My Cyberpunk 2077 Mod Loadout
I bounced off Cyberpunk once because the guns felt stiff. Here's the mod list I'm running on the 2.3x Steam version now, and what all those frameworks actually do.
Thread: Games and gear ↗Tagged · 52 notes
Everything tagged Windows, wherever it's filed, newest first.
I bounced off Cyberpunk once because the guns felt stiff. Here's the mod list I'm running on the 2.3x Steam version now, and what all those frameworks actually do.
Thread: Games and gear ↗My everyday laptop is a ThinkPad T14 Gen 3 running Linux Mint. Why that pairing, how Dropbox fits in, and the few things worth setting up on day one.
Thread: Games and gear ↗Put a domain group into the local Administrators group on a list of computers (or take one out) over PowerShell remoting, with a result for every machine and -WhatIf first.
Thread: Local admin, done right ↗Find the updates the most machines are actually missing, bundle them into a group, and deploy them to a pilot collection, with a WhatIf preview first.
Thread: Windows Update, untangled ↗Install a product key, activate it and confirm the edition actually changed, without the key ever landing in a script file or a log.
Thread: Packaging with ConfigMgr ↗Turn "wrap this script in a package and push it to the DPs" into one command, with a dry run before anything gets created.
Thread: Packaging with ConfigMgr ↗A computer inventory straight out of AD, with OS build, last logon, password age and OU in one tidy CSV, ready for audits or a stale-machine cleanup.
Thread: Keeping Active Directory tidy ↗The folder layout and naming rules I use for a pile of old Mac software, and the small PowerShell script that does the renaming without losing the original names.
Thread: The retro workbench ↗How I format and load HFS+ USB drives for old Macs from a Windows PC, plus the retro-specific catches that trip you up on the Mac side.
Thread: The retro workbench ↗Repack .7z files as plain Deflate ZIPs with UTF-8 file names, including password-protected ones, and test every result before the original goes anywhere.
Thread: Archive conversion workshop ↗A quick, safe software inventory from the registry, local or remote, that returns objects you can filter and export instead of a wall of colored text.
Thread: PowerShell craft ↗Clean old user profiles off shared PCs and servers through Win32_UserProfile, so the folder and the registry entry go together and nobody gets a TEMP profile.
Thread: Spring cleaning for Windows PCs ↗Find the old Outlook .ost files nobody is using any more and reclaim the space, without touching the ones Outlook has open.
Thread: Spring cleaning for Windows PCs ↗Clear old temp files from the usual suspects and run Disk Cleanup unattended, with an age threshold and a -WhatIf that shows how much you'd get back.
Thread: Spring cleaning for Windows PCs ↗When Windows Update is greyed out or just won't run, check all the policy values and services that can block it, and put them back the way Windows shipped.
Thread: Windows Update, untangled ↗Hand a list of folders from several drives to robocopy in one go, keep their structure on the new drive, catch name collisions before anything moves, and get a log per folder.
Thread: File wrangling ↗Pull shutdown, startup and crash events from the System log so you can tell a planned restart from a power cut, and see who or what asked for it.
Thread: Windows Update, untangled ↗A one-off local admin account done properly, with a hidden password prompt, a language-proof group lookup, and an expiry date for the temporary ones.
Thread: Local admin, done right ↗Roll out a named local admin account with a random password nobody knows, ready for Windows LAPS to take over, and optionally retire the built-in Administrator.
Thread: Local admin, done right ↗Empty the Recycle Bin with no prompt, for one user or everyone on the machine, and optionally keep anything deleted recently.
Thread: Spring cleaning for Windows PCs ↗On Windows 10 and 11 there's no Windows Update logging to switch on. The trick is collecting it, and this script does that in one zip per machine.
Thread: Windows Update, untangled ↗A read-first WinRM check that tells you why remote PowerShell won't connect, fixes it only when you ask, and doubles as a ConfigMgr compliance script.
Thread: Windows Update, untangled ↗Clear the Windows DNS client cache locally or across a list of machines, and know when a flush will actually fix anything.
Thread: Spring cleaning for Windows PCs ↗A decade-plus of Windows migrations, endpoint security, and infrastructure work, boiled down to what I did and how big it was.
For the Entra-joined PC that never showed up in Intune. Check it's ready, kick off enrollment, and see why it failed if it does.
Thread: Getting devices into Intune ↗How RADIUS VSAs work, how to add one in Windows NPS or FreeRADIUS to hand out DNS servers, and how to prove your VPN or NAS is actually using it.
A plain-spoken tour of what Intune actually handles, where it stops, and the identity decisions you want settled before the first device shows up.
Thread: Getting devices into Intune ↗The Settings app route into Intune, which of its three options to pick, and why the device might show up as personal when you didn't want it to.
Thread: Getting devices into Intune ↗A practical checklist for taking a device that gets its security policy through Defender for Endpoint and enrolling it in Intune without leaving a gap.
Thread: Getting devices into Intune ↗Point each domain controller at a partner DC first and itself (127.0.0.1) last, the way Microsoft recommends, across all your DCs in one pass.
Thread: Keeping Active Directory tidy ↗Audit who still talks SMBv1 to your machines, then switch it off for good, with one script and three modes.
Thread: PowerShell craft ↗How I think about patch risk now. Sort updates by blast radius, roll them out in rings, decide what "bad" looks like up front, and know your way back before you need it.
Thread: Windows Update, untangled ↗List the preview handlers installed on a PC, see which one each file type uses, and point extensions like .log, .ps1 or .json at the handler you want.
Thread: File wrangling ↗Create the Tier 2 OU, its sub-OUs and the group that manages them, and delegate just enough rights for workstation and user admin work.
Thread: Keeping Active Directory tidy ↗Dump every OU in the domain to a spreadsheet, with a readable path, depth, GPO link count and, if you want, how many objects live in each one.
Thread: Keeping Active Directory tidy ↗A width check that works in a real console, in VS Code, and in scheduled tasks and CI runners where there's no window to measure.
Thread: PowerShell craft ↗One script that reads the WSUS, scan-source and Windows Update for Business settings on a device and tells you where it's really getting updates from, with a safe reset for leftovers.
Thread: Windows Update, untangled ↗How to build a configuration profile in Intune, roll it out to machines that are already in people's hands, and confirm it actually landed.
Thread: Getting devices into Intune ↗Register the Microsoft Update service through the Windows Update Agent's own COM API, so devices pick up Office and other Microsoft product updates, not just Windows.
Thread: Windows Update, untangled ↗One report for every kind of service account, gMSAs and old-school user accounts alike, showing password age, SPNs, delegation and who can read the gMSA password.
Thread: Keeping Active Directory tidy ↗Create a Tier 0 admin group, keep it where only Tier 0 can touch it, and give it full control of the Tier 0 OU. Preview the whole thing with -WhatIf first.
Thread: Keeping Active Directory tidy ↗Find project folders that haven't changed in N days, zip each one to an archive location with the date of its last change, verify it, and optionally clear out the original.
Thread: File wrangling ↗Switch workstations to High Performance (or Ultimate Performance) by GUID, restore the plan if the image hid it, and don't end up with five copies of it.
Thread: Packaging with ConfigMgr ↗One uninstall script for every retired app. Give it a display name and it finds the right uninstall command, MSI or not, and runs it quietly.
Thread: Packaging with ConfigMgr ↗Find out which Chrome version a machine is really running, whether an update is stuck waiting on a restart, and kick Google's updater into checking now.
Thread: Spring cleaning for Windows PCs ↗Stop the spooler, clear out the wedged job files, and bring it back up, with -WhatIf and an option to leave recent jobs alone.
Thread: Spring cleaning for Windows PCs ↗Onboarding to Defender for Endpoint and enrolling in Intune are two different things, and you almost never have to offboard one to get the other.
Thread: Getting devices into Intune ↗Force an immediate local admin password rotation on every machine in a collection, with Windows LAPS doing the password part so no script ever sees one.
Thread: Local admin, done right ↗A gpupdate wrapper that checks the domain trust first, never bounces anyone's session, and reports a real success or failure back to ConfigMgr.
Thread: Packaging with ConfigMgr ↗Feed it a list or an OU, and it deletes (or disables) only the computers that are genuinely stale, logs every decision to CSV, and shows you the plan first with -WhatIf.
Thread: Keeping Active Directory tidy ↗Feed it a list of computers and a service name, get back one row per machine saying whether it's installed, running, and how it starts.
Thread: PowerShell craft ↗The hardware hash script behind Windows Autopilot, explained. Upload straight to Intune with -Online, or export a CSV when the device can't reach the tenant.
Thread: Getting devices into Intune ↗