EnglishFrenchSpanish

OnWorks favicon

grokevt-addlog - Online in the Cloud

Run grokevt-addlog in OnWorks free hosting provider over Ubuntu Online, Fedora Online, Windows online emulator or MAC OS online emulator

This is the command grokevt-addlog that can be run in the OnWorks free hosting provider using one of our multiple free online workstations such as Ubuntu Online, Fedora Online, Windows online emulator or MAC OS online emulator

PROGRAM:

NAME


grokevt-addlog - A tool for adding a raw event log to an existing GrokEVT database.

SYNOPSIS


grokevt-addlog database-dir evt-file new-type base-type .SH DESCRIPTION grokevt-addlog
takes a raw event log (.evt file) and adds it to a pre-built database generated by
grokevt-builddb(1). This new log file will be set up to use the message templates of
another log, as determined by the user.

This tool is primarily useful for processing deleted logs and log fragments found on a
system. While it is possible to use the database generated from one system with the logs
of another, this is not recommended for investigations unless no alternatives exist.

ARGUMENTS


grokevt-addlog uses the following arguments:

database-dir
The base directory for the database generated previously by grokevt-builddb(1).

evt-file
The file to be added to the database.

new-type
The new log type/name that evt-file will take on. This is the name that will need
to be used later with grokevt-parselog(1) to access the new log. This type must not
already exist in the database.

base-type
The existing log type that this new log will be based on. The message templates
from this type will be used with the new log when parsing. This type must exist in
the current database.

Use grokevt-addlog online using onworks.net services


Free Servers & Workstations

Download Windows & Linux apps

  • 1
    formkiq-core
    formkiq-core
    FormKiQ Core is an Open Source Document
    Management System (DMS), available to
    run as a headless software or with a
    web-based client, deployed to your
    Amazon We...
    Download formkiq-core
  • 2
    Blackfriday
    Blackfriday
    Blackfriday is a Markdown processor
    implemented in Go. It is paranoid about
    its input (so you can safely feed it
    user-supplied data), it is fast, it
    supports c...
    Download Blackfriday
  • 3
    QNAP NAS GPL Source
    QNAP NAS GPL Source
    GPL source for QNAP Turbo NAS.
    Audience: Developers. User interface:
    Web-based. Programming Language: C,
    Java. Categories:System, Storage,
    Operating System Ker...
    Download QNAP NAS GPL Source
  • 4
    deep-clean
    deep-clean
    A Kotlin script that nukes all build
    caches from Gradle/Android projects.
    Useful when Gradle or the IDE let you
    down. The script has been tested on
    macOS, but ...
    Download deep-clean
  • 5
    Eclipse Checkstyle Plug-in
    Eclipse Checkstyle Plug-in
    The Eclipse Checkstyle plug-in
    integrates the Checkstyle Java code
    auditor into the Eclipse IDE. The
    plug-in provides real-time feedback to
    the user about viol...
    Download Eclipse Checkstyle Plug-in
  • 6
    AstrOrzPlayer
    AstrOrzPlayer
    AstrOrz Player is a free media player
    software, part based on WMP and VLC. The
    player is in a minimalist style, with
    more than ten theme colors, and can also
    b...
    Download AstrOrzPlayer
  • More »

Linux commands

Ad