Collecting Event Viewer logs
search cancel

Collecting Event Viewer logs

book

Article ID: 286875

calendar_today

Updated On:

Products

Carbon Black App Control (formerly Cb Protection) Carbon Black Cloud Endpoint Standard (formerly Cb Defense) Carbon Black Cloud Enterprise EDR (formerly Cb Threathunter) Carbon Black EDR (formerly Cb Response)

Issue/Introduction

To collect Event Viewer logs

Environment

  • Microsoft Windows: All Supported Versions

Resolution

  1. Click Start > Run > eventvwr > OK.
  2. In the left hand pane expand Windows Logs > right click Application > Save All Events As...
  3. Specify a location for the Application Logs.evtx file > Save.
  4. Choose: Display information for these languages > English > OK.
  5. In the left hand pane > Windows Logs > right click System > Save All Events As...
  6. Specify a location for the System Logs.evtx file > Save.
  7. Choose: Display information for these languages > English > OK.