Microsoft Protocols Programs

I am frankly astounded by the number of documents available. and are 314 MB total.
I am probably going to follow the recommendations in the [MS-DOCO]: Windows Protocols Documentation Roadmap that outlines what to read and in which order. That means starting with [MS-PROTO]: Windows Protocols Overview and [MS-SYS]: Windows System Overview. Documentation like this is a boon for those who develop protocol analyzers, network security inspection systems, and filtering products. Security analysts and reverse engineers will also like to read this material.
Is there anything you do differently when analyzing attacks involving the SMB protocol?
Doesn't matter to me -- I'm just glad to see the docs.