Talk With an Expert

EVTX and Windows Event Logging

EVTX and Windows Event Logging (PDF, 2.55MB)Published: 13 Nov, 2008
Created by
Brandon Charter

This paper will explore Microsoft's EVTX log format and Windows Event Logging framework. The EVTX data stream and structure will be defined as a basis for the Windows Event Logging framework and log subscription components that can be used to collect and correlate logs in a complex Windows-based environment.