Huorong Sword is a standalone analysis utility that displays processes, startup items, network connections and kernel objects, ideal for security analysis and troubleshooting.
Main capabilities
Structured views of processes, modules, registry, services, drivers and network connections in real time.
- Tree view of processes and modules
- Full view of startup items and services
- Kernel objects and drivers
Typical scenarios
Analyzing unknown programs, hunting stubborn processes and locating abnormal startup entries.
- Unknown program behavior analysis
- Terminating stubborn processes
- Locating abnormal system entries
FAQ
Do regular users need it?
Usually not. It is aimed at analysts and advanced users.
Is misuse risky?
Actions like ending processes or deleting startup entries change system state, so use them carefully.