Windows Event Logs Flashcards
1
Q
What are Windows Event Logs ?
A
Windows Event Logs are a feature in the windows OS that record system, security, and application events that occur on a computer or server. These logs can be used to diagnose problems, track system activity, and monitor security events.
2
Q
Name the 5 windows events type.
A
- Errors
- Warnings
- Information
- Audit success
- Audit failure
3
Q
Name the 3 main event logs.
A
- Application
- Security
- System
4
Q
Where are the windows events log files stored?
A
- C:\windows\system32\winevt\logs
or - C:\windows\system32\Config
5
Q
Where are the Windows Event Log settings stored in the Register ?
A
They are stored in HKLM\SYSTEM\CurrentControlSet\ Services\EventLog