Wininternals Adminpack 4.0 released
http://www.wininternals.com/products/repairandrecovery/
Winternals, announced the release of Administrator's Pak 4.0, a suite of six system repair, data recovery, and troubleshooting products for Windows NT/2000/XP/Server 2003. Included in this bundle is ERD Commander 2003, the flagship product of the Administrator's Pak. The Administrator's Pak allows full read and write access to dead systems in a familiar Windows-like environment, providing an array of tools to rapidly diagnose and repair system failures.
"Due to its ability to repair the precise cause of a system crash, the Administrator's Pak has always been immensely popular among systems administrators and network administrators," said Edwin Brasch, president and CEO of Winternals. "We're pleased to offer this new release, developed based on extensive feedback from our worldwide customer base."
The Administrator's Pak helps administrators avoid reinstallation of the operating system and applications on unbootable Windows computers, thereby minimizing downtime. Reinstallation is the standard procedure to recover unbootable machines, even though the procedure can last anywhere from hours to potentially days, depending on the scope of the reinstall. While re-imaging can eventually return a dead computer to a bootable configuration, it is a cumbersome process that results in extended downtime for end-users, and does not allow IT staff to diagnose the problem and prevent future occurrences.
The Administrator's Pak is an alternate solution to reinstallation or re-imaging. This product suite offers a host of repair and diagnostic tools on one CD that any IT professional familiar with the Windows operating systems will be comfortable using. Recovery time is reduced to minutes since the Administrator's Pak provides immediate access to the specific drivers, settings, and files that prevent a Windows server or workstation from booting.
About Administrator's Pak
The Administrator's Pak consists of six individual tools: ERD Commander 2003, Disk Commander (which now operates within the ERD Commander 2003 environment), NTFSDOS Professional, Remote Recover, Monitoring Tools, and - new for version 4.0 -TCPView Professional.
如何知道自己電腦通過網路有什麼連接,傳送或接收了什麼資料?
常常發現網路流量計數器在閃動,也使用了zonealarm防火牆,但還是無法知道哪些應用程式使用在訪問網路,對方IP位址,連接阜,自己電腦的哪些連接阜開放了...................
在指令格式下,使用用netstat -an時,常常看不出來,除非是在活動狀態。也看不出哪個連接阜是哪個程序開放的。用FPort或者APort或activeport這類檢視連接阜關聯工作的工具
用FPORT、antiyports等,只能看到PORT,不知道對方的IP。在通過QQ查對方的IP時,採用立即用netstat指令,常常看不到...
tcpview pro,感覺還不錯,可以看到那些程序正在通過什麼連接阜和誰在通信,以及對方的連接阜號,就是通過這個也能查出了一些木馬的。
有一個笨方法:
用一個駭客程式 IPhunter, 然後告訴對方有一個網站不錯
^^^^^^^^^^^^^
對方也知道你IP