Skip to main content

Pure Python parser for recent Windows event log files (.evtx).

Project description

python-evtx is a pure Python parser for recent Windows Event Log files (those with the file extension “.evtx”). The module provides programmatic access to the File and Chunk headers, record templates, and event entries. For example, you can use python-evtx to review the event logs of Windows 7 systems from a Mac or Linux workstation. The structure definitions and parsing strategies were heavily inspired by the work of Andreas Schuster and his Perl implementation “Parse-Evtx”.

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distributions

python-evtx-0.2.3.zip (20.0 kB view details)

Uploaded Source

python-evtx-0.2.3.tar.gz (16.3 kB view details)

Uploaded Source

File details

Details for the file python-evtx-0.2.3.zip.

File metadata

  • Download URL: python-evtx-0.2.3.zip
  • Upload date:
  • Size: 20.0 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No

File hashes

Hashes for python-evtx-0.2.3.zip
Algorithm Hash digest
SHA256 eda7c34920af61ce6524467b1507b6df140cf2defa92b654cc6ff041a9fae685
MD5 9ea15fd7c58a4cac325d81a9f3b8ab0f
BLAKE2b-256 050deb7740ec7dbf2688e6d2a5758031263d3a5691ffba4b91e2460b6fdae9b7

See more details on using hashes here.

File details

Details for the file python-evtx-0.2.3.tar.gz.

File metadata

  • Download URL: python-evtx-0.2.3.tar.gz
  • Upload date:
  • Size: 16.3 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No

File hashes

Hashes for python-evtx-0.2.3.tar.gz
Algorithm Hash digest
SHA256 d101f95d000ecb0ec1b4d6c52775e824160450203d45edc599bdfe979ae1c202
MD5 f451b8c7a360e5244985360bd633a95b
BLAKE2b-256 5f4bee12005d84e4e6180a39a1dfa9a097457c634de5f4f13d272d231eb2f83c

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page