There may be an application log file, temporary files that remain, or a persistent setting where the software opens up again to the last used directory. If you are trawling for specific issues you can export only the few days you need, then import it into something like Excel, use Find and Sort to pull out only the logs you want. VolumeId v2.1 (July 4, 2016) Set Volume ID of FAT or NTFS drives. The first one, FullEventLogView, displays in a table the details of all events from the event logs of Windows, including the event description.It allows you to view the events of your local computer, events of a remote computer on your network, and events stored in .evtx files. ... Identify the Failure Using Event Viewer. For example, if you’ve experienced the Blue Screen of Death (BSoD), the Event ID is usually 41, but the source will vary (Kernel-Power is a common one). ... the problems can be found by using various methods in Windows, but there is a useful little tool by NirSoft that can list both services and drivers from the same program. Use Event Viewer to examine the event log for details”. Do the same for the Applications log. It allows you to view the events of your local computer, events of a remote computer on … NirSoft has released two new tools for exploring Windows event logs. VMMap v3.31 (November 04, 2020) VMMap is a process virtual and physical memory analysis utility. 1. FullEventLogView - Free is a simple tool for Windows 10/8/7/Vista that displays in a table the details of all events from the event logs of Windows, including the event description. This lists the entries in the table format in the default order (most recent events at the top). MyEventViewer - Free - a simple alternative to the standard event viewer of Windows. Here are five free alternative event viewers to look at. Ignore it, not all Event Viewer errors can be corrected or are important. For a quick, no frills utility to view the Windows event logs, Nirsoft’s MyEventViewer is a good candidate for the job. TCPView v3.05 (July 25, 2011) Active socket command-line viewer. The AppLocker log contains information about applications that are affected by AppLocker rules. FullEventLogView - Free is a simple tool for Windows 10/8/7/Vista that displays in a table the details of all events from the event logs of Windows, including the event description. MyEventViewer. This topic lists AppLocker events and describes how to use Event Viewer with AppLocker. Copy and paste a log’s Event ID number from Event Viewer (or SnakeTail) into the search box on EventID.Net’s homepage, along with the Source (the program or service). Sysmon v12.03 (November 25, 2020) Monitors and reports key system activity via the Windows event log. For example: get-eventlog Application. You can then screen cap specific issues in the local Event viewer and reference the lines by date/time in the exported logs. It allows you to view the events of your local computer, events of a remote computer on … Thankfully there are other tools around that can view the event logs and make them easier to read. FullEventLogView is a new utility for Windows 10/8/7/Vista that displays in a table the details of all events from the event logs of Windows, including the event description. Event logs may show certain Services related to CD burning being started up and stopped. Could you perhaps elaborate on what you are trying to prove. Place the cursor on System, select Action from the Menu and Save All Events as (the default evtx file type) and give the file a name. To open a particular event log, use the command: get-eventlog [log name] Replace [log name] with the name of the log you are interested in viewing. TIP - Options - Advanced Filter allows you to see a time frame instead of the whole file - set it to a bit before and after the time of the BSOD. To access the System log select Start, Control Panel, Administrative Tools, Event Viewer, from the list in the left side of the window select Windows Logs and System. This little free utility makes it easier to read the Event logs especially at a certain time period.