-
NetDef
AskWoody_MVPAnother mitigation layer to consider: Use a DNS service that attempts to delist all known malware addresses.
https://blog.cloudflare.com/introducing-1-1-1-1-for-families/
~ Group "Weekend" ~
2 users thanked author for this post.
-
NetDef
AskWoody_MVPHey Susan!
Wanted to thank you for posting this. I was trying to conduct a live migration today to move several VM’s over to a new Hyper-V host on an AD network that had taken the November patches.
The Kerberos constrained delegation trust relationship between the old host and the new Hyper-V host was completely broken by the Nov 12th patch on the domain controller. Kept getting errors that one host could not connect to the other. (WinRM failures)
I installed the hot fix listed (KB KB5021655 from the MS download catalog for Server 2019) on the MS Status page link you provided on the Domain Controller and also applied the LSASS memory leak mitigation reg-key mentioned on the same page – again on that same DC.
It completely fixed the issue with my migration failures.
Weirdly, this particular customer informed me that all their workstations had been popping up an odd notification since Nov 12th asking them to lock and unlock their computer to refresh a password change . . . but none of them had recently changed their passwords. If the user complied with the lock/unlock process, the popup would repeat anyway at some random time – several times a day. That issue also went away once I installed this hotfix on the DC.
~ Group "Weekend" ~
-
NetDef
AskWoody_MVPCheap, effective mitigation for the current highest risk on new cars with remote start key fobs: a faraday box.
I got one that actually works for about $20 . . . tested by putting keys inside and trying to open a car that uses the near field to unlock doors when I touch the handle.
~ Group "Weekend" ~
3 users thanked author for this post.
-
NetDef
AskWoody_MVPThat was a source of confusion for a long time, as the tool allowed an invalid combination by accident that would not work . . . Glad they fixed it finally!
~ Group "Weekend" ~
-
NetDef
AskWoody_MVP -
NetDef
AskWoody_MVPJune 15, 2022 at 11:08 am in reply to: Will gpedit Target Release Version stop PARTIAL download for update to Win 11? #2453705Just a quick visual aid for GPEdit.msc using PKCano’s settings above:
~ Group "Weekend" ~
1 user thanked author for this post.
-
NetDef
AskWoody_MVPIn my past life had a very clunky but effective way to do this. Create a uniquely named txt file on the USB drive root, make sure it’s not on any other drive.
Then in the BAT script use ‘if exist d:\someweirdfilename.txt then xxx” checks for that file on likely drive letters to find it. I did this to manage a home brewed backup solution for spanning multiple external drives back in the day.
~ Group "Weekend" ~
-
NetDef
AskWoody_MVPIf you have MS Office (any current version) on Windows – I might suggest taking some aggressively proactive prevention steps. (See Susan’s post above.)
Two new factors:
1) .LNK files are also able to call this vuln.
2) Renaming a word document to .RTF can cause this vuln to trigger on file preview in File Explorer. No file opening needed.
~ Group "Weekend" ~
-
NetDef
AskWoody_MVPMay 17, 2022 at 1:41 pm in reply to: Ensure AltSecID attribute on the krbgt account is not populated #2447372I remember a certification class several years ago on AD where this topic came up. The instructor was very adamant that we should never – ever – touch this account nor it’s properties.
Does not surprise me at all that internal MS testing on patches would assume this account to be unmodified. Although I am dismayed at the apparent lack of error handling around this issue. A LSASS level system crash is difficult to recover from! Most admins I know would want to restore a cold metal backup on this event, but with AD in the mix that’s fraught with additional challenges.
~ Group "Weekend" ~
-
NetDef
AskWoody_MVPHonestly, unless there’s a new feature you must have? I might wait until October 2025.
Office 2016 for Windows will get security updates until October 14, 2025.
The mainstream support end date is October 13, 2020, while the extended support end date is October 14, 2025.“What’s new in Office 2021” (but note some new features are missing in the Long Term license.)
~ Group "Weekend" ~
1 user thanked author for this post.
-
NetDef
AskWoody_MVPI feel this so much. I took on a couple small storefront clients several years ago and the same pattern. Plus, the inexpensive (relatively – it was not cheap in cost) software they used was . . . how to say it politely? “Not well written.”
~ Group "Weekend" ~
-
NetDef
AskWoody_MVPI wonder if the USB port on the slow system is the older speed standard. Look at the ports and see if it’s black, or blue or yellow. If you can find a blue port, try that and see if the speed is better.
USB 2 = typically black ports (sometimes white)
USB 3 = typically blue ports (sometimes yellow)
Speeds between the types are dramatically different.
~ Group "Weekend" ~
-
NetDef
AskWoody_MVPI prefer to turn the following notification settings off during setup.
Start >> Settings >> System >> Notifications
(Yellow highlights = uncheck)
~ Group "Weekend" ~
1 user thanked author for this post.
-
NetDef
AskWoody_MVPWell, I do have a special boxed software edition that I keep for the memories. Part of a collection from years of working on certain projects.
Blast from the past:
~ Group "Weekend" ~
1 user thanked author for this post.
-
NetDef
AskWoody_MVP. . . and that’s worse. Now it’s dropping the required live feeds. Trying to edit and redo line feeds results in . . . no improvement.
Bah. Some days I wish I didn’t feel the need to help.
~ Group "Weekend" ~
![]() |
There are isolated problems with current patches, but they are well-known and documented on this site. |
SIGN IN | Not a member? | REGISTER | PLUS MEMBERSHIP |

Plus Membership
Donations from Plus members keep this site going. You can identify the people who support AskWoody by the Plus badge on their avatars.
AskWoody Plus members not only get access to all of the contents of this site -- including Susan Bradley's frequently updated Patch Watch listing -- they also receive weekly AskWoody Plus Newsletters (formerly Windows Secrets Newsletter) and AskWoody Plus Alerts, emails when there are important breaking developments.
Get Plus!
Welcome to our unique respite from the madness.
It's easy to post questions about Windows 11, Windows 10, Win8.1, Win7, Surface, Office, or browse through our Forums. Post anonymously or register for greater privileges. Keep it civil, please: Decorous Lounge rules strictly enforced. Questions? Contact Customer Support.
Search Newsletters
Search Forums
View the Forum
Search for Topics
Recent Topics
-
Another Windows media creation tool? Sure, why not.
by
Alex5723
8 hours, 4 minutes ago -
Microsoft Defender : Legit URLs marked as malicious
by
Alex5723
8 hours, 12 minutes ago -
Refurbished HP ProBook
by
Kathy Stevens
11 hours, 4 minutes ago -
Microsoft PC Manager (beta) updates
by
Alex5723
3 hours, 36 minutes ago -
Ubuntu Cinnamon becomes an official flavor, making Linux Mint obsolete
by
Alex5723
14 hours, 58 minutes ago -
HDMI KVM switch for DP
by
freelab23
22 hours, 43 minutes ago -
My Experience with Win 11 ver 22H2
by
agoldhammer
1 day, 5 hours ago -
Email from Mail on my iPhone to Gmail address failed
by
DrRon
3 hours, 6 minutes ago -
Can’t Update Win 10 past 21H2
by
cmndo97
1 day, 7 hours ago -
Revo Uninstaller (freeware) Updates
by
Microfix
23 hours, 43 minutes ago -
The Third deployment phase for CVE-2022-37967 starts April 11, 2023
by
Alex5723
1 day, 7 hours ago -
Firefox to support Windows 7 and 8 systems well into 2024 at least
by
Alex5723
16 hours, 11 minutes ago -
Microsoft 365 Personal – Repeated Free Two Month Extensions
by
BarryEB
6 hours, 52 minutes ago -
KB5023702 for Server 2019 – Defer as of MPL March 27
by
Aviel
15 hours, 12 minutes ago -
eSIM out, iSIM in?
by
Alex5723
1 day, 17 hours ago -
MS-DEFCON 4: Win11 22H2 not ready for prime time
by
Susan Bradley
4 hours, 11 minutes ago -
Email from Mail on my iPhone to Gmail address failed
by
DrRon
1 day, 19 hours ago -
Microsoft Edge Remover
by
Alex5723
1 day, 6 hours ago -
Windows Desktop refreshes repeatedly every few seconds
by
JimT777
14 hours, 40 minutes ago -
Apple zero days fixed today
by
Susan Bradley
1 day, 14 hours ago -
W10 22H2 Desktop rogue icon won’t allow me to rename, delete, or replace it
by
lanshark
5 hours, 46 minutes ago -
Footnote separators not deleting
by
Ursula
2 days, 4 hours ago -
Should I Go Beyond Version 21H2
by
kstephens43
20 hours ago -
MacStealer: New macOS-based Stealer Malware Identified
by
Alex5723
2 days, 3 hours ago -
PowerShell – Testers Needed
by
RetiredGeek
4 hours, 31 minutes ago -
Audio from www.whenradiowas.com stops playing after 7-20 minutes
by
David Pressman
1 day, 11 hours ago -
KB4023057: Update for Windows Update Service components
by
RetiredGeek
1 day, 6 hours ago -
win 12 as BORG?
by
krism
2 days, 3 hours ago -
Windows 11 — should I stay on Windows 10?
by
DDR
1 day, 6 hours ago -
Did I really install PaintShop Pro?
by
Mike Ray
2 days, 3 hours ago
Recent blog posts
Key Links
Want to Advertise in the free newsletter? How about a gift subscription in honor of a birthday? Send an email to sb@askwoody.com to ask how.
Mastodon profile for DefConPatch
Mastodon profile for AskWoody
Home • About • FAQ • Posts & Privacy • Forums • My Account
Register • Free Newsletter • Plus Membership • Gift Certificates • MS-DEFCON Alerts
Copyright ©2004-2023 by AskWoody Tech LLC. All Rights Reserved.