We currently use another method to archive the event logs off the workstations. They are compressed and archived away.
This tool looks like something we can use, however is it possible to analyse those .evt files and not the host? One other thing, we create our own Windows Event audit log is it possible to include that as in the analysis?