Jump to ratings and reviews
Rate this book

Windows Sysinternals Administrator's Reference

Rate this book
Get in-depth guidance—and inside insights—for using the Windows Sysinternals tools available from Microsoft TechNet. Guided by Sysinternals creator Mark Russinovich and Windows expert Aaron Margosis, you’ll drill into the features and functions of dozens of free file, disk, process, security, and Windows management tools. And you’ll learn how to apply the book’s best practices to help resolve your own technical issues the way the experts do.

Diagnose. Troubleshoot. Optimize.


Analyze CPU spikes, memory leaks, and other system problems Get a comprehensive view of file, disk, registry, process/thread, and network activity Diagnose and troubleshoot issues with Active Directory® Easily scan, disable, and remove autostart applications and components Monitor application debug output Generate trigger-based memory dumps for application troubleshooting Audit and analyze file digital signatures, permissions, and other security information Execute Sysinternals management tools on one or more remote computers Master Process Explorer, Process Monitor, and Autoruns

494 pages, Paperback

First published January 1, 2009

18 people are currently reading
143 people want to read

About the author

Mark E. Russinovich

47 books366 followers
Mark Russinovich is a Technical Fellow in Windows Azure, Microsoft's cloud operating system group. Russinovich is a widely recognized expert in Windows operating system internals as well as operating system architecture and design.

Russinovich joined Microsoft when Microsoft acquired Winternals software, the company he cofounded in 1996 and where he worked as Chief Software Architect. He is also cofounder of Sysinternals.com, where he wrote and published dozens of popular Windows administration and diagnostic utilities including Autoruns, Process Explorer and Tcpview.

Russinovich coauthored "Windows Internals" and "The Sysinternals Administrator's Reference," both from Microsoft Press, authored the cyberthriller Zero Day, is a Contributing Editor for TechNet Magazine and Senior Contributing Editor for Windows IT Pro Magazine, and has written many articles on Windows internals. He has been a featured speaker at major industry conferences around the world, including Microsoft's TechEd, IT Forum, and Professional Developer's Conference, as well as Windows Connections, Windev, and TechMentor, and has taught Windows internals, troubleshooting and file system and device driver development to companies worldwide, including Microsoft, the CIA and the FBI. Russinovich earned his Ph.D. in computer engineering from Carnegie Mellon University.

Ratings & Reviews

What do you think?
Rate this book

Friends & Following

Create a free account to discover what your friends think of this book!

Community Reviews

5 stars
50 (42%)
4 stars
43 (36%)
3 stars
22 (18%)
2 stars
3 (2%)
1 star
0 (0%)
Displaying 1 - 6 of 6 reviews
Profile Image for Chris.
67 reviews1 follower
October 21, 2011
Too much time covering command line flags and menu items, not enough time covering case studies of how to use the tools. The final section that does this is really good, but unfortunately rather short compared to the reference portion.
Profile Image for Juan.
26 reviews
October 28, 2016
This book focuses on explaining how to use Sysinternals tools (options available, command line parameters, etc).
It's not technically hard to understand for a Windows admin. It's good for a begginer and intermediate, but not enough for a pro.
Final chapters are the best ones because deepens into real case scenarios. Unfortunatelly, that section is extremely short. I would appreciate more examples like these.
Profile Image for Billy.
15 reviews
December 6, 2021
This is a great companion if you’ve got use cases for SysInternals that really require leveraging all the advanced features and everything SysInternals has to offer. If you just want to learn how these tools work, you can get by with searching for blog posts or simply experimenting with them on a test system. So it can be hard to really get a good return on your time and money reading this book cover to cover. I found it much more valuable when I had specific projects that required, for example, diving deep into Autoruns.exe. In which case it was an excellent resource that covers things I was not able to find anywhere on the internet.
Profile Image for Ivan Vagunin.
1 review1 follower
November 5, 2017
2/3 of the book is like reading boring user manual, last part is good though.
Profile Image for Tamahome.
601 reviews199 followers
Read
February 17, 2012
I wish stores would stock it.

This is the shiznit. Although the Administrator account certainly isn't 'unrestricted'. You need the System user for that.
Displaying 1 - 6 of 6 reviews

Can't find what you're looking for?

Get help and learn more about the design.