Skip to main content

Pure Python parser for recent Windows event log files (.evtx).

Project description

python-evtx is a pure Python parser for recent Windows Event Log files (those with the file extension “.evtx”). The module provides programmatic access to the File and Chunk headers, record templates, and event entries. For example, you can use python-evtx to review the event logs of Windows 7 systems from a Mac or Linux workstation. The structure definitions and parsing strategies were heavily inspired by the work of Andreas Schuster and his Perl implementation “Parse-Evtx”.

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distributions

No source distribution files available for this release.See tutorial on generating distribution archives.

Built Distributions

python_evtx-0.5.3-py3-none-any.whl (21.3 kB view details)

Uploaded Python 3

python_evtx-0.5.3-py2-none-any.whl (21.3 kB view details)

Uploaded Python 2

File details

Details for the file python_evtx-0.5.3-py3-none-any.whl.

File metadata

File hashes

Hashes for python_evtx-0.5.3-py3-none-any.whl
Algorithm Hash digest
SHA256 69748c541412b46ee7e362650de74ba74e84c6e380b3cdbddfe7c8898f581c54
MD5 eb2633c80edd14bc60c1cd78119fd973
BLAKE2b-256 41b3c3b0e5cdd964196bb43900799e46db51ef6ea81a99e2f47b5c65286e797e

See more details on using hashes here.

File details

Details for the file python_evtx-0.5.3-py2-none-any.whl.

File metadata

File hashes

Hashes for python_evtx-0.5.3-py2-none-any.whl
Algorithm Hash digest
SHA256 4b32c0e12f5a08f471166f8615f10e1ed8f1c13103923109f7c07da098c7e191
MD5 c54b1c08c0e03cb3ded937acdf29b0bd
BLAKE2b-256 e97552a51e0a1f4048309cb8caf42be5282748d7ac9611d6938b01b58a868401

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page