iT邦幫忙

2018 iT 邦幫忙鐵人賽
0
Security

從接電話解任務開始到進入資安領域邊邊系列 第 32

接電話解任務(32/30): System information utilities更新中…

  • 分享至 

  • xImage
  •  

System information utilities
微軟家的系統資訊檢視工具
RAMMap

想知道記憶體都用到哪兒了嗎?
RAMMap可以告訴你,Windows指派多少實體記憶體、記憶體中有多少檔案的快取、處理器核心及設備驅動程式使用多少記憶體...等等。
載點https://docs.microsoft.com/en-us/sysinternals/downloads/rammap

Registry Usage (RU)
想知道註冊表都用在什麼地方嗎?
Registry Usage (RU)可以告訴你,註冊表空間使用情況。
載點https://docs.microsoft.com/en-us/sysinternals/downloads/ru

CoreInfo
想知道處理器和其它暫存檔資訊嗎?
CoreInfo可以告訴你,處理器和其它暫存檔情況。
載點https://docs.microsoft.com/en-us/sysinternals/downloads/CoreInfo

WinObj
想知道設備上的安全資訊嗎?
WinObj可以告訴你,系統安全情況。
載點https://docs.microsoft.com/en-us/sysinternals/downloads/winobj

LoadOrder
想知道系統加載設備驅動程序的順序嗎?
LoadOrder可以告訴你,系統加載設備驅動程序的順序。
載點https://docs.microsoft.com/en-us/sysinternals/downloads/loadorder

PipeList
想知道電腦上有哪些named pipe嗎?
LoadOrder可以告訴你,已存在的named pipe。
專有名詞翻成中文似乎不太對味,以下把原文也貼貼上來~~~

原文
Did you know that the device driver that implements named pipes is actually a file system driver" In fact, the driver's name is NPFS.SYS, for "Named Pipe File System". What you might also find surprising is that its possible to obtain a directory listing of the named pipes defined on a system. This fact is not documented, nor is it possible to do this using the Win32 API. Directly using NtQueryDirectoryFile, the native function that the Win32 FindFile APIs rely on, makes it possible to list the pipes. The directory listing NPFS returns also indicates the maximum number of pipe instances set for each pipe and the number of active instances.
載點https://docs.microsoft.com/zh-tw/sysinternals/downloads/pipelist

ClockRes
想知道多久跑一次嗎?
ClockRes可以告訴你,程序每隔多久執行或多久後執行。
專有名詞翻成中文似乎不太對味,以下把原文也貼貼上來~~~

原文Ever wondered what the resolution of the system clock was, or perhaps the maximum timer resolution that your application could obtain? The answer lies in a simple function named GetSystemTimeAdjustment , and the ClockRes applet performs the function and shows you the result.
載點https://translate.google.com.tw/translate?hl=zh-TW&sl=en&tl=zh-TW&u=https%3A%2F%2Fdocs.microsoft.com%2Fen-us%2Fsysinternals%2Fdownloads%2Fclockres&anno=2


上一篇
接電話解任務(31/30): Network and communication utilities
系列文
從接電話解任務開始到進入資安領域邊邊32
圖片
  直播研討會
圖片
{{ item.channelVendor }} {{ item.webinarstarted }} |
{{ formatDate(item.duration) }}
直播中

尚未有邦友留言

立即登入留言