Skip to main content

Pure Python parser for recent Windows event log files (.evtx).

Project description

python-evtx is a pure Python parser for recent Windows Event Log files (those with the file extension “.evtx”). The module provides programmatic access to the File and Chunk headers, record templates, and event entries. For example, you can use python-evtx to review the event logs of Windows 7 systems from a Mac or Linux workstation. The structure definitions and parsing strategies were heavily inspired by the work of Andreas Schuster and his Perl implementation “Parse-Evtx”.

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

python-evtx-0.2.2.zip (20.0 kB view details)

Uploaded Source

File details

Details for the file python-evtx-0.2.2.zip.

File metadata

  • Download URL: python-evtx-0.2.2.zip
  • Upload date:
  • Size: 20.0 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No

File hashes

Hashes for python-evtx-0.2.2.zip
Algorithm Hash digest
SHA256 20132eff1506dce9404060495351cb91fcae4e4c2bc64dd86d1d9f3b4508d986
MD5 de512c0fdcc6a713c429e5cd193c65a0
BLAKE2b-256 7570fa96272e9b6bc77caa69d77dffb2b4cb23588f26ed16ad7f90cff350c48b

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page