Hello,
Someone ended up adding the ADDS role to our Azure ad connect server.
When the server was initially setup, it was using a virtual service account for the Microsoft Azure AD sync service. See link below for details.
https://docs.microsoft.com/en-us/azure/active-directory/hybrid/concept-adsync-service-account
The documentation above says that a virtual service account cannot be used on a domain controller. I'm thinking this is why the service will no longer start.
What is the best way to correct this issue?