GrokEVT 0.5.0

A collection of scripts for reading Windows event log files

  Add it to your Download Basket!

 Add it to your Watch List!

0/5

Rate it!

What's new in GrokEVT 0.5.0:

  • This is a major code refresh release to catch up with the times. grokevt-builddb has been redesigned to use RegLookup's pyregfi library instead of executing the command line tools. A work-around has been added for the fact that many Linux distributions no longer make case-insensitive filesystem mounts easy. Support jas been added for Python 3. The license has been changed to the GPLv3. There are various Unicode fixes and other bugfixes.
Read full changelog
send us
an update
LICENSE TYPE:
GPL (GNU General Public License) 
USER RATING:
2.3/5 16
DEVELOPED BY:
Tim Morgan
HOMEPAGE:
www.sentinelchicken.org
CATEGORY:
ROOT \ System \ Logging
1 GrokEVT Screenshot:
GrokEVT
GrokEVT is a collection of scripts built for reading Windows NT event log files. GrokEVT is released under the GNU GPL, and is implemented in Python. GrokEVT is loosely based on the PHP script and documentation provided by Jamie French.

Currently the scripts work together on one or more mounted Windows partitions to extract all information needed (registry entries, message templates, and log files) to convert the logs to a human-readable format.

Last updated on June 21st, 2011

requirements

#collection of scripts #Windows event log files reader #log reader #GrokEVT #Windows #log #files

Add your review!

SUBMIT