{"repo":"EvotecIT/PSEventViewer","free":true,"listed":false,"github":"https://github.com/EvotecIT/PSEventViewer","clone":"git clone https://github.com/EvotecIT/PSEventViewer.git","description":"PSEventViewer (Get-Events) is really useful PowerShell wrapper around Get-WinEvent. One of the features you may be interested in is a simple way of getting “hidden” events data","language":"C#","stars":128,"topics":["powershell","events","viewer","windows","monitoring","activedirectory","wrapper","hacktoberfest"],"license":null,"category":"analytics","readme_excerpt":"PSEventViewer and EventViewerX High-performance Windows Event Log tooling for PowerShell and .NET. PSEventViewer is the thin PowerShell surface. EventViewerX is the reusable C# engine underneath it. Both use the Windows Event Log API directly for live, remote, and offline EVTX work; there is no bundled EVTX parser, EvtxECmd runtime, Rust engine, or provider-specific parsing dependency. Why use it - Stream local channels, remote channels, offline EVTX files, or structured QueryList XML without accumulating the complete result. - Push event ID, provider, time, record ID, level, keyword, user, and event-data filtering into the Windows query engine. - Choose exactly how much work each record needs: metadata, formatted message, structured payload, or the complete projection. - Request deterministic provider messages such as en-US , with explicit fallback and render status. - Query several hosts, channels, or files concurrently and merge results in a deterministic order with bounded memory. - Export directly to CSV, JSON Lines, XML, or native EVTX without passing one PowerShell object per event through a file pipeline. - Use native bookmarks, durable record checkpoints, subscriptions, watchers, provider and channel catalogs, classic log management, WEC subscription management, and both classic and manifest event writing. - Query named scenarios such as failed logons, lockouts, group changes, Kerberos failures, AAD Connect health, IIS failures, and OS crashes. Install The module sup","default_branch":null,"files":null,"tree":[],"storefront":"/r/EvotecIT","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/EvotecIT/PSEventViewer/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}