Event ID: 576

Special privileges assigned to new logon

Special privileges assigned to new logon:
    User Name:      %1
    Domain:         %2
    Logon ID:       %3
    Privileges:     %4


Lookup Audit Policy Configuration Settings

C:\> AuditPol.exe /get /category:"Privilege Use"
How to enable Windows Auditing


Audit Category:
Privilege Use
Corresponding Events:
4672


LEFT/RIGHT arrow keys for navigation

Back to List