Skip to main content

Pure Python parser for recent Windows event log files (.evtx).

Project description

python-evtx is a pure Python parser for recent Windows Event Log files (those with the file extension “.evtx”). The module provides programmatic access to the File and Chunk headers, record templates, and event entries. For example, you can use python-evtx to review the event logs of Windows 7 systems from a Mac or Linux workstation. The structure definitions and parsing strategies were heavily inspired by the work of Andreas Schuster and his Perl implementation “Parse-Evtx”.

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distributions

No source distribution files available for this release.See tutorial on generating distribution archives.

Built Distributions

python_evtx-0.5.0-py3.5.egg (50.8 kB view details)

Uploaded Egg

python_evtx-0.5.0-py2.7.egg (48.7 kB view details)

Uploaded Egg

File details

Details for the file python_evtx-0.5.0-py3.5.egg.

File metadata

File hashes

Hashes for python_evtx-0.5.0-py3.5.egg
Algorithm Hash digest
SHA256 abb9344e771565821592d52c2cb0680bc190398bd2e4bfc40a82b3b261c579fd
MD5 ed73346c5d98f30a89b13dfdea770985
BLAKE2b-256 0d82ea452097ca75e9006acca4da1adbd3bbbfb2fef593b6fb7c363f48443883

See more details on using hashes here.

File details

Details for the file python_evtx-0.5.0-py2.7.egg.

File metadata

File hashes

Hashes for python_evtx-0.5.0-py2.7.egg
Algorithm Hash digest
SHA256 737f622c4479c77b9668057c90203dd753e36d89778e404e0f2dd5288ebaba0c
MD5 5c6fce400b3ef86782ec2f1f82833b7d
BLAKE2b-256 63a0452517cf8d120efbfbcdf018745b113b195a68a8c27d57720221fafd8af5

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page