Honeypots mailing list archives

How to monitor events in Windows?


From: mybayern1974 () sjtu edu cn
Date: Fri, 02 Nov 2007 09:37:36 +0800

I want to know everything happend in my Windows box, including both local events and network events. Is there such a tool? I know sebek is a 
good choise, but unfortunately the sebek client is unable to work in windows box located in Virtual Machine like VMware. (It will cause 
"blue screen" when rebooting after finishing configuration.) Furthermore, I know another choice named "spector", but 
it's a commercial one.

So, is there any free one I can get?

Thanks in advance!



Current thread: