Windows EVTX log analysis for DFIR — fast parsing, ATT&CK mapping, IOC extraction, and Sentinel anomaly detection. Normal + Juggernaut Mode (Arrow/DuckDB) for 10M+ events.
-
Updated
May 20, 2026 - Python
Windows EVTX log analysis for DFIR — fast parsing, ATT&CK mapping, IOC extraction, and Sentinel anomaly detection. Normal + Juggernaut Mode (Arrow/DuckDB) for 10M+ events.
EVTX Inspector - Browser-based Windows Event Log (.evtx) viewer and analyzer
Add a description, image, and links to the evtx-parser topic page so that developers can more easily learn about it.
To associate your repository with the evtx-parser topic, visit your repo's landing page and select "manage topics."