Event Id | 4719 |
Source | Microsoft-Windows-Security-Auditing |
Description | System audit policy was changed. Subject:       Security ID: <Security ID>       Account Name: <Account Name>       Account Domain: <Account Domain>       Logon ID: <Logon ID>      Audit Policy Change:       Category: <Category>       Subcategory: <Subcategory>       Subcategory GUID: <Subcategory GUID>       Changes: <Changes>      |
Event Information | Cause : This event is logged when computer's Security Settings\Local Policy\Audit Policy settings were modified. |
Reference Links |
Catch threats immediately
We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.