822e9bf2-405a-42cb-9566-8532df68939f
It is best practice that the local Administrator account is disabled due to several known vulnerabilities:
All other accounts that are members of the Administrator's group have the safeguard of locking out the account if the number of failed logins exceeds its configured maximum.
https://www.stigviewer.com/stig/windows_10/2016-11-03/finding/V-63601
https://docs.microsoft.com/en-us/windows/security/threat-protection/security-policy-settings/accounts-administrator-account-status
https://www.technipages.com/windows-administrator-account-login-screen
Stig Server: https://www.stigviewer.com/stig/windows_server_2016/2019-01-16/finding/V-73623
Stig Desktop: https://www.stigviewer.com/stig/windows_10/2019-01-04/finding/V-63619