Hacker?

R

Roleo

Just returned from vacation & security log shows multiple
logon/logoff entries for several days when I was gone. It
even identifies the computers by name where the logon and
logoffs were made. How can this be? I am grateful for any
help that anyone can offer.

/begin log

Product: Windows Operating System
ID: 540
Source: Security
Version: 5.0
Component: Security Event Log
Symbolic Name: SE_AUDITID_NETWORK_LOGON
Message: Successful Network Logon:
User Name: %1
Domain: %2
Logon ID: %3
Logon Type: %4
Logon Process: %5
Authentication Package: %6
Workstation Name: %7

Explanation
This event record indicates that the specified user
successfully logged on to the workstation identified in
the message.

/end log
 
N

Nicholas

Roleo --

Apparently, you did not properly enable XP's firewall.

Open XP's "Help and Support" and type: FIREWALL , and hit enter.
Click on the topic titled "Enable or Disable Internet Connection Firewall".

Description of the Windows XP Internet Connection Firewall
http://support.microsoft.com/default.aspx?scid=kb;en-us;320855


I would suggest purchasing Norton Internet Security 2003.
This is an excellent, comprehensive program that has the ability
to automatically update virus and security definition files, thereby
making your computer virtually bullet-proof from security breaches.

Norton Internet Security 2003
http://www.symantec.com/sabu/nis/nis_pe/

Includes:
.. Norton AntiVirus - protects your PC from viruses
.. Norton Personal Firewall - defends against hackers
.. Norton Privacy Control - keeps your personal information private
.. Norton Intrusion Detection - detects and blocks online security breaches
.. Norton Spam Alert - filters unwanted e-mail
.. Norton Parental Control - keeps your children safe on the Internet from porn


--
Nicholas

-----------------------------------------------------------------------


| Just returned from vacation & security log shows multiple
| logon/logoff entries for several days when I was gone. It
| even identifies the computers by name where the logon and
| logoffs were made. How can this be? I am grateful for any
| help that anyone can offer.
|
| /begin log
|
| Product: Windows Operating System
| ID: 540
| Source: Security
| Version: 5.0
| Component: Security Event Log
| Symbolic Name: SE_AUDITID_NETWORK_LOGON
| Message: Successful Network Logon:
| User Name: %1
| Domain: %2
| Logon ID: %3
| Logon Type: %4
| Logon Process: %5
| Authentication Package: %6
| Workstation Name: %7
|
| Explanation
| This event record indicates that the specified user
| successfully logged on to the workstation identified in
| the message.
|
| /end log
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top