Home
Resources
Training
About Us
eStore
<a href="http://www.isdecisions.com/en/software/userlock/?xtor=SEC-230"><img src="http://www.isdecisions.com/images/pubs/Randy/userlock.gif" alt="UserLock" border="0" /></a>

>

resources > security log resource center > encyclopedia > event 635

 

 

 

 

 

 

 

Latest Blog: WinReporter 4.0 Makes It Easy to Assess Attack Surface

 

Windows Security Log Events by ID

look up more events by Event ID or Category

Event ID

635

Title

Group created

Type: Example: Randy's Comments:
Success

OS:

Windows 2000
Windows 2003

Category:

Account Management

[type] [scope] Group Created:
New Account Name:AccountingStaff
New Domain:ELMW2
New Account ID:ELMW2\AccountingStaff
Caller User Name:Administrator
Caller Domain:ELMW2
Caller Logon ID:(0x0,0x12D622)
Privileges:-

Windows Server 2003 adds these fields

Attributes:
Sam Account Name:TestGroup
Sid History:-

Local security group created.Type:
AD has 2 types of groups: Security and Distribution. Distribution (security disabled) groups are for distribution lists in Exchange and cannot be assigned permissions or rights. Security (security enabled) groups can be used for permissions, rights and as distribution lists.

Scope:
AD has 3 scopes of groups: Local, Global, Universal. See knowledge base article 326265.

Next:

Get all the tools you need in one newsletter!
Free log parser scripts, clear explanations of Microsoft's latest security bulletins, and more. View a sample issue.
Email Address:
Your email address will not be shared. You may unsubscribe at any time.


Upcoming Webinars by Randy Franklin Smith


Additional Links

A
D
V