If auditing requirements mandate
that you must maintain a collection of saved logs, or if you simply
want to automate the clearing and warehousing of all your log data over
time, choose Event Archiver.
If you need to monitor your logs or syslog data for certain types of
activity in real-time, or if you only want to collect certain types of
events in a database, choose Event Alarm.
If you need a powerful tool to filter, export, and then report both
automatically or manually on your log data from a variety of sources,
choose Event Analyst.
Finally, Event Rover can be used as an on-the-fly event log tool
for forensics convenient for routine log data viewing and mining. Rover
is the perfect tool for simplifying repeated log review and sorting.
Think of Event Rover as a more robust alternative to the standard
Windows event viewer.