RE: [Full-Disclosure] Windows Registry Analzyer

From: Todd Towles (toddtowles_at_brookshires.com)
Date: 03/03/05

  • Next message: Matt Marooney: "RE: [Full-Disclosure] Bios programming..."
    Date: Thu, 3 Mar 2005 13:19:35 -0600
    To: "Frank Knobbe" <frank@knobbe.us>, "Danny" <nocmonkey@gmail.com>
    
    

    Use RegMon for real-time Reg watching and try this product for Snapshot
    compares. I haven't used it but it looks to be fun and there is a
    write-up in PCWorld about it.

    ---------------------------------------------------
                            Readme file of Regshot 1.61 2002/03/30
                    ---------------------------------------------------
                            Please view whatsnew.txt for update info!

    -----------------
    Package includes:
    -----------------
    regshot.exe,language.ini,readme.txt,whatsnew.txt

    -----------------
    Introduction:
    -----------------
    RegShot is a small registry compare utility that allows you to quickly
    take a snapshot
    of your registry and then compare it with a second one - done after
    doing system changes
    or installing a new software product. The changes report can be produced
    in text or HTML
    format and contains a list of all modifications that have taken place
    between snapshot1
    and snapshot2.In addition, you can also specify folders (with sub
    filders) to be scanned
    for changes as well.In version 1.60+ you can save your whole registry in
    a *.hiv file for
    future use.
    Note: Regshot is a FREEWARE!

     http://regshot.yeah.net/

    PCWorld Page -
    http://www.pcworld.com/downloads/file_description/0,fid,19540,00.asp

    -Todd

    > -----Original Message-----
    > From: full-disclosure-bounces@lists.netsys.com
    > [mailto:full-disclosure-bounces@lists.netsys.com] On Behalf
    > Of Frank Knobbe
    > Sent: Thursday, March 03, 2005 11:54 AM
    > To: Danny
    > Cc: Full-Disclosure (E-mail)
    > Subject: Re: [Full-Disclosure] Windows Registry Analzyer
    >
    > On Thu, 2005-03-03 at 10:35 -0500, Danny wrote:
    > > Anyone know of any free tools to analyze what changes have
    > been made
    > > to a Windows 2000/XP registry?
    >
    > There used to be a company/product called Intact, which
    > provided change monitoring of Registry settings as part of
    > its HIDS offerings. I'm not sure if they are still around or
    > got bought. Unfortunately it's not a free tool though.
    >
    > Regards,
    > Frank
    >
    >

    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.netsys.com/full-disclosure-charter.html


  • Next message: Matt Marooney: "RE: [Full-Disclosure] Bios programming..."

    Relevant Pages

    • Re: Comparing old and new state data in an object?
      ... After a certain amount of processing, ... > compare after a particular event occurs. ... The snapshot is conceptually a different problem space ... way to identify [HistorySnapshot], such as a timestamp or a sequence ...
      (comp.object)
    • Re: error using lebans ReportToPDF
      ... This is an Access non Western language Snapshot registry entry issue. ... Here is a detailed explanation of the issue by a Spanish Access MVP: ... write a wrong entry in windows registry for the Snapshot Format. ...
      (microsoft.public.access.reports)
    • Re: Reading the registry
      ... I need my program to find a key in the registry. ... Compare one of the sub keys to a known value. ... enumerate the subkeys then open each in turn (RegOpenKey aggain) then read the B value from each. ...
      (microsoft.public.vb.winapi)
    • Re: Attach report to e-mail
      ... "The formats that enable you to output data as a Microsoft Excel, rich-text format, MS-DOS text, or HTML file are missing from the Windows Registry. ... The Event that is trigured when they click on the e-mail button in the database for SnapShot is as follows. ... Private Sub cmdEmailInspectionReport_Click ...
      (microsoft.public.access.modulesdaovba)
    • Re: Bug in Hot Keys for Input Languages
      ... I guess like Napoleon said, "If you want a thing done well, do it ... So I took a snapshot of the registry before configuring a ... and another snapshot after assigning the hot key. ... 1/ Open Registry and go to the key I mentionned above. ...
      (microsoft.public.windowsxp.customize)