Windows EventInformation
Windows Event ID 4757 – Microsoft-Windows-Security-Auditing: Universal Security Group Member Removed
Event ID 4757 fires when a member is removed from a universal security group in Active Directory. This audit event tracks group membership changes for security compliance and access control monitoring.