
Opening Spotify recently gave this surprising confessional.
Hey Daniel Ek, considering your infamy with artists, does 96 ad partners seem like “Care” to you?

Opening Spotify recently gave this surprising confessional.
Hey Daniel Ek, considering your infamy with artists, does 96 ad partners seem like “Care” to you?
Everyone’s an armchair general of world politics, and these days everyone has a soapbox for that too (yay Facebook). But I only see 1/3 of Cincinnati drivers use their indicators to signal their turns or lane changes. (And I think 1/3 is generous). It’s surely the easiest effort in driving.
Literally, only 1/3rd of the world will LIFT A FINGER for safer driving.
I found this realization depressing for a few days, but I’ve decided it should be a Jeremiad, or a harsh reminder to do better:
The little stuff matters. Before asking everyone else for a better world, Lift A Finger to start making it happen.
I mean catch-up.
Too much work for too long meant many accrued life complications, so I’m on a purge…

Breaking news: Identity theft is a bad thing
One target is paper: The last 3 weekends have included many hours of sorting through paper files for shred, toss, or reuse as scrap. (Yes, I caught my mother’s frugality, so our family prints on the blank sides of old stuff, which is fun when you discover weird personal history on the flip side years later.)
In the shred category: I award special recognition to Anthem, Discover, and US Bank for taking an extra decade to notice any news about that new-fangled “identity theft”. (It took them until ~2006 to start removing complete SSNs and account numbers from monthly statements)
The other is Digital: Today I turned to my blog feeds. 15 years had “collected” roughly 450 feed subscriptions in my reader, which I’m still reading daily. …Well, I knew some of those 450 had gone dark, but managing them has been a recurring pain (browsing feeds by name isn’t easy in Feedly – how about some basic alphabetical sorting?).

Awesome
So I decided to clean house on my feeds. +A couple hours = a couple realizations:
…But wait, isn’t this Rob’s like, yearly blog post? Yeah, I’m not done yet — that’s another comeback in the works.

Not Awesome
But what direction? Journaling is a great exercise and enjoyable, but what do I have that interests folks?
Comments would be a great measure, but I’ve never been popular enough for much of them, and folks have even LESS time for comments in the grunt-jab era, so they’re out. But …Akismet brags it’s outright blocked 18,279 spam comments just since I switched to WordPress 2 years ago. And I get regular notices of spam comments quarantined for review (and that’s easy. The last blog move was good to me, and I’d like to heartily thank the whole WordPress community. Posting is way more likely when I’m not just cleaning up.)
So, without bothering on analytics, maybe the spammers know something. They LOVE two ancient posts in particular: my write-up on Royal TS (RIP), and another about line-breaks in VBScript. (Was 2005 special? It was arguably the golden age of blogging, but I’ve no idea how that could still echo now.)
So I’m gonna go with the topics: “meta-throbs” journally junk like this doesn’t enthrall, but every geek loves good Tools and Tips. And I’ve always got tons of those, so I’ll try to get back to sharing them here soon.
I’d love requests too, but certainly won’t get my hopes up. After all, there’s probably a heart-warming new LiberalCatVideo with a grunt-button.

I’ve sat on this far too long. In 2013 I was setting up SBS 2011 (rebuilding it for a Slingshot client, actually), and hit the classic gotcha where the Connect To Internet Wizard insists on being the DHCP server. My workaround was usually to temporarily disable the router’s DHCP, finish the wizard, then re-enable the router’s DHCP.
Unfortunately, this time I was working remotely after hours, and had no access to their router or its admin to do anything about it, so I was at risk of losing the night’s work and the client finding their stuff still down the next day.
Fortunately, I already had Microsoft support on the line for other matters. They knew a workaround for this — when I asked about it, this is the registry screenshot I got:

For the record, that’s HKLM\SOFTWARE\Microsoft\SmallBusinessServer\Networking and a DWORD of SkipDHCPConfig = 1
I asked if this was public knowledge, and the answer was no. I’ve saved this for a while, but with SBS 2011 now abandoned I think the knowledge should benefit others. So I hope this helps someone else! (I actually just needed that info myself, for a similar situation 🙂
(Following is some material that Slingshot recently wrote up to help guide our customers through securing their IT systems against Ransomware. It’s too good to not share with the world, though, so here ya go. BTW, we pair this with a personalized recommendation — just holler if your organization would like a Slingshot consultation!)

CryptoWall, CryptoLocker, and a variety of other names – they’re all Ransomware, one of the newer and most dangerous types of malicious software (Malware) threatening anyone who uses computers. Once a computer is infected, these threats can lock your users out of their computers or encrypt your data irreversibly, including data on your servers.
Once the computers and/or data are compromised, users are told they can pay a “ransom” to recover their system and data access, often for thousands of dollars. Since the culprits are often overseas, they reach over and hide behind the Internet in ways that regular law enforcement can’t help you. This is extortion, and you just don’t want to be there!
Instead, we want to help you stay safe, so we’ve written this document to do two things:
Fortunately, there are plenty of ways to avoid paying your way out of Ransomware!

Some technologies can reduce your risks, but the most important part of the puzzle is training users. Besides Ransomware, training can help you avoid other threats, such as:
Informed users are the first line of defense against Internet security threats! Slingshot can train your staff by several means: easy-to-read advisory documents, “lunch and learn” sessions with a hands-on visual component and Q&A, one-on-one training, or any combination of these.

The next defense is to block threats at a network level before they reach users (or vice versa). Here are options and recommendations for each network threat:

Should Ransomware or other malware still get past the user and firewall (e.g. by infected flash drive or using a work laptop outside the office network), additional protections are available:

Even with a comprehensive protection plan in place, malware is constantly morphing to get around those measures. If malware gets past the user, firewall, and malware detection, we want to limit its impact as much as possible. There are two good ways to do this:
![Stone-Rolled-Away1[1]](https://blog.throbs.net/wp-content/uploads/2016/03/Stone-Rolled-Away11.jpg)
Finally, no matter what you do, bad things can still happen. If worse comes to worst, there are options for data recovery without paying ransom.
→ Any properly configured server should follow the “3-2-1” Backup Rule: 3 backups, on 2 different media, and 1 offsite.
This one’s quite simple, but I’m always glad to make a new website, especially for a good cause:
This is a great help for families who are in need in our district — please check it out and consider helping these folks this Thanksgiving or Christmas.
Slingshot recently rolled out several Windows 10 Pro systems for a customer, and discovered their existing GPO’s firewall rules weren’t enough to allow RDP from within the LAN.
Susan’s post Windows 10 and SBS/Essentials Platforms showed how to do it as a one-off. But I wanted a GPO! Google let me down, returning a lot of confusion and complicated workarounds. (I shared this with Susan and she blogged it, which reminded me of my own blog, duh, so here it is!)
I went exploring GPO, and found the right setting under the Advanced Firewall section: Computer Configuration->Windows Settings->Security Settings->Windows Firewall with Advanced Security->Inbound Rules->New Rule->Predefined->Remote Desktop – RemoteFX :

That’s it! Tested and confirmed working in production.
(Note: this is in addition to the usual rules at Computer Configuration->Administrative Templates->Network Connections->Windows Firewall->Domain Profile)
Last December I grabbed a deal on a cheap HP Stream laptop for my family. It’s been a nice little convenience screen, but with gotchas:
1) Tiny hard drive – 30GB total, with 10 gone to Windows (as expected). Then HP took another 10 for their partition.
→ So just 10GB for you! A few apps later and even OneDrive cannot save you.
2) Tiny RAM – 2GB, but only 0.7GB available idling. HP complicated the 2GB also by bizarrely installing 64-bit Windows (against Microsoft’s recommendation) and wasting its limited RAM.
→ Multiple users? “Please log out instead of switch user, honey”.
3)…and none of it is upgrade-able.
→ Well, you can do like I did and add a big fast SD card for more storage, but that’s about it.
T
hen Windows 10 came out, and it’s generally great. It extended Win8’s unified Microsoft logins, and rolled in what was formerly Live’s Family Safety features, making it great for families. And with the Start Menu back, I now have no worries about moving cheese for business users. So to me, the Windows 10 upgrade is an automatic yes for any Windows 8 systems or new PCs.
Add 10 to the above challenges, and of course I wanted to kill seven in one blow! Specifically, 1) move to Windows 10, 2) reclaim drive space from HP’s extra partition, and 3) reclaim RAM from HP’s dumb 64-bit choice. (Alright, 3 in one blow, whatever).
That brings us to a month ago, when I started this blog post….
TL;DR: 2/3 ain’t bad. Success on #1 for drive space. No-go on RAM.
Problem: HP provides NO 32-bit drivers for the Stream. Result: non-working touchpad.
Many hours of reinstalling various editions of Windows, and every other trick I’ve learned over 20+ years, and I got Device Manager looking happy, but with no valid chipset drivers (I believe Intel’s Trusted Execution Engine Interface is the main culprit) to expose the touchpad device to Windows. Actually, I saw a dramatic difference on RAM usage (about 25% more available), but no working touchpad (which is critical for a convenience device like the Stream). I’ll leave that sad story there — if you want more, lemme know.
But there’s still the upgrade and the drive!
Problem #2: Not enough free-space to do the upgrade.
I ran into several snafus with this, but we can get around that! Here’s how:
Unfortunately, it’s still high RAM usage (I’m currently at 72% with a single Chrome tab open and nothing else running), but it’s significantly more free drive space and Windows 10. Heck of an ordeal, but a worthwhile improvement.
My wife, handier with money, loves leaving the num lock on.
I, handier with prose and software coding, want it off. (In fact, I always set the BIOS default to off on any computer).
Our kids could go either way, and have complained about it not being “right” when they switch user.
But since I moved our family PC to Windows 10 a couple months ago, I noticed it remembers each users’ last num lock setting. Hey cool! …But Google admits no knowledge of this feature. Am I just the lucky first guy to notice?
Regardless, this is another fine UI touch that Windows has invented in the last 5-10 years.
(Now if OS X would just get off their laurels and notice/copy them — oh hey Aero Snap anyone?)
NCH VideoPad is an excellent “free” video editor.
I would recommend VideoPad heartily if NCH didn’t crap on their own work.
But unfortunately “free” needs those scare quotes, because its installer just behaves badly. Here’s how, and my answer to each:
Windows Registry Editor Version 5.00 [-HKEY_CLASSES_ROOT\docfile\Shell\NCHconvertdoc] [-HKEY_CLASSES_ROOT\docxfile\Shell\NCHconvertdoc] [-HKEY_CLASSES_ROOT\htmlfile\Shell\NCHconvertdoc] [-HKEY_CLASSES_ROOT\NitroPDFReader.Document.3\Shell\NCHconvertdoc] [-HKEY_CLASSES_ROOT\odtfile\Shell\NCHconvertdoc] [-HKEY_CLASSES_ROOT\rtffile\Shell\NCHconvertdoc] [-HKEY_CLASSES_ROOT\wpdfile\Shell\NCHconvertdoc] [-HKEY_CLASSES_ROOT\wpfile\Shell\NCHconvertdoc]
(Save as a reg file and run it, or manually delete those paths yourself.)
It’s a shame — VideoPad has a paid premium version with more features, and I would recommend it heartily if NCH didn’t crap on their own work.
Possible alternative: it looks like <a href=”http://portableapps.com/node/19682″>you can make VideoPad Portable.</a> That certainly keeps it clean.