Security Assessment - RapidFire Tools · Each subsection details the share and file system...

100
Security Assessment Prepared for: Your Customer / Prospect Prepared by: Your Company Name 10/27/2016 CONFIDENTIALITY NOTE: The information contained in this report document is for the exclusive use of the client specified above and may contain confidential, privileged and non-disclosable information. If the recipient of this report is not the client or addressee, such recipient is strictly prohibited from reading, photocopying, distributing or otherwise using this report or its contents in any way. Scan Date: 10/25/2016 Share Permission Report

Transcript of Security Assessment - RapidFire Tools · Each subsection details the share and file system...

Page 1: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Security

Assessment

Prepared for: Your Customer / Prospect

Prepared by: Your Company Name

10/27/2016

CONFIDENTIALITY NOTE: The information contained in this report document is for the exclusive use of the client specified above and may contain confidential, privileged and non-disclosable information. If the recipient of this report is not the client or addressee, such recipient is strictly prohibited from reading, photocopying, distributing or otherwise using this report or its contents in any way. Scan Date: 10/25/2016

Share Permission Report

Page 2: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 2 of 100

Table of Contents 1 - Shares for Domain: Corp.myco.com

1.1 - b2b-GW

1.2 - betty-INSPIRON

1.3 - Boppenheimer-PC

1.4 - buildbox

1.5 - CERTEXAM

1.6 - CONFERENCE-ROOM

1.7 - darkhorse

1.8 - darren-PC

1.9 - DC03

1.10 - Ddouglas-WIN10

1.11 - DESKTOP-N6S4H9A

1.12 - DESKTOP-UAE29E6

1.13 - FILE2012-1

1.14 - gordon-LT2

1.15 - HPDT-8CC5260NXY

1.16 - HPLT-5CD4411D8Z

1.17 - HV00

1.18 - HV02

1.19 - HV04

1.20 - IRIDIUM

1.21 - ISTCORP-PC

Page 3: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 3 of 100

1.22 - JIM-WIN8

1.23 - Lalexander-PC

1.24 - Mmichaels-HP

1.25 - Mwest-WIN864

1.26 - PANOPTICON

1.27 - PITWDS12

1.28 - PKWIN8-VM

1.29 - PS01

1.30 - Psolidad-PC

1.31 - Psolidad-WIN764

1.32 - QB01

1.33 - REX

1.34 - ROWBOT

1.35 - SARLACC

1.36 - sourcesvr

1.37 - sourcesvrBUILD

1.38 - STORAGE01

1.39 - STORAGE12

1.40 - tarsis

1.41 - tywin-PC

1.42 - UTIL12

1.43 - VPNGW

1.44 - WAMPA

1.45 - WILLARD

Page 4: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 4 of 100

Page 5: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 5 of 100

1 - Shares for Domain: Corp.myco.com Each subsection details the share and file system permissions granted to each user account within the above domain.

1.1 - b2b-GW Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read

\\b2b-GW\accts (C:\accts)

Disk BUILTIN\Administrators

Everyone

File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\b2b-GW\ADMIN$ (C:\Windows)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

\\b2b-GW\C$ (C:\)

Special NT AUTHORITY\Authenticated accts AppendData Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

NT AUTHORITY\SYSTEM FullControl Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators FullControl Allow

Page 6: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 6 of 100

Share Share Type User/Group File System Permissions Type

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\b2b-GW\IPC$ IPC, Special

\\b2b-GW\accts (C:\accts)

Disk Everyone Special (-1610612736) Allow

Everyone ReadAndExecute, Synchronize Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

Page 7: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 7 of 100

1.2 - betty-INSPIRON Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read No shares containing user/group permissions File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\betty-INSPIRON\ADMIN$ (C:\WINDOWS)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

APPLICATION PACKAGE AUTHORITY\ALL RESTRICTED APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL RESTRICTED APPLICATION PACKAGES

Special (-1610612736) Allow

\\betty-INSPIRON\C$ (C:\)

Special NT AUTHORITY\Authenticated accts AppendData Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

Page 8: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 8 of 100

Share Share Type User/Group File System Permissions Type

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\betty-INSPIRON\IPC$ IPC, Special

Page 9: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 9 of 100

1.3 - Boppenheimer-PC Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read

\\Boppenheimer-PC\Shared (C:\Shared)

Disk BUILTIN\Administrators

\\Boppenheimer-PC\sharedsub (C:\Shared\sharedsub)

Disk myco\boppenheimer

myco\Jdangerfield

File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\Boppenheimer-PC\ADMIN$ (C:\WINDOWS)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

APPLICATION PACKAGE AUTHORITY\ALL RESTRICTED APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE Special (-1610612736) Allow

Page 10: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 10 of 100

Share Share Type User/Group File System Permissions Type

AUTHORITY\ALL RESTRICTED APPLICATION PACKAGES

\\Boppenheimer-PC\C$ (C:\)

Special NT AUTHORITY\Authenticated accts AppendData Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\Boppenheimer-PC\IPC$ IPC, Special

\\Boppenheimer-PC\Shared (C:\Shared)

Disk NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

myco\psolidad ReadAndExecute, Synchronize Allow

myco\boppenheimer FullControl Allow

\\Boppenheimer-PC\sharedsub (C:\Shared\sharedsub)

Disk

Page 11: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 11 of 100

1.4 - buildbox Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read No shares containing user/group permissions File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\buildbox\ADMIN$ (C:\WINDOWS)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

APPLICATION PACKAGE AUTHORITY\ALL RESTRICTED APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL RESTRICTED APPLICATION PACKAGES

Special (-1610612736) Allow

\\buildbox\C$ (C:\)

Special NT AUTHORITY\Authenticated accts AppendData Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

Page 12: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 12 of 100

Share Share Type User/Group File System Permissions Type

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\buildbox\IPC$ IPC, Special

Page 13: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 13 of 100

1.5 - CERTEXAM Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read No shares containing user/group permissions File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\CERTEXAM\ADMIN$ (C:\Windows)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

\\CERTEXAM\C$ (C:\)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts AppendData Allow

BUILTIN\accts CreateFiles Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

Page 14: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 14 of 100

Share Share Type User/Group File System Permissions Type

\\CERTEXAM\IPC$ IPC, Special

Page 15: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 15 of 100

1.6 - CONFERENCE-ROOM Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read No shares containing user/group permissions File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\CONFERENCE-ROOM\ADMIN$ (C:\Windows)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

APPLICATION PACKAGE AUTHORITY\ALL RESTRICTED APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL RESTRICTED APPLICATION PACKAGES

Special (-1610612736) Allow

\\CONFERENCE-ROOM\C$ (C:\)

Special NT AUTHORITY\Authenticated accts AppendData Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

Page 16: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 16 of 100

Share Share Type User/Group File System Permissions Type

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\CONFERENCE-ROOM\IPC$ IPC, Special

Page 17: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 17 of 100

1.7 - darkhorse Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read

\\darkhorse\download (C:\download)

Disk Everyone

\\darkhorse\projects (C:\projects)

Disk Everyone

File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\darkhorse\ADMIN$ (C:\windows)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

\\darkhorse\C$ (C:\)

Special NT AUTHORITY\Authenticated accts AppendData Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

Page 18: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 18 of 100

Share Share Type User/Group File System Permissions Type

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\darkhorse\download (C:\download)

Disk BUILTIN\Administrators FullControl Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT AUTHORITY\Authenticated accts Modify, Synchronize Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

\\darkhorse\IPC$ IPC, Special

\\darkhorse\projects (C:\projects)

Disk BUILTIN\Administrators FullControl Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT AUTHORITY\Authenticated accts Modify, Synchronize Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

Page 19: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 19 of 100

1.8 - darren-PC Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read No shares containing user/group permissions File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\darren-PC\ADMIN$ (C:\WINDOWS)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

APPLICATION PACKAGE AUTHORITY\ALL RESTRICTED APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL RESTRICTED APPLICATION PACKAGES

Special (-1610612736) Allow

\\darren-PC\C$ (C:\)

Special NT AUTHORITY\Authenticated accts AppendData Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

Page 20: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 20 of 100

Share Share Type User/Group File System Permissions Type

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\darren-PC\D$ (D:\)

Special NT AUTHORITY\Authenticated accts Special (-536805376) Allow

NT AUTHORITY\Authenticated accts Modify, Synchronize Allow

NT AUTHORITY\SYSTEM FullControl Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

\\darren-PC\IPC$ IPC, Special

Page 21: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 21 of 100

1.9 - DC03 Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read

\\DC03\NETLOGON (C:\Windows\SYSVOL\sysvol\Corp.myco.com\SCRIPTS)

Disk Everyone

BUILTIN\Administrators

\\DC03\SYSVOL (C:\Windows\SYSVOL\sysvol)

Disk Everyone

BUILTIN\Administrators

NT AUTHORITY\Authenticated accts

\\DC03\Tech (C:\Shares\Tech)

Disk BUILTIN\Administrators

Everyone

\\DC03\accts (C:\accts)

Disk BUILTIN\Administrators

Everyone

File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\DC03\ADMIN$ (C:\Windows)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

Page 22: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 22 of 100

Share Share Type User/Group File System Permissions Type

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

\\DC03\C$ (C:\)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts AppendData Allow

BUILTIN\accts CreateFiles Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\DC03\IPC$ IPC, Special

\\DC03\NETLOGON (C:\Windows\SYSVOL\sysvol\Corp.myco.com\SCRIPTS)

Disk CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\Authenticated accts Special (-1610612736) Allow

NT AUTHORITY\Authenticated accts ReadAndExecute, Synchronize Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Write, ReadAndExecute, ChangePermissions, TakeOwnership, Synchronize

Allow

BUILTIN\Server Operators Special (-1610612736) Allow

BUILTIN\Server Operators ReadAndExecute, Synchronize Allow

\\DC03\SYSVOL (C:\Windows\SYSVOL\sysvol)

Disk CREATOR OWNER Special (-536084480) Allow

NT AUTHORITY\Authenticated accts Special (-1610612736) Allow

NT AUTHORITY\Authenticated accts ReadAndExecute, Synchronize Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators Special (-536084480) Allow

BUILTIN\Administrators Write, ReadAndExecute, ChangePermissions, TakeOwnership, Synchronize

Allow

Page 23: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 23 of 100

Share Share Type User/Group File System Permissions Type

BUILTIN\Server Operators Special (-1610612736) Allow

BUILTIN\Server Operators ReadAndExecute, Synchronize Allow

\\DC03\Tech (C:\Shares\Tech)

Disk Everyone ReadAndExecute, Synchronize Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

myco\Pkirk FullControl Allow

\\DC03\accts (C:\accts)

Disk Everyone Special (-1610612736) Allow

Everyone ReadAndExecute, Synchronize Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

Page 24: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 24 of 100

1.10 - Ddouglas-WIN10 Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read No shares containing user/group permissions File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\Ddouglas-WIN10\ADMIN$ (C:\Windows)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

APPLICATION PACKAGE AUTHORITY\ALL RESTRICTED APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL RESTRICTED APPLICATION PACKAGES

Special (-1610612736) Allow

\\Ddouglas-WIN10\C$ (C:\)

Special NT AUTHORITY\Authenticated accts AppendData Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

Page 25: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 25 of 100

Share Share Type User/Group File System Permissions Type

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\Ddouglas-WIN10\D$ (D:\)

Special NT AUTHORITY\Authenticated accts Special (-536805376) Allow

NT AUTHORITY\Authenticated accts Modify, Synchronize Allow

NT AUTHORITY\SYSTEM FullControl Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

\\Ddouglas-WIN10\IPC$ IPC, Special

Page 26: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 26 of 100

1.11 - DESKTOP-N6S4H9A Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read No shares containing user/group permissions File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\DESKTOP-N6S4H9A\ADMIN$ (C:\WINDOWS)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

APPLICATION PACKAGE AUTHORITY\ALL RESTRICTED APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL RESTRICTED APPLICATION PACKAGES

Special (-1610612736) Allow

\\DESKTOP-N6S4H9A\C$ (C:\)

Special NT AUTHORITY\Authenticated accts AppendData Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

Page 27: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 27 of 100

Share Share Type User/Group File System Permissions Type

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\DESKTOP-N6S4H9A\IPC$ IPC, Special

Page 28: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 28 of 100

1.12 - DESKTOP-UAE29E6 Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read

\\DESKTOP-UAE29E6\print$ (C:\Windows\system32\spool\drivers)

Disk Everyone

BUILTIN\Administrators

File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\DESKTOP-UAE29E6\ADMIN$ (C:\Windows)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

\\DESKTOP-UAE29E6\C$ (C:\)

Special NT AUTHORITY\Authenticated accts AppendData Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

Page 29: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 29 of 100

Share Share Type User/Group File System Permissions Type

\\DESKTOP-UAE29E6\IPC$ IPC, Special

\\DESKTOP-UAE29E6\print$ (C:\Windows\system32\spool\drivers)

Disk Everyone ReadAndExecute, Synchronize Allow

Everyone Special (-1610612736) Allow

CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

Page 30: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 30 of 100

1.13 - FILE2012-1 Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read

\\FILE2012-1\Backups (H:\Shares\Backups)

Disk Everyone

BUILTIN\Administrators

myco\Hyper-V Servers

\\FILE2012-1\Hyper-V (H:\Shares\Hyper-V)

Disk Everyone

\\FILE2012-1\Witness (H:\Shares\Witness)

Disk Everyone

File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\FILE2012-1\ADMIN$ (C:\Windows)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

Page 31: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 31 of 100

Share Share Type User/Group File System Permissions Type

\\FILE2012-1\Backups (H:\Shares\Backups)

Disk Everyone FullControl Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

myco\Domain Admins FullControl Allow

myco\Pkirk FullControl Allow

myco\Hyper-V Servers FullControl Allow

\\FILE2012-1\C$ (C:\)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts AppendData Allow

BUILTIN\accts CreateFiles Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\FILE2012-1\H$ (H:\)

Special Everyone ReadAndExecute, Synchronize Allow

CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts AppendData Allow

BUILTIN\accts CreateFiles Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\FILE2012-1\Hyper-V (H:\Shares\Hyper-V)

Disk CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

BUILTIN\accts CreateFiles, AppendData Allow

myco\Hyper-V Servers FullControl Allow

S-1-5-21-356494474-603968661-3470298851-6120

Special (-2147483642) Allow

S-1-5-21-356494474-603968661-3470298851-6120

CreateFiles, AppendData, Read, Synchronize

Allow

Page 32: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 32 of 100

Share Share Type User/Group File System Permissions Type

S-1-5-21-356494474-603968661-3470298851-16612

Special (-2147483642) Allow

S-1-5-21-356494474-603968661-3470298851-16612

CreateFiles, AppendData, Read, Synchronize

Allow

myco\HV04$ Special (-2147483642) Allow

myco\HV04$ CreateFiles, AppendData, Read, Synchronize

Allow

myco\Domain Admins FullControl Allow

myco\HV02$ FullControl Allow

BUILTIN\Administrators FullControl Allow

NT AUTHORITY\SYSTEM FullControl Allow

CREATOR OWNER Special (268435456) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

BUILTIN\accts AppendData Allow

BUILTIN\accts CreateFiles Allow

\\FILE2012-1\IPC$ IPC, Special

\\FILE2012-1\Witness (H:\Shares\Witness)

Disk BUILTIN\Administrators FullControl Allow

myco\Hyper-V Servers FullControl Allow

myco\Domain Admins FullControl Allow

myco\HV02$ FullControl Allow

BUILTIN\Administrators FullControl Allow

NT AUTHORITY\SYSTEM FullControl Allow

CREATOR OWNER Special (268435456) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

BUILTIN\accts AppendData Allow

BUILTIN\accts CreateFiles Allow

Page 33: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 33 of 100

1.14 - gordon-LT2 Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read No shares containing user/group permissions File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\gordon-LT2\ADMIN$ (C:\Windows)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

\\gordon-LT2\C$ (C:\)

Special NT AUTHORITY\Authenticated accts AppendData Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

NT AUTHORITY\SYSTEM FullControl Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\gordon-LT2\IPC$ IPC, Special

Page 34: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 34 of 100

1.15 - HPDT-8CC5260NXY Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read No shares containing user/group permissions File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\HPDT-8CC5260NXY\ADMIN$ (C:\Windows)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

APPLICATION PACKAGE AUTHORITY\ALL RESTRICTED APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL RESTRICTED APPLICATION PACKAGES

Special (-1610612736) Allow

\\HPDT-8CC5260NXY\C$ (C:\)

Special NT AUTHORITY\Authenticated accts AppendData Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

Page 35: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 35 of 100

Share Share Type User/Group File System Permissions Type

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\HPDT-8CC5260NXY\IPC$ IPC, Special

Page 36: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 36 of 100

1.16 - HPLT-5CD4411D8Z Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read No shares containing user/group permissions File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\HPLT-5CD4411D8Z\ADMIN$ (C:\WINDOWS)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

APPLICATION PACKAGE AUTHORITY\ALL RESTRICTED APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL RESTRICTED APPLICATION PACKAGES

Special (-1610612736) Allow

\\HPLT-5CD4411D8Z\C$ (C:\)

Special NT AUTHORITY\Authenticated accts AppendData Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

Page 37: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 37 of 100

Share Share Type User/Group File System Permissions Type

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\HPLT-5CD4411D8Z\IPC$ IPC, Special

Page 38: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 38 of 100

1.17 - HV00 Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read

\\HV00\ClusterStorage$ (C:\ClusterStorage)

Clustered Disk

File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\HV00\ClusterStorage$ (C:\ClusterStorage)

Clustered Disk Everyone ReadAndExecute, Synchronize Allow

BUILTIN\Administrators Write, Delete, ReadPermissions, Synchronize

Allow

S-1-5-80-3686368352-2818529501-1460576502-2564618696-351529990

FullControl Allow

\\HV00\IPC$ IPC, Special

Page 39: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 39 of 100

1.18 - HV02 Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read No shares containing user/group permissions File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\HV02\ADMIN$ (C:\Windows)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

\\HV02\C$ (C:\)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts AppendData Allow

BUILTIN\accts CreateFiles Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

Page 40: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 40 of 100

Share Share Type User/Group File System Permissions Type

\\HV02\H$ (H:\)

Special Everyone ReadAndExecute, Synchronize Allow

CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts AppendData Allow

BUILTIN\accts CreateFiles Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\HV02\IPC$ IPC, Special

Page 41: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 41 of 100

1.19 - HV04 Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read

\\HV04\Temp (H:\Temp)

Disk

File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\HV04\ADMIN$ (C:\Windows)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

\\HV04\C$ (C:\)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts AppendData Allow

BUILTIN\accts CreateFiles Allow

Page 42: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 42 of 100

Share Share Type User/Group File System Permissions Type

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\HV04\H$ (H:\)

Special Everyone ReadAndExecute, Synchronize Allow

CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts AppendData Allow

BUILTIN\accts CreateFiles Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\HV04\IPC$ IPC, Special

\\HV04\Temp (H:\Temp)

Disk CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts CreateFiles Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

BUILTIN\accts AppendData Allow

myco\Pkirk FullControl Allow

Page 43: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 43 of 100

1.20 - IRIDIUM Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read No shares containing user/group permissions File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\IRIDIUM\ADMIN$ (C:\WINDOWS)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

APPLICATION PACKAGE AUTHORITY\ALL RESTRICTED APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL RESTRICTED APPLICATION PACKAGES

Special (-1610612736) Allow

\\IRIDIUM\C$ (C:\)

Special NT AUTHORITY\Authenticated accts AppendData Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

Page 44: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 44 of 100

Share Share Type User/Group File System Permissions Type

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\IRIDIUM\IPC$ IPC, Special

Page 45: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 45 of 100

1.21 - ISTCORP-PC Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read

\\ISTCORP-PC\Brother MFC-9320CW Printer (Brother MFC-9320CW Printer,LocalsplOnly)

Printer Istcorp-PC\Istcorp

Everyone

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

BUILTIN\Administrators

\\ISTCORP-PC\print$ (C:\Windows\system32\spool\drivers)

Disk Everyone

BUILTIN\Administrators

\\ISTCORP-PC\accts (C:\accts)

Disk BUILTIN\Administrators

Everyone

File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\ISTCORP-PC\ADMIN$ (C:\WINDOWS)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

Page 46: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 46 of 100

Share Share Type User/Group File System Permissions Type

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

\\ISTCORP-PC\Brother MFC-9320CW Printer (Brother MFC-9320CW Printer,LocalsplOnly)

Printer

\\ISTCORP-PC\C$ (C:\)

Special NT AUTHORITY\Authenticated accts AppendData Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

NT AUTHORITY\SYSTEM FullControl Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\ISTCORP-PC\IPC$ IPC, Special

\\ISTCORP-PC\print$ (C:\Windows\system32\spool\drivers)

Disk Everyone ReadAndExecute, Synchronize Allow

Everyone Special (-1610612736) Allow

CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

\\ISTCORP-PC\accts (C:\accts)

Disk Everyone Special (-1610612736) Allow

Everyone ReadAndExecute, Synchronize Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

Page 47: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 47 of 100

Share Share Type User/Group File System Permissions Type

BUILTIN\accts ReadAndExecute, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

Page 48: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 48 of 100

1.22 - JIM-WIN8 Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read

\\JIM-WIN8\download (C:\download)

Disk Everyone

\\JIM-WIN8\print$ (C:\WINDOWS\system32\spool\drivers)

Disk Everyone

BUILTIN\Administrators

File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\JIM-WIN8\ADMIN$ (C:\WINDOWS)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

\\JIM-WIN8\C$ (C:\)

Special NT AUTHORITY\Authenticated accts AppendData Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

NT AUTHORITY\SYSTEM FullControl Allow

Page 49: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 49 of 100

Share Share Type User/Group File System Permissions Type

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\JIM-WIN8\download (C:\download)

Disk Everyone ReadAndExecute, Synchronize Allow

BUILTIN\Administrators FullControl Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT AUTHORITY\Authenticated accts Modify, Synchronize Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

\\JIM-WIN8\IPC$ IPC, Special

\\JIM-WIN8\print$ (C:\WINDOWS\system32\spool\drivers)

Disk Everyone ReadAndExecute, Synchronize Allow

Everyone Special (-1610612736) Allow

CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

Page 50: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 50 of 100

1.23 - Lalexander-PC Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read No shares containing user/group permissions File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\Lalexander-PC\ADMIN$ (C:\WINDOWS)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

APPLICATION PACKAGE AUTHORITY\ALL RESTRICTED APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL RESTRICTED APPLICATION PACKAGES

Special (-1610612736) Allow

\\Lalexander-PC\C$ (C:\)

Special NT AUTHORITY\Authenticated accts AppendData Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

Page 51: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 51 of 100

Share Share Type User/Group File System Permissions Type

NT AUTHORITY\SYSTEM FullControl Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\Lalexander-PC\D$ (D:\)

Special NT AUTHORITY\Authenticated accts Special (-536805376) Allow

NT AUTHORITY\Authenticated accts Modify, Synchronize Allow

NT AUTHORITY\SYSTEM FullControl Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

\\Lalexander-PC\IPC$ IPC, Special

Page 52: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 52 of 100

1.24 - Mmichaels-HP Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read

\\Mmichaels-HP\print$ (C:\WINDOWS\system32\spool\drivers)

Disk Everyone

BUILTIN\Administrators

File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\Mmichaels-HP\ADMIN$ (C:\WINDOWS)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

\\Mmichaels-HP\C$ (C:\)

Special NT AUTHORITY\Authenticated accts AppendData Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

Page 53: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 53 of 100

Share Share Type User/Group File System Permissions Type

\\Mmichaels-HP\D$ (D:\)

Special NT AUTHORITY\Authenticated accts Special (-536805376) Allow

NT AUTHORITY\Authenticated accts Modify, Synchronize Allow

NT AUTHORITY\SYSTEM FullControl Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

\\Mmichaels-HP\E$ (E:\)

Special Everyone FullControl Allow

Everyone Special (-268369920) Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

NT AUTHORITY\Authenticated accts Modify, Synchronize Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\Mmichaels-HP\IPC$ IPC, Special

\\Mmichaels-HP\print$ (C:\WINDOWS\system32\spool\drivers)

Disk Everyone ReadAndExecute, Synchronize Allow

Everyone Special (-1610612736) Allow

CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

Page 54: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 54 of 100

Share Share Type User/Group File System Permissions Type

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

Page 55: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 55 of 100

1.25 - Mwest-WIN864 Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read

\\Mwest-WIN864\print$ (C:\Windows\system32\spool\drivers)

Disk Everyone

BUILTIN\Administrators

\\Mwest-WIN864\Share (C:\Share)

Disk Everyone

\\Mwest-WIN864\xdrive (C:\xdrive)

Disk BUILTIN\Administrators

Everyone

File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\Mwest-WIN864\ADMIN$ (C:\Windows)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

\\Mwest-WIN864\C$ Special NT AUTHORITY\Authenticated accts AppendData, Synchronize Allow

Page 56: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 56 of 100

Share Share Type User/Group File System Permissions Type

(C:\) NT AUTHORITY\Authenticated accts Modify, Synchronize Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

myco\Development FullControl Allow

\\Mwest-WIN864\IPC$ IPC, Special

\\Mwest-WIN864\print$ (C:\Windows\system32\spool\drivers)

Disk Everyone ReadAndExecute, Synchronize Allow

Everyone Special (-1610612736) Allow

CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

\\Mwest-WIN864\Share (C:\Share)

Disk NT AUTHORITY\Authenticated accts Modify, Synchronize Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

myco\Development FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\Mwest-WIN864\xdrive (C:\xdrive)

Disk NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

myco\wpayne FullControl Allow

myco\Development FullControl Allow

myco\mwest FullControl Allow

Page 57: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 57 of 100

Share Share Type User/Group File System Permissions Type

myco\rpilzner FullControl Allow

myco\dwade FullControl Allow

myco\ajameson FullControl Allow

Page 58: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 58 of 100

1.26 - PANOPTICON Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read No shares containing user/group permissions File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\PANOPTICON\ADMIN$ (C:\WINDOWS)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

APPLICATION PACKAGE AUTHORITY\ALL RESTRICTED APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL RESTRICTED APPLICATION PACKAGES

Special (-1610612736) Allow

\\PANOPTICON\C$ (C:\)

Special NT AUTHORITY\Authenticated accts AppendData Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

Page 59: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 59 of 100

Share Share Type User/Group File System Permissions Type

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\PANOPTICON\IPC$ IPC, Special

Page 60: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 60 of 100

1.27 - PITWDS12 Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read

\\PITWDS12\REMINST (D:\RemoteInstall)

Disk NT AUTHORITY\SYSTEM

BUILTIN\Administrators

NT AUTHORITY\Authenticated accts

NT SERVICE\WDSServer

File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\PITWDS12\ADMIN$ (C:\Windows)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

\\PITWDS12\C$ (C:\)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

Page 61: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 61 of 100

Share Share Type User/Group File System Permissions Type

BUILTIN\accts AppendData Allow

BUILTIN\accts CreateFiles Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\PITWDS12\D$ (D:\)

Special Everyone ReadAndExecute, Synchronize Allow

CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts AppendData Allow

BUILTIN\accts CreateFiles Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\PITWDS12\IPC$ IPC, Special

\\PITWDS12\REMINST (D:\RemoteInstall)

Disk NT AUTHORITY\Authenticated accts ReadAndExecute, Synchronize Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

S-1-5-80-1688844526-3235337491-1375791646-891369040-3692469510

FullControl Allow

Page 62: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 62 of 100

1.28 - PKWIN8-VM Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read

\\PKWIN8-VM\print$ (C:\Windows\system32\spool\drivers)

Disk Everyone

BUILTIN\Administrators

File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\PKWIN8-VM\ADMIN$ (C:\Windows)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

\\PKWIN8-VM\C$ (C:\)

Special NT AUTHORITY\Authenticated accts AppendData Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

Page 63: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 63 of 100

Share Share Type User/Group File System Permissions Type

\\PKWIN8-VM\IPC$ IPC, Special

\\PKWIN8-VM\print$ (C:\Windows\system32\spool\drivers)

Disk Everyone ReadAndExecute, Synchronize Allow

Everyone Special (-1610612736) Allow

CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

Page 64: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 64 of 100

1.29 - PS01 Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read

\\PS01\Brother HL-6180DW (Brother HL-6180DW,LocalsplOnly)

Printer Everyone

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

BUILTIN\Administrators

\\PS01\Brother MFC-9320CW Printer (Brother MFC-9320CW Printer,LocalsplOnly)

Printer S-1-5-21-356494474-603968661-3470298851-18619

Everyone

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

BUILTIN\Administrators

\\PS01\print$ (C:\Windows\system32\spool\drivers)

Disk Everyone

BUILTIN\Administrators

File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\PS01\ADMIN$ (C:\Windows)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

Page 65: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 65 of 100

Share Share Type User/Group File System Permissions Type

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

\\PS01\Brother HL-6180DW (Brother HL-6180DW,LocalsplOnly)

Printer

\\PS01\Brother MFC-9320CW Printer (Brother MFC-9320CW Printer,LocalsplOnly)

Printer

\\PS01\C$ (C:\)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts AppendData Allow

BUILTIN\accts CreateFiles Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\PS01\IPC$ IPC, Special

\\PS01\print$ (C:\Windows\system32\spool\drivers)

Disk Everyone ReadAndExecute, Synchronize Allow

Everyone Special (-1610612736) Allow

CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

Page 66: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 66 of 100

1.30 - Psolidad-PC Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read

\\Psolidad-PC\print$ (C:\WINDOWS\system32\spool\drivers)

Disk Everyone

BUILTIN\Administrators

\\Psolidad-PC\Reports (C:\Temp\Reports)

Disk BUILTIN\Administrators

Everyone

\\Psolidad-PC\RFT_reports (C:\Temp\RFT_reports)

Disk BUILTIN\Administrators

Everyone

\\Psolidad-PC\share (C:\share)

Disk BUILTIN\Administrators

Everyone

\\Psolidad-PC\accts (C:\accts)

Disk BUILTIN\Administrators

Everyone

File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\Psolidad-PC\ADMIN$ (C:\WINDOWS)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE ReadAndExecute, Synchronize Allow

Page 67: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 67 of 100

Share Share Type User/Group File System Permissions Type

AUTHORITY\ALL APPLICATION PACKAGES

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

APPLICATION PACKAGE AUTHORITY\ALL RESTRICTED APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL RESTRICTED APPLICATION PACKAGES

Special (-1610612736) Allow

\\Psolidad-PC\C$ (C:\)

Special NT AUTHORITY\Authenticated accts AppendData Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\Psolidad-PC\IPC$ IPC, Special

\\Psolidad-PC\print$ (C:\WINDOWS\system32\spool\drivers)

Disk Everyone ReadAndExecute, Synchronize Allow

Everyone Special (-1610612736) Allow

CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

\\Psolidad-PC\Reports (C:\Temp\Reports)

Disk Everyone FullControl Allow

NT AUTHORITY\SYSTEM FullControl Allow

Page 68: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 68 of 100

Share Share Type User/Group File System Permissions Type

BUILTIN\Administrators FullControl Allow

myco\psolidad FullControl Allow

\\Psolidad-PC\RFT_reports (C:\Temp\RFT_reports)

Disk NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

myco\psolidad FullControl Allow

\\Psolidad-PC\share (C:\share)

Disk NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

myco\psolidad FullControl Allow

myco\wpayne FullControl Allow

\\Psolidad-PC\accts (C:\accts)

Disk Everyone Special (-1610612736) Allow

Everyone ReadAndExecute, Synchronize Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

Page 69: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 69 of 100

1.31 - Psolidad-WIN764 Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read

\\Psolidad-WIN764\print$ (C:\Windows\system32\spool\drivers)

Disk Everyone

BUILTIN\Administrators

File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\Psolidad-WIN764\ADMIN$ (C:\WINDOWS)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

\\Psolidad-WIN764\C$ (C:\)

Special NT AUTHORITY\Authenticated accts AppendData Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

NT AUTHORITY\SYSTEM FullControl Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

BUILTIN\Administrators Special (268435456) Allow

Page 70: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 70 of 100

Share Share Type User/Group File System Permissions Type

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\Psolidad-WIN764\IPC$ IPC, Special

\\Psolidad-WIN764\print$ (C:\Windows\system32\spool\drivers)

Disk Everyone ReadAndExecute, Synchronize Allow

Everyone Special (-1610612736) Allow

CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

Page 71: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 71 of 100

1.32 - QB01 Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read

\\QB01\Data (F:\Shares\Data)

Disk Everyone

BUILTIN\Administrators

\\QB01\Packaged Programs (C:\Program Files\Packaged Programs)

Disk Everyone

File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\QB01\ADMIN$ (C:\Windows)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

\\QB01\C$ (C:\)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts AppendData Allow

BUILTIN\accts CreateFiles Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\QB01\Data (F:\Shares\Data)

Disk NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

Page 72: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 72 of 100

Share Share Type User/Group File System Permissions Type

myco\Pkirk FullControl Allow

myco\dborden FullControl Allow

myco\Accounting FullControl Allow

QB01\QBDataServiceacct25 DeleteSubdirectoriesAndFiles, Modify, Synchronize

Allow

\\QB01\F$ (F:\)

Special Everyone ReadAndExecute, Synchronize Allow

CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts AppendData Allow

BUILTIN\accts CreateFiles Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\QB01\IPC$ IPC, Special

\\QB01\Packaged Programs (C:\Program Files\Packaged Programs)

Disk NT AUTHORITY\Authenticated accts Special (-1610612736) Allow

NT AUTHORITY\Authenticated accts ReadAndExecute, Synchronize Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators FullControl Allow

NT SERVICE\TrustedInstaller FullControl Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

CREATOR OWNER Special (268435456) Allow

Page 73: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 73 of 100

1.33 - REX Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read

\\REX\download (C:\download)

Disk Everyone

\\REX\NDApplianceSetupFiles (E:\NDApplianceSetupFiles)

Disk Everyone

\\REX\print$ (C:\WINDOWS\system32\spool\drivers)

Disk Everyone

BUILTIN\Administrators

\\REX\soucesafe (C:\soucesafe)

Disk Everyone

\\REX\accts (C:\accts)

Disk BUILTIN\Administrators

Everyone

File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\REX\ADMIN$ (C:\WINDOWS)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

Page 74: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 74 of 100

Share Share Type User/Group File System Permissions Type

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

\\REX\C$ (C:\)

Special NT AUTHORITY\Authenticated accts AppendData Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\REX\D$ (D:\)

Special NT AUTHORITY\Authenticated accts Special (-536805376) Allow

NT AUTHORITY\Authenticated accts Modify, Synchronize Allow

NT AUTHORITY\SYSTEM FullControl Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

\\REX\download (C:\download)

Disk BUILTIN\Administrators FullControl Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT AUTHORITY\Authenticated accts Modify, Synchronize Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

\\REX\E$ (E:\)

Special NT AUTHORITY\Authenticated accts AppendData Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

NT AUTHORITY\SYSTEM FullControl Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\REX\IPC$ IPC, Special

Page 75: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 75 of 100

Share Share Type User/Group File System Permissions Type

\\REX\NDApplianceSetupFiles (E:\NDApplianceSetupFiles)

Disk BUILTIN\Administrators FullControl Allow

BUILTIN\Administrators Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT AUTHORITY\Authenticated accts Modify, Synchronize Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

\\REX\print$ (C:\WINDOWS\system32\spool\drivers)

Disk Everyone ReadAndExecute, Synchronize Allow

Everyone Special (-1610612736) Allow

CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

\\REX\soucesafe (C:\soucesafe)

Disk BUILTIN\Administrators FullControl Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT AUTHORITY\Authenticated accts Modify, Synchronize Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

\\REX\accts (C:\accts)

Disk Everyone Special (-1610612736) Allow

Everyone ReadAndExecute, Synchronize Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

Page 76: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 76 of 100

Share Share Type User/Group File System Permissions Type

BUILTIN\accts ReadAndExecute, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

Page 77: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 77 of 100

1.34 - ROWBOT Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read No shares containing user/group permissions File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\ROWBOT\ADMIN$ (C:\Windows)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

APPLICATION PACKAGE AUTHORITY\ALL RESTRICTED APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL RESTRICTED APPLICATION PACKAGES

Special (-1610612736) Allow

\\ROWBOT\C$ (C:\)

Special NT AUTHORITY\Authenticated accts AppendData Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

Page 78: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 78 of 100

Share Share Type User/Group File System Permissions Type

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\ROWBOT\IPC$ IPC, Special

\\ROWBOT\J$ (J:\)

Special NT AUTHORITY\Authenticated accts AppendData Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\ROWBOT\K$ (K:\)

Special NT AUTHORITY\Authenticated accts Special (-536805376) Allow

NT AUTHORITY\Authenticated accts Modify, Synchronize Allow

NT AUTHORITY\SYSTEM FullControl Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

Page 79: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 79 of 100

1.35 - SARLACC Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read No shares containing user/group permissions File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\SARLACC\ADMIN$ (C:\WINDOWS)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

\\SARLACC\C$ (C:\)

Special NT AUTHORITY\Authenticated accts AppendData Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\SARLACC\IPC$ IPC, Special

Page 80: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 80 of 100

1.36 - sourcesvr Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read No shares containing user/group permissions File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\sourcesvr\ADMIN$ (C:\Windows)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

\\sourcesvr\C$ (C:\)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts AppendData Allow

BUILTIN\accts CreateFiles Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

Page 81: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 81 of 100

Share Share Type User/Group File System Permissions Type

\\sourcesvr\IPC$ IPC, Special

Page 82: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 82 of 100

1.37 - sourcesvrBUILD Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read No shares containing user/group permissions File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\sourcesvrBUILD\ADMIN$ (C:\Windows)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

\\sourcesvrBUILD\C$ (C:\)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts AppendData Allow

BUILTIN\accts CreateFiles Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

Page 83: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 83 of 100

Share Share Type User/Group File System Permissions Type

\\sourcesvrBUILD\IPC$ IPC, Special

\\sourcesvrBUILD\X$ (X:\)

Special Everyone ReadAndExecute, Synchronize Allow

CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts AppendData Allow

BUILTIN\accts CreateFiles Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

Page 84: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 84 of 100

1.38 - STORAGE01 Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read

\\STORAGE01\accts$ (D:\Shared Files\accts)

Disk

File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\STORAGE01\ADMIN$ (C:\Windows)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

\\STORAGE01\C$ (C:\)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts AppendData Allow

BUILTIN\accts CreateFiles Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\STORAGE01\D$ (D:\)

Special Everyone ReadAndExecute, Synchronize Allow

CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

Page 85: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 85 of 100

Share Share Type User/Group File System Permissions Type

BUILTIN\accts AppendData Allow

BUILTIN\accts CreateFiles Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\STORAGE01\F$ (F:\)

Special

\\STORAGE01\IPC$ IPC, Special

\\STORAGE01\accts$ (D:\Shared Files\accts)

Disk

Page 86: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 86 of 100

1.39 - STORAGE12 Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read

\\STORAGE12\ClientApps (d:\Shared Files\ClientApps)

Disk Everyone

\\STORAGE12\Common (D:\Shared Files\Common)

Disk BUILTIN\Administrators

Everyone

File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\STORAGE12\ADMIN$ (C:\Windows)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

\\STORAGE12\C$ (C:\)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

Page 87: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 87 of 100

Share Share Type User/Group File System Permissions Type

BUILTIN\accts AppendData Allow

BUILTIN\accts CreateFiles Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\STORAGE12\ClientApps (d:\Shared Files\ClientApps)

Disk Everyone ReadAndExecute, Synchronize Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

myco\Pkirk FullControl Allow

\\STORAGE12\Common (D:\Shared Files\Common)

Disk NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

myco\Domain Admins FullControl Allow

myco\Domain accts FullControl Allow

myco\Pkirk FullControl Allow

myco\myapp ReadAndExecute, Synchronize Allow

CORE\Domain Admins FullControl Allow

CORE\Domain accts FullControl Allow

\\STORAGE12\D$ (D:\)

Special Everyone ReadAndExecute, Synchronize Allow

CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts AppendData Allow

BUILTIN\accts CreateFiles Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\STORAGE12\IPC$ IPC, Special

Page 88: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 88 of 100

1.40 - tarsis Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read No shares containing user/group permissions File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\tarsis\ADMIN$ (C:\WINDOWS)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

APPLICATION PACKAGE AUTHORITY\ALL RESTRICTED APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL RESTRICTED APPLICATION PACKAGES

Special (-1610612736) Allow

\\tarsis\C$ (C:\)

Special NT AUTHORITY\Authenticated accts AppendData Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

Page 89: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 89 of 100

Share Share Type User/Group File System Permissions Type

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\tarsis\IPC$ IPC, Special

Page 90: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 90 of 100

1.41 - tywin-PC Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read No shares containing user/group permissions File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\tywin-PC\ADMIN$ (C:\WINDOWS)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

APPLICATION PACKAGE AUTHORITY\ALL RESTRICTED APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL RESTRICTED APPLICATION PACKAGES

Special (-1610612736) Allow

\\tywin-PC\C$ (C:\)

Special NT AUTHORITY\Authenticated accts AppendData Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

Page 91: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 91 of 100

Share Share Type User/Group File System Permissions Type

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\tywin-PC\IPC$ IPC, Special

\\tywin-PC\Z$ (Z:\)

Special Everyone Special (-1) Allow

Page 92: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 92 of 100

1.42 - UTIL12 Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read No shares containing user/group permissions File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\UTIL12\ADMIN$ (C:\Windows)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

\\UTIL12\C$ (C:\)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts AppendData Allow

BUILTIN\accts CreateFiles Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

Page 93: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 93 of 100

Share Share Type User/Group File System Permissions Type

\\UTIL12\IPC$ IPC, Special

Page 94: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 94 of 100

1.43 - VPNGW Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read No shares containing user/group permissions File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\VPNGW\ADMIN$ (C:\Windows)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

\\VPNGW\C$ (C:\)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts AppendData Allow

BUILTIN\accts CreateFiles Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

Page 95: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 95 of 100

Share Share Type User/Group File System Permissions Type

\\VPNGW\IPC$ IPC, Special

Page 96: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 96 of 100

1.44 - WAMPA Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read

\\WAMPA\marion (H:\marion)

Disk BUILTIN\Administrators

Everyone

File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\WAMPA\ADMIN$ (C:\WINDOWS)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

APPLICATION PACKAGE AUTHORITY\ALL RESTRICTED APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL RESTRICTED APPLICATION PACKAGES

Special (-1610612736) Allow

Page 97: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 97 of 100

Share Share Type User/Group File System Permissions Type

\\WAMPA\C$ (C:\)

Special NT AUTHORITY\Authenticated accts AppendData Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\WAMPA\E$ (E:\)

Special NT AUTHORITY\Authenticated accts Special (-536805376) Allow

NT AUTHORITY\Authenticated accts Modify, Synchronize Allow

NT AUTHORITY\SYSTEM FullControl Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

\\WAMPA\F$ (F:\)

Special NT AUTHORITY\Authenticated accts Special (-536805376) Allow

NT AUTHORITY\Authenticated accts Modify, Synchronize Allow

NT AUTHORITY\SYSTEM FullControl Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

\\WAMPA\H$ (H:\)

Special NT AUTHORITY\Authenticated accts AppendData Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

NT AUTHORITY\SYSTEM FullControl Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

Page 98: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 98 of 100

Share Share Type User/Group File System Permissions Type

\\WAMPA\IPC$ IPC, Special

\\WAMPA\marion (H:\marion)

Disk NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

myco\mporche FullControl Allow

myco\tharold FullControl Allow

\\WAMPA\O$ (O:\)

Special NT AUTHORITY\Authenticated accts AppendData Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

NT AUTHORITY\SYSTEM FullControl Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

Page 99: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 99 of 100

1.45 - WILLARD Permissions for Share

Share Share Type User/Group Share Permissions

Full Control Change Read No shares containing user/group permissions File System Permissions for Share Share Share Type User/Group File System Permissions Type

\\WILLARD\ADMIN$ (C:\Windows)

Special CREATOR OWNER Special (268435456) Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

NT AUTHORITY\SYSTEM Modify, Synchronize Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators Modify, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

NT SERVICE\TrustedInstaller Special (268435456) Allow

NT SERVICE\TrustedInstaller FullControl Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES

Special (-1610612736) Allow

APPLICATION PACKAGE AUTHORITY\ALL RESTRICTED APPLICATION PACKAGES

ReadAndExecute, Synchronize Allow

APPLICATION PACKAGE AUTHORITY\ALL RESTRICTED APPLICATION PACKAGES

Special (-1610612736) Allow

\\WILLARD\C$ (C:\)

Special NT AUTHORITY\Authenticated accts AppendData Allow

NT AUTHORITY\Authenticated accts Special (-536805376) Allow

Page 100: Security Assessment - RapidFire Tools · Each subsection details the share and file system permissions granted to each user account within the above domain. 1.1 - b2b-GW Permissions

Share Permission Report SECURITY ASSESSMENT

PROPRIETARY & CONFIDENTIAL PAGE 100 of 100

Share Share Type User/Group File System Permissions Type

NT AUTHORITY\SYSTEM FullControl Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

\\WILLARD\D$ (D:\)

Special NT AUTHORITY\Authenticated accts Special (-536805376) Allow

NT AUTHORITY\Authenticated accts Modify, Synchronize Allow

NT AUTHORITY\SYSTEM FullControl Allow

NT AUTHORITY\SYSTEM Special (268435456) Allow

BUILTIN\Administrators Special (268435456) Allow

BUILTIN\Administrators FullControl Allow

BUILTIN\accts ReadAndExecute, Synchronize Allow

BUILTIN\accts Special (-1610612736) Allow

\\WILLARD\IPC$ IPC, Special