They are logged in event viewer.

Start -> Run -> eventvwr.msc

Click on Application and select the most recent winlogon entry.