312-39 · Question #139
What does Windows event ID 4740 indicate?
The correct answer is A. A user account was locked out. Event ID 4740 is a security audit event in Windows that indicates a user account has been locked out. This event is generated every time the system locks out a user account due to repeated logon failures, which are typically caused by incorrect password entries. The event is…
Question
What does Windows event ID 4740 indicate?
Options
- AA user account was locked out.
- BA user account was disabled.
- CA user account was enabled.
- DA user account was created.
How the community answered
(60 responses)- A95% (57)
- B3% (2)
- D2% (1)
Explanation
Event ID 4740 is a security audit event in Windows that indicates a user account has been locked out. This event is generated every time the system locks out a user account due to repeated logon failures, which are typically caused by incorrect password entries. The event is logged on domain controllers, member servers, and workstations where the lockout occurred. It includes details such as the account name, domain, and the computer from which the lockout originated. resources related to security auditing and user account management. Specifically, the Microsoft Learn page on security auditing provides comprehensive details on Event ID 47401. Additionally, resources like Ultimate Windows Security offer in-depth explanations of this event and its implications for security monitoring2. 4740#:~:text=For%204740(S)%3A%20A,Security%20ID”%20is%20not%20SYSTEM.
Topics
Community Discussion
No community discussion yet for this question.