KnowledgeBase Event Repository

This site is the central interface to the Adiscon Event Repository

  • Details for this entry
  • Eventlog Type:
    Security
    Eventlog Source:
    Security
    Event ID:
    642
    Full Description:
    User Account Changed
    Parameter Description:
    User Account Changed:%n
    %t%1%n
    %tTarget Account Name:%t%2%n
    %tTarget Domain:%t%3%n
    %tTarget Account ID:%t%4%n
    %tCaller User Name:%t%5%n
    %tCaller Domain:%t%6%n
    %tCaller Logon ID:%t%7%n
    %tPrivileges:%t%8%n
    More Informations:
    Cause

    This event indicates that a user account has been changed. There is no Failure Audit form for this audit event record. User account changes can have security implications.The administrator should confirm that there are no security implications because of this change.

    Note that this event replaces Security event 626 and Security event 629.

    Search for this Event::
    Search in Knowledge Base  •  Search in this Forum  •  Search on Windows-Expert.com
  • Software Vendor: Microsoft
    Accessed: 4595

Discuss the Event

Discussion for KB Entry 45 - Event ID 642

by knowledgebase on Thu May 29, 2008 4:13 pm

This is the discussion thread for the Knowledge Base Entry 45

Eventlog Type: Security
Eventlog Source: Security
Event ID: 642
Link to KB Entry

Short Description:
User Account Changed
User avatar
knowledgebase
Frequent Poster
 
Posts: 128
Joined: Wed May 28, 2008 10:09 am


About the KnowledgeBase Event Repository

This is a repository of known Windows Events, hopefully together with a description of what it means, when it appears and how to troubleshoot it. The event repository was initially provided as a tool for parser creation but has since evolved. It is now part of the overall knowledgebase in the hope that it provides a useful service to the community. Please add your comments and questions (which we try to answer), as this increases the event repository usefulness for all of us.

Return to

cron