List Question
20 TechQA 2023-12-06T14:22:46.237000What does Windows IOCTL code 0x83350048 do?
176 views
Asked by 埃博拉酱
What does the "QueryDeviceInformationVolume" operation in Process Monitor mean?
43 views
Asked by JDeckSQL
Cancel movefile operation
99 views
Asked by Jacoblightning3
Why are the PID results in Task manager and netstat different?
103 views
Asked by Kentaro T. Vadney
Shrink Disk and NTFS MetaFile Defragmentation ($BITMAP)
229 views
Asked by Marc
How does pskill work across the UAC/elevation boundary?
161 views
Asked by Martin Ba
How to view a device driver stack?
550 views
Asked by Arseniy
How to close a specific handle that is an "Event" Type in Sysinternals?
345 views
Asked by Jam The Adventurer
Active-Passive IIS Infrastructure
176 views
Asked by Can Yıldırmaz
Process stdout capture for Autoruns
136 views
Asked by MrHorsePower
How to check the amount of shared memory allocated by a particular process in windows
354 views
Asked by Mithun Murthy
How to log cmd.exe built-in commands to Sysmon or Windows Event Logs?
2.3k views
Asked by Brandon Mesa
how can i observe interaction/communication between a process (user land) and a driver in windows
89 views
Asked by L10N L10N
Serial port blocked by none process
3.4k views
Asked by Vic Espino
Process handles monitoring
358 views
Asked by Jose Maria Garcia
In windows, Why the handle value is in multiple of 4?
383 views
Asked by pralaynath_gainda_swamy
Procmon produces corrupt output file
856 views
Asked by jmbouffard