Skip to main content

Pure Python parser for recent Windows event log files (.evtx).

Project description

python-evtx is a pure Python parser for Windows Event Log files (those with the file extension “.evtx”). The module provides programmatic access to the File and Chunk headers, record templates, and event entries. For example, you can use python-evtx to review the event logs of Windows 7 systems from a Mac or Linux workstation. The structure definitions and parsing strategies were heavily inspired by the work of Andreas Schuster and his Perl implementation “Parse-Evtx”.

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

python-evtx-0.7.4.tar.gz (24.0 kB view details)

Uploaded Source

Built Distribution

python_evtx-0.7.4-py3-none-any.whl (35.3 kB view details)

Uploaded Python 3

File details

Details for the file python-evtx-0.7.4.tar.gz.

File metadata

  • Download URL: python-evtx-0.7.4.tar.gz
  • Upload date:
  • Size: 24.0 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/3.4.1 importlib_metadata/3.7.3 pkginfo/1.7.0 requests/2.25.1 requests-toolbelt/0.9.1 tqdm/4.59.0 CPython/3.9.2

File hashes

Hashes for python-evtx-0.7.4.tar.gz
Algorithm Hash digest
SHA256 693d441a2d9744c5d8d502f2bdeee468e087ea362ac8c8934b4187fb75e9ec14
MD5 35428cc4253d59db27d5ceae118171c4
BLAKE2b-256 7a0f02e95a23a9f9a68429af28b8bf90f067a02db65480144e25615ad3b147a7

See more details on using hashes here.

File details

Details for the file python_evtx-0.7.4-py3-none-any.whl.

File metadata

  • Download URL: python_evtx-0.7.4-py3-none-any.whl
  • Upload date:
  • Size: 35.3 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/3.4.1 importlib_metadata/3.7.3 pkginfo/1.7.0 requests/2.25.1 requests-toolbelt/0.9.1 tqdm/4.59.0 CPython/3.9.2

File hashes

Hashes for python_evtx-0.7.4-py3-none-any.whl
Algorithm Hash digest
SHA256 60ed71185750e9d64830b3bead48ad543242a6287781368e6bc11a32ef49ac46
MD5 c517af7e972b490e87bc2cf820e414d6
BLAKE2b-256 3d2b38756a77c025c1f74f1a7e0b976adc569ce0cbaf3be38d56d3a2cbbcd30f

See more details on using hashes here.

Supported by

AWS AWS Cloud computing and Security Sponsor Datadog Datadog Monitoring Fastly Fastly CDN Google Google Download Analytics Microsoft Microsoft PSF Sponsor Pingdom Pingdom Monitoring Sentry Sentry Error logging StatusPage StatusPage Status page