Skip to main content
Glama
x746b

Windows Forensics MCP Server

by x746b

evtx_search

Search Windows Event Logs (EVTX files) to filter events by time, Event ID, keywords, or provider for forensic analysis.

Instructions

Search events from EVTX file. Filter by time, Event ID, keywords, provider.

Input Schema

TableJSON Schema
NameRequiredDescriptionDefault
evtx_pathYes
event_idsNo
start_timeNoISO format datetime
end_timeNo
containsNo
not_containsNo
providerNo
limitNo

Latest Blog Posts

MCP directory API

We provide all the information about MCP servers via our MCP API.

curl -X GET 'https://glama.ai/api/mcp/v1/servers/x746b/winforensics-mcp'

If you have feedback or need assistance with the MCP directory API, please join our Discord server