# Credentials Source Analysis

## Imperial Trading (FTP Credentials)

**Source:** Database dump from iRely i21 system

**Found in:** `decrypted_creds/` directory

**Credentials:**
- **Username:** marketmax
- **Password:** IMP$1220mm
- **Username:** marketmaxinv
- **Password:** IMP$0606ma

**Database:** `2210PIGOTTOILUAP01` and `2610PIGOTTOILUAP01`

**Context:** These are FTP credentials for Imperial Trading Company, a client of iRely i21 system. They were found in the decrypted credentials dump from the production SQL Server.

## Merchant Credentials

**Source:** Database dump from iRely i21 system

**Found in:** `decrypted_creds/` directory

**Credentials:**
- **Merchant ID:** 4445045820008
- **Password:** 7.wEHqmXsxq~QEcn

**Database:** `2410WoodfordUAP101`

**Context:** These are MercuryCert payment system credentials for processing credit card payments. They were found in the decrypted credentials dump from the production SQL Server.

## Analysis

Both credential sets were obtained from the same source - a production SQL Server dump from the iRely i21 ERP system. The system hosts multiple client databases, and these credentials belong to specific clients:

1. **Imperial Trading Company** - FTP access for file transfers (invoices, documents)
2. **Woodford Oil** - MercuryCert payment processing for credit card transactions

The credentials were encrypted in the database and decrypted using the SQL Server's built-in encryption functions.

## Security Implications

- **Imperial Trading:** FTP access allows file upload/download from their server
- **Woodford Oil:** Payment processing access allows financial transactions

Both sets of credentials provide significant access to client systems and data within the iRely i21 ecosystem.
