Skip to main content

Pure Python parser for recent Windows event log files (.evtx).

Project description

python-evtx is a pure Python parser for recent Windows Event Log files (those with the file extension “.evtx”). The module provides programmatic access to the File and Chunk headers, record templates, and event entries. For example, you can use python-evtx to review the event logs of Windows 7 systems from a Mac or Linux workstation. The structure definitions and parsing strategies were heavily inspired by the work of Andreas Schuster and his Perl implementation “Parse-Evtx”.

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distributions

python-evtx-0.2.4.zip (20.1 kB view details)

Uploaded Source

python-evtx-0.2.4.tar.gz (16.7 kB view details)

Uploaded Source

File details

Details for the file python-evtx-0.2.4.zip.

File metadata

  • Download URL: python-evtx-0.2.4.zip
  • Upload date:
  • Size: 20.1 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No

File hashes

Hashes for python-evtx-0.2.4.zip
Algorithm Hash digest
SHA256 caa530e1793c939662944c99a624531ab350aee86f539b0a3440ba8442bdc7cb
MD5 410d9d0fc6f26f2ae69f4929ec768ddd
BLAKE2b-256 c3147490cc6b625cfca7cf303de6391ac87f2738b8b35ee655b6f9879ee8b597

See more details on using hashes here.

File details

Details for the file python-evtx-0.2.4.tar.gz.

File metadata

  • Download URL: python-evtx-0.2.4.tar.gz
  • Upload date:
  • Size: 16.7 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No

File hashes

Hashes for python-evtx-0.2.4.tar.gz
Algorithm Hash digest
SHA256 6be909758ffbc3bcc183864ddd91ac81f9e79987d3786044c55fd5cde64791b6
MD5 c26f2ee278fc9ad87accd47f75ea5655
BLAKE2b-256 2ba55bbec0b22015a7b09ff91ecdda64c7e7d09d3c55e652d88ab29e2ad6f730

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page