Skip to Content
Banner

Windows XML

Windows XML Event Log (EVTX) format is the structured logging format used by Windows operating systems to record Security, System, Application, and custom event log channels. It provides detailed structured data about system activities in a machine-parseable XML format. 

Windows XML event data encompasses all Windows security-relevant events including logon activities, privilege use, process creation, object access, and policy changes. Custom XML parsing enables extraction of specific event fields and attributes for security monitoring, particularly useful when standard log forwarding formats lose important event details. 

Sophos Products

Sophos MDR/XDR Integrations

Partner Technology

Monitoring & Reporting

Solution Category

Sophos MDR/XDR Integrations

Windows XML | Sophos Marketplace