Close

Reply To: OCU C)DFE Week 02 Discussion

#86067
Kevin Mehok
Participant

IST2900 Digital Forensics Engineer
Week Two
Assignment #2
WK2 Event Log Discussion
Kevin Mehok

Hey Class,

There are countless Windows Event Logs that we could discuss, as long as none of us has the blue screen of death, then let’s get through a few of them.

1. Error: An event that indicates a significant problem such as loss of data or loss of functionality. For example, if a service fails to load during startup, an Error event is logged.

Example of an Error- an error event in the System log section may inform you which hardware driver crashed, which can help you pin down a buggy driver or a faulty hardware component.

2. Warning: An event that is not necessarily significant but may indicate a possible future problem. For example, when disk space is low, a Warning event is logged. If an application can recover from an event without loss of functionality or data, it can generally classify the event as a Warning event.

Example of a Warning- It indicates a potential issue that system administrators should keep an eye on, including low disk space warnings and security policy violations.

3. Information: An event that describes the successful operation of an application, driver, or service. For example, when a network driver loads successfully, it may be appropriate to log an Information event. Note that it is generally inappropriate for a desktop application to log an event each time it starts.

Example of an Information- Windows system event log contains events related to the system and its components. Failure to load the boot-start driver is an example of a system-level event.

I hope this helps! I am looking forward to learning more from my classmates.

God Bless,

Kevin

SUPPORT

Please Note:

The support ticket system is for technical questions and post-sale issues.

 

If you have pre-sale questions please use our chat feature or email information@mile2.com .

Cybersecurity Certifications for Today's INFOSEC Careers

Mile2 Cybersecurity Certifications is a world-leader in providing accredited education, training, and certifications for INFOSEC professionals. We strive to deliver the best course ware, the strongest Cyber Range, and the most user-friendly exam system in the market.

 

Our training courses follow our role-based Certification Roadmap. Plus, many of our classes include hands-on skill development in our Cyber Range.  We train students in penetration testing,disaster recovery, incident handling, and network forensics.  Additionally, our Information Assurance training certification meets military, government, private sector and institutional specifications.  

 

Accreditations

We've developed training for...

Canada Army Navy Airforce

The Canadian Department of National Defense

USAF

The United States Air Force

Defense Logistics Agency

A United States Counterintelligence Agency

Texas Workforce Commission

Texas Workforce Commission

error: Alert: Content is protected !!