A handle to an object was requested. Subject: Security ID: NT AUTHORITY\SYSTEM Account Name: IIZHU1$ Account Domain: ITSS Logon ID: 0x3e7 Object: Object Server: Security Object Type: File Object Name: C:\Windows\ToastData Handle ID: 0x168 Resource Attributes: - Process Information: Process ID: 0xb24 Process Name: C:\Windows\System32\poqexec.exe Access Request Information: Transaction ID: {59E79023-46A3-11E7-80D5-000C299068EB} Accesses: READ_CONTROL SYNCHRONIZE ACCESS_SYS_SEC Access Reasons: - Access Mask: 0x1120000 Privileges Used for Access Check: SeBackupPrivilege Restricted SID Count: 0 =========================== Description template stored in adtschema.dll: =========================== A handle to an object was requested. Subject: Security ID: %1 Account Name: %2 Account Domain: %3 Logon ID: %4 Object: Object Server: %5 Object Type: %6 Object Name: %7 Handle ID: %8 Resource Attributes: %17 Process Information: Process ID: %15 Process Name: %16 Access Request Information: Transaction ID: %9 Accesses: %10 Access Reasons: %11 Access Mask: %12 Privileges Used for Access Check: %13 Restricted SID Count: %14