Penetration Testing mailing list archives

Tool to analyze Windows csvde dump file


From: Petr.Kazil () eap nl
Date: Sat, 4 Nov 2006 17:33:08 +0100

Last June I asked this list if a Windows audit tool might be interesting 
and reactions were positive. 

I have a pre-release version ready for download:
http://www.xs4all.nl/~kazil/testfiles/analyzecsvde/

If you dump your Windows Active Directory into a CSVDE file with the CSVDE 
command, you get a text file that contains a lot of interesting 
information. But it has a badly readable format and can be very big. 
Analyzecsvde reads this file and translates it into a set of more readable 
files that can be handy during (SOX-type) Windows audits. The program also 
includes a simple file viewer. If you know Dumpsec or Hyena-exporter the 
output will be directly recognizeable.

There is still a lot of functionality I want to add, but it has already 
proved useful during audits. More information is in the "readme" file.

For questions about the program you can contact me at my disposable mail 
address : spooklight () gmail com

Greetings, Petr Kazil

------------------------------------------------------------------------
This List Sponsored by: Cenzic

Need to secure your web apps?
Cenzic Hailstorm finds vulnerabilities fast.
Click the link to buy it, try it or download Hailstorm for FREE.
http://www.cenzic.com/products_services/download_hailstorm.php?camp=701600000008bOW
------------------------------------------------------------------------


Current thread: