PC Review


Reply
Thread Tools Rate Thread

command line: open saved event log?

 
 
Polaris
Guest
Posts: n/a
 
      17th Feb 2005
Hi:

Is there a way to open a saved eventlog (*.evt) from command line?

Thanks in Advance!
Polaris


 
Reply With Quote
 
 
 
 
Galen
Guest
Posts: n/a
 
      17th Feb 2005
In news:(E-Mail Removed),
Polaris <(E-Mail Removed)> had this to say:


> Hi:
>
> Is there a way to open a saved eventlog (*.evt) from command line?
>
> Thanks in Advance!
> Polaris


Here's what I did.

Save the *evt file where you will remember the location. Run and type in
that location and the name of the log that you want to open, in my case it
was test.evt and so I typed X:\test.evt and it opened. The first time it
asked me to pick what I wanted to open it with, I clicked browse, aimed at
the %WinDir%\System32\eventvwr.msc file, made that the default, gave it a
description ("Event Log File") and clicked okay. Then, to make sure it
worked, I ran the prompt again and it worked wonders.

Galen

--

"My mind rebels at stagnation. Give me problems, give me work, give me
the most abstruse cryptogram or the most intricate analysis, and I am
in my own proper atmosphere. I can dispense then with artificial
stimulants. But I abhor the dull routine of existence. I crave for
mental exaltation." -- Sherlock Holmes


 
Reply With Quote
 
Michael Bednarek
Guest
Posts: n/a
 
      17th Feb 2005
On Wed, 16 Feb 2005 18:52:57 -0800, "Polaris" <(E-Mail Removed)>
wrote in microsoft.public.win2000.cmdprompt.admin,
microsoft.public.windowsxp.security_admin:

>Is there a way to open a saved eventlog (*.evt) from command line?


DUMPEL.EXE from the Resource Kit:
DUMPEL -b -l saved.evt
See:
<http://www.microsoft.com/downloads/details.aspx?FamilyID=c9c31b3d-c3a9-4a73-86a3-630a3c475c1a>.

or PsLogList:
PsLogList -l saved.evt
from <http://www.sysinternals.com/ntw2k/freeware/psloglist.shtml>

--
Michael Bednarek http://mbednarek.com/ "POST NO BILLS"
 
Reply With Quote
 
Matthias Tacke
Guest
Posts: n/a
 
      17th Feb 2005
Polaris wrote:
> Is there a way to open a saved eventlog (*.evt) from command line?
>


Evt files are an input option of Logparser.
IMO a must to process any logfile with sql like queries with these
output formats: (snipped from the help file)
Generic Text File Output Formats
NAT: formats output records as readable tabulated columns.
CSV: formats output records as comma-separated values text.
TSV: formats output records as tab-separated or space-separated values text.
XML: formats output records as XML documents.
W3C: formats output records in the W3C Extended Log File Format.
TPL: formats output records following user-defined templates.
IIS: formats output records in the Microsoft IIS Log File Format.
Special-purpose Output Formats
SQL: uploads output records to a table in a SQL database.
SYSLOG: sends output records to a Syslog server.
DATAGRID: displays output records in a graphical user interface.
CHART: creates image files containing charts.


And even scriptable.
http://www.logparser.com
http://www.microsoft.com/downloads/d...displaylang=en

HTH

--
Gruesse Greetings Saludos Saluti Salutations
Matthias
---------+---------+---------+---------+---------+---------+---------+
 
Reply With Quote
 
Polaris
Guest
Posts: n/a
 
      18th Feb 2005
Thank you all very much for your help! I will use the dumpel for now.

Polaris

"Polaris" <(E-Mail Removed)> wrote in message
news:(E-Mail Removed)...
> Hi:
>
> Is there a way to open a saved eventlog (*.evt) from command line?
>
> Thanks in Advance!
> Polaris
>



 
Reply With Quote
 
 
 
Reply

Thread Tools
Rate This Thread
Rate This Thread:

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Event filter for command line WEVTUTIL on Vista Hong Windows Vista General Discussion 1 30th Oct 2008 06:01 AM
Output Event Log From Command Line =?Utf-8?B?c2VucmFiZGV0?= Windows Vista General Discussion 4 15th Aug 2006 03:23 AM
Dump event log to file using command line Chuck Windows XP Security 2 13th Jun 2006 06:12 PM
command line: open saved event log? Polaris Windows XP Security 4 18th Feb 2005 06:25 PM
Backup the event viewer files via command line? =?Utf-8?B?cGl0aGhlbG1ldA==?= Microsoft Windows 2000 Security 6 16th Nov 2004 03:18 PM


Features
 

Advertising
 

Newsgroups
 


All times are GMT +1. The time now is 04:55 PM.