EVTX and Windows Event Logging

This paper will explore Microsoft's EVTX log format and Windows Event Logging framework. The EVTX data stream and structure will be defined as a basis for the Windows Event Logging framework and log subscription components that can be used to collect and correlate logs in a complex Windows-based...
By
Brandon Charter
November 13, 2008

All papers are copyrighted. No re-posting of papers is permitted

470x382_Generic_Whitepaper.jpg