Blog Post

Sysinternals Blog
1 MIN READ

ProcMon 3.80, Sysmon 13.20, TCPView 4.10, ProcExp 16.40, PsExec 2.34, Sigcheck 2.81 and WinObj 3.10

Alex_Mihaiuc's avatar
Alex_Mihaiuc
Icon for Microsoft rankMicrosoft
May 25, 2021

Process Monitor v3.80

Process Monitor is the latest tool to integrate with the new Sysinternals theme engine, giving it dark mode support.
 

Sysmon v13.20

This update to Sysmon, an advanced system security monitor, adds "not begin with" and "not end with" filter conditions and fixes a regression for rule include/exclude logic.
 

TCPView v4.10

This update to TCPView, a TCP/UDP endpoint query tool, adds the ability to filter connections by state.
 

Process Explorer v16.40

This update to Process Explorer, an advanced process, DLL and handle viewing utility, adds process filtering support to the main display and reports process CET (shadow stack) support.
 

PsExec v2.34

This PsExec release reverts to sending all PsExec output to stderr so that only target process output emits to stdout.
 

Sigcheck v2.81

Sigcheck v2.81 fixes a bug in filtering output for unsigned VirusTotal unknown files and now reports the signing time for files with untrusted certificate signatures.
 

WinObj v3.10

This WinObj update extends search functionality to include symbolic link targets.
 
Updated May 25, 2021
Version 2.0
  • akwebb1's avatar
    akwebb1
    Copper Contributor

    I have been able to reliably reproduce a crash in the latest version of process explorer related to the new filtering logic.  If you set a filter and there are no processes by that name running you get an expected empty process list.  If you start an instance of the process you are filtering on after that, process explorer crashes.  It happens every time.  

     

     

  • akwebb1's avatar
    akwebb1
    Copper Contributor

    I just updated and was excited to see the filtering functionality in Process Explorer.  Thank you!!!  I was using Process Hacker 2 for just that functionality.  I do have a problem with the System Information window for CPU.  I have an Intel I9-10900K with 20 logical CPUs and the last two graphs overlap the statistics boxes at the bottom when I show one graph per CPU.  It happens no matter what the window size is. I don't know when this issue started.  This is the first time I have updated the suite in at least 6 months.  I don't really use that window often so it is not a big issue for me but I figured I would share.  

     

     

  • The Process Explorer bug should be resolved with today's v16.41 hotfix release. We're investigating the Sysmon v13.0+ issue.

  • Victor_50's avatar
    Victor_50
    Copper Contributor

    After a lot of updates of Process Explorer, I am still not able to have it started on startup on one PC. Error is a problem with assignment between username and security-id. Couldn't find any remedy. Using task manager didn't work.