what is the meaning of this ?
Hi,I got the following in the EVENT LOG. [win2k + IIS]
what could be the meaning of this ?
EVENT # : 237
EVENTLOG : Security
EVENT TYPE : AUDIT FAILURE (16)
SOURCE : Security
CATEGORY : Account Management
EVENT ID : 627
USER : WIN2k\admin
TIME : 7/26/2002 9:18:30 PM
MESSAGE : Change Password Attempt:
Target Account Name: admin
Target Domain: WIN2K
Target Account ID: (){S-1-5-21-839522115-1326574676-682003330-1004}
Caller User Name: admin
Caller Domain: WIN2K
Caller Logon ID: (0x0,0x10F0F)
Privileges: -
WIN2K is the hostname of the machine and admin is the username i use which has administrative rights...
and I have not even logged in to that machine at that time. It means admin is trying to change admin's password and it is failed... huh?
is this server hacked or someone trying to hack it or ?
