Domain has hundreds of GPO's - need to identify those that use Restricted
Groups to lock down local Administrators groups but do NOT include Domain
Admins. Script needs to go through every GptTmpl.inf in SysVol. If
Administrators is defined the following string will exist before the â??equalsâ??
sign:
*S-1-5-32-544__Members

If Domain Admins is included in this local group, then after the "equals"
there will exist the following string:
â??S-1-5-domain-512â??

Looked through all Microsoft's GPO scripts and can't find one close enough
to modify. Please help!