libevtx Logo

libevtx

0
Free
Visit Website

libevtx is a library to access the Windows XML Event Log (EVTX) format. It provides a way to access and parse EVTXML files, allowing for the extraction of useful information from Windows event logs. The library is written in C and provides a Python binding, making it a useful tool for digital forensics and incident response. It is licensed under the LGPLv3+ and is currently in the alpha stage, with multi-threading support planned for future development. For more information, users can access the project documentation and building instructions on the GitHub wiki.

FEATURES

ALTERNATIVES

Automated Mac Forensic Triage Collector

Python forensic tool for extracting and analyzing information from Firefox, Iceweasel, and Seamonkey browsers.

Second-order subdomain takeover scanner

AMExtractor is an Android Memory Extractor tool.

Custom built application for asynchronous forensic data presentation on an Elasticsearch backend, with upcoming features like Docker-based installation and new UI rewrite in React.

Windows event log fast forensics timeline generator and threat hunting tool.

An extensible network forensic analysis framework with deep packet analysis and plugin support.

A digital forensic tool for creating forensic images of computer hard drives and analyzing digital evidence.

CyberSecTools logoCyberSecTools

Explore the largest curated directory of cybersecurity tools and resources to enhance your security practices. Find the right solution for your domain.

Copyright © 2024 - All rights reserved