Connect to Azure AD joined client with RDCMan
I love Remote Desktop Connection Manager (RDCMan) and I use it every day. However, I can't get it to connect to an Azure joined Win10/11 device (using mstsc.exe works). Is there a way to make it work on RDCman or is anyone updating RDCMan with this…
Process Monitor 4.01 Crashed Using Windows 10 Pro 32-bit
I was using Process Monitor 4.01 on Windows 10 Pro 32-bit with one "include" filter for "foobar2000.exe" (version 2.2 preview 2024-09-11) to check for "File Not Found" errors. There were no other filters added or changed…
Feature request: ProcDump "BreakPoint" - mem-dump on specific address
Please add a feature - "break-point", i.e. to be able to trigger a memory-dump when execution reaches a specific address (in a form "module!offset"). purpose - it will serve similar purpose as a debugger breakpoint, but in…
sysmon.exe vs sysmon64.exe
I'd like to once and for all understand the difference between the 3 sysmon executables contained in sysmon.zip (sysmon.exe, sysmon64.exe and sysmon64a.exe). At one point I believed that sysmon64 was the Itanium (ia64) version and that running the plain…
Sysinternal Zoomit does not prompt to save recording when you stop recording
In Zoomit I have lost recording at the moment that I close the recording. I do not know if it a bug and zoomit just fails to save the file. or I am accidentally hitting Exit since it is right underneath Record in the menu If this is the case can zoomit…
sysinternals Remote Desktop Connection Manager - Scale Factor
Hi, Sysinternals Remote Desktop Connection Manager (2.92) is blurry (and slow). I'm on a 27" screen (2560*1440). Scale Factor to 125%. I had to to go in the "compatibility" settings for High DPI and make it "by application" to…
Hot Keys these are CTRL+ALT+LEFT/RIGHT in RDCMan v2.90 don't work on Windows 11 (22621)
I'm frequently using Hot Keys these are CTRL+ALT+LEFT/RIGHT in RDCMan to switch the session screen. But these Hot Keys can't work after Windows upgrade to Windows 11 (22621). Do you know is it a known issue? or do you know how to resolve it?
Autologon version
Can someone clarify what the difference between, Autologon64.exe and Autologon64a.exe is?
insider program
cant relink my account to insider program after years of being in it
Autoruns 14.11 dark mode has black text instead of white/gray text on Windows 11
The screenshot below shows black text while Autoruns 14.11 is in dark mode on Windows 11. Ideally, the text should be white or gray while in dark mode. Can someone please look into this issue and provide a resolution?
Sysmon 15 is not able to start service in timely manner?
Sysmon v15.0 installation failed during StartService operation and it tried to clean up machine by uninstalling it automatically, but uninstall operation failed as well and left the System in bad state so reinstallation is not working either. System…
Sysmon service - security descriptors and recover options
To prevent user tampering and recover from process crashes, when installing sysmon I used to modify the security descriptors on the service to remove Admin's ability to stop it and set the recovery options to restart after 1st, 2nd and subsequent…
How to temporarily stop as much as possible Microsoft network traffic on a potentially compromised machine
I need to connect my potentially compromised Win10 machine to the network briefly to determine any attempted target endpoint addresses, while blocking the actual connections at the edge firewall. However, various Microsoft products are generating an…
Delete the white line and the logo
So I have just signed in my Microsoft Teams school's account and I found out when I press "Type here to search", up on the "All" is the white line with my school's logo. How can I remove this? Please tell me because I feel like I am…
400% difference in CPU usage between "Task Manager" and "Sysinternal's Process Explorer"
On one specific server I have 400% difference in CPU usage between "Task Manager" and "Sysinternal's Process Explorer" (both picture taken on the same screenshot, so at the exact same time). What can be the cause of this…
"Autologon SysInternals" app is not working after enrolling the device in Intune
Our customer uses "Autologon SysInternals" app to enable autologon with saved password for some the devices. Once we enroll such device in Intune, "Autologon SysInternals" app fails its purpose and autogon with save password in not…
How to make way for powershell to run a script when error 15100 is in the way?
In order to run a script from https://learn.microsoft.com/en-us/powershell/module/microsoft.powershell.core/about/about_scripts?view=powershell-7.4 (the Get-servicelog.ps1) it is needed the error with McpManagementService be addressed (see…
Can't uninstall Sysmon 15.5 - access denied
Hello, I've tried multiple suggestions of other posts, nothing worked. When I try to uninstall sysmon using the same installer used to install it, I get: Stopping the service failed: The system cannot find the file specified Deleteervice failed: …
autoruns shows MS file bthhfenum.sys not verified (Windows 10 Home)
When I run autoruns, it shows a file that is not verified that is supposed to be provided from microsoft. VirusTotal does not consider it a threat. Is this something I should be concerned about? My Windows 10 home edition is up to date. …
Sysmon's reported CommandLine adds extra percent characters on Process Create events
When launching a process with a percent sign in the command line arguments, Sysmon adds an additional percent character for each one in the actual command line arguments. This issue is observed in both v13.24 and Sysmon 15.15 on at least Windows 10. For…