Skip to main content

Pure Python parser for recent Windows event log files (.evtx).

Project description

python-evtx is a pure Python parser for recent Windows Event Log files (those with the file extension “.evtx”). The module provides programmatic access to the File and Chunk headers, record templates, and event entries. For example, you can use python-evtx to review the event logs of Windows 7 systems from a Mac or Linux workstation. The structure definitions and parsing strategies were heavily inspired by the work of Andreas Schuster and his Perl implementation “Parse-Evtx”.

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distributions

No source distribution files available for this release.See tutorial on generating distribution archives.

Built Distributions

python_evtx-0.5.2-py3-none-any.whl (21.4 kB view details)

Uploaded Python 3

python_evtx-0.5.2-py2-none-any.whl (21.4 kB view details)

Uploaded Python 2

File details

Details for the file python_evtx-0.5.2-py3-none-any.whl.

File metadata

File hashes

Hashes for python_evtx-0.5.2-py3-none-any.whl
Algorithm Hash digest
SHA256 73b98e3dcb10afae1ec0b18f5cbbb2015232f8a5efbec214a4234dc498768091
MD5 093bceb74cc4db2018392ed156168cc4
BLAKE2b-256 699d6c8d98633304eb0e49057b7bba0e1b5e9bbb6dd085b8ce72e320b3ba8f53

See more details on using hashes here.

File details

Details for the file python_evtx-0.5.2-py2-none-any.whl.

File metadata

File hashes

Hashes for python_evtx-0.5.2-py2-none-any.whl
Algorithm Hash digest
SHA256 eb695f476a1cb4ef91863a3f2363b0d3c7e49c60ed301df4352b6a2b9160149a
MD5 4fcfad946700ec99d1f403b6d6c30bc9
BLAKE2b-256 2d9e9c5124f272ce795bcd382095ff2f5e983edf072f87ea6a5cd848234e3d41

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page