EventMeister is a Windows Event Log monitoring software that facilitates centralized analysis, archiving, and alerting for critical security issues and events. It meets audit requirements and helps with log data analysis.
One of the best features of EventMeister is that it is a centralized monitoring solution, and there is no need to install agents on the monitored PC's and servers. This saves you the hassle and time of installing unnecessary software. Furthermore, it gathers data from Windows Event Logs throughout your network, either in real-time or on a specified schedule.
EventMeister scans the received data, searching for entry patterns of importance. When it identifies such patterns, it performs several alerts and actions, including sending email, writing to a log, running scripts, batch files, or applications. It also displays popup messages and sound alerts, making it impossible for you to miss any significant event.
The EventMeister log viewer effectively presents gathered log data in a clear, easy to read format. It enables you to merge data from multiple logs for easier timeline analysis, filter, sort, and restructure columns, and create multiple views of the same data. You can also export the view in various formats such as text, csv, xml, formatted HTML reports, and RSS feeds, with just a click of a button.
Furthermore, EventMeister allows you to export data in various formats according to various triggers, making it easier for you to import data into a database or analysis application like Excel or Crystal Reports. You can even publish your event logs as RSS feeds! All in all, EventMeister is an excellent software that makes monitoring and analyzing Windows Event Logs an effortless task.
Version 3.0.8.0: - Updated email component. Can now send mail via a wider selection of servers and use SSL.
Version 3.0.6.0:
- Added new Date/Time tab to Event feed properties. Provides manual control over DST and timezone correction where needed (counters bugs in recent MS patches for Vista/Svr 2008)
FIX
- csv bug "Export to file".
- licensing bug on PCs with registry issues.
- date/time text parsing for 12 hr clock
Version 3.0.3.0:
- Automatic expansion of system error code placeholders in event log entries is no longer applied if the event message appears to contain a URL.
- Microsoft changed the ordering of events returned by WMI in Vista and Server 2008 with service pack 2 to bring it back in line with earlier versions
Version 3.0.1.0:
- Raised cap on notification sensitivity from 10 to 70
- Updated installer (some improvements for Vista)
Version 2.6.2:
- Added ability to change the text that is used to assign icons to event
types.
- Improved compatibility with hardware DEP on Vista.
Version 2.5.5:
- Notifications can now fire when new items have not been seen within a certain time period.
- Fix: Prevented rapid-fire poll failure notfications for event log feeds using "catch events as they arrive" method.
- Changes to help ensure correct app/svc synchronization at registration time
Version 2.5.1: - Added ability to insert placeholders for feed name, computer name etc. directly into the subject line of emailed notifications. The placeholders are replaced with the appropriate value when the email is sent.
Version 2.5:
- Added ability to set notification assignments while creating new feeds and editing exiting feeds
- Can now force all displays and reports to use 24hr format (Configure menu)
Version 2.4.1: Fix: Changes to ensure that the service's copy of the aggregate feed definition is always up-to-date.
Version 2.4:
- Major changes to make filtering and notification rules more powerful and flexible
- Improvements made to reduce memory usage when handling logs that receive new items very frequently
NOTE: This version changes the format for feed definitions. Please take a backup of your existing definitions prior to installing this update - instructions on how to do this are in the Help - see the section entitled "Backing up and Transferring Settings".