My Cyberpunk 2077 Mod Loadout
I bounced off Cyberpunk once because the guns felt stiff. Here's the mod list I'm running on the 2.3x Steam version now, and what all those frameworks actually do.
Across the notebook
Entries sharing this tag, wherever they're filed.
I bounced off Cyberpunk once because the guns felt stiff. Here's the mod list I'm running on the 2.3x Steam version now, and what all those frameworks actually do.
Put a domain group into the local Administrators group on a list of computers (or take one out) over PowerShell remoting, with a result for every machine and -WhatIf first.
Find the updates the most machines are actually missing, bundle them into a group, and deploy them to a pilot collection, with a WhatIf preview first.
Install a product key, activate it and confirm the edition actually changed, without the key ever landing in a script file or a log.
Turn "wrap this script in a package and push it to the DPs" into one command, with a dry run before anything gets created.
How I format and load HFS+ USB drives for old Macs from a Windows PC, plus the retro-specific catches that trip you up on the Mac side.
A quick, safe software inventory from the registry, local or remote, that returns objects you can filter and export instead of a wall of colored text.
Clean old user profiles off shared PCs and servers through Win32_UserProfile, so the folder and the registry entry go together and nobody gets a TEMP profile.
Find the old Outlook .ost files nobody is using any more and reclaim the space, without touching the ones Outlook has open.
Clear old temp files from the usual suspects and run Disk Cleanup unattended, with an age threshold and a -WhatIf that shows how much you'd get back.
When Windows Update is greyed out or just won't run, check all the policy values and services that can block it, and put them back the way Windows shipped.
Pull shutdown, startup and crash events from the System log so you can tell a planned restart from a power cut, and see who or what asked for it.
A one-off local admin account done properly, with a hidden password prompt, a language-proof group lookup, and an expiry date for the temporary ones.
Roll out a named local admin account with a random password nobody knows, ready for Windows LAPS to take over, and optionally retire the built-in Administrator.
Empty the Recycle Bin with no prompt, for one user or everyone on the machine, and optionally keep anything deleted recently.
On Windows 10 and 11 there's no Windows Update logging to switch on. The trick is collecting it, and this script does that in one zip per machine.
A read-first WinRM check that tells you why remote PowerShell won't connect, fixes it only when you ask, and doubles as a ConfigMgr compliance script.
Clear the Windows DNS client cache locally or across a list of machines, and know when a flush will actually fix anything.
From the original portfolio: enterprise migrations, endpoint management, and technical implementations.
For the Entra-joined PC that never showed up in Intune. Check it's ready, kick off enrollment, and see why it failed if it does.
Thread: Getting devices into Intune ↗How RADIUS VSAs work, how to add one in Windows NPS or FreeRADIUS to hand out DNS servers, and how to prove your VPN or NAS is actually using it.
A plain-spoken tour of what Intune actually handles, where it stops, and the identity decisions you want settled before the first device shows up.
Thread: Getting devices into Intune ↗The Settings app route into Intune, which of its three options to pick, and why the device might show up as personal when you didn't want it to.
Thread: Getting devices into Intune ↗A practical checklist for taking a device that gets its security policy through Defender for Endpoint and enrolling it in Intune without leaving a gap.
Audit who still talks SMBv1 to your machines, then switch it off for good, with one script and three modes.
How I think about patch risk now. Sort updates by blast radius, roll them out in rings, decide what "bad" looks like up front, and know your way back before you need it.
List the preview handlers installed on a PC, see which one each file type uses, and point extensions like .log, .ps1 or .json at the handler you want.
How to build a configuration profile in Intune, roll it out to machines that are already in people's hands, and confirm it actually landed.
Register the Microsoft Update service through the Windows Update Agent's own COM API, so devices pick up Office and other Microsoft product updates, not just Windows.
Switch workstations to High Performance (or Ultimate Performance) by GUID, restore the plan if the image hid it, and don't end up with five copies of it.
One uninstall script for every retired app. Give it a display name and it finds the right uninstall command, MSI or not, and runs it quietly.
Find out which Chrome version a machine is really running, whether an update is stuck waiting on a restart, and kick Google's updater into checking now.
Stop the spooler, clear out the wedged job files, and bring it back up, with -WhatIf and an option to leave recent jobs alone.
Onboarding to Defender for Endpoint and enrolling in Intune are two different things, and you almost never have to offboard one to get the other.
Force an immediate local admin password rotation on every machine in a collection, with Windows LAPS doing the password part so no script ever sees one.
A gpupdate wrapper that checks the domain trust first, never bounces anyone's session, and reports a real success or failure back to ConfigMgr.
Feed it a list of computers and a service name, get back one row per machine saying whether it's installed, running, and how it starts.
The hardware hash script behind Windows Autopilot, explained. Upload straight to Intune with -Online, or export a CSV when the device can't reach the tenant.
Thread: Getting devices into Intune ↗