Windows Security Log Event ID 4782

Operating Systems Windows 2008 R2 and 7
Windows 2012 R2 and 8.1
Windows 2016 and 10
Windows Server 2019 and 2022
Category
 • Subcategory
Account Management
 • Other Account Management Events
Type Success
Corresponding events
in Windows 2003
and before
 

4782: The password hash an account was accessed

On this page

This typically happens when something like the Active Directory Migration Tool (ADMT) is moving password data.

I haven't been able to produce this event. Have you? If so, please start a discussion (see above) and post a sample along with any comments you may have! Don't forget to sanitize any private information.

Free Security Log Resources by Randy

Description Fields in 4782

Subject:

   Security ID:  %3
   Account Name:  %4
   Account Domain:  %5
   Logon ID:  %6

Target Account:

   Account Name:  %1
   Account Domain:  %2

Setup PowerShell Audit Log Forwarding in 4 Minutes

 

Examples of 4782

The password hash an account was accessed.

Subject:

   Security ID:  %3
   Account Name:  %4
   Account Domain:  %5
   Logon ID:  %6

Target Account:

   Account Name:  %1
   Account Domain:  %2

Top 10 Windows Security Events to Monitor

Free Tool for Windows Event Collection



 

Upcoming Webinars
    Additional Resources

      Go To Event ID:

      Security Log
      Quick Reference
      Chart
      Download now!