Skip to content
Sections
>> Trisquel >> Packages >> aramo >> utils >> grokevt
etiona  ] [  nabia  ] [  aramo  ]
[ Source: grokevt  ]

Package: grokevt (0.5.0-5)

Links for grokevt

grokevt

Trisquel Resources:

Download Source Package grokevt:

Maintainer:

Original Maintainers:

  • Debian Security Tools
  • Samuel Henrique

External Resources:

  • Homepage [projects.sentinelchicken.org]

Similar packages:

scripts for reading Microsoft Windows event log files

GrokEVT is a collection of scripts built for reading Microsoft Windows NT/2000/XP/2003 event log files.

Currently the scripts work together on one or more mounted Microsoft Windows partitions to extract all information needed (registry entries, message templates, and log files) to convert the logs to a human-readable format.

This program is useful in forensics investigations.

Other Packages Related to grokevt

  • depends
  • recommends
  • suggests
  • dep: python3
    interactive high-level object-oriented language (default python3 version)
  • dep: python3-pyregfi
    Python 3 Bindings for reglookup
  • dep: reglookup
    utility to analysis for Windows NT-based registry

Download grokevt

Download for all available architectures
Architecture Package Size Installed Size Files
all 34.0 kB121 kB [list of files]