I've looked through and found a few apps that may be able to do what you're looking for. Hope it helps!
Splunk Visualizations
http://splunk-base.splunk.com/apps/22283/splunk-visualizations
Say for Splunk
http://splunk-base.splunk.com/apps/32473/say-for-splunk
... View more
I've got two lists for you, one is legible and the other is off Microsoft's site.
From WindowsITPro
http://www.windowsitpro.com/article/reporting2/where-are-the-security-event-id-s-listed-
From Microsoft
http://support.microsoft.com/kb/174074
The IT Pro link was drafted from Microsoft's page, but they cleaned it up a bit. Hope it helps
... View more
I haven't personally used that App, so I'm not sure but one option I would check for is if Splunk is configured to receive those files. Similar to the Add Data function in Search.
... View more
I was having a similar issue, running in Central time. I created a props.conf file within the C:\Program Files\Splunk\etc\system\local filepath with just the value TZ = UTC-6, Eastern would likely be UTC-5 and my timestamps are displaying correctly. Unfortunately I don't see my props.conf file in that directory anymore but the timestamps are still working correctly.
JC
... View more