PDA

View Full Version : Best investigative tools.


Joeythedude
August 25th, 2009, 02:19 PM
I'm wondering what people like as investigative tools.

My top 3 ( all free ).

1)
ProcMon.exe (http://technet.microsoft.com/en-us/sysinternals/bb896645.aspx)

The Best.
Real-time analysis of Network , Processes and File Access.
Very easy to build up filter of normal activity, so can spot something unusual straight-away.

2)
Eset System Inspector (http://www.eset.com/download/sysinspector.php)

Very good indepth file analysis , threat rating, great User Interface.

3)
HiJackFree (http://www.hijackfree.com/en/)

Similar in concept to System inspector , has good analysis of startup locations, services.