Re: Anonymous Login in the eventvwr
From: Steven L Umbach (n9rou_at_nospam-comcast.net)
Date: 03/10/05
- Next message: Steven L Umbach: "Re: EFS - Encryption and User Migration"
- Previous message: Rene: "Can't delete shortcut"
- In reply to: Armin: "Re: Anonymous Login in the eventvwr"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Date: Wed, 9 Mar 2005 22:12:13 -0600
I really doubt if you have been hacked if you are behind a firewall and you
enforce the use of complex passwords. Like I said those anonymous logon
events are normal if file and print sharing is enabled even if no one has
accessed the server. If your firewall blocks access to file and print
sharing ports, then no untrusted user would be able to use them to attempt
to access your server. --- Steve
"Armin" <beeasy43@hotmail.com> wrote in message
news:398phoF5v94n4U1@individual.net...
> Something add.: Since I have deactivated File and Print sharing on the
> appropriate NIC there was no entry anymore ...
> So what is the conclusion?
> I'm really stucked if this server behind a firewall has been hacked or
> not - thank you very much for every hint, Armin
>
> Steven L Umbach wrote:
> File and print sharing should
>> never be enabled on a network adapter exposed to the internet. Anonymous
>> access events are regularly recorded on computers that have file and
>> print sharing and the computer browser service enabled. --- Steve
- Next message: Steven L Umbach: "Re: EFS - Encryption and User Migration"
- Previous message: Rene: "Can't delete shortcut"
- In reply to: Armin: "Re: Anonymous Login in the eventvwr"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|
|