Friday, June 24, 2016

Windows 10 - turn off automatic updates

Not straight forward, but essentially tell Win10 that your connection is metered.

http://www.howtogeek.com/224471/how-to-prevent-windows-10-from-automatically-downloading-updates/

Several other techniques also are possible, including registry edits, and group policy changes/

Thursday, June 23, 2016

Windows 10 Privacy

Here is our summary of what to turn off, after installing Windows 10:

Settings | Privacy
  General - turn off the top 3, language list is ok on.
  Speech, inking & typing -"Stop getting to know me"
  Feedback & diagnostics - Never adn Basic
optional
  Location
  Account Info

Network Settings - if Wireless, then option to Manage
  turn off all related to Wifi sense, and joining other/public networks

Edge | Settings | Advance Settings
  Show search and site suggestions as I type
  Use page prediction

And use this link to opt out of personalized ads from Microsoft on browsers (particularly Edge)
  https://choice.microsoft.com/en-gb/opt-out

Wednesday, June 22, 2016

Windows 10 - other opt outs

Settings | Privacy |


Speech, inking and typing
  STOP any "Getting to Know Me"

+++
Important, to opt out of personalized ad in Edge, must use this link:
https://choice.microsoft.com/en-gb/opt-out

Comparing AntiVirus Products, and a few notes




BEST SITE with Actual Reviews
http://www.av-comparatives.org/comparatives-reviews/

Site with commentary, mostly using above review(s)
http://www.howtogeek.com/225385/what%E2%80%99s-the-best-antivirus-for-windows-10-is-windows-defender-good-enough/

June 2016 report by PC MAG.  Note MS Defender fails to make the cut
http://www.pcmag.com/article2/0,2817,2388652,00.asp

Says Microsoft (Defender) is less awful than it used to be, but scores...88% or 95% versus 99-100%
http://www.pcworld.com/article/3025889/windows/tested-microsofts-windows-defender-antivirus-is-less-awful-than-it-used-to-be.html

Decent review of 5 free (home) AV products
http://www.trustedreviews.com/best-free-antivirus_round-up


History
First DOS virus
Virus Timeline
The Morris worm that hit the Arpanet, 1988

And in 2016
Dental Assn Mails Malware to Members

Tuesday, June 21, 2016

How to get a Windows 10 Upgrade

Here's a couple of handy Microsoft links

Upgrade this PC
https://www.microsoft.com/en-us/windows/windows-10-upgrade

***Good page
And this next link has further details on how to create boot media, using the media creation tool.
https://www.microsoft.com/en-us/software-download/windows10


This discussion, on last page has links to get the KB3035583
http://www.sevenforums.com/windows-updates-activation/371499-way-download-kb3035583.html
also on page2

Antivirus for Business - for Free

Not too many offerings, but here is a list

Comodo
Immunet
Nano - reviews are not convincing currently to use it.
Unthreat
  refer to
  https://www.raymond.cc/blog/free-antivirus-for-corporate-commercial-and-educational-use/
Forticlient
  also see comments the raymond.cc site

Avast for Business
  also see the comments.
  is free, see
    https://www.avast.com/avast-for-business
  Sign Up Here
    https://id.avast.com/en-ww/?target=https%3A%2F%2Fbusiness.avast.com%3A443%2F#register
  Login here:
    https://id.avast.com/?target=https%3A%2F%2Fbusiness.avast.com%3A443%2F#login
  See comments about the certificate and how Avast uses https traffic
    http://smallbiztrends.com/2015/02/avast-for-business-security.html

Wednesday, June 15, 2016

Windows 10 Safe Mode Notes

If in Windows, can right click Restart and go through the graphical menus (before shutdown) for
Advanced Troubleshooting, Startup Option

or in elevated command prompt (use Windows+X)
try adding
bcdedit /set {bootmgr} displaybootmenu yes

then restart and hit F8 from simple menu
see
http://www.nextofwindows.com/how-to-boot-to-safe-mode-straight-from-f8-key-in-windows-8



ALSO, other options
http://www.howtogeek.com/245175/how-to-add-safe-mode-to-the-windows-8-and-10-boot-menu/

Also Shift F8 when coming up
  or try shutting down

IF 30 says has gone by on Windows 10
look for the two hidden folders
show OS choices
or advanced option - revert to prior build


Wednesday, June 1, 2016

PCI DSS docs

Ver  3.2
https://www.pcisecuritystandards.org/documents/PCI_DSS_v3-2.pdf

Overview, mentions Schedule D for segmentation
https://www.pcisecuritystandards.org/documents/PCI%20SSC%20Quick%20Reference%20Guide.pdf

Please see all documents here
  https://www.pcisecuritystandards.org/document_library?category=pcidss&document=pci_dss


BLOGS

Class Action Suit against Target Assessor is a wake up call for PCI
http://blogs.gartner.com/avivah-litan/2014/03/26/class-action-suit-against-target-assessor-is-a-wake-up-call-for-pci/


Average annual cost of PCI compliance audit? $225k
http://www.networkworld.com/article/2246058/compliance/average-annual-cost-of-pci-compliance-audit---225k.html

FIM Info
http://resources.infosecinstitute.com/file-integrity-monitoring-fim-pci-dss/

Consider the faq for Splunk and FIM
http://wiki.splunk.com/Community:Splunk_for_PCI_Compliance

Discussion on UX and Cognitive Overload - re Design

See
http://ux.stackexchange.com/questions/94972/why-do-editors-such-as-ms-office-apps-have-so-much-redundancy

Auditing reminders

See
http://www.intelliadmin.com/index.php/2008/03/use-auditing-to-track-who-deleted-your-files/

Do at server for policy, and folders for items of interest.

SFC and DISM

See
http://www.eightforums.com/performance-maintenance/23180-making-sfc-scannow-bat-file.html

possible batch file contents, below

sfc /scannow
PAUSE
Dism /Online /Cleanup-Image /RestoreHealth
PAUSE
sfc /scannow
PAUSE