GrokEVT Logo

GrokEVT

0
Free
Updated 11 March 2025
Visit Website

GrokEVT is a collection of scripts built for reading Windows® NT/2K/XP/2K3 event log files. GrokEVT is released under the GNU GPL, and is implemented in Python. The scripts work together on one or more mounted Windows® partitions to extract all information needed (registry entries, message templates, and log files) to convert the logs to a human-readable format.

FEATURES

SIMILAR TOOLS

A compliant audit log tool that provides a searchable, exportable record of read/write events.

Free

Elasticsearch is a versatile platform for centralized data storage, fast search, and scalable analytics.

Free

Tool for deleting logs on Linux/Windows servers.

Free

A visualization app for hpfeeds logs.

Free

A tool collection for filtering and visualizing logon events, designed for experienced DFIR specialists in threat hunting and incident response.

Free

A toolset for collecting and processing netflow/ipfix and sflow data from netflow/sflow compatible devices.

Free

A tool that collects and displays user activity and system events on a Windows system.

Free

Python application to translate Zeek logs into ElasticSearch's bulk load JSON format with detailed instructions and features.

Free

Elastic is a search-powered AI company that enables users to find answers from all data in real-time at scale.

Commercial
CyberSecTools logoCyberSecTools

Explore the largest curated directory of cybersecurity tools and resources to enhance your security practices. Find the right solution for your domain.

Operated by:

Mandos Cyber • KVK: 97994448

Netherlands • contact@mandos.io

Copyright © 2025 - All rights reserved