Full Disclosure mailing list archives
Re: Registry Watcher
From: Steve Menard <smenard () nbnet nb ca>
Date: Sun, 09 May 2004 08:47:48 -0300
Aditya, ALD [Aditya Lalit Deshmukh] wrote:
the common installation inserts and all programs have values that must be inserted. If a "watcher" would have a data base to follow and any odd or uncommon entries could be flagged. As far as I know all newly found viruses insert registry entries and these could be placed in a data base that wouldcause registry to deny and flag.viruses generally attack registry first because most of the application including os use registry for running properly.. so registry is the favorite target. but a virus can do much harm without changing registry also.hey for this sort of thing i use a program called as proport, it watches all the autostart up registry entries and alerts u when any new program is added to it. this program sits in the system tray so it is not obstrusive download it from www.tudpage.com u dont want regmon but proport for this sort of thing -aditya
I think it's supposed to be www.tdupage.com _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.netsys.com/full-disclosure-charter.html
Current thread:
- Registry Watcher RandallM (May 08)
- Re: Registry Watcher Marcel Krause (May 08)
- Re: Registry Watcher m . garg (May 08)
- RE: Registry Watcher "Kit" <full<dash>disclosure(at)smallfoxx (May 08)
- RE: Registry Watcher Aditya, ALD [Aditya Lalit Deshmukh] (May 08)
- Re: Registry Watcher Steve Menard (May 09)
- RE: Registry Watcher Alan Melia (Melmac) (May 09)
- Re: Registry Watcher David (May 08)
- Re: Registry Watcher Chris Porter (May 08)
- RE: Registry Watcher Aditya, ALD [Aditya Lalit Deshmukh] (May 08)
- Re: Registry Watcher Scott Manley (May 10)
- Re: Registry Watcher Troy Solo (May 11)
- RE: Registry Watcher Aditya, ALD [Aditya Lalit Deshmukh] (May 12)
- Re: Registry Watcher Scott Manley (May 10)
- Policy measurement and compliance tools n30 (May 09)