Examining Applications and Services Logs
Since the first version of Windows NT in 1993, anytime anything happens on Windows, the component responsible writes details to an event log. In the earlier versions of Windows Server, there were four different Windows logs:
Application
: holds events related to software you have installed on the serverSecurity
: holds events related to the security of your serverSetup
: holds events related to Knowledge Base (KB) installation and events that occurred during installationSystem
: holds events that relate to this system, such as system start and system shut down
As well as these logs, other applications and features can add additional logs. You can see the classic and the additional logs using the Windows PowerShell Get-Eventlog
cmdlet.
With Window Vista, Microsoft made some significant improvements to the event logging features. A substantial improvement was adding the Applications and Services Logs...