summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
Diffstat (limited to 'app-admin/evtxtools')
-rw-r--r--app-admin/evtxtools/Manifest1
-rw-r--r--app-admin/evtxtools/evtxtools-1.1.1-r1.ebuild33
-rw-r--r--app-admin/evtxtools/metadata.xml8
3 files changed, 42 insertions, 0 deletions
diff --git a/app-admin/evtxtools/Manifest b/app-admin/evtxtools/Manifest
new file mode 100644
index 000000000000..45a5d31e78b7
--- /dev/null
+++ b/app-admin/evtxtools/Manifest
@@ -0,0 +1 @@
+DIST Parse-Evtx-1.1.1.zip 71351 SHA256 a1909810bedc709e2fa87f6603e52c62e60086bf1ce064bd839fc5873abf8512 SHA512 308fc3da4e9291f5f84cfbb0a2a17f92d45a2314d6b1806acb59e1a2d521041487a51a6e88e70c03a683df5a9442a30d8dc2483cf684cb96bb86f0a05f27e752 WHIRLPOOL 7f63774477d8497a7e54480341c6c51753c36173acb29d660f99225a9942a0ce77f279f61c63ac3cc8009afa721352daa32e647850e251466887fd8bbb98d07b
diff --git a/app-admin/evtxtools/evtxtools-1.1.1-r1.ebuild b/app-admin/evtxtools/evtxtools-1.1.1-r1.ebuild
new file mode 100644
index 000000000000..6b7675e483d6
--- /dev/null
+++ b/app-admin/evtxtools/evtxtools-1.1.1-r1.ebuild
@@ -0,0 +1,33 @@
+# Copyright 1999-2013 Gentoo Foundation
+# Distributed under the terms of the GNU General Public License v2
+# $Id$
+
+EAPI=5
+
+inherit perl-app perl-module
+
+MY_PN="Parse-Evtx"
+DESCRIPTION="Read, decode and dump Windows Vista/2008/7 event log file "
+HOMEPAGE="http://computer.forensikblog.de/en/topics/windows/vista_event_log"
+SRC_URI="http://computer.forensikblog.de/files/evtx/${MY_PN}-${PV}.zip"
+
+LICENSE="GPL-2"
+SLOT="0"
+KEYWORDS="amd64 x86"
+IUSE=""
+
+DEPEND="app-arch/unzip
+ dev-perl/DateTime
+ dev-perl/Digest-CRC
+ dev-perl/DateTime
+ dev-perl/Carp-Assert
+ dev-perl/Data-Hexify"
+
+RDEPEND="${DEPEND}"
+
+S="${WORKDIR}/${MY_PN}-${PV}"
+
+pkg_postinst() {
+ einfo "Consider the following as how-to:"
+ einfo "http://rwmj.wordpress.com/2011/04/17/decoding-the-windows-event-log-using-guestfish/"
+}
diff --git a/app-admin/evtxtools/metadata.xml b/app-admin/evtxtools/metadata.xml
new file mode 100644
index 000000000000..3d4b619e36fd
--- /dev/null
+++ b/app-admin/evtxtools/metadata.xml
@@ -0,0 +1,8 @@
+<?xml version="1.0" encoding="UTF-8"?>
+<!DOCTYPE pkgmetadata SYSTEM "http://www.gentoo.org/dtd/metadata.dtd">
+<pkgmetadata>
+ <maintainer>
+ <email>zlogene@gentoo.org</email>
+ <name>Mikle Kolyada</name>
+ </maintainer>
+</pkgmetadata>