The trace feature in the Device Snapshot tool allows you to determine which:
-
threads are associated with which process
-
modules (DLL files) are associated with which process
-
window is held open by which process
Click any line in any pane and all of the connections are highlighted for you. As shown in Figure 1, the selection in the Processes pane causes the associated threads, modules, and windows to be highlighted in their respective panes.
Figure 1. Device Snapshot Trace Feature