Sysinternals Process Monitor has an option to Enable Boot Logging, but bring your lunch if you use it.
I tried it on my box and it reported 74% of the events captured which were ~1.5 million and created a log file of ~224MB.
Interesting that Kaspersky's firewall can see this traffic and nothing else.(?)
--Michael
----- Original Message -----
From: <petr.maps_at_gfk-geomarketing.com>
To: <security-basics_at_securityfocus.com>
Sent: Monday, May 26, 2008 1:50 AM
Subject: Re: Any tools to log the traffic/process information on Windows startup?
> There are some good Programms from Microsoft
>
>
> Just download the whole Pack
>
>
> iT includes
>
> process scanner
>
> Portscanner
>
> Autostart Scanner
>
> Rootkit scanner
>
>
> Good Paket
>
> Sysinternals Suite
>
> By Mark Russinovich
>
> http://www.microsoft.com/germany/technet/sysinternals/utilities/SysinternalsSuite.mspx
>
>
Received on May 26 2008