Edit C:\Windows\SysWOW64\sspicli.dll
MZ? ÿÿ ¸ @ è º ´ Í!¸LÍ!This program cannot be run in DOS mode. $ ¥êQá?pá?pá?pèóãå?p<t½ã?p<t¾é?p<t»Ä?pá?qc?p<tºà?p<t£þ?p<t¹à?p<t¼à?pRichá?p PE L = c à ! f 6 ´ ? à ?ù @A Ðh ' H? ¤ ° 0 À ` ? ?4 \ ? D .text ÷e f `.data ? j @ À.idata f ? n @ @.rsrc 0 ° ? @ @.reloc ` À ? @ B 05 05 P5 À5 à6 ð7 °8 ð8 ð9 ðB F pY Pw ?{ °? @? @? °? Ð? ð? À? P? à? 0¢ £ ?¬ ð° `± ?± @² ?² ³ ´ 0· P· `½ @¿ ÐÀ ? @à ?à ?à ?Ä @Æ ï pð ð `ú ?û Ðü ý °þ ÿ ðÿ ð Ð @ p ` @ ° À @ P p P ` À p ° P! P" # À# p$ $ Ð$ % 0% p' ' ) @) + ?, `- Ð- . ð1 @5 ð5 `6 à6 `7 ?7 À7 08 8 9 ?9 : p: ; ?; < ?< = °= > ?> ? p? ? Ð? P@ A °A ðA B B B 0B @B PB `B ÀC ÐC ðG I pN ?N °N O PO ?P ÐQ PV ?V °V W `W `\ ?b ðb pe `f = c % ä4 ä( Ð? ?\ S E C U R I T Y \ L S A _ A U T H E N T I C A T I O N _ I N I T I A L I Z E D pY H* 0· ?à (? ?/ [ Entered AddCredential Principal = %wZ PackageName = %wZ AddCredentials API Ret = %x Entered QueryCredentialsAttributes Entered SecpSetCredentialsAttributes Credential = %I64X:%I64X SetCredentialsAttributes scRet = %x QueryContextAttributes Context = %I64X:%I64X QueryContextAttributes scRet = %x SetContextAttributes SetContextAttributes scRet = %x GetUserInfo GetUserInfo scRet = %x EnumeratePackages Enumerate scRet = %x QueryPackageInfo QueryPackageInfo scRet = %x EnumLogonSession EnumLogonSession scRet = %x GetLogonSessionData GetLogonSessionData scRet = %x GetBinding(%x) GetBinding scRet = %x AddPackage AddPackage scRet = %x Internal Callback, request = %d Error %x in LPC to LSA Breaking connection for process %x PolicyChangeNotify PolicyChangeNotify scRet = %x Entered ChangeAccountPassword ChangeAccountPassword API Ret = %x SspipProcessSecurityContext: Too many input buffers: %lu SspipProcessSecurityContext: Null input buffers passed SspipProcessSecurityContext: Too many output buffers: %lu SspipProcessSecurityContext: Null output buffers passed SspipProcessSecurityContext: Failed RPC call: 0x%lx SspipProcessSecurityContext: Output buffers count too large: %lu vs %lu SspipProcessSecurityContext: Output buffer %lu too small: %lu vs %lu SspipProcessSecurityContext: Replaced context handle %p:%p SspipProcessSecurityContext: Failed API call: 0x%lx SspipProcessSecurityContext: Extra buffers with NULL input SspipProcessSecurityContext: Extra buffers count too large: %lu vs %lu SspipProcessSecurityContext: InputBuffer %lu changed: %lu, %p, %lu GetUserName GetUserName returned %x @ @ @ @ @ @ D t a r g e t n a m e /ÿ(ö8G?ÑÀaßqjFreeing local LSA alloc %x Freeing RPC alloc %x Freeing VM %x Error printing message: Bad ComponentName Error printing message Could not open security event %ws, %x Failed NtQueryEvent on %ws, %x Connecting to LSA Error 0x%08x getting LSA state s s p i c l i . d l l Security DLL initialized SSPICLI Could not get package TLS slot Could not initialize critsec, %x Could not initialize Logon32 Could not initialize VM list, %x Security DLL unbinding \ D e v i c e \ K s e c D D l s a s s p i r p c n c a l r p c S Y S T E M \ C u r r e n t C o n t r o l S e t \ C o n t r o l \ L s a \ M S V 1 _ 0 D i s a b l e H o s t T o T a r g e t l o c a l h o s t Adding binding for %ws Compare package %ws Compare package %ws (%p) Snapping new-style package %d, %ws SpUserModeInitialize Snapping DLL for package %#x, %ws Got binding info for %d : %ws S y s t e m \ C u r r e n t C o n t r o l S e t \ C o n t r o l \ S e c u r i t y P r o v i d e r s S e c u r i t y P r o v i d e r s , SecpResolveSspiBinding: Failed loading %ws: %lu SecpResolveSspiBinding: GetModuleFileNameW failed for %ws: %lu SecpLoadSspiPackages SecpReadPackageList %#x S y s t e m \ C u r r e n t C o n t r o l S e t \ C o n t r o l \ L s a \ S s p i C a c h e N a m e Bad cache entry %ws:%ws Out of memory allocating %x C o m m e n t C a p a b i l i t i e s R p c I d V e r s i o n T y p e T o k e n S i z e Added ANSI entrypoints for %ws Duplicate package, %ws Loading SSPI DLL %ws Deferring SSPI DLL %ws InitSecurityInterfaceW InitSecurityInterfaceA Snapping Packages from DLL %ws Snapped wide package %ws Added ANSI entrypoints for %s Snapped ansi package %ws T i m e S y s t e m \ C u r r e n t C o n t r o l S e t \ C o n t r o l \ S e c u r i t y P r o v i d e r s \ S a s l P r o f i l e s LsaInitializeSecurityContextCommon failed to locate package %p : %p, error %#x -- deleting handle LsaAcceptSecurityContext failed to locate package %p : %p, error %#x -- deleting handle Impersonating %ws[%p] Failed to impersonate handle %p, return %x Failed to revert handle %p, return %x S y s t e m \ C u r r e n t C o n t r o l S e t \ C o n t r o l \ L s a P r o t e c t e d U s e r L e v e l ChangeAccountPasswordW( %ws, %ws, %ws , ...) ChangeAccountPasswordCommon returns %x AcquireCredentialHandleW( ..., %ws, %d, ...) AcquireCredentialHandleA( ..., %s, %d, ...) AcquireCredentialsHandleCommon: Security Package %ws is manipulating dwLower value inappropriately returned %p when %p expected. AcquireCredentialsHandleCommon returns %x, handle %p : %p AddCredentialsW( ..., %ws, %d, ...) AddCredentialsA returns %x, handle is %p : %p AddCredentialsA( ..., %ws, %d, ...) <