<br />
<b>Warning</b>:  Undefined variable $archive_page_slug in <b>/home/xs372180/pnpk.net/public_html/wp-content/plugins/kgarchives/kgarchives.php</b> on line <b>17</b><br />
<br />
<b>Warning</b>:  Undefined variable $archive_page_slug in <b>/home/xs372180/pnpk.net/public_html/wp-content/plugins/kgarchives/kgarchives.php</b> on line <b>17</b><br />
<br />
<b>Warning</b>:  Undefined variable $archive_page_slug in <b>/home/xs372180/pnpk.net/public_html/wp-content/plugins/kgarchives/kgarchives.php</b> on line <b>17</b><br />
{"id":197,"date":"2007-03-21T01:48:00","date_gmt":"2007-03-20T16:48:00","guid":{"rendered":"https:\/\/pnpk.net\/archives\/197"},"modified":"2019-02-03T05:23:40","modified_gmt":"2019-02-02T20:23:40","slug":"windowsosoeiyesysinternals","status":"publish","type":"post","link":"https:\/\/pnpk.net\/?p=197","title":{"rendered":"WindowsOS\u3092\u7ba1\u7406\u3059\u308b@Sysinternals"},"content":{"rendered":"<p><strong>Sysinternals\u3063\u3066\u4f55\u3059\u304b\uff1f<\/strong><br \/>\nSysinternals\u3063\u3066\u3044\u3046\u30b5\u30a4\u30c8\u304c\u3042\u3063\u3066\u3001\u3053\u306e\u30b5\u30a4\u30c8\u306e\u30b5\u30a4\u30c9\u30d0\u30fc\u306b\u4eca\u65e5\u73fe\u5728RSS\u3082\u8cbc\u3063\u3066\u3042\u308b\u3093\u3060\u3051\u3069\u3053\u3053\u306bWindowsOS\u3092\u4f7f\u3063\u3066\u3044\u304f\u4e0a\u3067\u4fbf\u5229\u3053\u306e\u4e0a\u306a\u3044\u30a2\u30d7\u30ea\u30b1\u30fc\u30b7\u30e7\u30f3\u304c\u7121\u511f\u3067\u516c\u958b\u3055\u308c\u3066\u3044\u308b\u308f\u3051\u3067\u3059\u3088\u3002<br \/>\n\u75d2\u3044\u6240\u306b\u624b\u304c\u5c4a\u304f\u3063\u3066\u3044\u3046\u304b\u3001\u898b\u305f\u611f\u3058\u534a\u3070\u88cf\u30ef\u30b6\u307f\u305f\u3044\u306a\u30a2\u30d7\u30ea\u30b1\u30fc\u30b7\u30e7\u30f3\u3070\u3063\u304b\u308a\u3067\u3001\u898b\u3066\u308b\u3060\u3051\u3067\u7d50\u69cb\u697d\u3057\u304b\u3063\u305f\u308a\u3057\u307e\u3059\u3002<\/p>\n<p>Sysinternals\u3063\u3066\u30b5\u30a4\u30c8\u306f\u82f1\u8a9e\u30b5\u30a4\u30c8\u3067\u3001\u8aad\u3080\u306e\u306b\u7d50\u69cb\u82e6\u52b4\u3059\u308b\u3093\u3060\u3051\u3069\u3082@IT\u306b\u3053\u3053\u3067\u516c\u958b\u3055\u308c\u3066\u3044\u308b\u30a2\u30d7\u30ea\u30b1\u30fc\u30b7\u30e7\u30f3\u306b\u3064\u3044\u3066\u306e\u8aac\u660e\u304c\u63b2\u8f09\u3055\u308c\u3066\u3044\u305f\u306e\u3067\u3068\u308a\u3042\u3048\u305a\u3053\u3044\u3064\u3092\u8ee2\u8f09\u3057\u3066\u3001\u3069\u308c\u3060\u3051\u9762\u767d\u305d\u3046\u306a\u30a2\u30d7\u30ea\u30b1\u30fc\u30b7\u30e7\u30f3\u304c\u3042\u308b\u306e\u304b\u3092\u898b\u3066\u307f\u3066\u304f\u3060\u3055\u3044\u3002<br \/>\n\u30a2\u30d7\u30ea\u30b1\u30fc\u30b7\u30e7\u30f3\u540d\u3092\u30af\u30ea\u30c3\u30af\u3059\u308b\u3068\u5225\u30a6\u30a3\u30f3\u30c9\u30a6\u3067TechNet\u306e\u89e3\u8aac\u3068\u30c0\u30a6\u30f3\u30ed\u30fc\u30c9\u306e\u30da\u30fc\u30b8\u304c\u958b\u304d\u307e\u3059\u3002\u307e\u305f\u3001\u3053\u306e\u30b5\u30a4\u30c8\u5185\u3067\u3082\u5404\u30a2\u30d7\u30ea\u30b1\u30fc\u30b7\u30e7\u30f3\u306b\u3064\u3044\u3066\u306e\u8a73\u7d30\u3092\u3084\u3063\u3066\u3044\u307e\u3059\u306e\u3067\u3001\u77e5\u308a\u305f\u3044\u30a2\u30d7\u30ea\u30b1\u30fc\u30b7\u30e7\u30f3\u3042\u308c\u3070\u30b5\u30a4\u30c8\u5185\u691c\u7d22\u3092\u4f7f\u3063\u3066\u304f\u3060\u3055\u3044\u3002<br \/>\n\u30fb\u30fb\u30fb\u7121\u304b\u3063\u305f\u3089\u3054\u3081\u3093\u306a\u3055\u3044\u306d\u3002<br \/>\n<!--more--><\/p>\n<p><strong>Sysinternals Suite Sysinternals<\/strong><br \/>\n\u5168\u30c4\u30fc\u30eb\u30bb\u30c3\u30c8<\/p>\n<p><strong>AccessChk<\/strong><br \/>\n\u30d5\u30a1\u30a4\u30eb\u3084\u30ec\u30b8\u30b9\u30c8\u30ea\u3001\u30b5\u30fc\u30d3\u30b9\u306b\u5bfe\u3057\u3066\u30e6\u30fc\u30b6\u30fc\uff0f\u30b0\u30eb\u30fc\u30d7\u304c\u6301\u3064\u30a2\u30af\u30bb\u30b9\u6a29\u9650\u306e\u30c1\u30a7\u30c3\u30af<\/p>\n<p><a href=\"http:\/\/www.microsoft.com\/TechNet\/Sysinternals\/Utilities\/AccessEnum.mspx\" target=\"_blank\"><strong>AccessEnum<\/strong><\/a><br \/>\n\u30d5\u30a9\u30eb\u30c0\u3084\u30d5\u30a1\u30a4\u30eb\u3001\u30ec\u30b8\u30b9\u30c8\u30ea\u306b\u5bfe\u3059\u308b\u30d1\u30fc\u30df\u30c3\u30b7\u30e7\u30f3\uff08Read\/Write\/Deny\uff09\u306e\u30c1\u30a7\u30c3\u30af<\/p>\n<p><strong>AdRestore<\/strong><br \/>\nWindows Server 2003 \u30c9\u30e1\u30a4\u30f3\u30b3\u30f3\u30c8\u30ed\u30fc\u30e9\u304b\u3089\u524a\u9664\u3055\u308c\u305f\u30aa\u30d6\u30b8\u30a7\u30af\u30c8\u3092\u518d\u3073\u6709\u52b9\u306b\u3059\u308b<\/p>\n<p><a href=\"http:\/\/www.microsoft.com\/TechNet\/Sysinternals\/Utilities\/Autologon.mspx\" target=\"_blank\"><strong>Autologon<\/strong><\/a><br \/>\n\u81ea\u52d5\u30ed\u30b0\u30aa\u30f3\u3092\u8a2d\u5b9a<\/p>\n<p><a href=\"http:\/\/www.microsoft.com\/TechNet\/Sysinternals\/Utilities\/Autoruns.mspx\" target=\"_blank\"><strong>Autoruns<\/strong><\/a><br \/>\n\u8d77\u52d5\u6642\u3084\u30ed\u30b0\u30a4\u30f3\u6642\u3001\u30a8\u30af\u30b9\u30d7\u30ed\u30fc\u30e9\u3084IE\u8d77\u52d5\u6642\u306a\u3069\u306b\u81ea\u52d5\u5b9f\u884c\u3055\u308c\u308b\u30d7\u30ed\u30b0\u30e9\u30e0\u306e\u95b2\u89a7\u30fb\u8a2d\u5b9a<\/p>\n<p><strong>BgInfo<\/strong><br \/>\n\u30b7\u30b9\u30c6\u30e0\u60c5\u5831\u3084\u30cd\u30c3\u30c8\u30ef\u30fc\u30af\u8a2d\u5b9a\u306a\u3069\u3092\u63cf\u753b\u3057\u305f\u58c1\u7d19\u3092\u4f5c\u6210\u3057\u8a2d\u5b9a\u3059\u308b<\/p>\n<p><strong>BlueScreen<\/strong><br \/>\n\u30d6\u30eb\u30fc\u30b9\u30af\u30ea\u30fc\u30f3\u3068\u547c\u3070\u308c\u308b\u30a8\u30e9\u30fc\u753b\u9762\u3092\u6a21\u3057\u305f\u30b9\u30af\u30ea\u30fc\u30f3\u30bb\u30a4\u30d0\u30fc<\/p>\n<p><strong>CacheSet<\/strong><br \/>\n\u30ad\u30e3\u30c3\u30b7\u30e5\u30b5\u30a4\u30ba\u306e\u4e0a\u9650\u3068\u4e0b\u9650\u3092\u8abf\u6574\u3057\u8a2d\u5b9a\u3059\u308b<\/p>\n<p><a href=\"http:\/\/www.microsoft.com\/TechNet\/Sysinternals\/Utilities\/ClockRes.mspx\" target=\"_blank\"><strong>ClockRes<\/strong><\/a><br \/>\n\u30b7\u30b9\u30c6\u30e0\u306e\u6642\u523b\u6642\u8a08\u306e\u5206\u89e3\u80fd\u3092\u8868\u793a<\/p>\n<p><a href=\"http:\/\/www.microsoft.com\/TechNet\/Sysinternals\/Utilities\/Contig.mspx\" target=\"_blank\"><strong>Contig<\/strong><\/a><br \/>\n\u30b3\u30de\u30f3\u30c9\u30e9\u30a4\u30f3\u7248\u306e\u8efd\u91cf\u306a\u30c7\u30d5\u30e9\u30b0\u30c4\u30fc\u30eb<\/p>\n<p><strong>Ctrl2cap<\/strong><br \/>\n\u30ad\u30fc\u30dc\u30fc\u30c9\u306eCtrl\u3068Caps Lock\u3092\u5165\u308c\u66ff\u3048\u308b\u30ab\u30fc\u30cd\u30eb\u30e2\u30fc\u30c9\u306e\u30c7\u30d0\u30a4\u30b9\u30c9\u30e9\u30a4\u30d0<\/p>\n<p><strong>DebugView<\/strong><br \/>\nOutputDebugString\u3068DbgPring\u304b\u3089\u306e\u30c7\u30d0\u30c3\u30b0\u60c5\u5831\u3092\u8868\u793a<\/p>\n<p><strong>DiskExt<\/strong><br \/>\n\u30c7\u30a3\u30b9\u30af\u30de\u30c3\u30d4\u30f3\u30b0\u3092\u8868\u793a<\/p>\n<p><strong>Diskmon<\/strong><br \/>\n\u7269\u7406\u30c7\u30a3\u30b9\u30af\u3078\u306e\u30a2\u30af\u30bb\u30b9\u3092\u8868\u793a<\/p>\n<p><strong>DiskView<\/strong><br \/>\n\u30cf\u30fc\u30c9\u30c7\u30a3\u30b9\u30af\u306e\u65ad\u7247\u5316\u72b6\u614b\u3084\u6307\u5b9a\u3057\u305f\u30d5\u30a1\u30a4\u30eb\u306e\u4f4d\u7f6e\u3092\u8868\u793a<\/p>\n<p><a href=\"http:\/\/www.microsoft.com\/TechNet\/Sysinternals\/Utilities\/du.mspx\" target=\"_blank\"><strong>Du<\/strong><\/a><br \/>\n\u6307\u5b9a\u3057\u305f\u30c7\u30a3\u30ec\u30af\u30c8\u30ea\u306e\u4f7f\u7528\u72b6\u6cc1\u3092\u8868\u793a<\/p>\n<p><a href=\"http:\/\/www.microsoft.com\/TechNet\/Sysinternals\/Utilities\/efsdump.mspx\" target=\"_blank\"><strong>EFSDump<\/strong><\/a><br \/>\nEFS (Encrypting File System)\u3067\u6697\u53f7\u5316\u3055\u308c\u305f\u30d5\u30a1\u30a4\u30eb\uff0f\u30c7\u30a3\u30ec\u30af\u30c8\u30ea\u60c5\u5831\u306e\u8868\u793a<\/p>\n<p><a href=\"http:\/\/www.microsoft.com\/TechNet\/Sysinternals\/Utilities\/Filemon.mspx\" target=\"_blank\"><strong>Filemon<\/strong><\/a><br \/>\n\u30d5\u30a1\u30a4\u30eb\u30b7\u30b9\u30c6\u30e0\u3078\u306e\u30a2\u30af\u30bb\u30b9\u72b6\u6cc1\u3092\u30ea\u30a2\u30eb\u30bf\u30a4\u30e0\u306b\u8868\u793a<\/p>\n<p><a href=\"http:\/\/www.microsoft.com\/TechNet\/Sysinternals\/Utilities\/Handle.mspx\" target=\"_blank\"><strong>Handle<\/strong><\/a><br \/>\n\u958b\u3044\u3066\u3044\u308b\u30d5\u30a1\u30a4\u30eb\u3084\u30c7\u30a3\u30ec\u30af\u30c8\u30ea\u3092\u8868\u793a<\/p>\n<p><a href=\"http:\/\/www.microsoft.com\/TechNet\/Sysinternals\/Utilities\/Hex2dec.mspx\" target=\"_blank\"><strong>Hex2dec<\/strong><\/a><br \/>\n10\u9032\u6570\uff0f16\u9032\u6570\u5909\u63db\u306e\u8a08\u7b97\u6a5f<\/p>\n<p><strong>Junction<\/strong><br \/>\n\u30b7\u30f3\u30dc\u30ea\u30c3\u30af\u30ea\u30f3\u30af\u306e\u4f5c\u6210<\/p>\n<p><strong>LDMDump<\/strong><br \/>\nLDM\uff08\u8ad6\u7406\u30c7\u30a3\u30b9\u30af\u30de\u30cd\u30fc\u30b8\u30e3\uff09\u30c7\u30fc\u30bf\u30d9\u30fc\u30b9\u306e\u5185\u5bb9\u3092\u8868\u793a<\/p>\n<p><strong>ListDLLs<\/strong><br \/>\n\u73fe\u5728\u5229\u7528\u3057\u3066\u3044\u308bDLL\u3092\u4e00\u89a7\u8868\u793a<\/p>\n<p><strong>LiveKd<\/strong><br \/>\n\u30de\u30a4\u30af\u30ed\u30bd\u30d5\u30c8\u306e\u30ab\u30fc\u30cd\u30eb\u30c7\u30d0\u30c3\u30ac\u3092\u4f7f\u3044\u7a3c\u50cd\u4e2d\u306e\u30b7\u30b9\u30c6\u30e0\u3092\u8abf\u67fb<\/p>\n<p><strong>LoadOrder<\/strong><br \/>\n\u30b7\u30b9\u30c6\u30e0\u306b\u8aad\u307f\u8fbc\u307e\u308c\u3066\u3044\u308b\u30c7\u30d0\u30a4\u30b9\u30c9\u30e9\u30a4\u30d0\u3092\u4e00\u89a7\u8868\u793a<\/p>\n<p><strong>LogonSessions<\/strong><br \/>\n\u30b7\u30b9\u30c6\u30e0\u4e0a\u3067\u7a3c\u50cd\u4e2d\u306e\u30ed\u30b0\u30aa\u30f3\u30bb\u30c3\u30b7\u30e7\u30f3\u3092\u4e00\u89a7\u8868\u793a<\/p>\n<p><strong>MoveFile<\/strong><br \/>\n\u6b21\u56de\u8d77\u52d5\u6642\u306b\u6307\u5b9a\u30d5\u30a1\u30a4\u30eb\u306e\u79fb\u52d5\uff0f\u524a\u9664\u306e\u5b9f\u884c<\/p>\n<p><strong>NewSID<\/strong><br \/>\nSID\uff08\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u8b58\u5225\u5b50\uff09\u3092\u4efb\u610f\u306e\u3082\u306e\u306b\u5909\u66f4<\/p>\n<p><strong>NTFSInfo<\/strong><br \/>\nNTFS\u30dc\u30ea\u30e5\u30fc\u30e0\u306e\u30b5\u30a4\u30ba\u3084MFT(Master File Table\uff09\u306b\u95a2\u3059\u308b\u60c5\u5831\u3092\u8868\u793a<\/p>\n<p><a href=\"http:\/\/www.microsoft.com\/TechNet\/Sysinternals\/Utilities\/PageDefrag.mspx\" target=\"_blank\"><strong>PageDefrag<\/strong><\/a><br \/>\n\u30da\u30fc\u30b8\u30d5\u30a1\u30a4\u30eb\u3068\u30ec\u30b8\u30b9\u30c8\u30ea\u30cf\u30a4\u30d6\u306e\u30c7\u30d5\u30e9\u30b0\u3092\u5b9f\u884c<\/p>\n<p><strong>PendMoves<\/strong><br \/>\n\u6b21\u56de\u8d77\u52d5\u6642\u306b\u30ea\u30cd\u30fc\u30e0\uff0f\u524a\u9664\u304c\u5b9f\u884c\u3055\u308c\u308b\u30d5\u30a1\u30a4\u30eb\u306e\u4e00\u89a7\u8868\u793a<\/p>\n<p><strong>Portmon<\/strong><br \/>\n\u30b7\u30ea\u30a2\u30eb\u3068\u30d1\u30e9\u30ec\u30eb\u30dd\u30fc\u30c8\u306e\u7a3c\u50cd\u72b6\u6cc1\u306e\u30e2\u30cb\u30bf\u30ea\u30f3\u30b0\u30c4\u30fc\u30eb<\/p>\n<p><strong>Process Explorer<\/strong><br \/>\n\u7a3c\u50cd\u4e2d\u306e\u30d7\u30ed\u30bb\u30b9\u306b\u95a2\u3057\u3066\u591a\u5f69\u306a\u6a5f\u80fd\u3092\u63d0\u4f9b\u3059\u308b\u5f37\u529b\u306a\u30c4\u30fc\u30eb<\/p>\n<p><strong>Process Monitor<\/strong><br \/>\n\u30d5\u30a1\u30a4\u30eb\u30b7\u30b9\u30c6\u30e0\u3084\u30ec\u30b8\u30b9\u30c8\u30ea\u3001\u30d7\u30ed\u30bb\u30b9\u306a\u3069\u306e\u7a3c\u50cd\u72b6\u6cc1\u306e\u30e2\u30cb\u30bf\u30ea\u30f3\u30b0\u30c4\u30fc\u30eb<\/p>\n<p><a href=\"http:\/\/www.microsoft.com\/TechNet\/Sysinternals\/Utilities\/Procfeatures.mspx\" target=\"_blank\"><strong>ProcFeatures<\/strong><\/a><br \/>\n\u30d7\u30ed\u30bb\u30c3\u30b5\u306e\u60c5\u5831\u3092\u8868\u793a<\/p>\n<p><strong>PsExec<\/strong><br \/>\n\u6307\u5b9a\u3057\u305f\u30e6\u30fc\u30b6\u30fc\u3067\u30ed\u30fc\u30ab\u30eb\uff0f\u30ea\u30e2\u30fc\u30c8\u3067\u30d7\u30ed\u30bb\u30b9\u3092\u5b9f\u884c<\/p>\n<p><a href=\"http:\/\/www.microsoft.com\/TechNet\/Sysinternals\/Utilities\/PsFile.mspx\" target=\"_blank\"><strong>PsFile<\/strong><\/a><br \/>\n\u30ea\u30e2\u30fc\u30c8\u304b\u3089\u958b\u304b\u308c\u3066\u3044\u308b\u30d5\u30a1\u30a4\u30eb\u3092\u8868\u793a<\/p>\n<p><a href=\"http:\/\/www.microsoft.com\/TechNet\/Sysinternals\/Utilities\/PsGetSid.mspx\" target=\"_blank\"><strong>PsGetSid<\/strong><\/a><br \/>\n\u6307\u5b9a\u3057\u305f\u30b3\u30f3\u30d4\u30e5\u30fc\u30bf\uff0f\u30e6\u30fc\u30b6\u30fc\u306eSID\u3092\u8868\u793a<\/p>\n<p><a href=\"http:\/\/www.microsoft.com\/TechNet\/Sysinternals\/Utilities\/PsInfo.mspx\" target=\"_blank\"><strong>PsInfo<\/strong><\/a><br \/>\n\u30ea\u30e2\u30fc\u30c8\u30ec\u30b8\u30b9\u30c8\u30eaAPI\u306b\u30a2\u30af\u30bb\u30b9\u3057\u3066\u30ed\u30fc\u30ab\u30eb\uff0f\u30ea\u30e2\u30fc\u30c8\u306e\u30b7\u30b9\u30c6\u30e0\u60c5\u5831\u306e\u8868\u793a<\/p>\n<p><a href=\"http:\/\/www.microsoft.com\/TechNet\/Sysinternals\/Utilities\/PsKill.mspx\" target=\"_blank\"><strong>PsKill<\/strong><\/a><br \/>\n\u30d7\u30ed\u30bb\u30b9\u540d\uff0fID\u3092\u6307\u5b9a\u3057\u3066\u30ed\u30fc\u30ab\u30eb\uff0f\u30ea\u30e2\u30fc\u30c8\u306e\u30d7\u30ed\u30bb\u30b9\u3092kill<\/p>\n<p><b><font color=\"steelblue\" target=\"_blank\">PsList<br \/>\n\u30ed\u30fc\u30ab\u30eb\uff0f\u30ea\u30e2\u30fc\u30c8\u306e\u30d7\u30ed\u30bb\u30b9\u60c5\u5831\u3092\u8868\u793a<\/p>\n<p><a href=\"http:\/\/www.microsoft.com\/TechNet\/Sysinternals\/Utilities\/PsLoggedOn.mspx\"><b><font color=\"steelblue\" target=\"_blank\">PsLoggedOn<\/font><\/b><\/a><br \/>\n\u30ed\u30fc\u30ab\u30eb\uff0f\u30ea\u30e2\u30fc\u30c8\u306e\u30b3\u30f3\u30d4\u30e5\u30fc\u30bf\u306b\u30ed\u30b0\u30a4\u30f3\u4e2d\u306e\u30e6\u30fc\u30b6\u30fc\u3092\u8868\u793a<\/p>\n<p><strong>PsLogList<\/strong><br \/>\n\u30ed\u30fc\u30ab\u30eb\uff0f\u30ea\u30e2\u30fc\u30c8\u306e\u30a4\u30d9\u30f3\u30c8\u30ed\u30b0\u306e\u5185\u5bb9\u3092\u8868\u793a<\/p>\n<p><a href=\"http:\/\/www.microsoft.com\/TechNet\/Sysinternals\/Utilities\/PsPasswd.mspx\" target=\"_blank\"><strong>PsPasswd<\/strong><\/a><br \/>\n\u30ed\u30fc\u30ab\u30eb\uff0f\u30ea\u30e2\u30fc\u30c8\u306e\u30e6\u30fc\u30b6\u30fc\u306e\u30d1\u30b9\u30ef\u30fc\u30c9\u5909\u66f4<\/p>\n<p><strong>PsService<\/strong><br \/>\n\u30ed\u30fc\u30ab\u30eb\uff0f\u30ea\u30e2\u30fc\u30c8\u306e\u30b5\u30fc\u30d3\u30b9\u306e\u72b6\u614b\u306e\u8868\u793a\u3068\u5236\u5fa1<\/p>\n<p><strong>PsShutdown<\/strong><br \/>\n\u30ed\u30fc\u30ab\u30eb\uff0f\u30ea\u30e2\u30fc\u30c8\u306e\u30b3\u30f3\u30d4\u30e5\u30fc\u30bf\u306e\u30b7\u30e3\u30c3\u30c8\u30c0\u30a6\u30f3\u3068\u518d\u8d77\u52d5\u306e\u5b9f\u884c<\/p>\n<p><a href=\"http:\/\/www.microsoft.com\/TechNet\/Sysinternals\/Utilities\/PsSuspend.mspx\" target=\"_blank\"><strong>PsSuspend<\/strong><\/a><br \/>\n\u30ed\u30fc\u30ab\u30eb\uff0f\u30ea\u30e2\u30fc\u30c8\u306e\u30d7\u30ed\u30bb\u30b9\u306e\u30b5\u30b9\u30da\u30f3\u30c9\u3068\u30ec\u30b8\u30e5\u30fc\u30e0\u306e\u5b9f\u884c<\/p>\n<p><a href=\"http:\/\/www.microsoft.com\/TechNet\/Sysinternals\/Utilities\/RegDelNull.mspx\" target=\"_blank\"><strong>RegDelNull<\/strong><\/a><br \/>\n\u901a\u5e38\u306e\u30ec\u30b8\u30b9\u30c8\u30ea\u30a8\u30c7\u30a3\u30bf\u3067\u306f\u6d88\u305b\u306a\u3044\u30ad\u30fc\u306e\u524a\u9664<\/p>\n<p><strong>RegHide<\/strong><br \/>\n\u901a\u5e38\u306e\u30ec\u30b8\u30b9\u30c8\u30ea\u30a8\u30c7\u30a3\u30bf\u3067\u306f\u898b\u3048\u306a\u3044\u30ad\u30fc\u306e\u4f5c\u6210<\/p>\n<p><a href=\"http:\/\/www.microsoft.com\/TechNet\/Sysinternals\/Utilities\/Regjump.mspx\" target=\"_blank\"><strong>Regjump<\/strong><\/a><br \/>\n\u30ec\u30b8\u30b9\u30c8\u30ea\u30d1\u30b9\u3092\u6307\u5b9a\u3057\u3066regedit\u3092\u8d77\u52d5<\/p>\n<p><strong>Regmon<\/strong><br \/>\n\u30ec\u30b8\u30b9\u30c8\u30ea\u3078\u306e\u30a2\u30af\u30bb\u30b9\u306e\u30e2\u30cb\u30bf\u30ea\u30f3\u30b0\u30c4\u30fc\u30eb<\/p>\n<p><strong>RootkitRevealer<\/strong><br \/>\nrootkit\u30d9\u30fc\u30b9\u306e\u30de\u30eb\u30a6\u30a7\u30a2\u691c\u51fa\u30c4\u30fc\u30eb<\/p>\n<p><strong>SDelete<\/strong><br \/>\n\u7c73\u56fd\u9632\u7dcf\u7701\u6e96\u62e0\u65b9\u5f0f\u306a\u3069\u3092\u4f7f\u3044\u30d5\u30a1\u30a4\u30eb\uff0f\u30c7\u30a3\u30ec\u30af\u30c8\u30ea\u306a\u3069\u3092\u6d88\u53bb<\/p>\n<p><strong>ShareEnum<\/strong><br \/>\n\u30cd\u30c3\u30c8\u30ef\u30fc\u30af\u5185\u306e\u30d5\u30a1\u30a4\u30eb\u5171\u6709\u306e\u72b6\u6cc1\u3092\u8868\u793a<\/p>\n<p><strong>Sigcheck<\/strong><br \/>\n\u30d5\u30a1\u30a4\u30eb\u306e\u30d0\u30fc\u30b8\u30e7\u30f3\u60c5\u5831\u3084\u30c7\u30b8\u30bf\u30eb\u7f72\u540d\u306a\u3069\u3092\u8868\u793a<\/p>\n<p><strong>Streams<\/strong><br \/>\nNTFS\u306e\u4ee3\u66ff\u30c7\u30fc\u30bf\u30b9\u30c8\u30ea\u30fc\u30e0\uff08ADS\uff09\u3092\u691c\u51fa<\/p>\n<p><strong>Strings<\/strong><br \/>\n\u30d0\u30a4\u30ca\u30ea\u30d5\u30a1\u30a4\u30eb\u5185\u306eUNICODE\uff0fASCII\u6587\u5b57\u5217\u3092\u8868\u793a<\/p>\n<p><strong>Sync<\/strong><br \/>\n\u30c7\u30a3\u30b9\u30af\u306e\u30c7\u30fc\u30bf\u3092\u30d5\u30e9\u30c3\u30b7\u30e5\uff08UNIX\u306esync\u30b3\u30de\u30f3\u30c9\u98a8\uff09<\/p>\n<p><a href=\"http:\/\/www.microsoft.com\/TechNet\/Sysinternals\/Utilities\/TcpView.mspx\" target=\"_blank\"><strong>TCPView<\/strong><\/a><br \/>\n\u30d7\u30ed\u30bb\u30b9\u3068\u95a2\u9023\u3055\u305b\u3066TCP\/UDP\u306e\u72b6\u614b\u3092\u8868\u793a<\/p>\n<p><strong>VolumeID<\/strong><br \/>\nFAT\uff0fNTFS\u30c9\u30e9\u30a4\u30d6\u306e\u30dc\u30ea\u30e5\u30fc\u30e0\u30e9\u30d9\u30eb\u3092\u8a2d\u5b9a<\/p>\n<p><a href=\"http:\/\/www.microsoft.com\/TechNet\/Sysinternals\/Utilities\/whois.mspx\" target=\"_blank\"><strong>Whois<\/strong><\/a><br \/>\nNIC\u306e\u767b\u9332\u60c5\u5831\u306e\u8868\u793a\uff08whois\u30b3\u30de\u30f3\u30c9\uff09<\/p>\n<p><strong>WinObj<\/strong><br \/>\n\u30aa\u30d6\u30b8\u30a7\u30af\u30c8\u30de\u30cd\u30fc\u30b8\u30e3\u306e\u540d\u524d\u7a7a\u9593\u306e\u8868\u793a<\/p>\n<p><strong>ZoomIt<\/strong><br \/>\n\u30c7\u30b9\u30af\u30c8\u30c3\u30d7\u753b\u9762\u306e\u62e1\u5927\u8868\u793a\u3068\u63cf\u753b\u30c4\u30fc\u30eb<\/p>\n<p>\u3053\u308c\u3060\u3051\u8ee2\u8f09\u3059\u308b\u3060\u3051\u3058\u3083\u3069\u3046\u304b\u3068\u601d\u3044\u307e\u3059\u306e\u3067\u3001\u305d\u308c\u305e\u308c\u306e\u30a2\u30d7\u30ea\u30b1\u30fc\u30b7\u30e7\u30f3\u306e\u4f7f\u3044\u65b9\u3092\u4eca\u5f8c\u66f8\u3044\u3066\u3044\u3053\u3046\u304b\u3068\u601d\u3044\u307e\u3059\u3002<\/p>\n<p>\u53c2\u8003<br \/>\nhttp:\/\/www.atmarkit.co.jp\/fsecurity\/column\/ueno\/43.html<\/font><\/b><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Sysinternals\u3063\u3066\u4f55\u3059\u304b\uff1f Sysinternals\u3063\u3066\u3044\u3046\u30b5\u30a4\u30c8\u304c\u3042\u3063\u3066\u3001\u3053\u306e\u30b5\u30a4\u30c8\u306e\u30b5\u30a4\u30c9\u30d0\u30fc\u306b\u4eca\u65e5\u73fe\u5728RSS\u3082\u8cbc\u3063\u3066\u3042\u308b\u3093\u3060\u3051\u3069\u3053\u3053\u306bWindowsOS\u3092\u4f7f\u3063\u3066\u3044\u304f\u4e0a\u3067\u4fbf\u5229\u3053\u306e\u4e0a\u306a\u3044\u30a2\u30d7\u30ea\u30b1\u30fc\u30b7\u30e7\u30f3\u304c\u7121\u511f &#8230; <\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":false,"jetpack_social_options":{"image_generator_settings":{"template":"highway","enabled":false},"version":2}},"categories":[169],"tags":[48,106,74,19],"class_list":{"0":"post-197","1":"post","2":"type-post","3":"status-publish","4":"format-standard","6":"category-electric-guitar","7":"tag-sysinternals","8":"tag-windows-server","9":"tag-74","10":"tag-yyyayeyaey","11":"entry","12":"nothumb"},"jetpack_publicize_connections":[],"jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/pnpk.net\/index.php?rest_route=\/wp\/v2\/posts\/197","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/pnpk.net\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/pnpk.net\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/pnpk.net\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/pnpk.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=197"}],"version-history":[{"count":5,"href":"https:\/\/pnpk.net\/index.php?rest_route=\/wp\/v2\/posts\/197\/revisions"}],"predecessor-version":[{"id":6831,"href":"https:\/\/pnpk.net\/index.php?rest_route=\/wp\/v2\/posts\/197\/revisions\/6831"}],"wp:attachment":[{"href":"https:\/\/pnpk.net\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=197"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/pnpk.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=197"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/pnpk.net\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=197"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}