Return to Windows DevOps - WinOps, choco install sysinternals
The Sysinternals web site was created in 1996 by Mark Russinovich to host his advanced system utilities and technical information. Whether you’re an IT Pro or a developer, you’ll find Sysinternals utilities to help you manage, troubleshoot and diagnose your Windows systems and applications.
* '''Process Explorer''': An advanced process management utility that shows detailed information about active processes, including their handles and DLLs. * '''Process Monitor''': A real-time monitoring tool that captures system activity related to processes, threads, file system, registry, and network operations. * '''Autoruns''': Shows which programs are configured to run during system bootup or login. * '''TCPView''': Displays detailed listings of all TCP and UDP endpoints on the system, including local and remote addresses and state of TCP connections. * '''Sysmon''': Monitors and logs system activity to the Windows event log for detailed forensic analysis. * '''PsTools''': A set of command-line utilities to manage processes, obtain system information, and perform various administrative tasks remotely.
* '''Detailed System Monitoring''': Provides in-depth analysis and real-time monitoring of system processes, performance, and security. * '''Advanced Troubleshooting''': Helps diagnose and resolve complex system issues with comprehensive tools. * '''Security Analysis''': Identifies potential security threats and unauthorized system changes. * '''Remote Management''': Facilitates remote administration and troubleshooting through command-line utilities. * '''Extensive Documentation''': Includes detailed documentation and usage examples for each tool.
1. Download and run Process Explorer from the Sysinternals website. 2. View detailed information about processes, including CPU usage, memory usage, and active handles.
```cmd procmon.exe ``` * Captures real-time system activity and allows filtering to focus on specific events of interest.
1. Run Autoruns from the Sysinternals suite. 2. View and manage programs configured to run at startup, including those in the registry and startup folders.
```cmd tcpview.exe ``` * Provides a real-time view of all network connections, including details about local and remote addresses and connection states.
```cmd psexec \\remote-computer cmd ``` * Executes a command prompt on a remote computer, allowing remote administration and task execution.
Windows Sysinternals is a website that offers technical resources and utilities to manage, diagnose, troubleshoot, and monitor a Microsoft Windows environment. Originally, the Sysinternals website (formerly known as ntinternals) was created in 1996 and was operated by the company Winternals Software LP, which was located in Austin, Texas. It was started by software developers Bryce Cogswell and Mark Russinovich. Microsoft acquired Winternals and its assets on July 18, 2006.
The website featured several freeware tools to administer and monitor computers running Microsoft Windows. The software can now be found at Microsoft. The company also sold data recovery utilities and professional editions of their freeware tools.
Fair Use Source: https://www.youtube.com/watch?v=_MUP4tgdM7s&list=PLhFhDWFYccZ_GvdJ11NZwaBAhwDCWmni_&index=2
winget install sysinternals
BgInfo BlueScreen Screen Saver CpuStres Ctrl2Cap DebugView Desktops Hex2dec NotMyFault PsPasswd PsShutdown RDCMan RegDelNull Registry Usage Reghide RegJump Strings Testlimit ZoomIt
You have sysinternals v2021.10.26 installed. Version 2021.12.16 is available based on your source(s).
Progress: Downloading sysinternals 2021.12.16… 100%
sysinternals v2021.12.16 [Approved]
sysinternals package files upgrade completed. Performing other installation steps.
Sysinternals Suite is going to be installed in 'C:\ProgramData\chocolatey\lib\sysinternals\tools'
Downloading sysinternals
from 'https://download.[[sysinternals.com]]/files/[[SysinternalsSuite]].[[zip]]'
Progress: 100% - Completed download of C:\Users\USERNAME\AppData\Local\Temp\chocolatey\sysinternals\2021.12.16\SysinternalsSuite.zip (45.51 MB).
Download of SysinternalsSuite.zip (45.51 MB) completed. Hashes match.
Extracting C:\Users\USERNAME\AppData\Local\Temp\chocolatey\sysinternals\2021.12.16\SysinternalsSuite.zip to C:\ProgramData\chocolatey\lib\sysinternals\tools…
C:\ProgramData\chocolatey\lib\sysinternals\tools
The upgrade of sysinternals was successful.
Software installed to 'C:\ProgramData\chocolatey\lib\sysinternals\tools'
Microsoft Windows: Windows Sucks!!!, Windows Fundamentals, Windows Inventor: Microsoft, Windows Server Fundamentals, WinOps-Windows DevOps-PowerShell Core - Windows PowerShell, Windows Server in the Cloud, Windows Server (Windows Server 2022-Windows Server 2019-Windows Server 2016-Windows Server 2012-Windows Server 2008-Windows Server 2003), Windows Development, Windows Developer, Windows SDK, Windows History, Windows Virtualization (Azure Virtual Desktop- Windows 365-Windows as a Service-Microsoft 365), Windows Desktop - Windows Versions (Windows 11-Windows 10-Windows 8-Windows 7-Windows Vista-Windows XP-Windows 2000-Windows ME-Windows 98-Windows 95-Windows NT-Windows for Workgroups-Windows 3.x-Windows 2.x), Windows Networking, Windows Storage-Windows File System, Windows Security, Windows Registry, Microsoft PowerToys, Windows Glossary - Glossaire de Windows - French. (navbar_windows - see also navbar_windows_server, navbar_windows11, navbar_windows_development, navbar_windows_registry)
Cloud Monk is Retired ( for now). Buddha with you. © 2025 and Beginningless Time - Present Moment - Three Times: The Buddhas or Fair Use. Disclaimers
SYI LU SENG E MU CHYWE YE. NAN. WEI LA YE. WEI LA YE. SA WA HE.