Synopses & Reviews
The Only Book for the Leading Winternals Tools
Used in Microsoft Networks!
Winternals first came to my rescue in November of 1999. It was then that I purchased my Winternals Administrator's Pak. It contained BlueSave Version 1.01, ERD Commander Professional Version 1.06, Monitoring Tools (Filemon and Regmon) Enterprise Editions Version 1.0, NTFSDOS Professional Version 3.03, NTRecover Version 1.0, and Remote Recover Version 1.01. We had a Windows NT 4 server in the dead zone. I spent a few hours reading over the ERD and Remote Recover user guides, created a client floppy, and began my quest. Thank goodness that version of ERD had the ability to access NT-defined fault-tolerant drives. Within a few hours we had recovered the system and were back up and running. With that success, I thought back on hundreds of earlier incidents that made me wish I had purchased Winternals sooner. We have come a long way since then; the Winternals team has improved upon and added many tools and features to the Administrator's Pak utilities. One thing remains constant-in the Microsoft administrator's world, Winternals is a lifesaver.-from the Foreword by Dave Kleiman Master ERD Commander 2005 Use the ERD Commander to make a boot disk, run the Locksmith, remove hotfixes, access restore points, and more. Explore Process Activity with Process Explorer Use Autoruns and Process Explorer together to troubleshoot startups and combat malware. View the Security Settings of Your Computer Use the various Winternals tools to monitor users and shared resources, investigate suspicious local files, and search for installed rootkits. Use Sysinternals Tools to Monitor Active Sessions Use FileMon to view all fileactivity and Regmon to view all Registry activity. Integrate with Windows' System Programs Manage disk fragmentation, get extended file/disk information, and manage disk utilization. Perform Data Recovery Recover data across a network, recover files, and restore lost active directory data. Troubleshoot System Failures Make sense of a Windows crash, identify errant drivers, detect problematic file and registry accesses, and more. Monitor Connections with TCPTools View active network connections and identify problematic network applications using TCPView and TDIMon. Optimize NT 4.0 Systems Extend the Life of NT 4 systems using CacheSet, Contig, PMon, and Frob.
Synopsis
The only book available for the market leading Winternals tools used in over 70,000 Microsoft networks worldwide.
The book begins with a chapter describing the most common challenges faced by system administrators related to system recovery, data backup and system performance enhancements. The next chapters introduce the readers to the complete suite of Winternals solutions including Recovery Manager, Defrag Manager, and the Administrator's Pak which repairs unbootable or locked-out systems, restores lost data, and removes malware from infected machines. Chapters on the Administrator’ Pak detail all the components of this powerful suite of tools including: ERD Commander 2005, Remote Recover, NTFSDOS Professional, Crash Analyzer Wizard, FileRestore, Filemon Enterprise Edition, Regmon Enterprise Edition, AD Explorer, Insight for Active Directory, and TCP Tools. Each of these chapters details the complete functionality of all tools, and also provides detailed examples for using all tools in relatively simple to extremely complex scenarios. The chapters and companion Web site also include dozens of working scripts to automate many data recovery, backup, and performance enhancement tasks.
· Winternals tools are the market leading data recovery and system optimization tools for Microsoft Networks. These tools are deployed in more than 70,000 companies worldwide
· Despite the popularity of the Winternals tools, there are no competing books
· The companion Web site to the book will provide dozens of working scripts to optimize and enhance the performance of the Winternals tools
Synopsis
This guide and its companion Web site provide system administrators for a Microsoft network with all the information necessary to take full advantage of Winternals' comprehensive and reliable tools.
About the Author
Dave Kleiman (CAS, CCE, CIFI, CISM, CISSP, ISSAP, ISSMP, MCSE) has worked in the Information Technology Security sector since 1990. Currently, he is the owner of SecurityBreachResponse.com, and is the Chief Information Security Officer for Securit-e-Doc, Inc. Before starting this position, he was Vice President of Technical Operations at Intelliswitch, Inc., where he supervised an international telecommunications and Internet service provider network. Dave is a recognized security expert. A former Florida Certified Law Enforcement Officer, he specializes in computer forensic investigations, incident response, intrusion analysis, security audits, and secure network infrastructures. He has written several secure installation and configuration guides about Microsoft technologies that are used by network professionals. He has developed a Windows Operctor of Education at the International Information Systems Forensics Association (IISFA).Laura E. Hunter (CISSP, MCSE, MCT, MCDBA, MCP, MCP+I, CCNA, A+, Network+, iNet+, CNE-4, CNE-5) is a Senior IT Specialist with the University of Pennsylvania, where she provides network planning, implementation, and troubleshooting services for various business units and schools within the university. Her specialties include Microsoft Windows NT and 2000 design and implementation, troubleshooting, and security topics.
Senior IT Specialist with the University of Pennsylvania, USA
Table of Contents
Chapter 1: Introduction to Defragmentation, Data Recovery, and Performance Enhancement. Chapter 2: Recovery Manager Chapter 3: Defrag Manager Chapter 4: Introduction to the Administrator's Chapter 5: ERD Chapter 6: Remote Recover Chapter 7: NTFSDOS Professional Chapter 8: Crash Analyzer Wizard Chapter 9: FileRestore Chapter 10: Filemon Enterprise Edition Chapter 11: Regmon Enterprise Edition Chapter 12: AD Explorer Chapter 13: Insight for Active Directory Chapter 14: TCP Tools