Windows Sysinternals

El sitio web de Sysinternals lo crearon en 1996 Mark Russinovich y Bryce Cogswell para alojar sus utilidades de sistema avanzadas, junto con información técnica. En julio de 2006, Microsoft adquirió Sysinternals. Tanto profesionales como desarrolladores de TI encontrarán utilidades en Sysinternals para facilitar la administración y el diagnóstico de sistemas y aplicaciones de Windows, así como la solución de problemas que pudieran surgir al respecto. Si tiene alguna duda sobre una herramienta o sobre cómo utilizarla, visite el foro de Sysinternals para encontrar respuestas y ayuda de otros usuarios o de nuestros moderadores.

  • Utilidades de disco y archivos

    Utilidades para ver y supervisar el acceso a los discos y archivos, así como el uso que se hace de ellos.

  • Red

    Herramientas de red, desde monitores de conexión a analizadores de seguridad de recursos.

  • Procesos y subprocesos

    Utilidades para consultar de forma subyacente los procesos en ejecución y los recursos que consumen.

  • Utilidades de seguridad

    Utilidades de administración y configuración del sistema de seguridad, con programas de rootkit y de captura de spyware.

  • Información del sistema

    Utilidades para consultar el uso y la configuración de los recursos del sistema.

  • Varios

    Una colección de utilidades variadas que incluye un protector de pantalla, ayuda de presentación y una herramienta de depuración.


Update: Autoruns v13.01
Autoruns v13.01 This release fixes a bug in v13 that caused autostart entry lines not to show when you enter a filter string into the toolbar's filter control
Update: Autoruns v13.0
Autoruns v13.0 This major update to Autoruns, an autostart execution point (ASEP) manager, now has integration with to show the status of entries with respect to scans by over four dozen antimalware engines. It also includes a revamped scanning architecture that supports dynamic filters, including a free-form text filter, a greatly improved compare feature that highlights not just new items but deleted ones as well, and file saving and loading that preserves all the information of a scan
Updates: Sysmon v2.0, Accesschk v5.21, RU v1.1
Sysmon v2.0This major update to Sysmon, a service that records process activity to the Windows event log for use by incident detection and forensic analysis, includes driver load and image load events with signature information, configurable hashing algorithm reporting, flexible filters for including and excluding events, and support for supplying configuration via a configuration file instead of the command line. AccessChk v5.21This update to Accesschk, a command-line utility that shows effective and actual permissions for registry keys, files, services, kernel objects, and more, adds an option to report permissions as SDDL strings, adds new process permission types, and fixes a bug with showing process security descriptors. RU v1.1RU (Registry Usage), a command-line tool that shows registry usage by key, now supports loading hive files (with the side-effect of compressing them when done) and reports last write timestamp in CSV output.
Updates: Handle v4.0. Procdump v7.01, Procexp v16.04, Regjump v1.02, Autoruns v12.03
Handle v4: Handle is a command-line utility that can show which processes have a handle to a file or other resource open, or show all open handles. Version 4 now works with standard-user rights, allowing standard users to identify the handles open by their processes. ProcDump v7.01: This release fixes several bugs, including one that affects the UI hang trigger, one that causes misnamed dump files for reflected dumps, and another that would cause .NET applications Procdump monitors for first-chance exceptions to terminate with Procdump. Process Explorer v16.04: This update fixes a bug in Virus Total file submission that could cause a crash, and now shows Windows Store package names on the Image page of the process properties dialog. RegJump v1.02: Regjump, a utility that opens Regedit to the registry key specified as a command-line argument, now works on 64-bit Windows. Autoruns v12.03: This update to Autoruns adds the registered HTML file extension, fixes a bug that could cause disabling of specific entry types to fail with a “path not found” error, and addresses another that could prevent the Jump-to-image function from opening the selected image on 64-bit Windows.

