Good monitoring sof...
 
Notifications
Clear all

Good monitoring software?

8 Posts
7 Users
0 Reactions
1,156 Views
(@jcroninirl)
New Member
Joined: 15 years ago
Posts: 2
Topic starter  

Hi, just wondering if anyone can recommend a good open-source tool for monitoring and comparing all system changes during application installs and uninstalls?


   
Quote
(@kovar)
Prominent Member
Joined: 18 years ago
Posts: 805
 

Greetings,

Microsoft's own SysInternals suite can do this for you, and a lot more.

http//technet.microsoft.com/en-us/sysinternals/bb842062

-David


   
ReplyQuote
(@emeeuk)
Active Member
Joined: 20 years ago
Posts: 16
 

Procmon, combines the old RegMon and FileMon is best I have come across.

http//technet.microsoft.com/en-us/sysinternals/bb896645


   
ReplyQuote
keydet89
(@keydet89)
Famed Member
Joined: 21 years ago
Posts: 3568
 

The last chapter of "Windows Forensic Analysis Toolkit, third edition" covers the topic of application testing and lists several useful (and free) tools.


   
ReplyQuote
(@Anonymous 6593)
Guest
Joined: 17 years ago
Posts: 1158
 

Hi, just wondering if anyone can recommend a good open-source tool for monitoring and comparing all system changes during application installs and uninstalls?

'Monitoring' … as in real-time? Or is it enough to compare system states before and after?

Open source … that probably restricts it to tools such as Tripwire, Osiris, Samhain, OSSEC, etc. They only 'monitor' at the file level, though. You'll need to disentangle individual changes to, say, registry files, in other ways.


   
ReplyQuote
(@jcroninirl)
New Member
Joined: 15 years ago
Posts: 2
Topic starter  

thanks for the help guys. don't think it needs to be real time monitoring, its for a thesis topic where i am comparing what artifacts a number of similar apps, that are installed on a system, leave behind


   
ReplyQuote
Passmark
(@passmark)
Reputable Member
Joined: 14 years ago
Posts: 376
 

We did a step by step article on identifying artifacts here,
http//www.osforensics.com/faqs-and-tutorials/identifying_uninstalled_software.html
(Is free, but not open source)


   
ReplyQuote
(@armresl)
Noble Member
Joined: 21 years ago
Posts: 1011
 

And those useful free tool names are?

The last chapter of "Windows Forensic Analysis Toolkit, third edition" covers the topic of application testing and lists several useful (and free) tools.


   
ReplyQuote
Share: