Windows Security Log Events



(LOGbinder for SharePoint)
(LOGbinder for SQL Server)
(LOGbinder for Exchange)
(MS Sysinternals Sysmon)
Windows Audit Categories:

Subcategories:

Windows Versions:

Windows 4661 A handle to an object was requested
Windows 4662 An operation was performed on an object
Windows 4928 An Active Directory replica source naming context was established
Windows 4929 An Active Directory replica source naming context was removed
Windows 4930 An Active Directory replica source naming context was modified
Windows 4931 An Active Directory replica destination naming context was modified
Windows 4932 Synchronization of a replica of an Active Directory naming context has begun
Windows 4933 Synchronization of a replica of an Active Directory naming context has ended
Windows 4934 Attributes of an Active Directory object were replicated
Windows 4935 Replication failure begins
Windows 4936 Replication failure ends
Windows 4937 A lingering object was removed from a replica
Windows 5136 A directory service object was modified
Windows 5137 A directory service object was created
Windows 5138 A directory service object was undeleted
Windows 5139 A directory service object was moved
Windows 5141 A directory service object was deleted
Windows 5169 A directory service object was modified
Windows 5170 A directory service object was modified during a background cleanup task

 

Upcoming Webinars
    Additional Resources
      Encyclopedia
      Event IDs
      All Event IDs
      Audit Policy

      Go To Event ID:

      Security Log
      Quick Reference
      Chart
      Download now!