December 2018
Intermediate to advanced
318 pages
8h 28m
English
A sample active directory log 2008 looks as follows:

Active Directory columns involves having an event ID, an event description, the source of the log and the destination, the network information, the name of the local computer, the log source name, and many more.
For the purposes of the experiment, we will use the following event IDs:
|
Event ID |
Event Description |
|
4624 |
An account was successfully logged on. |
|
4768 |
A Kerberos authentication ticket (TGT) was requested. |
|
4769 |
A Kerberos service ticket was requested. |
|
4672 |
Special privileges was assigned to a new logon. |
|
4776 |
T ... |
Read now
Unlock full access