J 
		
								
				
				
			
		Jason
Okay, last week sometime someone hacked into my PC and
dropped the DAMEWARE software. Well, I removed it and
enabled audit success and failure logins. Well I noticed
that around 2:am in the event viewer this morning there
are success audits, and the user is NT AUTHORITY\SYSTEM.
Does this mean anything? How can I find if that person is
still accessing my pc? This pc has Filemaker on it and it
host databases (via IP/web).
Thanks for any input.
Jay
				
			dropped the DAMEWARE software. Well, I removed it and
enabled audit success and failure logins. Well I noticed
that around 2:am in the event viewer this morning there
are success audits, and the user is NT AUTHORITY\SYSTEM.
Does this mean anything? How can I find if that person is
still accessing my pc? This pc has Filemaker on it and it
host databases (via IP/web).
Thanks for any input.
Jay
