The reason behind renaming the administrator account is because it is the
top target for hackers/attackers since it is a well known name, an all
powerful account, and can not be locked out. That risk is lower on a home
type network behind a firewall for direct hack attempts. Renaming the
administrator account, while advised, is not always effective since the
built in administrator account has a well know SID which is the number the
operating system assigns to users and groups. We see the name but the
operating system uses the SID for rights and access control lists.
The reason that it is a good idea to not use the administrator account
unless you need it's extra rights is because many [not all] malwares use the
rights of the logged on user to do their thing and many can not if you are
not logged on as administrator. Such malwares may be worms/trojans/viruses
that can be unleashed by opening email attachments, downloading and opening
files that contain malware, and selecting "yes" when prompted by a website
without reading the fine print to install something. Many malwares depend on
discovered operating system vulnerabilities and can harm a computer no
matter who is logged on. Blaster is such an example and it why it is so
important to keep your computer current with critical updates from Windows
Updates which can be done automatically. Some malwares also do a short
attack on the built in administrator account which can be thwarted by using
complex passwords and renaming it . You can connect to the internet with an
account in the administrators group but it will not defend from instances of
opening infected files/attachments or answering yes when you should have
answered no. Using the recommended minimum IE security settings in the link
below can help prevent some of that along with running an antivirus program
such as Norton that can monitor the computer for malicious activity such as
scripts being run and warn you and ask you if you want to run the script or
not AND scans all your emails and downloads. The last link is the bare
minimum security steps that all users should be using. --- Steve
http://mvps.org/winhelp2002/unwanted.htm
http://www.microsoft.com/athome/security/protect/default.aspx -- Microsoft
Protect Your PC link
"NP" <-@-.com> wrote in message
news:41724c40$0$22878$cc9e4d1f@news-text.dial.pipex.com...
> Looking for some info/advice please ...
>
> * Fresh install of Win2000 completed (Administrator account setup
> automatically by Windows).
> * Renamed Administrator account from "Administrator" to something else.
> Someone once advised me to do this but didn't explain why.
> * Created two Power User accounts for general day to day use. Both used to
> connect to the internet.
>
> Questions:
>
> 1) Why is it a good idea to rename the Adminstrator account?
> 2) Why is it not a good idea to connect to the internet using the
> "Administrator" account?
> 3) Would it be OK to connect to the Internet using the renamed account
> that
> has administrator rights?
>
> Many thanks,
>
> NP.
>
>