A simple System monitor(Sysmon) EVTX inspector; search, visualize, and track Sysmon events
-
Updated
Jun 11, 2024 - Go
A simple System monitor(Sysmon) EVTX inspector; search, visualize, and track Sysmon events
This is a PySimpleGUI-based Python software tool for processing and visualising selected Windows Event Security.evtx log files that meet a condition in Event ID 4688.
A python 3 script to extract and re-create Powershell script block from windows event logs(evtx).
Add a description, image, and links to the evtx-analysis topic page so that developers can more easily learn about it.
To associate your repository with the evtx-analysis topic, visit your repo's landing page and select "manage topics."