Question About Windows 24h2 This Issue's Moment
@ADMIN/ @MODERATOR/ @AUTHORITY Sir, I need Windows 11 IOT Ltsc, Windows Server 2022 and Windows Server 2025 24H2 ISO To make a permanent bootable pen drive for lifetime use and start using my low-end and non-OS PCs!! But I Heard That I Shouldn't Download…
Outlook 2024 slows down massively when using remote credential guard
I would like to share some information here that might save one or the other admin who is in charge of Office and/or network security a few gray hairs. Also, I hope some MS office developers read this and ask themselves how this is possible and fix…
Microsoft XDR (Defender) - DeviceEvents - ShellLinkCreateFileEvent
Hi everyone, I've been trying to create a hunting query in the Defender portal to identify when a malicious .lnk file is created. I noticed that an interesting event to detect and analyze this is "DeviceEvents --> ShellLinkCreateFileEvent",…
Vulnerabilities on 'Azure Stack HCI' Cluster nodes | Need help
Hi, We have a production Azure Stack HCI v22H2 platform that hosts customers’ critical workloads. We recently received vulnerability scan results for HCI nodes, showing the following vulnerabilities as security threats that we need to remediate…
Query on WSL
Hi, I want to install WSL on Windows Server 2019. I have checked the Microsoft documentation, but I am unclear since it mentions both WSL 1 and WSL 2. Which version should I choose? If I want to install WSL on a server without internet connectivity, is…
Windows Defender Antimalware/Antivirus Signature Definition Check (Status: Remain)
Hi. I tried to solve for Windows Defender Antimalware/Antivirus Signature Definition Check by installing the latest mpam-fe.exe on Tableau Server but the issue still haven't been solved yet. I've checked solution by following this website. Last update is…
Re-definition: Complexity Requirements "full name that exceed two consecutive characters"
Hi, I am trying to understand the specifics of the AD-full name that exceed two consecutive characters strategy. I found and read this document, and after trying it out in a real environment, I came across some…
Query Windows Firewall
Hi All, I currently have Windows Firewall disabled in my environment, but I plan to enable it. If I enable Windows Firewall, what inbound and outbound traffic or ports are blocked or allowed by default?For example, let’s say I enable Windows Firewall on…
My antivirus still works and deletes files even though i have disabled it
i am trying to download a file and it keeps deleting it even after i have turned off my anti virus
Security Updates for Microsoft .NET Framework (October 2024)
Hi and a very good day people. I'm new in this. Need your assistance to solve/fix the same issue Security Updates for Microsoft .NET Framework (October 2024). You may refer to the details below. Previous Issue: Plugin Output: Microsoft .NET…
LSA Protection
Hi, We are enabling LSA protection: Reference https://learn.microsoft.com/en-us/windows-server/security/credentials-protection-and-management/configuring-additional-lsa-protection I am wondering about the following... As I understand if we see…
Multiple failed access attempts
Recently my email account has about 20 failed login attempts every day. This has been occurring for the past month and I am constantly being logged out of my email because of the multiple log in attempts. I changed my password and downloaded the…
How do I fix Win32kfull sys?
The win32kfull.sys issue is often associated with Blue Screen of Death (BSOD) errors on Windows. It generally points to problems with drivers, corrupt system files, or hardware issues. Below is a step-by-step guide to troubleshoot and resolve the…
How to set "pws:html/phish.hc" on Windows on my Windows 11 pro PC?
Hello, Is anyone helping me with this threat? "pws:html/phish.hc" I always got this threat alert. I have even removed it, but it keeps coming back. So, what should I do about it? Thanks.
Unable to debug Stored Procedure
I get the following error: Unable to start the Transact-SQL debugger, could not connect to the Database Engine instance. Make sure you have enabled the debugging firewall exceptions and are using a login that is a member of the sysadmin fixed server…
Microsoft XDR (Defender) - How to export - Advanced Hunting - Custom Detection Rules
Hello everyone, Our team is trying to export the Custom Detection Rules. We have more than 50 rules, so we need an automated process that allows us to export and import the rules. Currently, we see that the API function that allows this is still in beta:…
My touchpad has some issues and i cant find the solution anywhere . When i want to move the cursor it just gets dissapeared and moves down towards the taskbar on its own and becomes a dot like structure and then when i try to mive it towards where i want
My touchpad has some issues and i cant find the solution anywhere . When i want to move the cursor it just gets dissapeared and moves down towards the taskbar on its own and becomes a dot like structure and then when i try to mive it towards where i want…
Schannel error on Windows Server 2022 backgroundTaskHost
I am seeing a lot of Schaneel Errors with event id 36871 "A fatal error occurred while creating a TLS client credential. The internal error state is 10013." The SSPI client process is backgroundTaskHost with different PIDs everytime. It is…
CVE-2013-3900 WinVerifyTrust Signature Validation Vulnerability
Hi All https://msrc.microsoft.com/update-guide/vulnerability/CVE-2013-3900 To remediate the vulnerability CVE-2013-3900 is to add the below registry values. [HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Wintrust\Config] …
Turn off Spotlight collection on Desktop
Hi All i have an ask to enable the below policy on windows servers. What benefit will i get by enabling this policy on windows servers. This is Personalization settings i believe. User Configuration\Policies\Administrative Templates\Windows…