Skip to content

Latest commit

 

History

History
30 lines (22 loc) · 541 Bytes

README.md

File metadata and controls

30 lines (22 loc) · 541 Bytes

Python Evtx Module

Python module for reading Windows Evtx files.

This file holds hard coded offsets from here.

Development

For development, start a venv and do:

$ pip3 install -e .

This will enable edit mode which is basically a hot reload version.

Testing

For running pytest, first do:

$ pip3 install -e .[test]

Then run:

$ pytest

or

$ pytest --file path/to/file.evtx