Process Explorer

by Barry Dysert
(last updated February 27, 2017)

Process Explorer comes to us from the folks at Sysinternals, so it's very well designed and implemented. It has so much functionality built into it that it would require many tips to do a decent job covering it. I just introduce it here and give you a high-level overview of a few things you can do with it so that you can add it to your toolbox.

Process Explorer is a GUI-based utility that allows you to look at and, to some degree, manipulate the processes on your system. When you first launch it, the main screen can be quite overwhelming. (See Figure 1.)

Figure 1. Process Explorer's Main Screen.

By default Process Explorer displays five columns: the process name, its PID (process ID), the CPU percentage it's using, the process' description, and the company name. By right-clicking a column header you can select several other columns that can be displayed.

You can sort the display by any column. I usually have the display sorted by CPU so that the most CPU-intensive processes appears near the top. Sometimes, though, you may want to sort by process name (especially if you're interested in a particular process) or by another column that you've added. To sort by a column, just click that column's header. The display is then sorted in ascending order by that column. Another click of that column's header causes the display to be sorted in descending order by that column.

Process Explorer can also run in two-pane mode. To bring up the second pane, click View | Show Lower Pane. The display is then split horizontally and the new pane appears empty. To see meaningful data in the bottom pane, all you need to do is click a process in the top pane. (See Figure 2.)

Figure 2. Process Explorer's two-pane view with a process selected.

Basically the bottom pane provides more information about whatever process you have selected in the top pane. Since processes can require and use other processes, this is a very helpful way to figure out the entire scope of what a process is using on your system.

The Process Explorer feature that I use the most is the Find command. Have you ever tried to delete a file only to be told that the file is in use by another program? The Find command locates the process holding the file open so you can decide what to do about it. For example, say that I have a file called "Temp.tmp" that I'd like to delete. When I try, though, I get the error message that it's in use by another program. (See Figure 3.)

Figure 3. File In Use error message.

Of course, the dialog box indicating that Temp.tmp is in use doesn't provide any indication of which program has the file open. With Process Explorer this is no longer a problem. I simply click the binoculars icon (the Find command), enter the name of the locked file, and click Search. (See Figure 4.)

Figure 4. Searching for the locked file.

I quickly see that the process holding the file open is "DeleteMe" and its PID is 2872. I can now do further research to determine how to get the file released or what the ramifications might be if I simply kill the process holding it open.

Process Explorer is a free download and can be retrieved at this Microsoft site:

http://technet.microsoft.com/en-us/sysinternals/bb896653.aspx

 This tip (12989) applies to Windows 7, 8, and 10.

Author Bio

Barry Dysert

Barry has been a computer professional for over 30 years, working in different positions such as technical team leader, project manager, and software developer.  He is currently a senior software engineer with an emphasis on developing custom applications under Microsoft Windows. ...

MORE FROM BARRY

How to Change Drive Letters

Windows is quite configurable. It even allows you to change the drive letters associated with your disk drives. Although the ...

Discover More

Creating a Custom View in the Event Viewer

Creating a custom view in the Event Viewer allows you quick access to those events you're interested in watching over time. ...

Discover More

Customizing the SendTo Menu

The SendTo menu can be used to perform some handy tasks with files. By following the steps in this tip you'll be able to ...

Discover More
More WindowsTips

KeePass Password Safe

If you feel overwhelmed by the number of usernames and passwords you have to remember, KeePass Password Safe is your answer. ...

Discover More

Using Process Monitor

A very useful tool in diagnosing what is going on with processes and/or files is the Process Monitor tool from Sysinternals. ...

Discover More

How to Password Protect a File or Folder via Zip

If you routinely create ZIP files, you may want to add some protection to those files. This tip shows how easy it is to add ...

Discover More
Subscribe

FREE SERVICE: Get tips like this every week in WindowsTips, a free productivity newsletter. Enter your address and click "Subscribe."

View most recent newsletter.

Comments

If you would like to add an image to your comment (not an avatar, but an image to help in making the point of your comment), include the characters [{fig}] in your comment text. You’ll be prompted to upload your image when you submit the comment. Maximum image size is 6Mpixels. Images larger than 600px wide or 1000px tall will be reduced. Up to three images may be included in a comment. All images are subject to review. Commenting privileges may be curtailed if inappropriate images are posted.

What is 8 + 8?

There are currently no comments for this tip. (Be the first to leave your comment—just use the simple form above!)


Newest Tips
Subscribe

FREE SERVICE: Get tips like this every week in WindowsTips, a free productivity newsletter. Enter your address and click "Subscribe."

(Your e-mail address is not shared with anyone, ever.)

View the most recent newsletter.