Live data from Hacker News

Microsoft explains the lack of Registry backups in Windows 10

ghacks.net

51–60 of 276 posts

Re: Microsoft explains the lack of Registry backups in Windows 10

#51
post #25

Earlier quoted context omitted.

And this, ladies and gentlemen, is how we get botnets.

True, but you're just under 1 year too early. Windows 7 is getting security patches till 2020 so he's fine for now.

And another 3 years of paid support. There's no reason to believe that those 3 years of patches won't leak to regular consumers.

Re: Microsoft explains the lack of Registry backups in Windows 10

#52
post #35
post #9

Earlier quoted context omitted.

Between the traditional Disk Cleanup and a quick DISM cleanup (which should already be running as a scheduled task) you can get pretty good results on any Windows 8.1/2012R2 and above: Dism.exe /online /Cleanup-Image /StartComponentCleanup /ResetBase

I'm using Dism++ (GUI) for this job https://www.chuyu.me/en/index.html

Is this open sourced?

Re: Microsoft explains the lack of Registry backups in Windows 10

#53
post #30

Earlier quoted context omitted.

It's a very minor fraud, if a product you purchase says it will do backups, but doesn't do them, then you were defrauded. I think you could sue for actual damages if you had them and be successful if it's in the documentation anywhere, or the system actively informed you that a backup was made. I'm in the UK, fwiw; I'd expect most English law systems to be broadly similar but IANAL.

Fraud usually requires that the entity doing it gains something from it, especially if we are talking about a "criminal act" as the parent did. (IANAL) The civil side might be different, but that is not what the parent insinuated. (And yes, my question to the parent was obviously meant to show that I disagree.)

>Fraud usually requires that the entity doing it gains something from it //

They got your money; so it's obtaining benefit by deception. If it says in the product specification that it does something that it doesn't do then it's fraud, which is criminal.

It's a de minimis form of selling you a product that they know to not include the features they sold.

But, police wouldn't pursue it (they don't even bother with burglary under O(£1000s) in UK); but you could sue for lost damages and you should in theory be successful.

Re: Microsoft explains the lack of Registry backups in Windows 10

#54
post #35
post #9

Earlier quoted context omitted.

Between the traditional Disk Cleanup and a quick DISM cleanup (which should already be running as a scheduled task) you can get pretty good results on any Windows 8.1/2012R2 and above: Dism.exe /online /Cleanup-Image /StartComponentCleanup /ResetBase

I'm using Dism++ (GUI) for this job https://www.chuyu.me/en/index.html

These are some pretty privileged operations you're trusting the tool to perform. I'm not sure a couple of commands warrant using a GUI tool, especially one that doesn't seem to inspire too much confidence upon cursory examination.

https://github.com/Chuyu-Team/Dism-Multi-language/blob/maste...

Re: Microsoft explains the lack of Registry backups in Windows 10

#56
> The scheduled task to create the backups was still running and the run result indicated that the operation completed successfully, but Registry backups were not created anymore.

> This change is by design, and is intended to help reduce the overall disk footprint size of Windows. To recover a system with a corrupt registry hive, Microsoft recommends that you use a system restore point.

I suppose I can see removing the automatic backup feature to save disk space, but what is the argument for silently pretending that you're backing up?

Re: Microsoft explains the lack of Registry backups in Windows 10

#57

Earlier quoted context omitted.

Yes, I forgot to mention I don't visit any questionable sites whatsoever. I've extremely vigilant, more vigilant than 99% of the population I would think, and I take it very seriously. If I need to test a link, I'll use my phone. I built my own desktop so no worries there, I don't have a CD player and I only install trusted apps these days, the only ones in the last few years have been Chrome and Firefox. It's not th…

I forgot to mention I don't visit any questionable sites whatsoever. The problem isn't questionable sites (including ad networks), it's 0 days and hacked sites. uMatrix won't protect you from malicious js fed from the same site, or perhaps a malicious malformed font download[1]. [1] https://threatpost.com/of-truetype-font-vulnerabilities-and-...

Yes, exactly.

The bad news is that most antivirus software also won't protect you from a hacked NYT server delivering 0-days, because it's generally reactionary. For this reason, I mostly don't worry too much about about while-browsing protection - if you're cautious, the remaining threats will also evade antivirus. In that sense, uMatrix and NoScript are more proactive. (uMatrix, for example, saved people from Magecart before it was ever discovered.)

But if you do pick something up, there's no guarantee it'll be nice obvious ransomware, rather than something quietly sniffing your keystrokes. That's where I advocate antivirus even for careful users - it's a repository of known threats to tip you off that something is wrong. DoublePulsar was first discovered infecting Windows machines in the wild, so cautious browsing didn't save the people that hit.

Re: Microsoft explains the lack of Registry backups in Windows 10

#58

Earlier quoted context omitted.

> I'm still on Windows 7 on a 2012 desktop... I haven't run a virus scanner in 15 years, I'm just extremely paranoid over what I click on and which sites I visit. I run an ad-blocker and pi-hole to decrease any attack vectors. To be blunt, this is a bad idea. I'm sympathetic to the general motivation. I think the value and effectiveness of antivirus is generally overstated; it's often a replacement for vigilant brows…

Yes, I forgot to mention I don't visit any questionable sites whatsoever. I've extremely vigilant, more vigilant than 99% of the population I would think, and I take it very seriously. If I need to test a link, I'll use my phone. I built my own desktop so no worries there, I don't have a CD player and I only install trusted apps these days, the only ones in the last few years have been Chrome and Firefox. It's not th…

Apologies if I implied you were ignorant, or at more risk than most people. Hearing that description, I'm willing to bet you're safer than most people who do run antivirus and the newest OS versions. (And safer than me, for that matter.) As far as principle, though, I think there have been things which can't be solved by avoiding sketchy links and emails?

Bemstour was a mix of two NSA-discovered 0-days, which spent a full year in the wild before it was patched or disclosed. (Admittedly, the only known deployments were highly targeted, so it's not exactly grounds for personal paranoia.) EternalBlue was spun into the widespread WannaCry after the Windows 7 patch was released, but before Windows 8. (Having spent a while on 8 instead of 8.1 while 8.1 was still broken, that hits close to home.) I don't follow Windows that closely anymore, but haven't there been a few other botnets initiated with unpatched vulnerabilities that didn't require browsing somewhere ugly?

Re: Microsoft explains the lack of Registry backups in Windows 10

#59

I just booted up a windows 10 machine earlier today for the first time in many months. It absolutely bewilders me how terribad the UI is. You have this fancy UI but if you ever click one or two options deep you end up getting these alternately styled legacy interfaces. It's so incoherent. It really makes windows 10 feel like a skin on top of windows xp. So when the article says Microsoft wants to push users into wind…

You're right. I think the two completely separate "settings" programs are the most user-facing of the problems with these interfaces. It probably doesn't help incentivize updating that the new one is so terrible. [1] It looks like a really bad version of KDE's Plasma theme (Breeze).

[1] https://www.windowscentral.com/sites/wpcentral.com/files/sty...

Re: Microsoft explains the lack of Registry backups in Windows 10

#60
post #48

I just booted up a windows 10 machine earlier today for the first time in many months. It absolutely bewilders me how terribad the UI is. You have this fancy UI but if you ever click one or two options deep you end up getting these alternately styled legacy interfaces. It's so incoherent. It really makes windows 10 feel like a skin on top of windows xp. So when the article says Microsoft wants to push users into wind…

One super useful hidden feature but terrible ui is you can start typing as soon as Win 10 start menu is open... example 'notepad'... I used to install classic shell just to get the [run] input box

How is that terrible UI? It's basically what Spotlight does for Macs. Cmd+space and it overlays a text box from which you can find and open any file, application, event etc. or even do stuff like calculations and unit conversions.
Post reply on HN