DFIR Toolbox
Ctrl
K
Copy
Windows Forensic Artifacts
Windows Event Logs (WEvtx)
Using Chainsaw
Previous
Windows Event Logs (WEvtx)
Next
Using Hayabusa