Skip to main content
Glama
x746b

Windows Forensics MCP Server

by x746b

evtx_security_search

Search Windows Event Logs (EVTX) for specific security events like logon attempts, process creation, or account changes to support forensic investigations.

Instructions

Search for security events by type: logon, failed_logon, process_creation, etc.

Input Schema

TableJSON Schema
NameRequiredDescriptionDefault
evtx_pathYes
event_typeYes
limitNo

Latest Blog Posts

MCP directory API

We provide all the information about MCP servers via our MCP API.

curl -X GET 'https://glama.ai/api/mcp/v1/servers/x746b/winforensics-mcp'

If you have feedback or need assistance with the MCP directory API, please join our Discord server