Anything About IT

Learning, Building, Sharing

Use Microsoft Endpoint Configuration Manager to Configure the Windows Print Spooler Service

How to use Microsoft Endpoint Configuration Manager and configuration baselines to ensure the Windows Print Spooler service remains stopped and disabled.

Hunting for Local Group Membership changes

Detect changes to the local administrator group using Microsoft Defender ATP advanced hunting.

Windows 10 2004 - What is new in the Windows Security App

When all goes well, Microsoft will soon release the next version of Windows 10 aka Windows 10 2004.

The case of Running the Device and Credential Guard Hardware Readiness Tool and unknown architecture

My findings about running the Windows Device and Credential Guard Hardware Readiness Tool and the unknown architecture error.

Retrieving Windows Defender Exploit Guard Windows Event logs with PowerShell

Most Windows Defender Exploit Guard features can be enabled in audit or block mode. The impact can be analyzed by looking at Windows Event logs.

It’s never too late to start learning PowerShell

It's 2018 now and you might think who doesn't know PowerShell yet. Although I've seen the number of people using PowerShell increasing over the past y...