Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos

Security Basics: Re: tool to log file access

Re: tool to log file access

From: H Carvey <keydet89_at_yahoo.com>
Date: 28 Feb 2005 11:21:43 -0000
('binary' encoding is not supported, stored as-is) In-Reply-To: <91FD9E3DC7F754489F7F83AC886B67AD0CE7DF8A_at_ESMADEXCH02.azertia.com>

>Is there any tool to log all files accesses that creates a report more =
>useful than the event log?

Use WMI to create a listener, waiting for file events...have it start watching at the root of the drive. If this is written in C# or in Perl (and then compiled via Perl2Exe), you could easily have it as a service.

H. Carvey
"Windows Forensics and Incident Recovery"
http://www.windows-ir.com
http://windowsir.blogspot.com
Received on Mar 01 2005

[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]