This tool shows you the accesses the user or group you specify has to files, Registry keys or Windows services.
This simple yet powerful security tool shows you who has what access to directories, files and Registry keys on your systems. Use it to find holes in your permissions.
CacheSet is a program that allows you to control the Cache Manager's working set size using functions provided by NT. It's compatible with all versions of NT and full source code is provided.
Wish you could quickly defragment your frequently used files? Use Contig to optimize individual files, or to create new files that are contiguous.
Display volume disk-mappings
This utility captures all hard disk activity or acts like a software disk activity light in your system tray.
Graphical disk sector utility
View disk usage by directory
View information for encrypted files
FAT32 for Windows NT 4.0 v1.06
Another first from Sysinternals: a FAT32 file system driver for NT 4.0. Dual booting with Windows 95OSR2 and Windows98 just got more efficient!
This monitoring tool lets you see all file system activity in real-time.
This utility expands the NT 4.0 Recycle Bin to catch file deleted from command prompts and within programs, and it comes with full source code. Several powerful device driver techniques, including getting a user's SID within a driver, enumerating a directory's contents, and generating IRPs, are demonstrated in source code available for download.
Create Win2K NTFS symbolic links
Dump the contents of the Logical Disk Manager's on-disk database, which describes the partitioning of Windows 2000 Dynamic disks.
Schedule file rename and delete commands for the next reboot. This can be useful for cleaning stubborn or in-use malware files.
If you dual boot between NT 4 and Windows 2000 then your NTFS drives were upgraded to NTFS v5 and you have had to boot into Windows 2000 to check them. With NTFSCHK you can check your NTFS v5 drives from NT 4.
Access NTFS drives for read-only access from DOS.
NTFSDOS Professional v4.01
Full read/write access to NTFS drives from DOS! Download this free read-only version.
NTFS for Windows 98 v2.0 Read-Only
Yet another first from Sysinternals: a full-blown NTFS file system driver for Windows 95/98!
Use NTFSInfo to see detailed information about NTFS volumes, including the size and location of the Master File Table (MFT) and MFT-zone, as well as the sizes of the NTFS meta-data files.
Ever wondered why you can't put NTFS on a floppy disk? Find out how and why NT stops you from doing it, and use NTFSFlp to bypass NT's preventative measures and create and access NTFS floppy disks.
Finally, the utility that NT system administrators have been waiting for. With NTRecover you can access a dead x86 NT system's disks from a good system over a serial connection. You can then salvage data off of the drives using native NT commands and utilities. With the write-version you can even run chkdsk on the dead system's drives! The read-only version is freeware.
Defragment your paging files and Registry hives!
See what files are scheduled for delete or rename the next time the system boots.
See what files are opened remotely
The PsTools suite includes command-line utilities for listing the processes running on local or remote computers, running processes remotely, rebooting computers, dumping event logs, and more.
Remote Recover v2.0
Access unbootable systems from across a LAN or WAN. With Remote Recover you can access a dead x86 NT system's disks from a good system over a TCP/IP connection. You can then salvage data off of the drives using native NT commands and utilities. With the write-version you can even chkdsk, format or partition the dead system's drives! The read-only version is freeware.
Securely overwrite your sensitive files and cleanse your free space of previously deleted files using this DoD-compliant secure delete program. Complete source code is included.
Scan file shares on your network and view their security settings to close security holes.
Dump file version information and verify that images on your system are digitally signed.
Reveal NTFS alternate streams
Flush cached data to disk
Set Volume ID of FAT or NTFS drives