Windows Events Attack Samples
翻译 - Windows 事件攻击示例
Pure Python parser for Windows Event Log files (.evtx)
A Fast (and safe) parser for the Windows XML Event Log (EVTX) format
C# based evtx parser with lots of extras
Set of EVTX samples (>270) mapped to MITRE ATT&CK tactic and techniques to measure your SIEM coverage or developed new use cases.
Event Tracing For Windows (ETW) Resources
Remove individual lines from Windows XML Event Log (EVTX) files
EVTXtract recovers and reconstructs fragments of EVTX log files from raw binary data, including unallocated space and memory images.
恶意软件日志合集