Hello Mert,
The logs you took will be useful indeed:
System logs
Application logs
Security logs
Install logs using RTMT
Please make sure that they cover some time before and after the crash was experienced (although if the server is very active some of them could have been overwritten, normally 30 minutes before and after the crash are a good practice).
On top of those traces, please include the following :
Call Manager (SDI/SDL) traces
Perfmon logs (could be useful if the crash was related to High CPU or high memory utilization) -> Make sure you take data from the last 1-2 weeks to see its progress.
And if the Call Manager did crash, it will be very useful to have the following CLI outputs:
utils core active list
utils core analyze
Also, I suggest you also include these CLI outputs:
show hardware
show environment fans
show environment power-supply
show environment temperatures
show process load
utils diagnose test
I hope it helps,
German