Step 1: You proceed to open the Start Menu and enter RUN to open the quick access window on the computer.
Step 2: Then, you proceed to enter the command 'gpedit.msc' and press Enter to open the Local Group Policy Editor .
Step 3: When the Local Group Policy Editor is opened, you proceed to access the folders in turn as follows.
Computer Configuration (1) => Windows Settings (2) => Security Settings (3) => Local Policies => Audit Policy (4)
Step 4: Then, right-click on the Audit logon events item and select Properties .
Step 5: In the Audit logon events Properties window , you proceed to tick 02 items: Success and Failure (1) and click OK (2) to complete.
Step 6: After completing the setup, continue to press the Windows + R combination to open the Run window. This time, we will need to enter the command ' eventvwr.msc ' and press Enter to open it.
Step 7: In the Event Viewer window , go to Windows Logs (1) => Security (2) .
Step 8: At the interface displayed, you are only interested in the middle dialog box and your job is to find the keys with ID: 4624 Logon .
Explanation: ID 4642 means successful login attempts on a Windows computer and next to it has a timeline for you to compare.In addition to ID 4642, you can also get more information through the following Event IDs:
In this article, TipsMake has shown you how to check the log, history of using Windows computers. Have a nice day!
ncG1vNJzZmismaXArq3KnmWcp51kwLWxz6xkraddq7amw4ylpqCrXZa7pXnUrJignV2dtrTAzquwZqeWYsSqusOorqxlYWV6pLvMqaytnaKo