Everytime I logon my computer my sistem (my security
sistem)registre six more Logons under NT authority/
Sistem.In only one second my Pc registre this movemets:
An Autentification Package has been loaded by the local
Secuity Autority. This A.P. will be used to authenticate
logon attemps.
Authentification package name: c/Winsdows/System
32/LSASRV.dll.Negotiate.
After this message there is diferent Succes audit(logons,
I think) with diferent Authentification names like:
kerberos,ntlm,Schannel,Wdigest, V1_0.
And the next message says:
A trusted logon process has registered with the local
authority.This logon process will be trusted to submit
logon request.Logon Process Name: KSecDD.
and the same with Winlogon and winlogon/MsGina.
The next mesagge has a Policy change category.
Id 612.
User: NT AUTHORITY /SYSTEM.
COMPUTER:(MINE)
AND says CHANGE BY. User name:myname$
Domain name:MSHOME.
Logon Id: (0x03E7)
What can I do to stop this logons?
Sorry for the long text.
thank you.
one second later on a anonimous user logon to.