Analýza Windows Event Logs za účelem zjištění možné bezpečnostní hrozby

Abstract

The aim of this bachelor thesis is to compare the available tools for analyzing Windows Event Logs, to describe the installation and use of the most suitable tool. Part of the thesis is also the creation of a custom application that should serve as a comprehensive administration tool. The main motivation is the detection of non-standard behavior of the system, which should lead to~alerting of a possible security threat that could be present on the device.

Description

Subject(s)

Windows Event Logs, Windows Registers, Security threats

Citation