Analyze Windows event logs and EVTX files for forensics and threat hunting.
Copy the install command and let the AI configure it · recommended for beginners
No copy-paste install info for "mcp-hayabusa" yet — see the docs or source repo.
Analyze this Windows EVTX log, identify unusual logons, spikes in failed logins, and suspicious time windows, then summarize the key findings in English.
A list of suspicious logon events, time patterns, and a brief risk summary.
Check the event logs for possible lateral movement indicators, such as unusual remote logins or related account activity, and organize the results as a timeline.
A time-ordered set of suspicious events with related account details.
Generate a forensic summary from this EVTX file, highlighting important security events, anomalous patterns, and items worth further investigation.
An investigation-focused summary report with suggested follow-up checks.
Developers or DevOps users can query Windows event logs in natural language instead of writing complex filters. It is useful for quickly locating anomalies before deeper analysis.
When offline exported EVTX files need review, this tool supports forensic analysis and threat hunting. It is suitable for extracting suspicious activity clues and timelines from logs.
It connects Claude to Hayabusa for Windows event log forensics and threat hunting. Users can query and analyze EVTX files with natural language.
Based on the description, it supports Windows event log analysis and can work with EVTX files. For exact input methods, see the source repository.
It is known to rely on connecting Claude with Hayabusa and is intended for Windows event log analysis. For installation steps, system requirements, and other prerequisites, see the source repository.
Scan Windows EVTX logs and inspect Hayabusa detection rules in chat.
Analyze Windows EVTX logs and retrieve detection rules through Hayabusa tools.
Analyze log files with natural language to find errors and anomalies fast.
Analyze packet captures in natural language for protocols, flows, and threats.
Analyze PCAP captures with AI for network forensics and protocol troubleshooting.
Analyze files and browser artifacts for malware and security investigations.