init Status 0 PinId 0 Capture 0 (drivers/wdm/audio/backpln/portcls/pin_wavecyclic.cpp:1322) Bits 16 Samples 44100 Channels 2 Tag 1 FrameSize 1764 CommonBufferSize 7056, CommonBuffer F6988000 Device added to list Processing existing devices Device added to list Device added to list * Service started (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (win32ss/user/ntuser/winpos.c:1442) err: Window is HWND_BOTTOM hwnd 00000001 (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 fixme:(dll/win32/imm32/ctf.c:77) (04070407) fixme:(dll/win32/imm32/ctf.c:77) (04070407) (dll/win32/kernel32/client/loader.c:386) LoadLibraryExW(rshell.dll) failing with status c0000135 (base/services/w32time/w32time.c:290) W32Time Service successfully set clock. fixme:(dll/win32/comctl32/toolbar.c:394) [00020162] TBSTYLE_REGISTERDROP not implemented fixme:(dll/win32/comctl32/toolbar.c:394) [00030164] TBSTYLE_REGISTERDROP not implemented fixme:(dll/win32/comctl32/toolbar.c:5521) hwnd=00030164 wParam 00000001 lParam 00000000 aclmulti.cpp:62: Unexpected failure (punk->QueryInterface(IID_PPV_ARG(IACList, &fObjects[fObjectCount].pACL)))=80004002. err:(dll/win32/shlwapi/autocomp.cpp:51) punk->QueryInterface failed: 0x80004002 (win32ss/user/ntuser/winpos.c:3473) err: NtUserSetWindowPos bad window handle! (win32ss/gdi/gdi32/objects/text.c:576) GdiBCExtTextOut nothing (win32ss/user/ntuser/winpos.c:3473) err: NtUserSetWindowPos bad window handle! (win32ss/user/ntuser/winpos.c:3473) err: NtUserSetWindowPos bad window handle! WARNING: NtUserLockWindowUpdate at win32ss/user/ntuser/ntstubs.c:914 is UNIMPLEMENTED! travellog.cpp:129: Unexpected failure (hResult)=80004005. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 WARNING: NtUserLockWindowUpdate at win32ss/user/ntuser/ntstubs.c:914 is UNIMPLEMENTED! travellog.cpp:129: Unexpected failure (hResult)=80004005. WARNING: NtUserLockWindowUpdate at win32ss/user/ntuser/ntstubs.c:914 is UNIMPLEMENTED! travellog.cpp:129: Unexpected failure (hResult)=80004005. WARNING: NtUserLockWindowUpdate at win32ss/user/ntuser/ntstubs.c:914 is UNIMPLEMENTED! travellog.cpp:129: Unexpected failure (hResult)=80004005. CDrivesFolder.cpp:698: Unexpected failure (hr)=80004002. CRegFolder.cpp:440: Unexpected failure (hr)=80004002. fixme:(dll/win32/imm32/ctf.c:77) (04070407) (win32ss/user/ntuser/winpos.c:789) err: FIXME: Parent is Desktop, Min off screen! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/input.c:510) err: Attach Allocated! ptiFrom 0xB17DBE10 ptiTo 0xB1804008 paiCount 1 (win32ss/user/ntuser/input.c:533) err: ptiFrom NOT Foreground (win32ss/user/ntuser/input.c:566) err: ptiTo S Share count 2 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17DBE10 pti 0xB1804008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17DBE10 pti 0xB1804008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17DBE10 pti 0xB1804008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17DBE10 pti 0xB1804008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17DBE10 pti 0xB1804008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/cursoricon.c:1929) err: NtGdiAlphaBlend failed! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/input.c:601) err: Attach Free! ptiFrom 0xB17DBE10 ptiTo 0xB1804008 paiCount 0 (win32ss/user/ntuser/input.c:615) err: ptiTo E Share count 1 (win32ss/user/ntuser/msgqueue.c:842) err: Remove Window Messages E17AF008 From Sent Queue CDrivesFolder.cpp:698: Unexpected failure (hr)=80004002. CRegFolder.cpp:440: Unexpected failure (hr)=80004002. fixme:(dll/win32/imm32/ctf.c:77) (04070407) (win32ss/user/ntuser/winpos.c:789) err: FIXME: Parent is Desktop, Min off screen! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/input.c:510) err: Attach Allocated! ptiFrom 0xB1806448 ptiTo 0xB17F0B70 paiCount 1 (win32ss/user/ntuser/input.c:533) err: ptiFrom NOT Foreground (win32ss/user/ntuser/input.c:566) err: ptiTo S Share count 2 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1806448 pti 0xB17F0B70 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1806448 pti 0xB17F0B70 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1806448 pti 0xB17F0B70 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1806448 pti 0xB17F0B70 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1806448 pti 0xB17F0B70 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1806448 pti 0xB17F0B70 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1806448 pti 0xB17F0B70 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1806448 pti 0xB17F0B70 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/cursoricon.c:1929) err: NtGdiAlphaBlend failed! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1806448 pti 0xB17F0B70 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1806448 pti 0xB17F0B70 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1806448 pti 0xB17F0B70 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/input.c:601) err: Attach Free! ptiFrom 0xB1806448 ptiTo 0xB17F0B70 paiCount 0 (win32ss/user/ntuser/input.c:615) err: ptiTo E Share count 1 (win32ss/user/ntuser/msgqueue.c:1272) err: NB Receiving Thread woken up dead! (win32ss/user/ntuser/msgqueue.c:2398) err: MQ Cleanup Post Messages E1831688 CDrivesFolder.cpp:698: Unexpected failure (hr)=80004002. CRegFolder.cpp:440: Unexpected failure (hr)=80004002. fixme:(dll/win32/imm32/ctf.c:77) (04070407) (win32ss/user/ntuser/winpos.c:789) err: FIXME: Parent is Desktop, Min off screen! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/input.c:510) err: Attach Allocated! ptiFrom 0xB1809868 ptiTo 0xB17DF008 paiCount 1 (win32ss/user/ntuser/input.c:533) err: ptiFrom NOT Foreground (win32ss/user/ntuser/input.c:566) err: ptiTo S Share count 2 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/cursoricon.c:1929) err: NtGdiAlphaBlend failed! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB1809868 pti 0xB17DF008 (win32ss/user/ntuser/input.c:601) err: Attach Free! ptiFrom 0xB1809868 ptiTo 0xB17DF008 paiCount 0 (win32ss/user/ntuser/input.c:615) err: ptiTo E Share count 1 (win32ss/user/ntuser/painting.c:158) err: LOOP it err:(win32ss/user/user32/windows/messagebox.c:1048) MessageBox: L"Keinerlei Einstellungen notwendig." err:(win32ss/user/user32/windows/window.c:524) CreateWindowExW RegisterSystemControls fixme:(dll/win32/imm32/ctf.c:77) (04070407) (win32ss/user/ntuser/class.c:1471) err: Class "6.0.2600.2982!Static" not found (win32ss/user/ntuser/window.c:2225) err: Failed to find class 6.0.2600.2982!Static (win32ss/user/ntuser/window.c:2778) err: co_UserCreateWindowEx failed! err:(win32ss/user/user32/windows/class.c:208) VersionRegisterClass: Attempting to call RegisterClassNameW in comctl32.dll. (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/msgqueue.c:1536) err: Not the same cursor! (win32ss/user/ntuser/msgqueue.c:1536) err: Not the same cursor! (win32ss/user/ntuser/msgqueue.c:1536) err: Not the same cursor! (win32ss/user/ntuser/cursoricon.c:1929) err: NtGdiAlphaBlend failed! fixme:(dll/win32/imm32/ctf.c:77) (04070407) (win32ss/gdi/gdi32/objects/gdiobj.c:326) Trying to delete system object 0x00850016 (win32ss/gdi/gdi32/objects/gdiobj.c:326) Trying to delete system object 0x00850016 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D1A78 (starfield.scr:0000030C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE184DCA8 Token->ImageFileName -> explorer.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE184DCA8 Token->ImageFileName -> explorer.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D1A78 (starfield.scr:0000030C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE184DCA8 Token->ImageFileName -> explorer.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE184DCA8 Token->ImageFileName -> explorer.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D1A78 (starfield.scr:0000030C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE184DCA8 Token->ImageFileName -> explorer.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE184DCA8 Token->ImageFileName -> explorer.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D1A78 (starfield.scr:0000030C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE184DCA8 Token->ImageFileName -> explorer.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE184DCA8 Token->ImageFileName -> explorer.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 err:(win32ss/user/user32/windows/messagebox.c:1048) MessageBox: L"WARNUNG: Das Beenden eines Prozesses kann zu\nunerw\00fcnschten Ergebnissen, einschlie\00dflich Datenverlust und\nSysteminstabilit\00e4t, f\00fchren. Zustand und Daten des Prozesses\nwerden nicht mehr gespeichert. Sind Sie sicher, dass Sie\nden Prozess beenden m\00f6chten?" (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE184DCA8 Token->ImageFileName -> explorer.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE184DCA8 Token->ImageFileName -> explorer.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:2398) err: MQ Cleanup Post Messages E17FC4A8 CDrivesFolder.cpp:698: Unexpected failure (hr)=80004002. CRegFolder.cpp:440: Unexpected failure (hr)=80004002. fixme:(dll/win32/imm32/ctf.c:77) (04070407) (win32ss/user/ntuser/winpos.c:789) err: FIXME: Parent is Desktop, Min off screen! (win32ss/user/ntuser/input.c:510) err: Attach Allocated! ptiFrom 0xB17C57E0 ptiTo 0xB17E6008 paiCount 1 (win32ss/user/ntuser/input.c:533) err: ptiFrom NOT Foreground (win32ss/user/ntuser/input.c:566) err: ptiTo S Share count 2 (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17C57E0 pti 0xB17E6008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17C57E0 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17C57E0 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17C57E0 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17C57E0 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17C57E0 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17C57E0 pti 0xB17E6008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17C57E0 pti 0xB17E6008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17C57E0 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17C57E0 pti 0xB17E6008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17C57E0 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17C57E0 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17C57E0 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17C57E0 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17C57E0 pti 0xB17E6008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17C57E0 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17C57E0 pti 0xB17E6008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17C57E0 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17C57E0 pti 0xB17E6008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17C57E0 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17C57E0 pti 0xB17E6008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17C57E0 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17C57E0 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17C57E0 pti 0xB17E6008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17C57E0 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17C57E0 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17C57E0 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17C57E0 pti 0xB17E6008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17C57E0 pti 0xB17E6008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17C57E0 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/input.c:601) err: Attach Free! ptiFrom 0xB17C57E0 ptiTo 0xB17E6008 paiCount 0 (win32ss/user/ntuser/input.c:615) err: ptiTo E Share count 1 (win32ss/user/ntuser/painting.c:158) err: LOOP it err:(win32ss/user/user32/windows/window.c:524) CreateWindowExW RegisterSystemControls fixme:(dll/win32/imm32/ctf.c:77) (04070407) (win32ss/user/ntuser/class.c:1471) err: Class "6.0.2600.2982!Button" not found (win32ss/user/ntuser/window.c:2225) err: Failed to find class 6.0.2600.2982!Button (win32ss/user/ntuser/window.c:2778) err: co_UserCreateWindowEx failed! err:(win32ss/user/user32/windows/class.c:208) VersionRegisterClass: Attempting to call RegisterClassNameW in comctl32.dll. (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! fixme:(dll/win32/imm32/ctf.c:77) (04070407) (win32ss/gdi/gdi32/objects/gdiobj.c:326) Trying to delete system object 0x00850016 (win32ss/gdi/gdi32/objects/gdiobj.c:326) Trying to delete system object 0x00850016 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/ex/sysinfo.c:933) Process B17D4020 (3dtext.scr:0000034C) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/msgqueue.c:1266) err: MsqSendMessage timed out 2 Status 102 (win32ss/user/ntuser/cursoricon.c:1929) err: NtGdiAlphaBlend failed! (win32ss/user/ntuser/cursoricon.c:1929) err: NtGdiAlphaBlend failed! (win32ss/user/ntuser/cursoricon.c:1929) err: NtGdiAlphaBlend failed! (win32ss/user/ntuser/cursoricon.c:1929) err: NtGdiAlphaBlend failed! (win32ss/user/ntuser/input.c:510) err: Attach Allocated! ptiFrom 0xB17B37D8 ptiTo 0xB17E6008 paiCount 1 (win32ss/user/ntuser/input.c:533) err: ptiFrom NOT Foreground (win32ss/user/ntuser/input.c:566) err: ptiTo S Share count 2 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/cursoricon.c:1929) err: NtGdiAlphaBlend failed! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17B37D8 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17B37D8 pti 0xB17E6008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17B37D8 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17B37D8 pti 0xB17E6008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17B37D8 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17B37D8 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17B37D8 pti 0xB17E6008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17B37D8 pti 0xB17E6008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17B37D8 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17B37D8 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17B37D8 pti 0xB17E6008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17B37D8 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17B37D8 pti 0xB17E6008 (win32ss/user/ntuser/msgqueue.c:1536) err: Not the same cursor! (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17B37D8 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17B37D8 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17B37D8 pti 0xB17E6008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17B37D8 pti 0xB17E6008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17B37D8 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17B37D8 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17B37D8 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/cursoricon.c:1929) err: NtGdiAlphaBlend failed! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (ntoskrnl/ex/sysinfo.c:933) Process B1801C78 (ssstars.scr:000002F4) is a zombie (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (ntoskrnl/se/accesschk.c:708) SepAccessCheck(): Failed to grant access rights. RemainingAccess = 0x00000008 DesiredAccess = 0x00000008 ================== SECURITY DESCRIPTOR DUMP INFO ================== SecurityDescriptor -> 0xE16E77F8 SecurityDescriptor->Revision -> 1 SecurityDescriptor->Control: SE_DACL_PRESENT SE_SELF_RELATIVE SD Owner SID -> S-1-5-20 SD Group SID -> S-1-5-20 ================== DACL DUMP INFO ================== Acl->AclRevision -> 2 Acl->AclSize -> 48 Acl->AceCount -> 2 ================== 0# ACE DUMP INFO ================== Ace -> 0xE16E7814 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-20 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== 1# ACE DUMP INFO ================== Ace -> 0xE16E7828 Ace->Header -> 0x00140000 Ace->Header.AceType -> ACCESS_ALLOWED_ACE_TYPE Ace->AccessMask -> 0x000f01ff Ace SID -> S-1-5-18 Ace->Header.AceSize -> 20 Ace->Header.AceFlags: ================== ACCESS TOKEN DUMP INFO ================== Token -> 0xE1822CA8 Token->ImageFileName -> winlogon.exe Token->TokenSource.SourceName -> "User32 " Token->TokenSource.SourceIdentifier -> 0.7881 Token primary group SID -> S-1-5-21-781419036-1993330872-121138756-513 Token user and groups SIDs: 0# S-1-5-21-781419036-1993330872-121138756-500 1# S-1-5-21-781419036-1993330872-121138756-513 2# S-1-5-11 3# S-1-5-5-0-7880 4# S-1-2-0 5# S-1-1-0 6# S-1-5-4 7# S-1-5-32-544 8# S-1-5-32-545 ================== ACCESS CHECK RIGHTS STATISTICS ================== Remaining access rights -> 0x00000008 Granted access rights -> 0x00000000 Denied access rights -> 0x00000000 err:(dll/win32/advapi32/wine/security.c:309) NtOpenProcessToken failed! Status c0000022. (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2398) err: MQ Cleanup Post Messages E1832B00 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active! (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17B37D8 pti 0xB17E6008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17B37D8 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17B37D8 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17B37D8 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/input.c:601) err: Attach Free! ptiFrom 0xB17B37D8 ptiTo 0xB17E6008 paiCount 0 (win32ss/user/ntuser/input.c:615) err: ptiTo E Share count 1 (win32ss/user/ntuser/painting.c:158) err: LOOP it (win32ss/user/ntuser/input.c:510) err: Attach Allocated! ptiFrom 0xB17B89B0 ptiTo 0xB17E6008 paiCount 1 (win32ss/user/ntuser/input.c:533) err: ptiFrom NOT Foreground (win32ss/user/ntuser/input.c:566) err: ptiTo S Share count 2 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17B89B0 pti 0xB17E6008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17B89B0 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17B89B0 pti 0xB17E6008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17B89B0 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17B89B0 pti 0xB17E6008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17B89B0 pti 0xB17E6008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17B89B0 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17B89B0 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17B89B0 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17B89B0 pti 0xB17E6008 (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17B89B0 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/msgqueue.c:2027) err: Thread Q is locked to ptiSysLock 0xB17B89B0 pti 0xB17E6008 (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/message.c:946) err: Message WM_PAINT count 0 Internal Paint Set? FALSE (win32ss/user/ntuser/input.c:601) err: Attach Free! ptiFrom 0xB17B89B0 ptiTo 0xB17E6008 paiCount 0 (win32ss/user/ntuser/input.c:615) err: ptiTo E Share count 1 (win32ss/user/ntuser/painting.c:158) err: LOOP it err:(win32ss/user/user32/windows/window.c:524) CreateWindowExW RegisterSystemControls fixme:(dll/win32/imm32/ctf.c:77) (04070407) (win32ss/user/ntuser/class.c:1471) err: Class "6.0.2600.2982!Button" not found (win32ss/user/ntuser/window.c:2225) err: Failed to find class 6.0.2600.2982!Button (win32ss/user/ntuser/window.c:2778) err: co_UserCreateWindowEx failed! err:(win32ss/user/user32/windows/class.c:208) VersionRegisterClass: Attempting to call RegisterClassNameW in comctl32.dll. (win32ss/user/ntuser/nonclient.c:1133) err: Wnd is active and not set active!