Issues
- 3
EVTX-Possible bug
#241 opened by bluDuckB3ar - 3
Integer as string
#99 opened by forensenellanebbia - 1
TODO: Create Sysmon 28/29 Maps
#224 opened by AndrewRathbun - 1
- 13
- 3
Pass event ID ranges
#230 opened by gregkutzbach - 12
Add Regex support for Provider/Channel fields
#215 opened by AndrewRathbun - 4
- 4
Group similar event in the same second
#181 opened by Tapiocapioca - 6
UTC vs local timestamp variances in tools
#193 opened by RduMarais - 1
Linux support
#136 opened by Eran-YT - 3
- 24
New map ideas
#71 opened by AndrewRathbun - 2
.NET 5 support
#134 opened by Eran-YT - 1
Nuget package
#133 opened by Eran-YT - 3
'Provider' must not be empty
#118 opened by antmar904 - 2
Integer instead of string
#98 opened by forensenellanebbia - 3
error parse evtx as the map is empty
#90 opened by naderhabbbab - 5
Parsing issue with WMI 5860
#64 opened by anelshaer - 11
- 9
xpath parsing error
#39 opened by hyuunnn - 5
syntax errors with System1 and System42 maps
#28 opened by lawrenpoh - 4
- 2
Powershell map to build for later
#23 opened by randomaccess3 - 1
Map to build - Windows PowerShell.evtx
#20 opened by randomaccess3 - 1
event parser
#22 opened by j2013t2013 - 1
Feature: Run under linux (wine)
#18 opened by vdun - 5
- 4
- 2
JSON: remove nulls and empty strings
#6 opened by philhagen - 1
- 1
Suggestion: Auto Generate Maps
#2 opened by tomrade - 12
Error
#1 opened by Banaanhangwagen