science | March 09, 2026

What does it mean a logon was attempted using explicit credentials?

What does it mean a logon was attempted using explicit credentials?

This event is generated when a process attempts an account logon by explicitly specifying that account’s credentials. This most commonly occurs in batch-type configurations such as scheduled tasks, or when using the “RUNAS” command.

What is 4648?

4648: A logon was attempted using explicit credentials. This is a useful event for tracking several different situations: A user connects to a server or runs a program locally using alternate credentials.

What Eventcode 4627?

4627: Group membership information. This is the only event of it’s new Group Membership subcategory. One or more of these events are logged whenever a user logs on or a logon session begins for any other reason (see LogonTypes on 4624).

What is the event ID for logoff?

User initiated logoff. When a logoff is initiated by a user, event 4647 is generated.

What is special privileges assigned to new logon?

Special privileges were assigned to a new logon. If sensitive privileges are assigned to a new logon session, event 4672 is generated for that particular new logon. This event is generally recorded multiple times in the event viewer as every single local system account logon triggers this event.

How do I find Google Calendar event ID?

There is one other quick and easy approach.

  1. Click on the event in your calendar. It doesn’t need to be in debug mode.
  2. From the URL, copy the string between the last slash and the question mark.
  3. You will get the event ID and the email of the calendar owner (you?).
  4. (The eventId is the first string of characters.)

How do I see events in Event Viewer?

Right click on the Start button and select Control Panel > System & Security and double-click Administrative tools. Double-click Event Viewer. Select the type of logs that you wish to review (ex: Application, System)