Process Monitor
Other names | ProcMon |
---|---|
Winternals Software | |
Developer(s) | Microsoft |
Stable release | v3.95[1]
/ June 27, 2023 (Windows version) |
Preview release | v1.0.1 Preview
/ April 28, 2021 (Linux version) |
Windows XP SP2 and higher, Linux | |
Available in | English |
License | Windows: Proprietary commercial software Linux: MIT License[2] |
Website | Windows Sysinternals |
Process Monitor is a tool from
Overview
Process Monitor monitors and records all actions attempted against the Microsoft Windows Registry. Process Monitor can be used to detect failed attempts to read and write registry keys. It also allows for filtering on specific keys, processes, process IDs, and values. In addition it shows how applications use files and DLLs, detects some critical errors in system files and more.[3]
History
RegMon and its sister application
The two tools were combined to create Process Monitor.[5][6] Early versions of Process Monitor (up to version 2.8) ran on Windows 2000 SP4 with Update Rollup 1.[7] The current version for Windows only runs on Windows Vista and above.
Initially, ProcMon was only available for Microsoft Windows. In November 2018, Microsoft confirmed it is porting Sysinternals tools, including ProcDump and ProcMon, to Linux.[8] The Linux port of the software is open source. It is licensed under MIT License and the source code is available on GitHub.[9]
FileMon
FileMon (from a
FileMon is no longer supported.
RegMon
The RegMon utility from Sysinternals provided forensics on Windows Registry usage.
RegMon is no longer supported.
See also
References
- ^ "Process Monitor - Windows Sysinternals". learn.microsoft.com.
- ^ "Process Monitor for Linux (Preview)". Sysinternals. 30 October 2022.
- ^ "Download Process Monitor (ProcMon)". BleepingComputer.
- ^ Mark Russinovich’s Blog Archived 2015-05-30 at the Wayback Machine
- ^ RegMon for Windows
- ^ Process Monitor, Microsoft Technet
- ^ "How to use Sysinternals Process Monitor and Process Explorer to Troubleshoot SharePoint". Archived from the original on 2011-08-20. Retrieved 2011-08-01.
- CBS Interactive. Retrieved 5 November 2018.
- ^ "Process Monitor for Linux (Preview)". GitHub. 24 October 2021.