whoami
mimikatz # token::whoami
* Process Token : {0;0030f129} 4 F 38912331 SERVER01\tmassie S-1-5-21-755659916-1915924768-2761631771-1001 (15g,24p) Primary
* Thread Token : no tokenmimikatz # token::whoami /full
* Process Token : {0;04cfeb5e} 2 F 80775900 client1\tmassie S-1-5-21-1064812226-1257287110-2416274546-1001 (14g,24p) Primary
G:[MDE ] client1\None
G:[MDE ] Everyone
G:[MDE ] NT AUTHORITY\Local account and member of Administrators group
G:[MDE ] BUILTIN\Users
G:[MDEO ] BUILTIN\Administrators
G:[MDE ] BUILTIN\Remote Desktop Users
G:[MDE ] NT AUTHORITY\INTERACTIVE
G:[MDE ] NT AUTHORITY\Authenticated Users
G:[MDE ] NT AUTHORITY\This Organization
G:[MDE ] NT AUTHORITY\Local account
G:[MDE L ] NT AUTHORITY\LogonSessionId_0_624261
G:[MDE ] LOCAL
G:[MDE ] NT AUTHORITY\NTLM Authentication
G:[ ] Mandatory Label\High Mandatory Level
P:[ ] SeIncreaseQuotaPrivilege
P:[ ] SeSecurityPrivilege
P:[ ] SeTakeOwnershipPrivilege
P:[ ] SeLoadDriverPrivilege
P:[ ] SeSystemProfilePrivilege
P:[ ] SeSystemtimePrivilege
P:[ ] SeProfileSingleProcessPrivilege
P:[ ] SeIncreaseBasePriorityPrivilege
P:[ ] SeCreatePagefilePrivilege
P:[ ] SeBackupPrivilege
P:[ ] SeRestorePrivilege
P:[ ] SeShutdownPrivilege
P:[ ] SeDebugPrivilege
P:[ ] SeSystemEnvironmentPrivilege
P:[DE ] SeChangeNotifyPrivilege
P:[ ] SeRemoteShutdownPrivilege
P:[ ] SeUndockPrivilege
P:[ ] SeManageVolumePrivilege
P:[DE ] SeImpersonatePrivilege
P:[DE ] SeCreateGlobalPrivilege
P:[ ] SeIncreaseWorkingSetPrivilege
P:[ ] SeTimeZonePrivilege
P:[ ] SeCreateSymbolicLinkPrivilege
P:[ ] SeDelegateSessionUserImpersonatePrivilege
* Thread Token : no tokenLast updated