Direct Inward Dialing: +1 408 916 9892
WinLogOnView is a tool, developed by NirSoft, that collects and displays the user logon and logoff events by analyzing the Windows security logs.This utility can be beneficial to monitor the users' logon activity and detect if anything is amiss.
This tool scans log data from the Event Viewer for the event IDs 4648 ( A logon was attempted using explicit credentials), 4647 (User initiated logoff), 4624 (An account was successfully logged on), 4625 (An account failed to logon), 4800 (The workstation was locked), 4801 (The workstation was unlocked). The details about the events monitored can be saved in formats such as TXT, HTML, CSV, and XML.
This simple tool can help an admin to monitor the logon/logoff activity on a network. It can help in detecting any unusual logon attempt or activity and that might help prevent a cyber attack.
ManageEngine's ADAudit Plus is a tool that is designed precisely to audit such events in a network environment. While WinLogOnView simply displays the relevant logs directly from the Event Viewer, ADAudit Plus retrieves and processes multiple event logs from the Event Viewer to give you comprehensive and user-friendly reports on the same. ADAudit Plus can audit and report in real-time on a wide variety of Active Directory events and offers over 200 pre-packaged audit reports that can be generated instantly.
Download ManageEngine's ADAudit Plus, a real-time Active Directory auditing and reporting tool. It can help you understand employee behavior with regards to IT, to thwart insider and outsider attacks, and also with compliance requirements.
Try ADAudit Plus to audit, track, and respond to malicious activities happening inside your Windows AD & Azure environment.
Try ADAudit Plus for free