Process Explorer v16.0

Status
Not open for further replies.

sid_16

Level 20
Thread author
Verified
Top Poster
Well-known
Jul 19, 2013
954
Introduction
Ever wondered which program has a particular file or directory open? Now you can find out. Process Explorer shows you information about which handles and DLLs processes have opened or loaded.

The Process Explorer display consists of two sub-windows. The top window always shows a list of the currently active processes, including the names of their owning accounts, whereas the information displayed in the bottom window depends on the mode that Process Explorer is in: if it is in handle mode you'll see the handles that the process selected in the top window has opened; if Process Explorer is in DLL mode you'll see the DLLs and memory-mapped files that the process has loaded. Process Explorer also has a powerful search capability that will quickly show you which processes have particular handles opened or DLLs loaded.

The unique capabilities of Process Explorer make it useful for tracking down DLL-version problems or handle leaks, and provide insight into the way Windows and applications work.

bb896653.processexplorer%28en-us,MSDN.10%29.jpg


bb896653.processexplorer2%28en-us,MSDN.10%29.jpg


Related Links
  • Windows Internals Book
    The official updates and errata page for the definitive book on Windows internals, by Mark Russinovich and David Solomon.
  • Windows Sysinternals Administrator's Reference
    The official guide to the Sysinternals utilities by Mark Russinovich and Aaron Margosis, including descriptions of all the tools, their features, how to use them for troubleshooting, and example real-world cases of their use.
Download


Download Process Explorer

Published: January 29, 2014

SOURCE- http://technet.microsoft.com/en-us/sysinternals/bb896653.aspx
 
  • Like
Reactions: Exterminator

Exterminator

Community Manager
Verified
Staff Member
Well-known
Oct 23, 2012
12,527
Process Explorer 16.0 now brings VirusTotal support to the program.

You can check a process with VirusTotal from process explorer in one of 2 ways.

Right click the process and form the context menu select check virustotal

Options...virustotal.com....check virustotal instead

0jkl.png


You can enable sending of unknown executables by going to options then virustotal.com.By doing this all unknown files are automatically sent to virustotal.com where they are scanned
 
  • Like
Reactions: sid_16

sid_16

Level 20
Thread author
Verified
Top Poster
Well-known
Jul 19, 2013
954
Status
Not open for further replies.

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top