Process Monitor 2 Released - Now with more cowbell!

If you have any need to find out what your computer is really doing under the hood, you know that Process Monitor is the tool. Today, Process Monitor 2.0 was released. From the Sysinternals blog:
This major update to Process Monitor adds real-time TCP and UDP monitoring to its existing process, thread, DLL, file system and registry monitoring. You can now see the TCP and UDP activity processes performed, including the operation (e.g. connect, send, receive), local and remote IP addresses and DNS names, and operation transfer lengths. On Windows Vista, Process Monitor also collects thread stacks for network operations.
Download here: Process Monitor
As before, Process Monitor includes:
  • Monitoring of process and thread startup and exit, including exit status codes
  • Monitoring of image (DLL and kernel-mode device driver) loads
  • More data captured for operation input and output parameters
  • Non-destructive filters allow you to set filters without losing data
  • Capture of thread stacks for each operation make it possible in many cases to identify the root cause of an operation
  • Reliable capture of process details, including image path, command line, user and session ID
  • Configurable and moveable columns for any event property
  • Filters can be set for any data field, including fields not configured as columns
  • Advanced logging architecture scales to tens of millions of captured events and gigabytes of log data
  • Process tree tool shows relationship of all processes referenced in a trace
  • Native log format preserves all data for loading in a different Process Monitor instance
  • Process tooltip for easy viewing of process image information
  • Detail tooltip allows convenient access to formatted data that doesn't fit in the column
  • Cancellable search
  • Boot time logging of all operations
And now, for some screenshots to whet your appetite.





Source:- http://blogs.technet.com/seanearp/archive/2008/10/01/process-monitor-2-released-now-with-more-cowbell.aspx
 
Anybody know of a good beginners tutorial for using Process Monitor, the process monitor forum is lacking in tutorials

did u try the included help file?

also, I am not able to download the zip file; am getting this message:


Connection Interrupted
The connection to the server was reset while the page was loading.
The network link was interrupted while negotiating a connection. Please try again.


EDIT: Finally! I could download the file! I had pinged the download server, but it wasn't responding. Everything is fine now
 
Last edited:

My Computer

System One

  • Manufacturer/Model
    Custom Built Gigabyte-Intel-ATI-Transcend-SONY combo
    CPU
    Intel Core2 Duo E6300 1.86GHz
    Motherboard
    Gigabyte G31M-ES2C [Intel G31]
    Memory
    1.5 GB DDRII 667 MHz [512+1024]
    Graphics Card(s)
    Sapphire ATI Radeon HD 4770 512 MB GDDR5
    Sound Card
    Realtek HD Audio [ALC882 codec onboard]
    Monitor(s) Displays
    Samsung SyncMaster 2033SW+ (20" Wide)
    Screen Resolution
    1600 x 900 x 60Hz @ 32bpp
    Hard Drives
    1 x 40 GB P-ATA
    1 x 160 GB S-ATA [Win7 with Win XP SP3 dual boot]
    1 x 1 TB S-ATA
    PSU
    VIP 400 W
    Case
    Zebronics Elegance
    Cooling
    All fan [2 on case side and 1 behind]
    Keyboard
    i-ball i-key Multimedia keyboard
    Mouse
    Logitech Standard Optical Tilt-Wheel Mouse
    Internet Speed
    256 kbps Cable
Back
Top