Event Id | 4760 |
Source | Microsoft-Windows-Security-Auditing |
Description | A security-disabled universal group was changed. Subject: Security ID:<Security ID> Account Name:<Account Name> Account Domain:<Domain name> Logon ID:Logon ID> Group: Security ID:<Security ID> Group Name:<Group Name> Group Domain:<Group Domain> Changed Attributes: SAM Account Name:<SAM Account Name> SID History:<SAM History> Additional Information: Privileges: |
Event Information | Cause : The user can change the Universal Distribution group identified in Group.This event is only logged on domain controllers. |
Reference Links |
Catch threats immediately
We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.