IDS mailing list archives

RE: about a free opensource tools to catch the system calls


From: "Brian Azzopardi" <brian () unixpoet com>
Date: Sat, 18 Dec 2004 23:49:25 +0100


What you want is a strace for Windows. Bindview have a one, with source,
available at:
http://www.bindview.com/Support/RAZOR/Utilities/Windows/strace_readme.cfm

Regards,
Brian

-----Original Message-----
From: Zhuowei Li [mailto:zhuowei () gmail com] 
Sent: Thursday, December 16, 2004 10:54 AM
To: focus-ids () securityfocus com
Subject: about a free opensource tools to catch the system calls

Hello everybody,

I want to use most of the information in the system calls, such as the
arguments,  for behavior profiling using my own techniques, would you like
recommend me some open source tools under window platform to catch such
system calls and their related informations? Thanks.


--
Regards!

Sincerely yours,
Li Zhuowei
----------------------------------------------------------------------------
-
Email: zhwei.li () pmail ntu edu sg                           
More: http://www.cais.ntu.edu.sg/~zhuowei

--------------------------------------------------------------------------
Test Your IDS

Is your IDS deployed correctly?
Find out quickly and easily by testing it with real-world attacks from CORE
IMPACT.
Go to http://www.securityfocus.com/sponsor/CoreSecurity_focus-ids_040708
to learn more.
--------------------------------------------------------------------------




--------------------------------------------------------------------------
Test Your IDS

Is your IDS deployed correctly?
Find out quickly and easily by testing it with real-world attacks from 
CORE IMPACT.
Go to http://www.securityfocus.com/sponsor/CoreSecurity_focus-ids_040708 
to learn more.
--------------------------------------------------------------------------


Current thread: