Tuesday, November 12, 2013

Enable remote desktop from command line remotely


To enable remote desktop.
§  Open registry editor by running regedit from Run.
§  Go to the node HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server
§  Change the data of the value fDenyTSConnections to 0.

PsTools:-
psloggedon.exe –l
psloggedon.exe \\ <ip> or <comp name>
psloggedon.exe <username>
Eg:-
psexec.exe \\ipaddress cmd

Download Link:


First run this PsTool  your local pc to access the command prompt of user remotely :

psexec.exe \\ipaddress cmd

or

psexec.exe \\computername  cmd

Now you will get cmd of the remote user

Then We can enable remote desktop from windows command line by running the following command.

reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 0 /f

To disable remote desktop we need to run the below command.

reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f

Reboot or logoff is not required after running the above command. I have tested this on Windows XP and Windows 7 and it has worked fine. It would work fine on Windows Vista too.

To enable Remote assistance:

reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fAllowToGetHelp /t REG_DWORD /d 1 /f

You can run the below command for each user you want to allow to connect remotely.

net localgroup “Remote Desktop Users” Domain\Loginid /add

If you have a group of domain users and want to allow the whole group to do remote desktop on the computer, you can do that as well with a single command. Just replace the loginid in the above command with the group name.

net localgroup “remote desktop users” “group name”  /add
net localgroup “remote desktop users” “domain users”  /add


Enabling/Disabling Windows Firewall from cmd remotely:

First run this PsTool  your local pc to access the command prompt of user remotely :

psexec.exe \\ipaddress cmd

or

psexec.exe \\computername  cmd

Now you will get cmd of the remote user


For win7 :

Netsh advfirewall set allprofiles state off
Netsh advfirewall set allprofiles state on
netsh advfirewall firewall set rule group="remote desktop" new enable=Yes
netsh advfirewall firewall set rule group="remote desktop" new enable=No


For xp :

netsh firewall show opmode
netsh firewall set opmode disable
netsh firewall set opmode enable

Thursday, October 3, 2013

Multifox - connect to websites using different user names simultaneously

Multifox is an extension that allows Firefox to connect to websites using different user names. Simultaneously!

For example, if you have multiple Gmail accounts, you can open them all at the same time. Each Firefox window, managed by Multifox, accesses an account without interfering each other.




[ Click on the Images to enlarge. ]

This is a Mozilla Firefox extension which only works on Firefox.

Friday, July 5, 2013

HowTo update Malwarebytes offline?


ISSUE: I need to get the latest database onto a computer that cannot access the Internet.
SOLUTION: You can manually copy the database from a working computer using a flash drive or CD onto the infected PC. Our database file is stored in the following locations.




  • Windows XP and 2000
  • C:\Documents and Settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\rules.ref
  • Windows Vista and Windows 7:
  • C:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malware\rules.ref

    Note: Starting with Malwarebytes Anti-Malware 1.60, you must also copy the file database.conf located within the Configuration folder which is in the same folder as rules.ref listed above.

Friday, June 28, 2013

Bookmark all open browser tabs at once

Chrome

Right-click on a tab and select "Bookmark all tabs" or hit Ctrl+Shift+D.


Firefox

Just like in Chrome, right-click on a tab and select "Bookmark All Tabs" or hit Ctrl+Shift+D.


Internet Explorer

Click on the "View favorites" icon, then the "Add favorites" drop-down menu. Select "Add current tabs to favorites." You can save a few steps by hitting Alt+Z, then clicking on "Add current tabs to favorites."


This is how to bookmark all your open tabs with just a couple of mouse clicks or with keyboard shortcuts.

Thursday, June 13, 2013

Windows XP / Server 2003 Boot Error NTOSKRNL.EXE Is Missing Or Corrupt

Every once in while when you reboot a workstation or server you'll get the famous NTOSKRNL.EXE is Missing or Corrupt error  Windows NT could not start because the following file is missing or corrupt: 

         C:\Windows\System32\Ntoskrnl.exe

It's fairly straight forward to resolve this problem. Start by booting your machine from the install media (CD/DVD or USB Drive) when prompted follow these steps :



- Boot to the recovery console (http://support.microsoft.com/kb/326215)

- Select your Windows installation that you want to recover

- When prompted provide the local administrator password

- Once you are into the recovery console you will probably be sitting at a C:\WINDOWS prompt

- Change the directory to the i386 folder on your CD / DVD drive (If you only have one partition it will most likely be D:\)

- Copy the following files to the C:\ drive

        copy ntldr C:
        
        copy ntdetect.com C:

- Change your source directory back to C:\Windows

- Next you will need to fix your boot record

       fixboot C:

- Most likely you will also have to fix the boot .ini using the bootcfg command

       bootcfg /rebuild

- Add the required Windows installation to your boot list

- Add the Load Identifier (Custom description)

- Add the OS Load Options (/fastdetect)

- Type exit to reboot the machine


Your machine should now be recovered from the NTOSKRNL.exe is Missing or Corrupt" error.

Monday, June 10, 2013

OS BOOT FILES

DOS Boot up Sequence


IO.SYS – A binary file that provides basic input/output interface between the ROM BIOS and the Hardware
MSDOS.SYS – A binary file considered to be the core of the DOS operating system
CONFIG.SYS – A text file used to load drivers and memory managers and also use to configure the system to the user’s needs
COMMAND.COM – DOS user interface loads the command prompt which interprets DOS commands
AUTOEXEC.BAT – A text file that contains setting up display settings, environment variables and routines

Win 9X Boot up Sequence


IO.SYS - I/O files use to communicate with the BIOS
MSDOS.SYS - Loads OS into memory (Also use to configure boot files in windows 9x)
SYSTEM.DAT and USER.DAT - system and user settings (REGEDIT)
CONFIG.SYS - loads device drivers for backwards compatibility
AUTOEXEC.BAT - sets system environment use for backwards compatibility
WIN.COM - Initiates the Windows 9x protected load phase
SYSTEM.INI - use to configure 16-bit windows drivers and critical files
WIN.INI- sets 16-bit windows environment
VxD - loads windows virtual device drivers

Windows 2000/XP Key Boot Files



NTLDR
– Found in the MBR this file boots up the Windows 2K/XP operating system
BOOT.INI - is text file that lists the available OS found and tells the NTLDR where to find boot partition
BOOTSECT.DOS – Locates the IO.SYS file so you can start another OS in a dual boot environment
NTDETECT.COM – Loads into protected mode and detects the installed hardware on your system
NTBOOTDD.SYS - On a system with a SCSI boot device, this file is used to recognize and load the SCSI boot partition.
NTOSKRNL.EXE - Windows 2000 Core Files
WIN.COM - Windows 2K/XP command file
HAL.DLL - Hardware Abstraction layer of Windows 2K/XP

Windows Vista/7 Key Boot Files



BOOTMGR 
– Found in the MBR this file boots up the Windows operating system
BCD (Boot Configuration Data) - is text file that lists the available OS found and tells the BOOTMGR where to find boot partition
WINLOAD.EXE - Loads the Windows Interface
NTOSKRNL.EXE - Windows Vista/7 Core Files
WIN.COM - Windows Vista/7 command file
HAL.DLL - Hardware Abstraction layer of Windows Vista/7