I recently removed IIS from a W2k server machine as it wasn't needed. Since then I have had event id 1000 and 1202 in the Application Log.
I have followed the instructions in Q247482 and searched the Winlogon.log file to find the deleted users are IWAM_SERVER and IUSR_SERVER.
There are entries for these users under:
Local Security Settings - "Local Policies", "User rights assignment", "Access this computer from the network" and "Log on as a batch job".
How can i remove the entries for these users? When i right click on the policies, the "Effective Policy Setting" box is ticked and greyed out so I cannot untick it.
I have followed the instructions in Q247482 and searched the Winlogon.log file to find the deleted users are IWAM_SERVER and IUSR_SERVER.
There are entries for these users under:
Local Security Settings - "Local Policies", "User rights assignment", "Access this computer from the network" and "Log on as a batch job".
How can i remove the entries for these users? When i right click on the policies, the "Effective Policy Setting" box is ticked and greyed out so I cannot untick it.