PowerShell Windows Event Logs Cheat Sheet
Investigate Windows event logs with Get-WinEvent discovery, server-side hashtable filters, structured properties, XML, archived files, remote queries, and summaries.
Open cheat sheetWindows · 7 guides
Inventory, observe, troubleshoot, update, and govern Windows systems.
Focused references
Each guide includes copy-ready syntax, detailed examples, and authoritative references.
Investigate Windows event logs with Get-WinEvent discovery, server-side hashtable filters, structured properties, XML, archived files, remote queries, and summaries.
Open cheat sheetInventory Windows hardware, firmware, storage, networking, and operating-system facts safely with CIM sessions and PowerShell.
Open cheat sheetCollect, preserve, validate, and triage Windows kernel and user-mode crash dumps with WER, ProcDump, DumpChk, and WinDbg.
Open cheat sheetInspect, set, persist, remove, expand, and troubleshoot Windows environment variables and PATH across process, user, and machine scopes.
Open cheat sheetInventory, back up, stage, link, delegate, validate, and troubleshoot domain Group Policy safely with PowerShell, GPMC, RSoP, and controlled refreshes.
Open cheat sheetMeasure Windows CPU, memory, disk, network, and process behavior with bounded performance-counter collections and PowerShell diagnostics.
Open cheat sheetInventory, scan, stage, install, verify, and troubleshoot Windows updates with PowerShell, Windows Update Agent, DISM, event logs, and controlled reboots.
Open cheat sheet