evtx_get_stats
Analyze Windows Event Log (EVTX) files to extract event counts, time ranges, and Event ID distributions for forensic investigation.
Instructions
Get statistics about an EVTX file: event counts, time range, Event ID distribution.
Input Schema
TableJSON Schema
| Name | Required | Description | Default |
|---|---|---|---|
| evtx_path | Yes | Path to EVTX file |