GrokEVT
GrokEVT is a tool for reading Windows event log files and converting them to a human-readable format.

GrokEVT
GrokEVT is a tool for reading Windows event log files and converting them to a human-readable format.
GrokEVT Description
GrokEVT is a collection of scripts built for reading Windows® NT/2K/XP/2K3 event log files. GrokEVT is released under the GNU GPL, and is implemented in Python. The scripts work together on one or more mounted Windows® partitions to extract all information needed (registry entries, message templates, and log files) to convert the logs to a human-readable format.
GrokEVT FAQ
Common questions about GrokEVT including features, pricing, alternatives, and user reviews.
GrokEVT is GrokEVT is a tool for reading Windows event log files and converting them to a human-readable format.. It is a Security Operations solution designed to help security teams with Windows, Log Management.
ALTERNATIVES
A tool that collects and displays user activity and system events on a Windows system.
A pure Python parser for Windows Event Log (.evtx) files that enables cross-platform forensic analysis of Windows system events.
POPULAR
TRENDING CATEGORIES
Stay Updated with Mandos Brief
Get strategic cybersecurity insights in your inbox