Ratings and Reviews 0 Ratings

Total
ease
features
design
support

This software has no reviews. Be the first to write a review.

Write a Review

Ratings and Reviews 1 Rating

Total
ease
features
design
support

Alternatives to Consider

  • ManageEngine ADAudit Plus Reviews & Ratings
    619 Ratings
    Company Website
  • ThreatLocker Reviews & Ratings
    700 Ratings
    Company Website
  • Cerberus FTP Server Reviews & Ratings
    159 Ratings
    Company Website
  • ManageEngine ADManager Plus Reviews & Ratings
    706 Ratings
    Company Website
  • ESET PROTECT Advanced Reviews & Ratings
    2,304 Ratings
    Company Website
  • Criminal IP Reviews & Ratings
    457 Ratings
    Company Website
  • ManageEngine EventLog Analyzer Reviews & Ratings
    211 Ratings
    Company Website
  • CapLinked Reviews & Ratings
    224 Ratings
    Company Website
  • Admin By Request Endpoint Privilege Management Reviews & Ratings
    105 Ratings
    Company Website
  • Adaptive Security Reviews & Ratings
    91 Ratings
    Company Website

What is Quest Change Auditor?

Quest Change Auditor is an IT auditing, vulnerability monitoring, and security threat detection platform designed for Active Directory and hybrid Microsoft environments. It provides real-time visibility into important user, administrator, configuration, and authentication changes to help organizations identify potentially malicious activity and investigate security incidents. Change Auditor extends monitoring across Active Directory, Azure AD, Office 365, Windows Server, Exchange, SQL Server, network-attached storage, SharePoint, and OneDrive for Business. The platform detects indicators of compromise across AD and Azure AD while auditing suspicious activity across file servers, Office 365, and Exchange to identify attackers that may already be operating within the network. It can also monitor lateral movement and post-attack activity to provide security teams with additional context about the progression of an intrusion. Preventive controls can block unauthorized changes to critical groups, Group Policy settings and links, sensitive mailboxes, and the Active Directory database regardless of privileges an attacker has compromised. Built-in alerts identify indicators of compromise, while exposure assessments help organizations uncover vulnerabilities across Active Directory, Azure AD, and authentication activity. Change Auditor can detect common Kerberos authentication weaknesses associated with Golden Ticket and Pass-the-Ticket attacks and can send critical change and pattern alerts to email and mobile devices. Its auditing engine captures change information without depending solely on system-provided audit logs and converts events into normalized records showing who changed what, when, where, from which workstation, and the relevant before-and-after values. Threat timelines and related searches connect individual changes with surrounding events to support forensic analysis and security incident response.

What is CPTRAX for Windows?

File Activity Monitoring on Servers – Monitor who is creating, accessing, or transferring your files and directories, while also tracking changes to file permissions. Receive immediate notifications regarding critical file operations and contain malicious actions, such as ransomware attacks and mass file deletions. Automatically mitigate risks to your Windows servers by executing PowerShell scripts, allowing you to specify precise responses for various alerts and threats. Containment strategies could include: - Disabling the user responsible for the threat - Blocking the remote IP address associated with the threat Workstation File Activity Monitoring: Keep track of who transfers files to USB drives or other external storage devices. Monitor file uploads via FTP or web browsers and prevent file creation on USB or removable media. Get email alerts whenever a removable device is connected. Active Directory Monitoring – Maintain audit records and receive immediate alerts regarding significant changes in Active Directory, eliminating the need to navigate SACLs or Windows Event Logs. Server Authentication Monitoring: Observe authentications in Citrix sessions and Windows Servers, ensuring that all unsuccessful login attempts are logged and reviewed. Workstation Logon/Logoff Monitoring: Gain insight into user logon and logoff activities at workstations, which includes tracking locks, unlocks, and password changes, thereby enhancing overall security awareness. This comprehensive approach ensures that all user activity is recorded, providing a clearer picture of network interactions.

Media

Media

Integrations Supported

Active Directory
IBM QRadar SIEM
Microsoft 365
Microsoft Entra ID
Microsoft Exchange
Microsoft OneDrive
Microsoft SharePoint
Quest Identity Defense
SQL Server
Skype
Splunk Cloud Platform

Integrations Supported

Splunk Enterprise
Syslog-ng

API Availability

API Availability

Pricing Information

Pricing not provided
Free Trial Offered?

Pricing Information

Subscription and Perpetual pricing. Each module priced separately - only purchase what you need, except for workstation modules which require the corresponding server module.
Free Trial Offered?

Supported Platforms

SaaS

Supported Platforms

Windows

Customer Service / Support

Standard Support
Web-Based Support

Customer Service / Support

Standard Support

Training Options

Documentation Hub

Training Options

Documentation Hub
Webinars
Online Training

Company Facts

Organization Name

Quest Software

Date Founded

1987

Company Location

United States

Company Website

www.quest.com/change-auditor/

Company Facts

Organization Name

Visual Click Software

Date Founded

1999

Company Location

United States

Company Website

www.visualclick.com

Categories and Features

Digital Forensics

Not specified

Categories and Features

Audit

Alerts / Notifications
Audit Planning
Compliance Management
Dashboard
Forms Management
Risk Assessment

Compliance

Archiving & Retention
Audit Management
Compliance Tracking
FDA Compliance
HIPAA Compliance
ISO Compliance
Risk Management
Sarbanes-Oxley Compliance

Computer Security

Audit Trail
Compliance Management
File Access Control
Real Time Monitoring
Security Event Log

GDPR Compliance

Access Control
Incident Management
Risk Management

Identity Management

User Activity Monitoring

IT Alerting

Not specified

Log Management

Archiving
Audit Trails
Compliance Reporting
Consolidation
Data Visualization
Event Logs
Network Logs
Syslogs

Network Security

Access Control
Analytics / Reporting
Intrusion Detection System
Threat Response
Vulnerability Scanning

PCI Compliance

Access Control
Compliance Reporting
Log Management

Server Management

Event Logs
History Tracking
User Activity Monitoring
Virtual Machine Monitoring

Server Monitoring

Not specified

Popular Alternatives

Popular Alternatives

ShareWatcher Reviews & Ratings

ShareWatcher

CodeLine
Cygna Auditor Reviews & Ratings

Cygna Auditor

Cygna Labs
Change Auditor Reviews & Ratings

Change Auditor

Quest Software