Windows

10 Sysinternals tools you shouldn't be without

#2 Process Explorer

Process Explorer is a great tool for digging into open files or resources. Trying to open a file, but getting a notification that it is already open? Process Explorer can help determine which application or process has the file open. It is a GUI-based utility and can be used as a task manager replacement. The utility has two panes of information, the top pane shoes currently active processes on your system and includes information about the name, the account that owns the process, and the CPU usage of the process.

The bottom pane of Process Explorer has two modes of operation, handle mode and DLL mode. When handle mode is enabled, selecting a process in the top portion of the window will show you the handles that the process has open. In DLL mode the pane displays the DLLs and memory mapped files loaded by the selected process.

About

Derek Schauland has been tinkering with Windows systems since 1997. He has supported Windows NT 4, worked phone support for an ISP, and is currently the IT Manager for a manufacturing company in Wisconsin.

6 comments
AlexNet0
AlexNet0

On the Process Explorer section. "The utility has two panes of information, the top pane *shoes*" (shows) "currently active processes on your system and includes information about the name"

gpachello
gpachello

Very usefull tool for remote command execution. It allows @file where you can put a list of machines to excute the same command on all machines. Regards. G.D.P.

Craig_B
Craig_B

I think all the Sysinternals tools are great and I have a little batch file to keep my local copy up to date. rem Copy New sysinternals tools net use t: \\live.sysinternals.com\tools robocopy t:\ c:\Utils /e /r:2 /w:5 /np /xo net use t: /delete

ehula
ehula

I recognize SysInternals from Process Explorer, but didn't know about ZoomIt. That is a neat little program. I plan on using it tomorrow for a presentation on a new process.

hrosita
hrosita

I have a stubborn file that will not delete while the system is running. I love your solution of Movefile.

iShango
iShango

Thanks for that. I like small simple amd smart. This is all three.