After downloading, extract SecTok.exe.
When you type sectok /?, you receive:
SecTok V01.00.00cpp Joe Richards ([email protected]) November 2001 Usage: SecTok Ex1: SecTok Displays token info for current process This software is Freeware. Use it as you wish at your own risk. If you have improvement ideas, bugs, or just wish to say Hi, I receive email 24x7 and read it in a semi-regular timeframe. You can usually find me at [email protected]When Joe typed SecTok, he received:
SecTok V01.00.00cpp Joe Richards ([email protected]) November 2001 User: S-1-5-21-1275210071-789336058-1957994488-1109 - JOEHOME\$jricha34 Group: S-1-1-0 - Everyone Group: S-1-2-0 - LOCAL Group: S-1-5-11 - NT AUTHORITY\Authenticated Users Group: S-1-5-21-1275210071-789336058-1957994488-512 - JOEHOME\Domain Admins Group: S-1-5-21-1275210071-789336058-1957994488-513 - JOEHOME\Domain Users Group: S-1-5-21-1275210071-789336058-1957994488-518 - JOEHOME\Schema Admins Group: S-1-5-21-1275210071-789336058-1957994488-519 - JOEHOME\Enterprise Admins Group: S-1-5-21-1275210071-789336058-1957994488-520 - JOEHOME\Group Policy Creator Owners Group: S-1-5-32-544 - BUILTIN\Administrators Group: S-1-5-32-545 - BUILTIN\Users Group: S-1-5-4 - NT AUTHORITY\INTERACTIVE Group: S-1-5-5-0-38867 - Logon SessionIf a process that is running in the LocalSystem context runs SecTok, the display would look like:
SecTok V01.00.00cpp Joe Richards ([email protected]) November 2001 User: S-1-5-18 - NT AUTHORITY\SYSTEM Group: S-1-1-0 - Everyone Group: S-1-5-11 - NT AUTHORITY\Authenticated Users Group: S-1-5-32-544 - BUILTIN\Administrators