Event ID - 5138

Event Id5138
SourceMicrosoft-Windows-Security-Auditing
DescriptionA directory service object was undeleted.

Subject:
      Security ID: <Security ID>
      Account Name: <Account Name>
      Account Domain: <Domain name>
      Logon ID: <Logon ID>     

Directory Service:
      Name: <Name>
      Type: < Service Type>     

Object:
      Old DN:<Old DN>
      New DN: <New DN>
      GUID:<GUID>
      Class: <Class>
      Operation:
      Correlation ID: <Correlation ID>
      Application Correlation ID: <Application Correlation ID>     

Event InformationCause :
This event is logged when a directory service object was un deleted.
Reference Links

Catch threats immediately

We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.

See what we caught

Did this information help you to resolve the problem?

Yes: My problem was resolved.
No: The information was not helpful / Partially helpful.