libevt Logo

libevt

0
Free
Updated 11 March 2025
Visit Website

libevt is a library to access the Windows Event Log (EVT) format.The library provides a way to read and parse EVT files, which are used to store event logs in Windows operating systems.libevt is open-source and licensed under the LGPLv3+ license.It is currently in the alpha stage and has a wiki page with documentation and instructions on how to build from source.

FEATURES

SIMILAR TOOLS

Magnet ACQUIRE offers robust data extraction capabilities for digital forensics investigations, supporting a wide range of devices.

A digital investigation platform for parsing, searching, and visualizing evidences with advanced analytics capabilities.

A tool for discovering, analyzing, and remedying sensitive data

A reverse engineering framework with a focus on usability and code cleanliness

Rekall is a discontinued project that aimed to improve memory analysis methodology but faced challenges due to the nature of in-memory structure and increasing security measures.

DFIR ORC Documentation provides detailed instructions for setting up the build environment and deploying the tool.

Toolkit for post-mortem analysis of Docker runtime environments using forensic HDD copies.

A file search and query tool for ops and security experts.

Anti-forensics tool for Red Teamers to erase footprints and test incident response capabilities.

CyberSecTools logoCyberSecTools

Explore the largest curated directory of cybersecurity tools and resources to enhance your security practices. Find the right solution for your domain.

Operated by:

Mandos Cyber • KVK: 97994448

Netherlands • contact@mandos.io

VAT: NL005301434B12

Copyright © 2025 - All rights reserved