Why do the Windows XP checks for several user rights fail after I delete the SUPPORT_388945a0 account?
The SUPPORT_388945a0 account is a special account built into Windows XP that is used for the Remote Assistance feature. The FDCC settings require the following user rights be assigned to this account: “Denied Access To This Computer From The Network”, “Denied Logon As A Batch Job”, and “Denied Logon Locally.” If the account is deleted then there is no reason to assign these rights to it. In other cases where the the SCAP content checks to see whether an account does or does not have a specific user right a well-known security identifier (SID) is used. A SID is a numerical identifier that maps to the user-friendly name of the account. Many built-in accounts such as the Administrators group and the Guest account have the same SID on every computer running Windows, but the SUPPORT_388945a0 account is assigned a random SID during the installation of Windows XP. This means that the SCAP content checks for the literal existence of the SUPPORT_388945a0 account name in the list of accounts for
Related Questions
- I want to use a user account for the Application Pool. Does this account needs to have administrative rights on the Web Front End (WFE) server?
- Windows XP user has been removed from the computer. Is it possible to find some folder/files from the deleted user account (profile)?
- Why do the Windows XP checks for several user rights fail after I delete the SUPPORT_388945a0 account?