Tuesday, August 20, 2013

-- The application-specific permission settings do not grant Local Launch permission for the COM Server application with CLSID {24FF4FDC-1D9F-4195-8C79-0DA39248FF48}

If you see the next error on your logs periodically, the Network Access Protection Agents is not running and a program is trying to use it:

 The application-specific permission settings do not grant Local Launch permission for the COM Server application with CLSID
{24FF4FDC-1D9F-4195-8C79-0DA39248FF48}
 and APPID
{B292921D-AF50-400C-9B75-0C57A7F29BA1}
 to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC). This security permission can be modified using the Component Services administrative tool.


 If you look in the registry for the key:
HKEY_CLASSES\CLSIC\{24FF4FDC-1D9F-4195-8C79-0DA39248FF48}

The class creating the error in this case is Quarantine Private SHA Binding which which is a Kaspersky Anti-virus product.

The id of this APP:
{B292921D-AF50-400C-9B75-0C57A7F29BA1}
corresponds to the DCOM NAP Agent Service, which in turn is part of the Network Access Protection Agent service.You can see this in the Component Services


The DCOM error is being generated because the application’s SHA encryption module is trying to register with the NAP Agent but the  NAP service is not running.

To solve this problem, just enable the Network Protection Agent service.