Check out
http://www.microsoft.com/technet/sysinternals/default.mspx
George
-----Original Message-----
From: listbounce_at_securityfocus.com [mailto:listbounce_at_securityfocus.com]
On Behalf Of mybayern1974_at_sjtu.edu.cn
Sent: Thursday, November 01, 2007 9:38 PM
To: honeypots_at_securityfocus.com
Subject: How to monitor events in Windows?
I want to know everything happend in my Windows box, including both
local events and network events. Is there such a tool? I know sebek is a
good choise, but unfortunately the sebek client is unable to work in
windows box located in Virtual Machine like VMware. (It will cause "blue
screen" when rebooting after finishing configuration.) Furthermore, I
know another choice named "spector", but it's a commercial one.
So, is there any free one I can get?
Thanks in advance!
Received on Nov 02 2007