http://msdn.microsoft.com/en-us/library/aa385650%28v=vs.85%29.aspx using EvtQuery function The difference is in the use of header. This approach is simpler but you will need to design either an XML or structured XML query.
http://msdn.microsoft.com/en-us/library/windows/desktop/bb427356%28v=vs.85%29.aspx If you need more flexibility in the format of the returned events (like time stamp format) use this approach. This is harder but gives more flexibility if you need control over the format of the extracted data.