ESET SysInspector — System Diagnostics and Malware Analysis Tool
Why It Matters
Sometimes antivirus says “all clean,” but something still feels wrong: slow boot, odd processes, strange network traffic. ESET SysInspector is designed for those cases. It’s not a scanner that blocks threats in real time — instead, it collects a full snapshot of the system so admins can review what’s running and what might look suspicious.
How It Works
SysInspector runs as a standalone utility (no install required). It gathers detailed info: running processes, loaded drivers, registry entries, startup items, open network connections, file signatures, and more. Each item is scored by risk level, making it easier to spot anomalies. Reports can be exported as XML or stored for later comparison. For deeper analysis, admins can generate two snapshots and let SysInspector highlight what changed.
Technical Notes
Area | Notes |
Platform | Windows (XP → 11) |
Core function | System inspection, diagnostics, suspicious item scoring |
Data collected | Processes, drivers, registry, startup entries, network connections |
Output | Local report (XML/HTML), diff reports between snapshots |
License | Free tool, part of ESET ecosystem |
Deployment Notes
– Download directly from ESET website (portable EXE).
– Run as admin for full visibility.
– Review risk-colored tree view: green (safe) → red (potentially dangerous).
– Export reports for later review or support tickets.
– Use the diff feature to compare system state before/after incident.
Where It Fits
– Helpdesk and support teams checking suspicious PCs.
– Incident response as part of triage when AV missed something.
– Forensics: tracking changes over time via diff reports.
– SMBs and enterprises wanting a free diagnostic tool from a trusted vendor.
Caveats
– Windows-only.
– Doesn’t block threats — inspection only.
– Risk scoring is heuristic; requires analyst judgment.
– Large reports can overwhelm less experienced users.