1,126 questions with Sysinternals-related tags

Sort by: Updated
1 answer

How to securely use PSEXEC with a remote user and password from a batch file?

I use PSEXEC to administer many embedded Windows systems (no KVM) that are not part of our domain. (Think of a thermostat or freezer.) They use their own user/password that does not exist in our domain or locally. I use "PSEXEC -u user -p…

Sysinternals
Sysinternals
Advanced system utilities to manage, troubleshoot, and diagnose Windows and Linux systems and applications.
1,126 questions
asked 2024-07-18T02:53:39.1+00:00
Taed Wynnell 0 Reputation points
answered 2024-07-19T09:18:28.3966667+00:00
RLWA32 43,046 Reputation points
0 answers

Process Monitor Not Picking Up Any Events When "Drop Filtered Events" is toggeled?

I am trying to troubleshoot an issue with Sever 2022 becoming unable to RDP into it after some time, and I'm trying to use Process Monitor to monitor the key HKLM\SYSTEM\CurrentControlSet\Control\Terminal Server\fDenyTSConnections. However, when I toggle…

Sysinternals
Sysinternals
Advanced system utilities to manage, troubleshoot, and diagnose Windows and Linux systems and applications.
1,126 questions
asked 2024-07-18T21:41:49.8366667+00:00
Curtis W. Wright 0 Reputation points
edited the question 2024-07-18T21:43:34.7666667+00:00
Curtis W. Wright 0 Reputation points
1 answer

How can I limit or delete the folder content of Sysmon folder?

I have Sysmon installed in all of our Servers 2019 and 2022. It piles up the logs in C:/Sysmon folder. The folder is owned by TrustedInstaller so generally I cannot delete the content. I have used PSexec but whenever I try to run that it gives an error…

Sysinternals
Sysinternals
Advanced system utilities to manage, troubleshoot, and diagnose Windows and Linux systems and applications.
1,126 questions
asked 2024-07-16T13:59:09.0666667+00:00
ADRookie 0 Reputation points
commented 2024-07-18T12:07:08.6+00:00
MotoX80 32,736 Reputation points
1 answer

Sysmon 15 is not able to start service in timely manner?

Sysmon v15.0 installation failed during StartService operation and it tried to clean up machine by uninstalling it automatically, but uninstall operation failed as well and left the System in bad state so reinstallation is not working either. System…

Sysinternals
Sysinternals
Advanced system utilities to manage, troubleshoot, and diagnose Windows and Linux systems and applications.
1,126 questions
asked 2023-08-15T18:30:12.3366667+00:00
SPP12345 15 Reputation points
answered 2024-07-18T10:23:33.64+00:00
Alex Mihaiuc 176 Reputation points Microsoft Employee
2 answers

Sysmon 13.01 Prevent ArchiveDirectory creation and file delete backup

Is there a way with Sysmon 13.01 to prevent the creation of the Archive Directory (default is C:\Sysmon) and prevent file deletions from saving the file to the local filesystem?

Sysinternals
Sysinternals
Advanced system utilities to manage, troubleshoot, and diagnose Windows and Linux systems and applications.
1,126 questions
asked 2021-02-09T00:15:19.653+00:00
Tommy Myers 21 Reputation points
commented 2024-07-18T05:53:13.2566667+00:00
ADRookie 0 Reputation points
0 answers

Sysinternals - ZoomIt v8.01 - Multi Screen Support - Feedback

Hello, I am a bit surprised by how difficult it is to find good/simple windows screen zooming tools. In a multiple monitor scenario I want zoom one monitors screen. I don't want scale, I don't want a magnifier window gobbling more screen space,…

Sysinternals
Sysinternals
Advanced system utilities to manage, troubleshoot, and diagnose Windows and Linux systems and applications.
1,126 questions
asked 2024-07-03T19:59:10.6733333+00:00
Heslington, Tony 0 Reputation points
edited a comment 2024-07-18T05:18:02.0433333+00:00
brandon hong 0 Reputation points
1 answer

Process Explorer does not respond when starting

On many windows servers I have when I start Process Explorer x64, the screen shows the list of processes but Process Explorer is not responding (for example scrolling down the process list does not do anything). The status bar continues to update showing…

Sysinternals
Sysinternals
Advanced system utilities to manage, troubleshoot, and diagnose Windows and Linux systems and applications.
1,126 questions
asked 2024-07-13T06:36:08.0433333+00:00
Dani Avni 0 Reputation points
answered 2024-07-13T06:48:53.5566667+00:00
gregory223 0 Reputation points
0 answers

Sysmon - Non-ASCII character in the ParentUser and ParentCommandLine field

Has anyone seen  this behavior with Sysmon:  getting non-ASCII characters in the ParentUser, and ParentCommandLine fields?   Sometimes it looks like another language character set, other times it is WingDings or some other non-sensical characters.    …

Sysinternals
Sysinternals
Advanced system utilities to manage, troubleshoot, and diagnose Windows and Linux systems and applications.
1,126 questions
asked 2024-07-10T15:25:31.47+00:00
Robert Morningstar 0 Reputation points
edited a comment 2024-07-10T15:35:47.4933333+00:00
Robert Morningstar 0 Reputation points
2 answers

verified signer

In Process Explorer I clicked Options > Verify Image Signatures. Several show no signer and "The system cannot find the specified file". If I attempt to kill the process it reports "Error Opening process: Access is denied'". If I…

Sysinternals
Sysinternals
Advanced system utilities to manage, troubleshoot, and diagnose Windows and Linux systems and applications.
1,126 questions
asked 2024-07-07T22:50:04.4866667+00:00
John Terdik 0 Reputation points
commented 2024-07-10T05:33:47.4766667+00:00
2 answers

How to remove (none) from BGInfo output?

Computers these days have so many network connection options the BGInfo is providing useless info for network adapters that are not being used. As seen here this PC is only using one network connection but because it has a WiFi adapter, Ble and…

Sysinternals
Sysinternals
Advanced system utilities to manage, troubleshoot, and diagnose Windows and Linux systems and applications.
1,126 questions
asked 2022-03-28T15:44:35.8+00:00
rhoutz 116 Reputation points
commented 2024-07-08T06:09:37.68+00:00
xia Lian 0 Reputation points
0 answers

sigcheck: non-ASCII characters in output are being replaced with question marks

For example, for this (https://www.virustotal.com/gui/file/6279b309469c10b8c478c49ad6cf06b7f7307079bd90f00bbe3b292d5c6a52e5/details) sample I get the following output: Verified: Signed Signing date: 12:05 PM 7/4/2024 Publisher: ??????????? ... I…

Sysinternals
Sysinternals
Advanced system utilities to manage, troubleshoot, and diagnose Windows and Linux systems and applications.
1,126 questions
asked 2024-07-04T14:43:35.21+00:00
Max Zhenzhera 0 Reputation points
0 answers

no filename completion with remote cmd.exe started with psecex

When running a remote cmd.exe with psexec, why doesn't filename completion and the cls, Title and color commands not work there? Win 10/64, PsExec v2.43

Sysinternals
Sysinternals
Advanced system utilities to manage, troubleshoot, and diagnose Windows and Linux systems and applications.
1,126 questions
asked 2024-07-04T13:37:34.82+00:00
Thomas Kobler 0 Reputation points
0 answers

process explorer app in system tray

how to place process explorer app in system tray

Sysinternals
Sysinternals
Advanced system utilities to manage, troubleshoot, and diagnose Windows and Linux systems and applications.
1,126 questions
asked 2024-07-02T21:07:19.98+00:00
JaimeOyarzo 0 Reputation points
0 answers

Output of GFlags "Show Loader Snaps" not visible in DebugView

"Show Loader Snaps" is a very useful GFlag to investigate dependency issue of an application. When using it, I will get the debug output of this flag in the Debug Output windows of Visual Studio 2022 - that is nice. But when using the famous…

Windows
Windows
A family of Microsoft operating systems that run across personal computers, tablets, laptops, phones, internet of things devices, self-contained mixed reality headsets, large collaboration screens, and other devices.
5,069 questions
Sysinternals
Sysinternals
Advanced system utilities to manage, troubleshoot, and diagnose Windows and Linux systems and applications.
1,126 questions
asked 2024-04-23T09:14:05.78+00:00
Mario Rössel 0 Reputation points
commented 2024-07-02T09:02:21.9966667+00:00
Mario Rössel 0 Reputation points
2 answers

Problem with Process Explorer Windows 10 "a device attached to the system is not functioning"

When I attempt to bulk check for all processes in Process Explorer with VirusTotal, This error show up "a device attached to the system is not functioning". I have already attempted to resolve the issue by deleting it from the registry and…

Sysinternals
Sysinternals
Advanced system utilities to manage, troubleshoot, and diagnose Windows and Linux systems and applications.
1,126 questions
asked 2023-07-04T01:32:31.4+00:00
ali sabir 0 Reputation points
answered 2024-07-02T06:40:25.4033333+00:00
Morteza Nakhaei 0 Reputation points
0 answers

sysinternals zoomit recording suddently started giving an error

I'm using zoomit from sysinternals, and one of the most used features I used was the screen recording. I don't know what happened, but it suddently stopped working giving the following error: ZoomIt Error starting recording: Invalid pointer OK …

Sysinternals
Sysinternals
Advanced system utilities to manage, troubleshoot, and diagnose Windows and Linux systems and applications.
1,126 questions
asked 2024-01-04T11:08:11.96+00:00
Luís Lopes 45 Reputation points
commented 2024-07-01T16:13:02.8466667+00:00
Bizanator 0 Reputation points
1 answer

RDCMan mouse cursor jumps to the left

I am using RDCMan v2.90 on a Windows 10 laptop. When my mouse cursor is inside RDCMan's window, the cursor jumps to the left on its own every few minutes. If I move my cursor to anywhere outside RDCMan's window, the cursor becomes normal. Regular…

Sysinternals
Sysinternals
Advanced system utilities to manage, troubleshoot, and diagnose Windows and Linux systems and applications.
1,126 questions
asked 2022-05-13T13:05:01.4+00:00
Rajeev Mehra 6 Reputation points
commented 2024-07-01T13:21:08.6766667+00:00
Ira Dorman 0 Reputation points
1 answer

Sysmon v9.01 shows up after uninstalling v15.14

Hello, I am running into a bit of an issue and I can't find anymore information regarding it. We have no more use for Sysmon on our network and I am working through uninstalling it from our Windows 10 devices. After uninstalling v15.14 with the…

Windows
Windows
A family of Microsoft operating systems that run across personal computers, tablets, laptops, phones, internet of things devices, self-contained mixed reality headsets, large collaboration screens, and other devices.
5,069 questions
Sysinternals
Sysinternals
Advanced system utilities to manage, troubleshoot, and diagnose Windows and Linux systems and applications.
1,126 questions
asked 2024-06-27T18:47:17.3+00:00
Seth Anders 0 Reputation points
answered 2024-06-28T14:56:48.4666667+00:00
Seth Anders 0 Reputation points
1 answer

bginfo - logon desktop (screen) for console users - does this work in windows 10?

I'm trying to get some info appear on the logon screen. It doesn't seem to work. Am I understanding this feature wrong? I have win 10 enterprise. Only setting this registry entry gets results: HKLM\SOFTWARE\Policies\Microsoft\Windows\Personalization…

Sysinternals
Sysinternals
Advanced system utilities to manage, troubleshoot, and diagnose Windows and Linux systems and applications.
1,126 questions
asked 2024-06-26T15:39:05.87+00:00
js2010 191 Reputation points
answered 2024-06-28T12:39:41.6733333+00:00
MotoX80 32,736 Reputation points
0 answers

BgInfo support for PowerShell commands and scripts

Please add PowerShell command and script support to BgInfo. BgInfo currently supports many legacy methods for data collection such as environment variables, registry value, WMI query and VB scripts. Modern system administrators and IT professionals…

Sysinternals
Sysinternals
Advanced system utilities to manage, troubleshoot, and diagnose Windows and Linux systems and applications.
1,126 questions
asked 2021-07-24T00:55:41.77+00:00
Tyrone Wyatt 171 Reputation points
commented 2024-06-27T22:39:26.9533333+00:00
Brian Somerfield 0 Reputation points