BTW.
I've also written a buggy little utility that creates 15 letter passwords based on machine name and Mac address. I change the Local Administrators logon Name, and I don't use that account. I then use the password utility to create a password for this account.
I also disable GUEST, and regularly check my IUSR_ rights for the Web Server, and so on.
I log in as a different user (my name) and give that guy Admin privelages on the box. So, if they can get in, have at it.