New
#1
Administrator can change owner of registry key but not permissions...
I'm running 64-bit Windows Pro on an Asus P5Q-EM MB with an Intel E8600 processor with 8 GB of PC2-6400 Ram.
I've had a couple of unexpected shutdowns and restarts lately. I've got several different error types in my event log. The only one showing to be "critical" is the Kernal Power one that simply says it has recovered from an unexpected shutdown.
I decided to just start eliminating he errors one by one to see if I could find/resolve the cause. The one I started with was several DistributedCom 10016 "The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID xx..."
I found the CLSID in the registry and noted that the owner was TrustedInstaller. I changed it to the Admin user, checked the include child, subfolder, inheritance, etc. boxes and hit apply. It gave me an error saying that it could not save the changes but I noted that it had in fact changed the owner. After getting out of permissions and then re-entering I attempted to change the Admin user/owner's permission to Full Control.
It will not change. It gives me an error saying that it cannot save the changes. I've always been able to solve registry access issues in the past simply by taking ownership. Why not this time?
Anybody know why a registry key owner would not be able to make permission changes?
Thanks in advance,
Howard
=====================================================================================
Log Name: System
Source: Microsoft-Windows-DistributedCOM
Date: 6/26/2016 10:34:23 AM
Event ID: 10016
Task Category: None
Level: Error
Keywords: Classic
User: P5Q-EM\wooda
Computer: P5Q-EM
Description:
The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID
{C2F03A33-21F5-47FA-B4BB-156362A2F239}
and APPID
{316CDED5-E4AE-4B15-9113-7055D84DCC97}
to the user P5Q-EM\wooda SID (S-1-5-21-4244340960-2181271989-1333400844-1010) from address LocalHost (Using LRPC) running in the application container Microsoft.Windows.FeatureOnDemand.InsiderHub_10.0.10586.0_neutral_neutral_cw5n1h2txyewy SID (S-1-15-2-4016783169-893401051-2237370320-274899566-412088533-2398988950-2155762795). This security permission can be modified using the Component Services administrative tool.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-DistributedCOM" Guid="{1B562E86-B7AA-4131-BADC-B6F3A001407E}" EventSourceName="DCOM" />
<EventID Qualifiers="0">10016</EventID>
<Version>0</Version>
<Level>2</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x8080000000000000</Keywords>
<TimeCreated SystemTime="2016-06-26T17:34:23.628753000Z" />
<EventRecordID>5970</EventRecordID>
<Correlation />
<Execution ProcessID="924" ThreadID="8332" />
<Channel>System</Channel>
<Computer>P5Q-EM</Computer>