Tips to Monitor Registry Activity; Windows Tips


Today, I'll share you a bit of Windows tips. We'are talking about Windows registry now.The Registry is a database used to store settings and options for the Microsoft Windows Operating System.

It contains settings for low-level operating system components as well as the applications running on the Windows platform: the kernel, device drivers, services, SAM, user interface and third party applications all make use of the Registry.

Monitor the registry is an act that is extremely useful, especially for those of you lovers of the Windows operating system. Now I will explain the 2 Windows tips to monitor the registry, use registry auditing and registry monitor (regmon.exe).
Using registry auditing:
  1. Open the registry editor (regedit.exe).
  2. In the left pane, browse to the key you want to audit.
  3. Right-click the selected key, and select permissions.
  4. Click the Advanced button > Auditing > Add.
  5. Enter the object name, and select the type of auditing in the Auditing Entry.
  6. Click OK.
  7. Open Local Security snap-in (type "secpol.msc" in the Run dialog box)
  8. In the left pane go to Local Policies > Audit Policy.
  9. In the right pane, double-click on Audit object access.
  10. Check the box beside Success to audit successful actions or Failure to audit failure actions.
  11. OK.
Using the regmon.exe:
It’s quite simple, just download it from softpedia buddy.
OK, that's all. Hopefully it will usefull for you. See you in the next Windows tips .

1 comments: