python-evtx Logo

python-evtx

0
Free
Updated 11 March 2025
Visit Website

python-evtx is a pure Python parser for recent Windows Event Log files (those with the file extension ".evtx"). The module provides programmatic access to the File and Chunk headers, record templates, and event entries. For example, you can use python-evtx to review the event logs of Windows 7 systems from a Mac or Linux workstation. The structure definitions and parsing strategies were heavily inspired by the work of Andreas Schuster and his Perl implementation "Parse-Evtx".

FEATURES

SIMILAR TOOLS

An Event Hub to gather, process, and monitor system events and link them to an inventory.

Free

A service that analyzes and visualizes security data to investigate potential security issues.

Free

Open source security data lake for AWS with real-time log normalization and Detection-as-Code capabilities.

Free

GrokEVT is a tool for reading Windows event log files and converting them to a human-readable format.

Free

A compliant audit log tool that provides a searchable, exportable record of read/write events.

Free

A security information and event management solution that collects, normalizes, and analyzes log data from across an organization's infrastructure to enhance threat detection and compliance reporting.

Commercial

Elastic is a search-powered AI company that enables users to find answers from all data in real-time at scale.

Commercial

Python application to translate Zeek logs into ElasticSearch's bulk load JSON format with detailed instructions and features.

Free

A visualization app for hpfeeds logs.

Free
CyberSecTools logoCyberSecTools

Explore the largest curated directory of cybersecurity tools and resources to enhance your security practices. Find the right solution for your domain.

Operated by:

Mandos Cyber • KVK: 97994448

Netherlands • contact@mandos.io

Copyright © 2025 - All rights reserved