Process Heap Viewer

By: tnagareshwar

October 8, 2008 10:35 am

Reads: 192



ProcHeapViewer is a fast heap enumeration tool which uses better technique than normal Windows heap API functions. It is very useful tool for anyone especially developers involved in analyzing process heaps and makes it easy to troubleshoot any heap related problems.

Traditional Windows heap enumeration functions are slower and take lot of time while traversing large number of heap blocks. ProcHeapViewer removes those flaws by using better implementation based on reverse engineering of heap API functions.

Now it comes with integrated search feature which makes it easy to find ASCII as well as Unicode strings within the heap blocks.

Using ProcHeapViewer:

Launch ProcHeapViewer by clicking on the binary file. It automatically loads all running processes including services.

  • Select any process from the list. Then all the heap nodes for that process will be displayed.
  • Now you can click on any of the heap nodes to display all the heap blocks within it.
  • Next click on one of the heap block to view its contents. You can store its contents by clicking on the ‘save’ button. To get back to the main screen, simply click on ‘close’ button.
  • Use the ‘Find’ button to search for ASCII as well as Unicode strings within the heap blocks.




VN:F [1.9.22_1171]
Rating: 0.0/5 (0 votes cast)

Categories: Cool Tools, SecureLogin

Disclaimer: As with everything else at NetIQ Cool Solutions, this content is definitely not supported by NetIQ, so Customer Support will not be able to help you if it has any adverse effect on your environment.  It just worked for at least one person, and perhaps it will be useful for you too.  Be sure to test in a non-production environment.

1 Comment

  1. By:tnagareshwar

    Here is the location of new updated version