Windows Event Log (Windows Vista and later)

GPTKB entity

Statements (37)
Predicate Object
gptkbp:instanceOf event logging system
gptkbp:accessibleBy gptkb:Windows_Management_Instrumentation_(WMI)
gptkb:wevtutil
gptkb:PowerShell
gptkb:Event_Viewer
gptkbp:category Windows API
system administration
event logging
gptkbp:developedBy gptkb:Microsoft
gptkbp:fileExtension .evtx
https://www.w3.org/2000/01/rdf-schema#label Windows Event Log (Windows Vista and later)
gptkbp:introducedIn gptkb:Windows_Vista
gptkbp:numberOfLocations custom events
system events
security events
application events
gptkbp:provides XML-based event logs
event forwarding
event subscriptions
event log channels
gptkbp:replacedBy Event Log (Windows NT family)
gptkbp:supports event log archiving
event log backup
event log security
event log querying
structured XML data
custom event sources
event log filtering
event log subscriptions
gptkbp:usedIn gptkb:Windows_8
gptkb:Windows_10
gptkb:Windows_11
gptkb:Windows_7
gptkb:Windows_8.1
gptkb:Windows_Vista
gptkbp:bfsParent gptkb:Event_Log_(Windows_NT)
gptkbp:bfsLayer 7