Documentation
¶
Overview ¶
Log Windows event logs as JSON in ECS.
Usage:
flog.evtx [-pqhv] [-D DIRECTORY] [FILE ...]
The flags are:
-D directory The log directory. -p Pretty JSON. -q Quiet mode. -h Show usage. -v Show version.
The arguments are:
file The event log file(s) to process. Defaults to STDIN if not given.
Click to show internal directories.
Click to hide internal directories.