A tombstone is a container object consisting of the deleted objects from AD. These objects have not been physically removed from the database. When an AD object, such as a user is deleted, the object technically remains in the directory for a given period of time; known as the Tombstone Lifetime. Seeing with ldp.exe Go to Options -> Controls then View -> Tree Lifetime Existing user: Deleted user in ldp.exe: