Windows Event Logs Flashcards

1
Q

What are Windows Event Logs ?

A

Windows Event Logs are a feature in the windows OS that record system, security, and application events that occur on a computer or server. These logs can be used to diagnose problems, track system activity, and monitor security events.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Name the 5 windows events type.

A
  • Errors
  • Warnings
  • Information
  • Audit success
  • Audit failure
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Name the 3 main event logs.

A
  • Application
  • Security
  • System
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Where are the windows events log files stored?

A
  • C:\windows\system32\winevt\logs
    or
  • C:\windows\system32\Config
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Where are the Windows Event Log settings stored in the Register ?

A

They are stored in HKLM\SYSTEM\CurrentControlSet\ Services\EventLog

How well did you know this?
1
Not at all
2
3
4
5
Perfectly