grokevt binary package in Ubuntu Jammy amd64
GrokEVT is a collection of scripts built for reading Microsoft Windows
NT/2000/XP/2003 event log files.
.
Currently the scripts work together on one or more mounted Microsoft Windows
partitions to extract all information needed (registry entries, message
templates, and log files) to convert the logs to a human-readable format.
.
This program is useful in forensics investigations.
Publishing history
Date | Status | Target | Component | Section | Priority | Phased updates | Version | ||
---|---|---|---|---|---|---|---|---|---|
2021-10-15 11:50:32 UTC | Published | Ubuntu Jammy amd64 | release | universe | utils | Optional | 0.5.0-5 | ||
|