I have a McAfee firewall.
What I don't have is any SQL server application that I know of !
In October 2008 my previous notebook was hacked I believe as there were some similar SQL activity then and the hard drive was destroyed a few weeks later.
I had to replace the hard drive in the old notebook and the shop was able to retrieve most of the files but didn't recommend continued use of the hard drive.
I used to run a php based industrial auction site and this was also hacked at the same time , I was able to us visual IP trace and trace these back to a single range of IP addresses in East Java which is where one of my then competitors was based. They had a small team of university IT students running their industrial auction site and I also found out they were developing a porno site.
I do direct sales now as php auction was to vulnerable to hacker attacks and the spanish developer wasn't effective in fixing the sites fast enough or bringing out patches to block these attacks.
You can see now why I'm a bit paranoid