Title :
Vista event log file parsing based on XML technology
Author :
Xiaoyu, Huang ; Shunxiang, Wu
Author_Institution :
Dept. of Autom., Xiamen Univ., Xiamen, China
Abstract :
Microsoft Windows Vista operating system provides a new design of event log service, which is totally different with Windows NT operating system. It uses binary XML technology to organize the data. The structure of the event log file is complex and the information is not directviewing. This paper propose a solution that we adopt XML technology to parse Vista event log file and to present the result intuitively. The result can be applied into further computer forensics.
Keywords :
XML; operating systems (computers); security of data; tree data structures; Microsoft Windows Vista operating system; Windows NT operating system; binary XML technology; computer forensics; event log file parsing; tree data structure; Computer crime; Computer science; Digital filters; Forensics; Information filtering; Information filters; Magnetic heads; Operating systems; Space technology; XML; Binary XML; Vista Event log; file parsing;
Conference_Titel :
Computer Science & Education, 2009. ICCSE '09. 4th International Conference on
Conference_Location :
Nanning
Print_ISBN :
978-1-4244-3520-3
Electronic_ISBN :
978-1-4244-3521-0
DOI :
10.1109/ICCSE.2009.5228462