table of contents
- Tumbleweed 20260705-1.1
- Leap-16.0
- Leap-15.6
| EVTINFO(1) | General Commands Manual | EVTINFO(1) |
NAME¶
evtinfo —
determines information about a Windows Event Log (EVT)
file
SYNOPSIS¶
evtinfo |
[-c codepage]
[-hvV] source |
DESCRIPTION¶
evtinfo is a utility to determine
information about a Windows Event Log (EVT) file
evtinfo is part of the
libevt package. libevt is a
library to access the Windows Event Log (EVT) format
source is the source file.
The options are as follows:
-ccodepage- codepage of ASCII strings, options: ascii, windows-874, windows-932, windows-936, windows-949, windows-950, windows-1250, windows-1251, windows-1252 (default), windows-1253, windows-1254, windows-1255, windows-1256, windows-1257 or windows-1258
-h- shows this help
-v- verbose output to stderr
-V- print version
ENVIRONMENT¶
None
FILES¶
None
EXAMPLES¶
# evtinfo AppEvent.Evt evtinfo 20260625 Windows Event Log (EVT) information: Version : 1.1 Number of records : 19 Number of recovered records : 0 Log type : Application Flags: Should be archived
DIAGNOSTICS¶
Errors, verbose and debug output are printed to stderr when verbose output -v is enabled. Verbose and debug output are only printed when enabled at compilation.
SEE ALSO¶
AUTHORS¶
Joachim Metz <joachim.metz@gmail.com>
BUGS¶
Please report bugs of any kind on the project issue tracker: https://github.com/libyal/libevt/issues
COPYRIGHT¶
Copyright (C) 2011-2026, Joachim Metz <joachim.metz@gmail.com>.
This is free software; see the source for copying conditions. There is NO warranty; not even for MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.
| June 25, 2026 | Linux 6.4.0-150700.53.73-default |