PaulDotCom mailing list archives

Sysinternals


From: Russell.Butturini at Healthways.com (Butturini, Russell)
Date: Thu, 11 Feb 2010 12:34:10 -0600

Absolutely.  Sysinternals tools are the BEST for forensics,
troubleshooting, systems management...Anything under the sun! I use
psinfo, psloggedon, pslist,listdlls, and logonsessions in my forensics
toolkit, and use process explorer as well when investigating malware.

 

________________________________

From: pauldotcom-bounces at mail.pauldotcom.com
[mailto:pauldotcom-bounces at mail.pauldotcom.com] On Behalf Of Tyler
Robinson
Sent: Thursday, February 11, 2010 12:27 PM
To: PaulDotCom Security Weekly Mailing List
Subject: Re: [Pauldotcom] Sysinternals

 

From both a white and grey hat perspective I love erd commander and
pstools especially psexec I would be lost without psexec.

        On Feb 11, 2010 11:23 AM, "Josh Ciceraro"
<josh.ciceraro at gmail.com> wrote:
        
        Hello,
        
        I was wondering if anyone here in the group uses any of the
sysinternals tools and what are some favorites.  I really like autoruns,
process explorer, and process monitor.  Disk2Vhd seems pretty promising,
though I haven't played with it yet.
        
        -- 
        kaizoku Josh
        
        _______________________________________________
        Pauldotcom mailing list
        Pauldotcom at mail.pauldotcom.com
        http://mail.pauldotcom.com/cgi-bin/mailman/listinfo/pauldotcom
        Main Web Site: http://pauldotcom.com


******************************************************************************
This email contains confidential and proprietary information and is not to be used or disclosed to anyone other than 
the named recipient of this email, 
and is to be used only for the intended purpose of this communication.
******************************************************************************
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://mail.pauldotcom.com/pipermail/pauldotcom/attachments/20100211/1aa6edd3/attachment.htm 


Current thread: