dissect.eventlog.evtx#

Module Contents#

Classes#

ElfChnk

Evtx

Microsoft Event logs

Attributes#

dissect.eventlog.evtx.log#
dissect.eventlog.evtx.evtx#
class dissect.eventlog.evtx.ElfChnk(d, path=None)#
read(records=True)#
class dissect.eventlog.evtx.Evtx(fh, path=None)#

Microsoft Event logs

__iter__()#