author | Oleksandr Gavenko <gavenkoa@gmail.com> |
Fri, 07 Aug 2009 09:41:54 +0300 | |
changeset 174 | 08429bbf63d0 |
parent 155 | e475cd4f789a |
child 189 | a433d6009641 |
permissions | -rw-r--r-- |
155
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
1 |
-*- mode: outline -*- |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
2 |
|
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
3 |
* Dependency Walker. |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
4 |
|
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
5 |
Dependency Walker is a free utility that scans any 32-bit or 64-bit Windows |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
6 |
module (exe, dll, ocx, sys, etc.) and builds a hierarchical tree diagram of |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
7 |
all dependent modules. For each module found, it lists all the functions that |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
8 |
are exported by that module, and which of those functions are actually being |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
9 |
called by other modules. Another view displays the minimum set of required |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
10 |
files, along with detailed information about each file including a full path |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
11 |
to the file, base address, version numbers, machine type, debug information, |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
12 |
and more. |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
13 |
|
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
14 |
See |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
15 |
|
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
16 |
http://www.dependencywalker.com/ |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
17 |
|
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
18 |
* Kill process. |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
19 |
|
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
20 |
** tskill.exe. |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
21 |
|
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
22 |
cmd> tskill {<pid>|<name>} |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
23 |
|
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
24 |
** taskkill.exe. |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
25 |
|
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
26 |
cmd> taskkill /IM notepad.exe |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
27 |
cmd> taskkill /PID 827 |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
28 |
|
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
29 |
* lsof for Windows. |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
30 |
|
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
31 |
** handle.exe from Sysinternals. |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
32 |
|
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
33 |
cmd> handle d:\home |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
34 |
ispell.exe pid: 244 784: D:\home\drivers\token_api\src |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
35 |
Far.exe pid: 432 10C: D:\home\drivers\token_api |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
36 |
|
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
37 |
cmd> handle -p 1265 |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
38 |
C: File (RW-) C:\Program Files\Common Files\GTK\2.0\bin |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
39 |
288: Section \BaseNamedObjects\mmGlobalPnpInfo |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
40 |
|
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
41 |
** TaskList.exe. |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
42 |
|
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
43 |
cmd> TaskList |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
44 |
Process Name PID Session Name #Session Memory |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
45 |
========================= ====== ================ ======== ============ |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
46 |
System Idle Process 0 Console 0 28 KB |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
47 |
System 4 Console 0 236 KB |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
48 |
smss.exe 592 Console 0 432 KB |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
49 |
csrss.exe 656 Console 0 4 404 KB |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
50 |
winlogon.exe 680 Console 0 2 792 KB |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
51 |
services.exe 724 Console 0 3 260 KB |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
52 |
|
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
53 |
** netstat.exe. |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
54 |
|
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
55 |
cmd> netstat -o |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
56 |
Type Local addr Remote addr State PID |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
57 |
TCP user:1154 localhost:1153 ESTABLISHED 1512 |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
58 |
TCP user:5152 localhost:1052 CLOSE_WAIT 1524 |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
59 |
TCP user:1036 services.int:5222 ESTABLISHED 1188 |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
60 |
|
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
61 |
* Sysinternals. |
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
62 |
|
e475cd4f789a
Merged with conversion from CR/LF to LF.
Oleksandr Gavenko <gavenkoa@gmail.com>
parents:
143
diff
changeset
|
63 |