03-21-2006 07:48 AM - edited 03-09-2019 02:20 PM
Dont know why or what keeps causing this to trigger. Should it be denied or allowed?
The Process 'C:\WINDOWS\SYSTEM32\cmd.exe' (user) attemped to access 'C:\WINDOWS\SYSTEM32\drivers\etc\services'. The attempted access was a write (operation = OPEN/ WRITE).
The user was queried and a 'Yes' response was received.
03-21-2006 10:18 AM
Could be FTP or some other networking process looking at the services file. Might want to talk to the user saying "yes" and see what they are doing to trigger it.
03-21-2006 12:02 PM
Thanks, it is something at boot. I will also look at the msconfig.
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: