Giters
EricZimmerman
/
evtx
C# based evtx parser with lots of extras
Geek Repo:
Geek Repo
Github PK Tool:
Github PK Tool
Stargazers:
247
Watchers:
25
Issues:
32
Forks:
60
EricZimmerman/evtx Issues
ForwardedEvents.evtx - Evtxecmd.exe processing errors
Updated
2 months ago
Comments count
13
Evtxecmd
Updated
3 months ago
Comments count
1
Pass event ID ranges
Closed
7 months ago
Comments count
3
TODO: Create Sysmon 28/29 Maps
Updated
8 months ago
Comments count
1
Add Regex support for Provider/Channel fields
Closed
a year ago
Comments count
12
Error unknown tag to build for OpCode: TokenCharRef2 (0x00000048)
Updated
2 years ago
Comments count
4
Group similar event in the same second
Closed
2 years ago
Comments count
4
UTC vs local timestamp variances in tools
Closed
2 years ago
Comments count
6
Linux support
Closed
2 years ago
Comments count
1
'Process Id' property not properly populated or configurable
Closed
2 years ago
Comments count
3
New map ideas
Closed
3 years ago
Comments count
24
.NET 5 support
Closed
3 years ago
Comments count
2
Nuget package
Closed
3 years ago
Comments count
1
'Provider' must not be empty
Closed
3 years ago
Comments count
3
Integer as string
Updated
3 years ago
Comments count
2
Integer instead of string
Closed
3 years ago
Comments count
2
error parse evtx as the map is empty
Closed
3 years ago
Comments count
3
Parsing issue with WMI 5860
Closed
3 years ago
Comments count
5
Maps: same Channel + Event ID, but different Providers
Closed
3 years ago
Comments count
11
xpath parsing error
Closed
3 years ago
Comments count
9
syntax errors with System1 and System42 maps
Closed
4 years ago
Comments count
5
Cannot search a directory EVTX files stored on deduplicated volume
Closed
4 years ago
Comments count
4
Powershell map to build for later
Closed
4 years ago
Comments count
2
Map to build - Windows PowerShell.evtx
Closed
4 years ago
Comments count
1
event parser
Closed
4 years ago
Comments count
1
Feature: Run under linux (wine)
Closed
4 years ago
Comments count
1
Start date and End date switches do not work correctly
Closed
4 years ago
Comments count
5
EventID qualifiers are throwing off ID inclusion/exclusion
Closed
5 years ago
Comments count
4
JSON: remove nulls and empty strings
Closed
5 years ago
Comments count
2
License
Closed
5 years ago
Comments count
1
Suggestion: Auto Generate Maps
Closed
5 years ago
Comments count
1
Error
Closed
5 years ago
Comments count
12