Microsoft has released a command-line tool Elogdmp.exe, Event Log Query Tool, as part of the Windows 2000 Resource Kit. You can use Elogdmp to display information from the Event Viewer logs of a local or remote Windows 2000-based computer. This tool dumps the contents of the log in comma-delimited format to the screen or to a file. You can then search the output to find and to view the information that you want. The information that Elogdmp displays include the following:
Date
Time
Source
Type
Category
Event ID
User
Computer
For example, to display the contents of the DNS server log on a computer named Server2 and to redirect the output to a file named Dnslog.txt, in the E:\Logs folder:
elogdmp server2 DNS Server > e:\logs\dnslog.txt