Kindly be advised we cannot cancel subscriptions or issue refunds on the forum.
You may cancel your Bitdefender subscription from Bitdefender Central or by contacting Customer Support at: https://www.bitdefender.com/consumer/support/help/

Thank you for your understanding.

I have an issue in Windows 11 PRO where my user is removed from Admin account upon login

Options

I found this thread where I see other people experiencing the same thing: https://www.bleepingcomputer.com/forums/t/757436/event-id-4723-an-attempt-was-made-to-change-an-accounts-password/

Particularly this guy:

"I'm trying to track down the source of some security events in windows (I have a topic opened here, if you're interested).

If you have Bitdefender installed on Windows 10, please open Event Viewer (Windows Key + X -> Event Viewer), click on Windows Logs, then Security and search for any event with the id 4723, followed by Event ID 4625.

Let me know if you see any or not.

Thanks."

You can see in attached screenshots Event ID 4723 followed by 4625. Anyone knows how to solve this?

I have Total Security 2023 installed

Answers

  • Alexandru_BD
    Options

    Hello @adolfo1981,

    I have noticed that the device belongs to a workgroup domain. To me it looks like a work computer, where policies could be managed and applied by the relevant IT department. I could be wrong though, but this is what the screenshot suggests. lsass.exe does just that. It's a process that administers policies on computers in a domain.

    I don't think this event has anything to do with Bitdefender, to be honest.

    However, I would recommend contacting the Technical Support Teams, as they can provide further guidance. You can get in touch with our engineers by choosing one of the contact channels available here:

    https://www.bitdefender.com/consumer/support/help/

    Let us know how it goes.

    Regards

    Premium Security & Bitdefender Endpoint Security Tools user