GrokEVT is a collection of scripts for reading Windows event log files. The scripts work together on one or more mounted Windows partitions to extract all information needed (registry entries, message templates, and log files) to convert the logs to a human-readable format.
d44daa84a731f3c4de221af790d4c816
Comments
No comments yet, be the first!