This project parses Windows Event Log (.evtx) files to extract
process-related events and reconstruct parent-child relationships
between processes.
It helps to make sense of Windows Event ID's and can help SOC team.
python3 analyzer.py
| Name | Name | Last commit date | ||
|---|---|---|---|---|