Hi, Recently we found a strange problem on two nt servers. Role of these 2 nt servers is domain controller ( PDC & BDC) for a resource domain.
Problem : NT servers try to map drives to the servers in US as well as local. It uses nt id by which our server is logged in. If our servers are logged off then there is no such activity. We checked all the possibilities like trojan, virus etc., but yet had no clue why this is happening. Software installed are NT4.0 with SP6a and all required patches, Archserve backup software, quota manager and McAfee antivirus. But, this activity started recently, whereas these softwares are from long time and without much deviation. Can somebody please advice what is the reason or how it can be identified? Thanks for help in advance. Harish __________________________________________________ Do You Yahoo!? Everything you'll ever need on one web page from News and Sport to Email and Music Charts http://uk.my.yahoo.com