Monday, 24 August 2015

Setting up a NAT network on VirtualBox

VirtualBox is available as a free download from Oracle.

It can be set up in various ways.  New in the latest version is something called "NAT network" - essentially allowing you to run several virtual machines that share a virtual network, and NAT through the host machine's network card.

Set-up comprises:
1. Create virtual machines
2. Create virtual network - this affectively sets up the router (which was the bit I didn't realise)
3. Add the virtual machines to the network

Create the virtual network by going to File - Preferences - Network - NAT networks
Add a new one, call it whatever you like, then go into the settings for it and set the network CIDR - by default this is a class A network with a single subnet.  If you're going to run a DC on this network with DHCP, untick the "Supports DHCP" option on the NAT network.  Essentially, this page is setting up the (virtual) gateway router that sits between the guest VMs (either client or server) and the host (which, to the VMs, is equivalent to the internet).  Port forwarding is not required for standard applications.

Having set up the NAT network, all the VMs have to be configured to use it - this is the virtual equivalent of plugging the cable in.  Right-click on a VM and choose "Settings", then Network.  Click the "Attached to:" drop down and choose "NAT Network".  If there is only one NAT network configured, it will be chosen by default.  Repeat for all VMs on the same network.

All that remains is to fire up the server VM and set up a static IP address in the same range, and a DHCP scope.  Any client VMs can be set up to use DHCP.

Wednesday, 19 August 2015

Office registration

For Office 2010 Pro - only had this problem with trying to activate with a VLK.

If it gives peculiar errors on activation, or appears to activate but keeps asking to activate again on reboot, then activate via vbs:

a. Open an administrative command-prompt
b. Run one of the following command-lines based on your Operating System:

x86
cscript "C:\Program Files\Microsoft Office\Office14\ospp.vbs" /act
x64
cscript "C:\Program Files (x86)\Microsoft Office\Office14\ospp.vbs" /act


Slightly (sort of) related: Office performs a licence check whenever you start up an Office product, causing the Office Software Protection Platform service to start.  This then doesn't shut down automatically.  However, you can set this in the registry (need to create a new value):

Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OfficeSoftwareProtectionPlatform

ValueName: InactivityShutdownDelay

ValueType: DWORD

ValueData: The number in seconds, that the Office Software Protection Platform will stay running for, after the most recent activity. The windows default for this is 300 seconds.

Details taken from the MS Technet forums.

Tuesday, 18 August 2015

AV rescue

Starting point for AV tools for a USB stick.
(All downloads available from BleepingComputer)

Create a bootable USB flash drive (requires WinPE from Windows ADK)
Will need to amend .cmd file by changing xcopy path.


Anti-rootkit
Malwarebyes Anti-Rootkit
TDSSKiller (only removes the TDSS rootkit)
Vba32 AntiRootkit
McAfee Labs rootkitremover
Panda antirootkit
TrendMicro RootkitBuster
MS Rootkit Revealer
GMER
aswMBR - specifically for MBR rootkits (needs reboot in safe mode)

Anti-malware
AdwCleaner
Malwarebytes AntiMalware


Anti-virus
EmiSoft Emergency kit (portable)
AVG remover
Avast remover
Sophos AV removal (standalone)


Specialist software
RogueKiller - stops running processes
rkill.exe - as above
ComboFix 15 - NB useful to have, USE WITH CAUTION. Win8 or below.
TreeSize Free - identifies storage use
CCleaner - Piriform crap cleaner.  Old files.
Recuva - Piriform file recovery
Hijack This - identifies startup hijacks.
Revo uninstaller - (30-day trial)
Process Explorer - task manager on steroids

Desktop utils
HashTab - adds an extra entry to file property page showing checksum. (free/$10)
SpeedFan

Monday, 17 August 2015

Outlook tweaks

With reference to Office 2010 Pro. Outlook - always defaults on install to minimum usability!

Navigation pane can be turned off from View tab. All folders apart from Sent are in the "Messages" view.

Generally, to change nav pane for all folders, change the default message view.

Specifically here, change the page to suit, then apply current view elsewhere: View tab > Change View > Apply current views to other mail folders...

Select folders from the list which appears. This will not change hidden folders (ones with their own views) or any folders where the view has been manually changed. For the latter, reset all views first: start up Outlook from a command line with switches:

 outlook.exe /cleanviews

Thursday, 6 August 2015

Windows 7 tweaking

Decluttering explorer's navigation pane:

Homegroups: link to How-to Geek
Disable homegroup services.  That's it (assuming it wasn't added at install.)

Libraries.
I liken these to having a lady's maid or valet.  You say what clothes you want, and those clothes appear as if by magic.  If you want a shirt in the middle of the night, you're stuffed - you might know you have it, but good luck with finding it.  There's also the danger that the location of some of your clothes is "in the pawn shop," which isn't immediately obvious.

Full tutorial at sevenforums
Removing requires regedit:
HKEY_CLASSES_ROOT\CLSID\{031E4825-7B94-4dc3-B131-E946B44C8DD5}\ShellFolder
Change permissions on shell folder to give admins full control.
Modify attributes: b090010d removes, b080010d adds.


For Windows 7 x64, the above also needs doing at
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{031E4825-7B94-4dc3-B131-E946B44C8DD5}\ShellFolder

Changed pinned Explorer task location (independent of libraries!):
Under properties>shortcut change %windir%\explorer.exe (libraries) to (for example)
Computer: %windir%\explorer.exe shell:MyComputerFolder
My Docs:  %windir%\explorer.exe /n,::{450D8FBA-AD25-11D0-98A8-0800361B1103}
User profile: %windir%\explorer.exe shell:Profile
C: drive:  %windir%\explorer.exe /e,c:

Change start menu start locations away from libraries: use .reg files at sevenforums as it requires changing the values of entries from one string of gibberish to another.  .reg files also provided for changing back.  Needs a reload of the hive to work!