Skip to main content

Pure Python parser for recent Windows event log files (.evtx).

Project description

python-evtx is a pure Python parser for recent Windows Event Log files (those with the file extension “.evtx”). The module provides programmatic access to the File and Chunk headers, record templates, and event entries. For example, you can use python-evtx to review the event logs of Windows 7 systems from a Mac or Linux workstation. The structure definitions and parsing strategies were heavily inspired by the work of Andreas Schuster and his Perl implementation “Parse-Evtx”.

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distributions

python-evtx-0.3.2.zip (22.0 kB view details)

Uploaded Source

python-evtx-0.3.2.tar.gz (17.4 kB view details)

Uploaded Source

File details

Details for the file python-evtx-0.3.2.zip.

File metadata

  • Download URL: python-evtx-0.3.2.zip
  • Upload date:
  • Size: 22.0 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No

File hashes

Hashes for python-evtx-0.3.2.zip
Algorithm Hash digest
SHA256 661b6b154ba8ccacdd8689e29bc2f4cb1da46e22763b83035e556113255a3d7f
MD5 6376c0b025b337e5edfbbfd633ad48dc
BLAKE2b-256 192ebee36c9207591d68ebef2f08ab9d908c8b185a63fafda284dc9cf35b0c33

See more details on using hashes here.

File details

Details for the file python-evtx-0.3.2.tar.gz.

File metadata

  • Download URL: python-evtx-0.3.2.tar.gz
  • Upload date:
  • Size: 17.4 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No

File hashes

Hashes for python-evtx-0.3.2.tar.gz
Algorithm Hash digest
SHA256 16855130631aa7b21e0f80ec829ca3fdb9875c61ccf6cafececf54ec797a660d
MD5 58d31cff65fad2f44b132cf369f36f6d
BLAKE2b-256 ae0021e4afa26be239624679fa2df90158ad9415df474a7d975a23f231732925

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page