Jump to content

BYTE-ME

Member
  • Posts

    67
  • Joined

  • Last visited

  • Donations

    0.00 USD 
  • Country

    United States

About BYTE-ME

  • Birthday 11/20/1951

Profile Information

  • OS
    Windows 10 x64

Recent Profile Visitors

2,724 profile views

BYTE-ME's Achievements

11

Reputation

  1. That NEOWIn story reads like a Microsoft press release. I haven't had any issues with either Sordum product which I put on all my computers. It is probably users of the newest builds of Windows 11 or those who install MS updates on top of Windows 10 or old Windows 11 versions, that are likely are having issues with Defender Control. I don't think the Microsoft's effort to keep Defender enabled is altruistic either. MS allows some competing anti-virus software makers to disable Defender, so why can't the end user do the same? The extra overhead of anti-virus software is totally unnecessary, in my opinion. Computer software updates have been fingered as the culprit in a number of hacks including the famous Solar Winds attack that hit more than 100 supposedly sophisticated business and tech companies). What's more, software updates often create new compatibility issues. My advice is to clean install Windows, then turn off both Defender and Windows Update, and make regular image backups of your clean Windows image. If you get infected or a driver install goes bad, just reimage your drive with one of your clean, uninfected Windows images and keep it moving...
  2. @mina7601. I can move and re-size my windows taskbar. Maybe it's some utility I installed but I could have sworn you can do this with OEM Windows 11. EDIT, oh so I see it's changed in Windows 22H2 build. But there are registry hacks that can modify the taskbar: https://www.alphr.com/move-taskbar-windows-11/
  3. The best tool I've found is MSMG Toolkit, although even after it removes telemetry and other components, Windows 11 will still phone home and install updates that put you back to square one, especially if you use Edge Browser or update the OS. For that reason don't go online until you've installed a good firewall, if you do use MSMG Toolkit or any of the other alternatives suggested in this thread.
  4. You can also use the <!--Skip Trusted Platform Module / Secure Boot Check--> entry in the autounattend.xml file example that I posted earlier in this thread. This is ideal for those users who already have a working ISO/USB setup and use an autounattend.xml file to auto-install Windows 11.
  5. @i430VX. I agree that phone app provisioning is all about ease of use and I'm normally alll for ease of use. But it's also discriminatory against people who don't have or c an't afford smart phones. In reacent years in the tech world, ease-of-use has become a trojan horse for privacy invation and proprietary schemes that prevent end users from using/improving/modifying or hacking a product in the way the consumer wants, in many cases. So when you hear: "Let us save you the trouble of understanding this process...." run the other way!
  6. MSFN members do a lot of complaining about Windows telemetry, but I recently discoverd, while shopping to upgrade my old Wifi router, that those devices, especially mesh Wifi routers, almost universally, require users to give cloud access to the manufacturer and let them sniff your LAN traffic in order to onboard the device to your local network. No more logging into a Wifi router's IP address to set it up. No, they want you to use a smart phone app so they know exactly who you are. Aside from the security risk, I find this kind of instrusiveness outrageous. The only non-telemetry mesh wifi access point I could find was GL.iNet GL-B1300. How did Wifi makers get consumers to swallow this BS?
  7. I recommend you remove my comments before testing. Sometimes Windows gets sensitive about Autounattend.xml file size. Good luck.
  8. Using a custom autounattend.xml file is another fairly simple way to to install Windows 11 on "unsupported" hardware. Placing the answer file, below, in the Root of your Windows 11 install medium will bypass the checks for Trusted Platform Module or TPM, Secure Boot and memory and storage requirements. The answer file will also create a "Main" user whose name and password you are encouraged to change. You must also search for the KMS key for your windows version and substitute it for every instance of "XXXXX-XXXXX-XXXXX-XXXXX-3V66T" in this file. Other modification you may or may not wish to use are annotated in the file script comments, e.g. <!-- COMMENT-->. NOTE: You still must do disk partitioning and formatting prior to installing Windows. But if you create PID.txt and ei.cfg files and place them in the Windows "sources" folder on your install medium, Windows 11 setup should otherwise not require user input. <!--************************************************* REV: 04/24/2022 LOCATION: MILKY WAY USER: XXXXXX NOTES: Admin Windows 11 Answer File RETAIL KMS: XXXXX-XXXXX-XXXXX-XXXXX-3V66T OVER VERSION'S KMS: https://winaero.com/windows-11-generic-keys-for-all-editions Reference: https://docs.microsoft.com/en-us/windows-hardware/customize/desktop/unattend https://www.elevenforum.com/t/sharing-some-helpful-answer-files-to-bypass-win-11-setup-requirements-and-more.3300 http://www.windowsafg.com **************************************************--> <?xml version="1.0" encoding="utf-8"?> <unattend xmlns="urn:schemas-microsoft-com:unattend"> <settings pass="windowsPE"> <!--Language--> <component name="Microsoft-Windows-International-Core-WinPE" processorArchitecture="amd64" publicKeyToken="31bf3856ad364e35" language="neutral" versionScope="nonSxS" xmlns:wcm="http://schemas.microsoft.com/WMIConfig/2002/State" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"> <SetupUILanguage> <UILanguage>en-US</UILanguage> </SetupUILanguage> <InputLocale>0409:00000409</InputLocale> <SystemLocale>en-US</SystemLocale> <UILanguage>en-US</UILanguage> <UILanguageFallback>en-US</UILanguageFallback> <UserLocale>en-US</UserLocale> </component> <component name="Microsoft-Windows-Setup" processorArchitecture="amd64" publicKeyToken="31bf3856ad364e35" language="neutral" versionScope="nonSxS" xmlns:wcm="http://schemas.microsoft.com/WMIConfig/2002/State" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"> <!--Skip Trusted Platform Module / Secure Boot Check--> <RunSynchronous> <RunSynchronousCommand wcm:action="add"> <Order>1</Order> <Path>reg add HKLM\System\Setup\LabConfig /v BypassTPMCheck /t reg_dword /d 0x00000001 /f</Path> </RunSynchronousCommand> <RunSynchronousCommand wcm:action="add"> <Order>2</Order> <Path>reg add HKLM\System\Setup\LabConfig /v BypassSecureBootCheck /t reg_dword /d 0x00000001 /f</Path> </RunSynchronousCommand> <RunSynchronousCommand wcm:action="add"> <Order>3</Order> <Path>reg add HKLM\System\Setup\LabConfig /v BypassRAMCheck /t reg_dword /d 0x00000001 /f</Path> </RunSynchronousCommand> <RunSynchronousCommand wcm:action="add"> <Order>5</Order> <Path>reg add HKLM\System\Setup\LabConfig /v BypassCPUCheck /t reg_dword /d 0x00000001 /f</Path> </RunSynchronousCommand> <RunSynchronousCommand wcm:action="add"> <Order>4</Order> <Path>reg add HKLM\System\Setup\LabConfig /v BypassStorageCheck /t reg_dword /d 0x00000001 /f</Path> </RunSynchronousCommand> </RunSynchronous> <UserData> <AcceptEula>true</AcceptEula> <FullName>MainUser</FullName> <Organization>Default</Organization> <!-- OEM Installer Product ID Key. Do not change/uncomment--> <ProductKey> <Key>XXXXX-XXXXX-XXXXX-XXXXX-3V66T</Key> </ProductKey> </UserData> </component> </settings> <!-- Skip EULA OEM Installer--> <settings pass="offlineServicing"> <component name="Microsoft-Windows-LUA-Settings" processorArchitecture="amd64" publicKeyToken="31bf3856ad364e35" language="neutral" versionScope="nonSxS" xmlns:wcm="http://schemas.microsoft.com/WMIConfig/2002/State" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"> <EnableLUA>false</EnableLUA> </component> </settings> <settings pass="specialize"> <component name="Microsoft-Windows-International-Core" processorArchitecture="amd64" publicKeyToken="31bf3856ad364e35" language="neutral" versionScope="nonSxS" xmlns:wcm="http://schemas.microsoft.com/WMIConfig/2002/State" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"> <InputLocale>0409:00000409</InputLocale> <SystemLocale>en-US</SystemLocale> <UILanguage>en-US</UILanguage> <UILanguageFallback>en-US</UILanguageFallback> <UserLocale>en-US</UserLocale> </component> <component name="Microsoft-Windows-Security-SPP-UX" processorArchitecture="amd64" publicKeyToken="31bf3856ad364e35" language="neutral" versionScope="nonSxS" xmlns:wcm="http://schemas.microsoft.com/WMIConfig/2002/State" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"> <SkipAutoActivation>true</SkipAutoActivation> </component> <component name="Microsoft-Windows-SQMApi" processorArchitecture="amd64" publicKeyToken="31bf3856ad364e35" language="neutral" versionScope="nonSxS" xmlns:wcm="http://schemas.microsoft.com/WMIConfig/2002/State" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"> <!-- CUSTOMER EXPERIENCE IMPROVEMENT PROGRAM: MS collects information about your hardware, software and services to identify usage patterns. 0=Disabled 1=Enabled --> <CEIPEnabled>0</CEIPEnabled> </component> <component name="Microsoft-Windows-Shell-Setup" processorArchitecture="amd64" publicKeyToken="31bf3856ad364e35" language="neutral" versionScope="nonSxS" xmlns:wcm="http://schemas.microsoft.com/WMIConfig/2002/State" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"> <ComputerName>PC-NAME</ComputerName> <ProductKey>XXXXX-XXXXX-XXXXX-XXXXX-3V66T</ProductKey> </component> </settings> <settings pass="oobeSystem"> <component name="Microsoft-Windows-Shell-Setup" processorArchitecture="amd64" publicKeyToken="31bf3856ad364e35" language="neutral" versionScope="nonSxS" xmlns:wcm="http://schemas.microsoft.com/WMIConfig/2002/State" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"> <!--Auto Logon--> <AutoLogon> <Password> <Value>ADD-MY-PASSWOR-HERE</Value> <PlainText>true</PlainText> </Password> <Enabled>true</Enabled> <LogonCount>4</LogonCount> <Username>MainUser</Username> </AutoLogon> <!--Auto Logon--> <OOBE> <!--Customize Windows Out of Box Experience--> <HideEULAPage>true</HideEULAPage> <HideOEMRegistrationScreen>true</HideOEMRegistrationScreen> <HideOnlineAccountScreens>true</HideOnlineAccountScreens> <HideWirelessSetupInOOBE>true</HideWirelessSetupInOOBE> <NetworkLocation>Work</NetworkLocation> <SkipUserOOBE>true</SkipUserOOBE> <SkipMachineOOBE>true</SkipMachineOOBE> <UnattendEnableRetailDemo>false</UnattendEnableRetailDemo> <!-- PROTECT YOUR PC 1 = Recommended level of protection for your computer. 2 = Only updates are installed. 3 = Disable automatic protection. --> <ProtectYourPC>3</ProtectYourPC> </OOBE> <UserAccounts> <!--User Accounts--> <LocalAccounts> <LocalAccount wcm:action="add"> <Name>MainUser</Name> <Group>Administrators</Group> <Password> <Value>ADD-MY-PASSWORD-HERE</Value> <PlainText>true</PlainText> </Password> <DisplayName>Main User Name</DisplayName> <Description>MAIN USER</Description> </LocalAccount> </UserAccounts> <RegisteredOrganization>Default</RegisteredOrganization> <RegisteredOwner>Default</RegisteredOwner> <DisableAutoDaylightTimeSet>false</DisableAutoDaylightTimeSet> <FirstLogonCommands> <SynchronousCommand wcm:action="add"> <Description>Control Panel View</Description> <Order>1</Order> <CommandLine>reg add "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ControlPanel" /v StartupPage /t REG_DWORD /d 1 /f</CommandLine> <RequiresUserInput>true</RequiresUserInput> </SynchronousCommand> <!-- Set Control Panel icons small--> <SynchronousCommand wcm:action="add"> <Order>2</Order> <Description>Control Panel Icon Size</Description> <RequiresUserInput>false</RequiresUserInput> <CommandLine>reg add "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ControlPanel" /v AllItemsIconView /t REG_DWORD /d 0 /f</CommandLine> </SynchronousCommand> <!-- Set User Password Never Expires--> <SynchronousCommand wcm:action="add"> <Order>3</Order> <RequiresUserInput>false</RequiresUserInput> <CommandLine>cmd /C wmic useraccount where name="MainUser" set PasswordExpires=false</CommandLine> <Description>Password Never Expires</Description> </SynchronousCommand> </FirstLogonCommands> <!-- Set Time Zone--> <TimeZone>FLE Standard Time</TimeZone> </component> </settings> </unattend>
  9. @GD 2W10. For me, performing a clean Windows 11 install was pretty much like the procedure I posted here for Windows 10. I think Rufus adds the benefit of automating the deletion of the "appraisesres.dll" that's used to block unsupported hardware installs. But it could be more involved than that. In any event, it worked for me.
  10. Am I missing something? Isn't it easier to create a Windows 11 iso or USB stick using Rufus Version 3.17 (Build 1846) and the directions here rather than the numerous steps outlined above. Or is there some advantage to the longer procedures? I tried Rufus for my first Windows 11 clean install on a non-compliant PC and it worked like a charm. The Windows 11 ISO l created even played nice with the Windows 10 answer file I used to define, passwords, users and other settings for the clean install.
  11. @Tripredacus. I just did a deep dive into your remote code links. Wow, what a mess. I found that stopping unnecessary services and blocking executables from communicating with the Internet with my firewall has almost shutdown all that automated garbage, at least according to Wireshark and Process Hacker. I'm modifying my router logs to make them spot more grandular activity and will watch those to make sure I'm making headway. But, like I said, it's an endless arms race trying to stay ahead of malware. Keeping my fingers crossed.
  12. One of the most problematic pieces of tech advice, which is given in knee-jerk fashion by nearly all technology columnists, is to "update your software." However, hackers are constantly innovating faster than tech companies can create solutions to stop them, including this month's Log4j flaw. In addition, software updates have been fingered as the culprit in a number of hacks including the famous Solar Winds attack that hit more than 100 supposedly sophisticated business and tech companies Software updates also often create new compatibility issues such as this Windows 10 update that created printing errors that Microsoft took weeks to fix. I've finally ditched all of that madness and disabled all updates as well as Windows defender, not only to avoid the problems I've mentioned but also to lessen telemetry and the data traffic MS wants to extract from my PC. Now I simply make backups of my clean, working OS, and put those backups on my NAS and in the cloud. That way if I'm hacked I can restore a working operating system, and wait until updates have been fully tested and vetted by MS users and then download those directly from MS's servers. It's not an ideal solution but I just have had it with software vendors having remote access to modify my PC. Just my two cents.
  13. I liked Windows 7 and 8.1. The only reason I upgraded was lack of hardware support for NVMe 4.0 drives and my 10GBe network cards.
  14. @aviv00. I don't doubt your screen shot. But I would suggest you check your router's logs as well and/or install Wireshark to track actual bytes going in and out of your network. This 2016 article suggests Windows 10 sends data every 15 minutes to transmit the contents of %ProgramData%\Microsoft\Diagnosis folder but that may have changed since the article was published. . . .PS, apparently the %ProgramData%\Microsoft\Diagnosis folder can be deleted! So I've written an Autoit script to do that and crearted a scheduled task that executes every 15 minutes! No harmful effects, so far. Wow, I'm sure MS is going to close that hole. But victory for now...
×
×
  • Create New...