Sysinternals Suite--微软实用工具包

介      绍: 没啥好介绍的,百度下一大堆。应急响应必备装备兵器库。

官网链接:http://technet.microsoft.com/en-US/sysinternals

下载地址:http://technet.microsoft.com/en-us/sysinternals/bb545027

功能介绍:http://technet.microsoft.com/en-us/sysinternals/bb545027

单文件下载:http://live.sysinternals.com/

Top10

    • Process Explorer

      • Find out what files, registry keys and other objects processes have open, which DLLs they have loaded, and more. This uniquely powerful utility will even show you who owns each process.

      • 进程查看器

    • AutoRuns

      • See what programs are configured to startup automatically when your system boots and you login. Autoruns also shows you the full list of Registry and file locations where applications can configure auto-start settings.

      • 开机启动项配置

    • Process Monitor

      • Monitor file system, Registry, process, thread and DLL activity in real-time.

      • 实时监视文件系统,注册表,进程,线程以及DLL的活动。可抓取进程指定分析

    • PsTools

      • The PsTools suite includes command-line utilities for listing the processes running on local or remote computers, running processes remotely, rebooting computers, dumping event logs, and more.

      • 大黑阔们内网再熟悉不过了,自查.

    • PageDefrag

      • Defragment your paging files and Registry hives.

      • 碎片整理

    • RootkitRevealer

      • Scan your system for rootkit-based malware.

      • RootKit扫描

    • TcpView

      • Active socket command-line viewer.

      • 必备TCP连接查看

    • BgInfo

      • This fully-configurable program automatically generates desktop backgrounds that include important information about the system including IP addresses, computer name, network adapters, and more.

      • 将系统IP地址、网络状况贴到桌面背景上,装逼神器

    • BlueScreen

      • This screen saver not only accurately simulates Blue Screens, but simulated reboots as well (complete with CHKDSK), and works on Windows NT 4, Windows 2000, Windows XP, Server 2003 and Windows 95 and 98.

      • 模拟蓝屏重启的桌面保护程序

    • Desktops

      • This new utility enables you to create up to four virtual desktops and to use a tray interface or hotkeys to preview what’s on each desktop and easily switch between them.

      • 虚拟桌面


你可能感兴趣的:(“Sysinternals,应急响应工具包,进程分析,Suite”)