3

Autoruns v14.0, RDCMan v2.83, Procdump v10.11, dark theme updates, ProcExp v16.4...

 2 years ago
source link: https://techcommunity.microsoft.com/t5/sysinternals-blog/autoruns-v14-0-rdcman-v2-83-procdump-v10-11-dark-theme-updates/ba-p/2661936?WT_mc_id=DOP-MVP-4025064
Go to the source link to view the article. You can view the picture content, updated content and better typesetting reading experience. If the link is broken, please click the button below to view the snapshot at that time.
Autoruns v14.0, RDCMan v2.83, Procdump v10.11, dark theme updates, ProcExp v16.43 and Sysmon v13.24

Autoruns v14.0, RDCMan v2.83, Procdump v10.11, dark theme updates, ProcExp v16.43 and Sysmon v13.24

Published Aug 18 2021 11:12 AM 7,136 Views

Autoruns v14.0

Autoruns, a utility for monitoring startup items, is the latest Sysinternals tool to receive a UI overhaul including a dark theme.

RDCMan v2.83

This RDCMan update adds support for the Remote Desktop client from Windows 8.1+ and supports resizable sessions via automatic reconnect.

ProcDump v10.11

This update to ProcDump fixes a "The parameter is incorrect" error on Windows Server 2016 systems.

Winobj v3.11

WinObj, a utility for inspecting objects in the NT Object Manager’s namespace, receives a series of UI improvements related to the dark theme and general Windows 10 tweaks.

TCPView v4.14

TCPView, a utility for monitoring network connections on Windows systems, receives a series of UI improvements related to the dark theme and general Windows 10 tweaks.

Process Monitor v3.84

Process Monitor, a utility for observing in real time file system, Registry and process or thread activity, receives a series of UI improvements related to the dark theme and general Windows 10 tweaks.

Process Explorer v16.43

This update to Process Explorer fixes a memory leak in the handle properties dialog, includes a new label, "medium+" for process integrity levels and has some display tweaks for systems with large memory capacity.

Sysmon v13.24

This Sysmon update improves the handling of FileDelete and FileDeleteDetected events which solves systems becoming unresponsive under certain conditions.
6 Comments

‎Aug 18 2021 12:21 PM

‎Aug 18 2021 12:39 PM

‎Aug 19 2021 04:11 AM

‎Aug 19 2021 07:56 AM

‎Aug 19 2021 08:13 AM

‎Aug 19 2021 08:45 AM

You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.

%3CLINGO-SUB%20id%3D%22lingo-sub-2661936%22%20slang%3D%22en-US%22%3EAutoruns%20v14.0%2C%20RDCMan%20v2.83%2C%20Procdump%20v10.11%2C%20dark%20theme%20updates%2C%20ProcExp%20v16.43%20and%20Sysmon%20v13.24%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2661936%22%20slang%3D%22en-US%22%3E%3CDIV%3E%0A%3CP%3E%3CA%20href%3D%22https%3A%2F%2Fdocs.microsoft.com%2Fen-us%2Fsysinternals%2Fdownloads%2Fautoruns%22%20target%3D%22_self%22%20rel%3D%22noopener%20noreferrer%22%3E%3CSPAN%3EAutoruns%20v14.0%3C%2FSPAN%3E%3C%2FA%3E%3C%2FP%3E%0A%3CDIV%3E%3CSPAN%3EAutoruns%2C%20a%20utility%20for%20monitoring%20startup%20items%2C%20is%20the%20latest%20Sysinternals%20tool%20to%20receive%20a%20UI%20overhaul%20including%20a%20dark%20theme.%3C%2FSPAN%3E%3C%2FDIV%3E%0A%3CDIV%3E%26nbsp%3B%3C%2FDIV%3E%0A%3CP%3E%3CA%20href%3D%22https%3A%2F%2Fdocs.microsoft.com%2Fen-us%2Fsysinternals%2Fdownloads%2Frdcman%22%20target%3D%22_self%22%20rel%3D%22noopener%20noreferrer%22%3E%3CSPAN%3ERDCMan%20v2.83%3C%2FSPAN%3E%3C%2FA%3E%3C%2FP%3E%0A%3CDIV%3E%3CSPAN%3EThis%20RDCMan%20update%20adds%20support%20for%20the%20Remote%20Desktop%20client%20from%20Windows%208.1%2B%20and%20supports%20resizable%20sessions%20via%20automatic%20reconnect.%3C%2FSPAN%3E%3C%2FDIV%3E%0A%3CDIV%3E%26nbsp%3B%3C%2FDIV%3E%0A%3CP%3E%3CA%20href%3D%22https%3A%2F%2Fdocs.microsoft.com%2Fen-us%2Fsysinternals%2Fdownloads%2Fprocdump%22%20target%3D%22_self%22%20rel%3D%22noopener%20noreferrer%22%3E%3CSPAN%3EProcDump%20v10.11%3C%2FSPAN%3E%3C%2FA%3E%3C%2FP%3E%0A%3CDIV%3E%3CSPAN%3EThis%20update%20to%20ProcDump%20fixes%20a%20%22The%20parameter%20is%20incorrect%22%20error%20on%20Windows%20Server%202016%20systems.%3C%2FSPAN%3E%3C%2FDIV%3E%0A%3CDIV%3E%26nbsp%3B%3C%2FDIV%3E%0A%3CP%3E%3CA%20href%3D%22https%3A%2F%2Fdocs.microsoft.com%2Fen-us%2Fsysinternals%2Fdownloads%2Fwinobj%22%20target%3D%22_self%22%20rel%3D%22noopener%20noreferrer%22%3E%3CSPAN%3EWinobj%20v3.11%3C%2FSPAN%3E%3C%2FA%3E%3C%2FP%3E%0A%3CDIV%3E%3CSPAN%3EWinObj%2C%20a%20utility%20for%20inspecting%20objects%20in%20the%20NT%20Object%20Manager%E2%80%99s%20namespace%2C%20receives%20a%20series%20of%20UI%20improvements%20related%20to%20the%20dark%20theme%20and%20general%20Windows%2010%20tweaks.%3C%2FSPAN%3E%3C%2FDIV%3E%0A%3CDIV%3E%26nbsp%3B%3C%2FDIV%3E%0A%3CP%3E%3CA%20href%3D%22https%3A%2F%2Fdocs.microsoft.com%2Fen-us%2Fsysinternals%2Fdownloads%2Ftcpview%22%20target%3D%22_self%22%20rel%3D%22noopener%20noreferrer%22%3E%3CSPAN%3ETCPView%20v4.14%3C%2FSPAN%3E%3C%2FA%3E%3C%2FP%3E%0A%3CDIV%3E%3CSPAN%3ETCPView%2C%20a%20utility%20for%20monitoring%20network%20connections%20on%20Windows%20systems%2C%20receives%20a%20series%20of%20UI%20improvements%20related%20to%20the%20dark%20theme%20and%20general%20Windows%2010%20tweaks.%3C%2FSPAN%3E%3C%2FDIV%3E%0A%3CDIV%3E%26nbsp%3B%3C%2FDIV%3E%0A%3CP%3E%3CA%20href%3D%22https%3A%2F%2Fdocs.microsoft.com%2Fen-us%2Fsysinternals%2Fdownloads%2Fprocmon%22%20target%3D%22_self%22%20rel%3D%22noopener%20noreferrer%22%3E%3CSPAN%3EProcess%20Monitor%20v3.84%3C%2FSPAN%3E%3C%2FA%3E%3C%2FP%3E%0A%3CDIV%3E%3CSPAN%3EProcess%20Monitor%2C%20a%20utility%20for%20observing%20in%20real%20time%20file%20system%2C%20Registry%20and%20process%20or%20thread%20activity%2C%20receives%20a%20series%20of%20UI%20improvements%20related%20to%20the%20dark%20theme%20and%20general%20Windows%2010%20tweaks.%3C%2FSPAN%3E%3C%2FDIV%3E%0A%3CDIV%3E%26nbsp%3B%3C%2FDIV%3E%0A%3CP%3E%3CA%20href%3D%22https%3A%2F%2Fdocs.microsoft.com%2Fen-us%2Fsysinternals%2Fdownloads%2Fprocess-explorer%22%20target%3D%22_self%22%20rel%3D%22noopener%20noreferrer%22%3E%3CSPAN%3EProcess%20Explorer%20v16.43%3C%2FSPAN%3E%3C%2FA%3E%3C%2FP%3E%0A%3CDIV%3E%3CSPAN%3EThis%20update%20to%20Process%20Explorer%20fixes%20a%20memory%20leak%20in%20the%20handle%20properties%20dialog%2C%20includes%20a%20new%20label%2C%20%22medium%2B%22%20for%20process%20integrity%20levels%20and%20has%20some%20display%20tweaks%20for%20systems%20with%20large%20memory%20capacity.%3C%2FSPAN%3E%3C%2FDIV%3E%0A%3CDIV%3E%26nbsp%3B%3C%2FDIV%3E%0A%3CP%3E%3CA%20href%3D%22https%3A%2F%2Fdocs.microsoft.com%2Fen-us%2Fsysinternals%2Fdownloads%2Fsysmon%22%20target%3D%22_self%22%20rel%3D%22noopener%20noreferrer%22%3E%3CSPAN%3ESysmon%20v13.24%3C%2FSPAN%3E%3C%2FA%3E%3C%2FP%3E%0A%3CDIV%3E%3CSPAN%3EThis%20Sysmon%20update%20improves%20the%20handling%20of%20FileDelete%20and%20FileDeleteDetected%20events%20which%20solves%20systems%20becoming%20unresponsive%20under%20certain%20conditions.%3C%2FSPAN%3E%3C%2FDIV%3E%0A%3CDIV%3E%26nbsp%3B%3C%2FDIV%3E%0A%3C%2FDIV%3E%3C%2FLINGO-BODY%3E%3CLINGO-TEASER%20id%3D%22lingo-teaser-2661936%22%20slang%3D%22en-US%22%3E%3CDIV%3E%0A%3CDIV%3E%3CSPAN%3ELearn%26nbsp%3Babout%26nbsp%3Bthe%26nbsp%3Blatest%26nbsp%3Bupdates%26nbsp%3Bto%26nbsp%3BAutoruns%26nbsp%3Bv14.0%2C%26nbsp%3BRDCMan%26nbsp%3Bv2.83%2C%26nbsp%3BProcdump%26nbsp%3Bv10.11%2C%26nbsp%3BWinobj%26nbsp%3Bv3.11%2C%26nbsp%3BTcpview%26nbsp%3Bv4.14%2C%26nbsp%3BProcmon%26nbsp%3Bv3.84%2C%26nbsp%3BProcExp%26nbsp%3Bv16.43%26nbsp%3Band%26nbsp%3BSysmon%26nbsp%3Bv13.24%3C%2FSPAN%3E%3C%2FDIV%3E%0A%3C%2FDIV%3E%3C%2FLINGO-TEASER%3E%3CLINGO-SUB%20id%3D%22lingo-sub-2662327%22%20slang%3D%22en-US%22%3ERe%3A%20Autoruns%20v14.0%2C%20RDCMan%20v2.83%2C%20Procdump%20v10.11%2C%20dark%20theme%20updates%2C%20ProcExp%20v16.43%20and%20Sysmon%20v13%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2662327%22%20slang%3D%22en-US%22%3E%3CP%3EThanks%20for%20the%20updates!%3CBR%20%2F%3E%3CBR%20%2F%3EThe%20new%20Autoruns%20is%20not%20showing%20results%20in%20the%20Virustotal%20column%2C%20only%20when%20right-clicking%20an%20item%20%26amp%3B%20selecting%20'check%20virus%20total'%20the%20result%20shows%20up.%20refresh%20issue%3F%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-2662358%22%20slang%3D%22en-US%22%3ERe%3A%20Autoruns%20v14.0%2C%20RDCMan%20v2.83%2C%20Procdump%20v10.11%2C%20dark%20theme%20updates%2C%20ProcExp%20v16.43%20and%20Sysmon%20v13%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2662358%22%20slang%3D%22en-US%22%3E%3CP%3EBring%20back%20the%20old%20icons%20in%20ProcMon...seriously.%26nbsp%3B%20Why%20would%20you%20change%20the%20icons%2C%20like%20a%20magnifying%20glass%20to%20a%20box%20without%20full%20sides....makes%20absolutely%20no%20sense.%26nbsp%3B%20I%20actually%20went%20back%20to%20the%20old%20version%20of%20ProcMon%20because%20it%20annoyed%20me%20so%20much.%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EA%20toggle%20at%20least%20between%20the%20old%20and%20new%20interface...give%20me%20something!%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-2664593%22%20slang%3D%22de-DE%22%3ESubject%3A%20Autoruns%20v14.0%2C%20RDCMan%20v2.83%2C%20Procdump%20v10.11%2C%20dark%20theme%20updates%2C%20ProcExp%20v16.43%20and%20Sysmo%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2664593%22%20slang%3D%22de-DE%22%3E%3CP%3EAs%20Eric%20Moreau%20says.%20Autoruns%20does%20not%20do%20an%20automatc%20scan%20of%20all%20Entries%20on%20Startup%2C%20you%20have%20to%20select%20each%20entry.%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-2665633%22%20slang%3D%22en-US%22%3ERe%3A%20Autoruns%20v14.0%2C%20RDCMan%20v2.83%2C%20Procdump%20v10.11%2C%20dark%20theme%20updates%2C%20ProcExp%20v16.43%20and%20Sysmon%20v13%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2665633%22%20slang%3D%22en-US%22%3E%3CP%3E%3CA%20href%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fuser%2Fviewprofilepage%2Fuser-id%2F2967%22%20target%3D%22_blank%22%3E%40Erik%20Moreau%3C%2FA%3E%26nbsp%3B-%20although%20the%20VirusTotal%20column%20is%20always%20present%2C%20Autoruns%20doesn't%20check%20for%20VT%20results%20unless%20you%20request%20them.%20If%20you%20want%20VT%20results%20for%20all%20entries%2C%20choose%20Options%20%7C%20Scan%20Options%20and%20check%20the%20%22Check%20VirusTotal.com%22%20checkbox%20before%20running%20the%20scan.%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-2665721%22%20slang%3D%22de-DE%22%3ESubject%3A%20Autoruns%20v14.0%2C%20RDCMan%20v2.83%2C%20Procdump%20v10.11%2C%20dark%20theme%20updates%2C%20ProcExp%20v16.43%20and%20Sysmo%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2665721%22%20slang%3D%22de-DE%22%3E%3CP%3E%3CA%20href%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fuser%2Fviewprofilepage%2Fuser-id%2F689486%22%20target%3D%22_blank%22%3E%40AaronMargosis_Tanium%3C%2FA%3E%26nbsp%3B%3C%2FP%3E%3CP%3EThis%20function%20isn%20%CC%81t%20working%20since%20version%2014.0%2C%20the%20option%20is%20checked%20but%20don%20%CC%81t%20work%20after%20click%20on%20rescan.%20Back%20in%20v13.100%20its%20working%20like%20a%20charm.%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-2665857%22%20slang%3D%22en-US%22%3ERe%3A%20Autoruns%20v14.0%2C%20RDCMan%20v2.83%2C%20Procdump%20v10.11%2C%20dark%20theme%20updates%2C%20ProcExp%20v16.43%20and%20Sysmon%20v13%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2665857%22%20slang%3D%22en-US%22%3E%3CP%3E%3CA%20href%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fuser%2Fviewprofilepage%2Fuser-id%2F1132224%22%20target%3D%22_blank%22%3E%40Karl_Frosch%3C%2FA%3E%26nbsp%3B-%20OK%2C%20I'm%20seeing%20that%20too.%3C%2FP%3E%3C%2FLINGO-BODY%3E

Co-Authors
Version history
Last update:

‎Aug 18 2021 11:12 AM

Updated by:

About Joyk


Aggregate valuable and interesting links.
Joyk means Joy of geeK