01 December 2009 | 9,362 views

Process Hacker v1.7 Released – Process Viewer & Memory Editor

Process Hacker is a free and open source process viewer and memory editor with unique features such as powerful process termination and a Regex memory searcher. It can show services, processes and their threads, modules, handles and memory regions.

Key Features

  • Viewing, terminating, suspending and resuming processes.
  • Restarting processes, creating dump files, detaching from any debuggers, viewing heaps, injecting DLLs, etc.
  • Viewing detailed process information, statistics, and performance information.
  • Viewing, terminating, suspending and resuming threads.
  • Viewing detailed token information (including modifying privileges).
  • Viewing and unloading modules.
  • Viewing memory regions.
  • Viewing environment variables.
  • Viewing and closing handles.
  • Viewing, controlling and editing services.
  • Viewing and closing network connections.

System Requirements

  • .NET Framework 2.0
  • Microsoft Windows XP SP2 or above, 32-bit or 64-bit.

You can download Process Hacker v1.7 here:

processhacker-1.7-setup.exe

Or read more here.

Post to Twitter Post to Delicious Post to Digg Post to Facebook Post to StumbleUpon

  



Recent in Forensics:
- Sagan – Real-time System & Event Log (syslog) Monitoring System
- REMnux: A Linux Distribution For Reverse-Engineering Malware
- raw2vmdk – Mount Raw Hard Disk (dd) Images As VMDK Virtual Disks

Related Posts:
- Fusil Fuzzer 0.7 – Fuzzing Functions in Python
- eEye Duster – Dead/Uninitialized Stack Eraser
- Burp Suite v1.3 Released – Integrated Platform For Attacking Web Applications

Most Read in Forensics:
- NetworkMiner – Passive Sniffer & Packet Analysis Tool for Windows - 53,804 views
- Origami – Parse, Analyze & Forge PDF Documents - 20,349 views
- argus – Auditing Network Activity – Performance & Status Monitoring - 17,310 views


One Response to “Process Hacker v1.7 Released – Process Viewer & Memory Editor”

  1. d3m4s1@d0v1v0 1 December 2009 at 11:31 am Permalink

    I was playing a little with this tool and looks very interesting. One needs this kind of tools on Windows if wants to see what happens in the core.
    Like always, thanks for the info.