强大的系统进程查看器,特色之处之一就是可以显示一个程序调用了那些动态链接库DLL,这样可以发现一些十分隐蔽的木马!还可以查看这个进程的路径,以及公司,版本等详细信息,多色彩表示服务进程,系统进程,目录树方式查看进程之间的归属关系,还可以替换系统自带的任务管理器.最新版支持Windows2003以及今后的64位操作系统,超前了!呵呵~!强烈推荐!请注意选择相应版本!





更新:
- The process column is locked on the left side so that it doesn't scroll horizontally out of view
- You can configure custom column selections and save them as easy-to-access column sets
- Image verification option now verifies images in the background
- More refresh intervals
- Runas menu entry in the File menu
- Run as Limited User menu entry in the File menu to run a process without administrative privileges and group membership
- Process menu includes Restart item to kill and then restart a selected process
- Can suspend individual threads on Threads page of Process Properties dialog
- The Find Window target moves Process Explorer's main window to the back to get it out of the way
- Close Window command uses same End Task functionality as Task Manager
- Show New Processes option scrolls display to make new processes visible
- Heuristics to detect more image packers
- User name of account in which Process Explorer is running is shown in the title bar
- Services can be stopped, resumed, and paused from the Services tab of the Process Properties dialog
- The DLLs that host SvcHost processes are listed in the Services tab of the Process Properties dialog
- Services running within a process display on the process' tooltip
- As a parallel to the CPU Usage History column there's now a Private Bytes Usage History column
- The Process view includes columns that show the working set breakdown of the process in shared, shareable and private pages
- New delta private-bytes column to show changes in private virtual memory usage
- Can copy lines from the Process, DLL and Handle views to the clipboard
- Option to show pagefile-backed (unnamed) sections in DLL view
- DLL and handle searching consolidated
- The DLL view includes columns that show the working set contributions in shared, shareable, and private pages
- The DLL a Rundll32 process hosts is shown in its process tooltip
- Packed DLL highlighting in DLL view
- Image signing verification available for DLLs
- Better DLL properties dialog
- Object address shown in Object Properties dialog
- File object share flags column for Handle view