Process Monitor: Display and Capture Filtering

preview_player
Показать описание

Рекомендации по теме
Комментарии
Автор

Very good explanation at the end about understanding 'AND' and 'OR' search filters. Thank you!

johnson
Автор

Hi Paul, the reason why you are still showing events being dropped is because you are using Procmon in Basic Mode. If you enable advanced mode no events are going to be dropped whatsoever when in capture mode. ;) Enable "Advanced Mode" and "Drop filtered Events". :P Notice the difference on the Filters dialog box between the filters in Advanced Vs Basic Mode for an explanation. hehe

Ravencrowwise
Автор

Thanks for uploading these informative videos. Every now and again on my Win10 system, a process utilises 100% of the CPU, and the system becomes completely unresponsive. Is there a way to log all high CPU usage processes to a text file, so that, when it fails, I can review it to work out the misbehaving app?

cryptoniteclark
Автор

Can you direct me to any information about how to diagnose slow start-up times? I recently installed a new Nvidia gpu and everything works great except for the time it takes to boot my computer. Boot times on my SSD are now slower than a 7200 RPM HDD.

tyroneslothdrop
Автор

what is wireshark you should explain in more detail what and why you are using wireshark and how you displayed it

carlallison