Driver backup

dism /online /export-driver /destination:C:\drivers-backup

Restore OS

sysprep /generalize
CTRL+SHIFT+F3 to audio mode

.Net versions query

reg query "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\NET Framework Setup\NDP"
reg query "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\NET Framework Setup\NDP\v4\Full"

Edition Unique Features

10: Free RemoteFX, WSL
2016: NFS Server, Hyper-V DDA


Startup Folder

  • shell:startup

    Date & Time

    timedate.cpl []

Query .Net Framwork Versions

reg query "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\NET Framework Setup\NDP

Auto Login


CMD Commands


netstat -ano | findstr LISTEN
netsh interface portproxy add v4tov4 listenport=3333 listenaddress= connectport=3213 connectaddress= 
route add  MASK
route add  MASK
netsh interface ip set address "Ether..." static

SUBST X: "D:\Folder_to_map"


Disable Windows Defender

  • gpedit.msc: Computer Configuration/Administrative Templates/Windows Components/Windows Defender

Registry locations

NFS mount

Turn Windows features on or off -> Services for NFS

# seems not working anymore (Dec 2019)
Get-WindowsFeature -Name NFS*
Install-WindowsFeature -Name NFS-Client

mount ip-of-NFS-Server:/Share-Name  x:


Fix cifs/share mount:

net use * /del /yes
net use h: \\\docs /user:ServerB\user Password



Force OOBE

  • Shift+F10
  • c:\windows\system32\oobe\msoobe.exe

Fix boot partiton

  • EFI ``` diskpart convert create partition efi size=512 select partition 2 assign letter=b

bcdboot c:\windows /s h: /f UEFI ```

IDE to AHCI after Installation

  • HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\
    iaStorV,iaStorAV,storahci: Start => 0
    StartOverride => DELETE

Uninstall software in safemode

REG ADD "HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MSIServer" /VE /T REG_SZ /F /D "Service" net start msiserver


sc create srv_name binpath= D:\_soft\foo.exe type= share start= auto 

sc delete srv_name

VS proxy

%ProgramFiles%\Microsoft Visual Studio 14.0\Common7\IDE\devenv.exe.config find the block, and add this code:

<defaultProxy enabled="true" useDefaultCredentials="true">  
    <proxy bypassonlocal="True" proxyaddress=" HYPERLINK "http://<yourproxy:port#" http://<yourproxy:port#>"/>  


DC DNS (4. DC Record - _ldap._tcp.dc._msdcs.)


XDDM/XPDM:Windows 2000 and Windows XP, removal of XDDM from Windows 8
Windows Display Driver Model (WDDM): Windows Vista+

WDDM 2.0 - Windows 10+
    reduce workload on the kernel-mode driver for GPUs that support virtual memory addressing
    DXGI 1.4
        Cheaper adapter enumeration
        Video memory budget tracking
        Direct3D 12 Swapchain Changes

WDDM 2.1 - 1607+
    Shader Model 6.0 (mandatory for feature levels 12_0 and 12_1)
    DXGI 1.5
        HDR10 - a 10-bit high dynamic range
        Wide Color Gamut

WDDM 2.2 - 1703+
    tailored for virtual, augmented and mixed reality with stereoscopic rendering for the Windows Holographic platform
    DXGI 1.6: High Dynamic Range (HDR) Detection

WDDM 2.3 - 1709+
    10-bit HDR playback over HDMI
    Video processing and video decode acceleration in DirectX* 12


dynamic disks support the creation of new multipartition volumes

CMD Tools

Check and unclock file

Server Core

cscript C:\Windows\System32\Scregedit.wsf /ar 0    # Enable RDS


Enable-NetFirewallRule -DisplayGroup "Remote Administration"

cmdkey /add:<ServerName> /user:<UserName> /pass:<password>

GUI Tools

SoftPerfect RAM Disk:

sysinternals tools

process explorer
- search opened file
- locate handle process

Linux Clients

WLAN Hosted Network

NETSH WLAN show drivers | findstr "Hosted network supported"
NETSH WLAN set hostednetwork mode=allow ssid=SF3 key=12345678
NETSH WLAN start hostednetwork


win10: 先Ctrl+F,按住Ctrl,再按Shift+F

mstsc client


gpedit.msc - Computer Configuration > Administrative Templates > System > Credentials Delegation Encryption Oracle Remediation policy: Enabled > Protection Level: Vulnerable

results matching ""

    No results matching ""