EventSentry
  • System32
  • Sysmon
  • Events
  • Compliance
  • Validator
  • TLS/SSL
  • GeoIP
  • Tools


Windows Security Events



Audit Category
  • Detailed Tracking (1)
  • Object Access (1)
Operating Systems
  • Windows 10 (2)
  • Windows 2008 (2)
  • Windows 2008 R2 (2)
  • Windows 2012 (2)
  • Windows 2012 R2 (2)
  • Windows 2016 (2)
  • Windows 2019 (2)
  • Windows 2022 (2)
  • Windows 7 (2)
  • Windows 8 (2)
  • Windows 8.1 (2)
  • Windows Vista (1)
Tags
  • Audit Success (2)
Auditing
  • Rarely (1)
Volume
Audit Subcategory
  • Handle Manipulation (1)
  • Process Creation (1)

AppLocker
  • All AppLocker events
EventSentry
  • All EventSentry events
Security
  • All Windows Security events
Sysmon
  • All Sysmon events
ID Event Description
4690 An attempt was made to duplicate a handle to an object
Audit Success
4696 A primary token was assigned to process
Audit Success



© netikus.net ltd 2002-2025 | EventSentry | Event Log Messages | Codes | Sysmon | STIG | AppLocker | Privacy Policy