Skip to content

Commit 4338240

Browse files
committed
feat: disable all pre-process
1 parent 4e42674 commit 4338240

File tree

1 file changed

+107
-107
lines changed

1 file changed

+107
-107
lines changed

injectdeploy.bat

+107-107
Original file line numberDiff line numberDiff line change
@@ -61,115 +61,115 @@ echo
6161
REG LOAD "HKLM\Mount_SYSTEM" "Windows\System32\config\SYSTEM"
6262
echo 接管系统部署
6363
REG ADD "HKLM\Mount_SYSTEM\Setup" /f /v "CmdLine" /t REG_SZ /d "deploy.exe"
64-
echo 干废WD服务
65-
for %%a in (
66-
MsSecFlt
67-
Sense
68-
WdBoot
69-
WdFilter
70-
WdNisDrv
71-
WdNisSvc
72-
WinDefend
73-
SgrmAgent
74-
SgrmBroker
75-
webthreatdefsvc
76-
webthreatdefsvc
77-
) do REG ADD "HKLM\Mount_SYSTEM\ControlSet001\Services\%%a" /f /v "Start" /t REG_DWORD /d 4
78-
echo 跳过系统配置检测
79-
for %%a in (
80-
BypassCPUCheck
81-
BypassRAMCheck
82-
BypassSecureBootCheck
83-
BypassStorageCheck
84-
BypassTPMCheck
85-
) do REG ADD "HKLM\Mount_SYSTEM\Setup\LabConfig" /f /v "%%a" /t REG_DWORD /d 1
86-
REG ADD "HKLM\Mount_SYSTEM\Setup\MoSetup" /f /v "AllowUpgradesWithUnsupportedTPMOrCPU" /t REG_DWORD /d 1
87-
echo 禁用BitLocker自动加密
88-
REG ADD "HKLM\Mount_SYSTEM\ControlSet001\BitLocker" /f /v "PreventDeviceEncryption" /t REG_DWORD /d 1
64+
@REM echo 干废WD服务
65+
@REM for %%a in (
66+
@REM MsSecFlt
67+
@REM Sense
68+
@REM WdBoot
69+
@REM WdFilter
70+
@REM WdNisDrv
71+
@REM WdNisSvc
72+
@REM WinDefend
73+
@REM SgrmAgent
74+
@REM SgrmBroker
75+
@REM webthreatdefsvc
76+
@REM webthreatdefsvc
77+
@REM ) do REG ADD "HKLM\Mount_SYSTEM\ControlSet001\Services\%%a" /f /v "Start" /t REG_DWORD /d 4
78+
@REM echo 跳过系统配置检测
79+
@REM for %%a in (
80+
@REM BypassCPUCheck
81+
@REM BypassRAMCheck
82+
@REM BypassSecureBootCheck
83+
@REM BypassStorageCheck
84+
@REM BypassTPMCheck
85+
@REM ) do REG ADD "HKLM\Mount_SYSTEM\Setup\LabConfig" /f /v "%%a" /t REG_DWORD /d 1
86+
@REM REG ADD "HKLM\Mount_SYSTEM\Setup\MoSetup" /f /v "AllowUpgradesWithUnsupportedTPMOrCPU" /t REG_DWORD /d 1
87+
@REM echo 禁用BitLocker自动加密
88+
@REM REG ADD "HKLM\Mount_SYSTEM\ControlSet001\BitLocker" /f /v "PreventDeviceEncryption" /t REG_DWORD /d 1
8989
REG UNLOAD "HKLM\Mount_SYSTEM"
9090

91-
echo 修改软件注册表
92-
REG LOAD "HKLM\Mount_SOFTWARE" "Windows\System32\config\SOFTWARE"
93-
echo 干废WD组策略
94-
REG ADD "HKLM\Mount_SOFTWARE\Policies\Microsoft\Windows Defender" /f /v "DisableAntiSpyware" /t REG_DWORD /d 1
95-
REG ADD "HKLM\Mount_SOFTWARE\Policies\Microsoft\Windows Defender" /f /v "DisableAntiVirus" /t REG_DWORD /d 1
96-
REG ADD "HKLM\Mount_SOFTWARE\Policies\Microsoft\Windows Defender" /f /v "AllowFastServiceStartup" /t REG_DWORD /d 0
97-
REG ADD "HKLM\Mount_SOFTWARE\Policies\Microsoft\Windows Defender\Real-Time Protection" /f /v "DisableRealtimeMonitoring" /t REG_DWORD /d 1
98-
REG ADD "HKLM\Mount_SOFTWARE\Policies\Microsoft\Windows Defender\Real-Time Protection" /f /v "DisableIOAVProtection" /t REG_DWORD /d 1
99-
REG ADD "HKLM\Mount_SOFTWARE\Policies\Microsoft\Windows Defender\Real-Time Protection" /f /v "DisableOnAccessProtection" /t REG_DWORD /d 1
100-
REG ADD "HKLM\Mount_SOFTWARE\Policies\Microsoft\Windows Defender\Real-Time Protection" /f /v "DisableBehaviorMonitoring" /t REG_DWORD /d 1
101-
REG ADD "HKLM\Mount_SOFTWARE\Policies\Microsoft\Windows Defender\Real-Time Protection" /f /v "DisableScanOnRealtimeEnable" /t REG_DWORD /d 1
102-
echo 干废WD设置
103-
REG ADD "HKLM\Mount_SOFTWARE\Microsoft\Windows Defender" /f /v "DisableAntiSpyware" /t REG_DWORD /d 1
104-
REG ADD "HKLM\Mount_SOFTWARE\Microsoft\Windows Defender" /f /v "DisableAntiVirus" /t REG_DWORD /d 1
105-
REG ADD "HKLM\Mount_SOFTWARE\Microsoft\Windows Defender\Features" /f /v "TamperProtection" /t REG_DWORD /d 4
106-
REG ADD "HKLM\Mount_SOFTWARE\Microsoft\Windows Defender\Features" /f /v "TamperProtectionSource" /t REG_DWORD /d 2
107-
REG ADD "HKLM\Mount_SOFTWARE\Microsoft\Windows Defender\Spynet" /f /v "SpyNetReporting" /t REG_DWORD /d 0
108-
REG ADD "HKLM\Mount_SOFTWARE\Microsoft\Windows Defender\Spynet" /f /v "SubmitSamplesConsent" /t REG_DWORD /d 0
109-
echo 禁用保留存储的空间占用
110-
REG ADD "HKLM\Mount_SOFTWARE\Microsoft\Windows\CurrentVersion\ReserveManager" /v "MiscPolicyInfo" /t REG_DWORD /d "2" /f
111-
REG ADD "HKLM\Mount_SOFTWARE\Microsoft\Windows\CurrentVersion\ReserveManager" /v "PassedPolicy" /t REG_DWORD /d "0" /f
112-
REG ADD "HKLM\Mount_SOFTWARE\Microsoft\Windows\CurrentVersion\ReserveManager" /v "ShippedWithReserves" /t REG_DWORD /d "0" /f
113-
echo 处理OOBE
114-
REG ADD "HKLM\Mount_SOFTWARE\Microsoft\Windows\CurrentVersion\OOBE" /v "BypassNRO" /t REG_DWORD /d "1" /f
115-
REG DELETE "HKLM\Mount_SOFTWARE\Microsoft\WindowsUpdate\Orchestrator\UScheduler_Oobe" /v "DevHomeUpdate" /f
116-
@REM REG DELETE "HKLM\Mount_SOFTWARE\Microsoft\WindowsUpdate\Orchestrator\UScheduler_Oobe\EdgeUpdate" /f
117-
REG DELETE "HKLM\Mount_SOFTWARE\Microsoft\WindowsUpdate\Orchestrator\UScheduler_Oobe\CrossDeviceUpdate" /f
118-
REG DELETE "HKLM\Mount_SOFTWARE\Microsoft\WindowsUpdate\Orchestrator\UScheduler_Oobe\DevHomeUpdate" /f
119-
REG DELETE "HKLM\Mount_SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Orchestrator\UScheduler\DevHomeUpdate" /f
120-
@REM REG DELETE "HKLM\Mount_SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Orchestrator\UScheduler\EdgeUpdate" /f
121-
REG DELETE "HKLM\Mount_SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Orchestrator\UScheduler\OutlookUpdate" /f
122-
REG DELETE "HKLM\Mount_SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Orchestrator\UScheduler\CrossDeviceUpdate" /f
123-
124-
REG UNLOAD "HKLM\Mount_SOFTWARE"
125-
126-
127-
128-
echo 修改默认用户注册表
129-
REG LOAD "HKLM\Mount_Default" "Users\Default\NTUSER.DAT"
130-
echo 跳过系统配置检测
131-
for %%a in (SV1,SV2) do REG ADD "HKLM\Mount_Default\Control Panel\UnsupportedHardwareNotificationCache" /f /v "%%a" /t REG_DWORD /d 0
132-
echo 禁用 OneDriveSetup自动启动
133-
REG DELETE "HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /f /v "OneDriveSetup"
134-
echo 屏蔽“同意个人数据跨境传输”
135-
REG ADD "HKLM\Mount_Default\Software\Microsoft\Windows\CurrentVersion\CloudExperienceHost\Intent\PersonalDataExport" /f /v "PDEShown" /t REG_DWORD /d 2
136-
echo 禁用 Windows 全新安装后擅自安装三方 App
137-
for %%a in (
138-
ContentDeliveryAllowed
139-
DesktopSpotlightOemEnabled
140-
FeatureManagementEnabled
141-
OemPreInstalledAppsEnabled
142-
PreInstalledAppsEnabled
143-
PreInstalledAppsEverEnabled
144-
RemediationRequired
145-
SilentInstalledAppsEnabled
146-
SlideshowEnabled
147-
SoftLandingEnabled
148-
SystemPaneSuggestionsEnabled
149-
SubscribedContentEnabled
150-
) do REG ADD "HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\ContentDeliveryManager" /v "%%a" /t REG_DWORD /d "0" /f
151-
echo 禁用 Windows 在各处无用的建议提示
152-
for %%a in (
153-
310093Enabled
154-
338388Enabled
155-
338389Enabled
156-
338393Enabled
157-
353694Enabled
158-
353696Enabled
159-
) do REG ADD "HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\ContentDeliveryManager" /v "SubscribedContent-%%a" /t REG_DWORD /d "0" /f
160-
echo 禁用游戏栏 Game Bar
161-
REG ADD "HKLM\Mount_Default\SOFTWARE\Microsoft\GameBar" /v "UseNexusForGameBarEnabled" /t REG_DWORD /d "0" /f
162-
echo 隐藏任务栏小组件
163-
REG ADD "HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced" /v "TaskbarDa" /t REG_DWORD /d "0" /f
164-
echo 隐藏任务栏聊天
165-
REG ADD "HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced" /v "TaskbarMn" /t REG_DWORD /d "0" /f
166-
echo 任务栏显示搜索图标
167-
REG ADD "HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\Search" /v "SearchboxTaskbarMode" /t REG_DWORD /d "1" /f
168-
echo 任务栏禁用资讯和兴趣
169-
REG ADD "HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\Feeds" /v "ShellFeedsTaskbarViewMode" /t REG_DWORD /d "2" /f
170-
REG ADD "HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\Feeds" /v "ShellFeedsTaskbarOpenOnHover" /t REG_DWORD /d "0" /f
171-
REG ADD "HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\Feeds" /v "IsFeedsAvailable" /t REG_DWORD /d "0" /f
172-
REG ADD "HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\Feeds" /v "IsEnterpriseDevice" /t REG_DWORD /d "1" /f
91+
@REM echo 修改软件注册表
92+
@REM REG LOAD "HKLM\Mount_SOFTWARE" "Windows\System32\config\SOFTWARE"
93+
@REM echo 干废WD组策略
94+
@REM REG ADD "HKLM\Mount_SOFTWARE\Policies\Microsoft\Windows Defender" /f /v "DisableAntiSpyware" /t REG_DWORD /d 1
95+
@REM REG ADD "HKLM\Mount_SOFTWARE\Policies\Microsoft\Windows Defender" /f /v "DisableAntiVirus" /t REG_DWORD /d 1
96+
@REM REG ADD "HKLM\Mount_SOFTWARE\Policies\Microsoft\Windows Defender" /f /v "AllowFastServiceStartup" /t REG_DWORD /d 0
97+
@REM REG ADD "HKLM\Mount_SOFTWARE\Policies\Microsoft\Windows Defender\Real-Time Protection" /f /v "DisableRealtimeMonitoring" /t REG_DWORD /d 1
98+
@REM REG ADD "HKLM\Mount_SOFTWARE\Policies\Microsoft\Windows Defender\Real-Time Protection" /f /v "DisableIOAVProtection" /t REG_DWORD /d 1
99+
@REM REG ADD "HKLM\Mount_SOFTWARE\Policies\Microsoft\Windows Defender\Real-Time Protection" /f /v "DisableOnAccessProtection" /t REG_DWORD /d 1
100+
@REM REG ADD "HKLM\Mount_SOFTWARE\Policies\Microsoft\Windows Defender\Real-Time Protection" /f /v "DisableBehaviorMonitoring" /t REG_DWORD /d 1
101+
@REM REG ADD "HKLM\Mount_SOFTWARE\Policies\Microsoft\Windows Defender\Real-Time Protection" /f /v "DisableScanOnRealtimeEnable" /t REG_DWORD /d 1
102+
@REM echo 干废WD设置
103+
@REM REG ADD "HKLM\Mount_SOFTWARE\Microsoft\Windows Defender" /f /v "DisableAntiSpyware" /t REG_DWORD /d 1
104+
@REM REG ADD "HKLM\Mount_SOFTWARE\Microsoft\Windows Defender" /f /v "DisableAntiVirus" /t REG_DWORD /d 1
105+
@REM REG ADD "HKLM\Mount_SOFTWARE\Microsoft\Windows Defender\Features" /f /v "TamperProtection" /t REG_DWORD /d 4
106+
@REM REG ADD "HKLM\Mount_SOFTWARE\Microsoft\Windows Defender\Features" /f /v "TamperProtectionSource" /t REG_DWORD /d 2
107+
@REM REG ADD "HKLM\Mount_SOFTWARE\Microsoft\Windows Defender\Spynet" /f /v "SpyNetReporting" /t REG_DWORD /d 0
108+
@REM REG ADD "HKLM\Mount_SOFTWARE\Microsoft\Windows Defender\Spynet" /f /v "SubmitSamplesConsent" /t REG_DWORD /d 0
109+
@REM echo 禁用保留存储的空间占用
110+
@REM REG ADD "HKLM\Mount_SOFTWARE\Microsoft\Windows\CurrentVersion\ReserveManager" /v "MiscPolicyInfo" /t REG_DWORD /d "2" /f
111+
@REM REG ADD "HKLM\Mount_SOFTWARE\Microsoft\Windows\CurrentVersion\ReserveManager" /v "PassedPolicy" /t REG_DWORD /d "0" /f
112+
@REM REG ADD "HKLM\Mount_SOFTWARE\Microsoft\Windows\CurrentVersion\ReserveManager" /v "ShippedWithReserves" /t REG_DWORD /d "0" /f
113+
@REM echo 处理OOBE
114+
@REM REG ADD "HKLM\Mount_SOFTWARE\Microsoft\Windows\CurrentVersion\OOBE" /v "BypassNRO" /t REG_DWORD /d "1" /f
115+
@REM REG DELETE "HKLM\Mount_SOFTWARE\Microsoft\WindowsUpdate\Orchestrator\UScheduler_Oobe" /v "DevHomeUpdate" /f
116+
@REM @REM REG DELETE "HKLM\Mount_SOFTWARE\Microsoft\WindowsUpdate\Orchestrator\UScheduler_Oobe\EdgeUpdate" /f
117+
@REM REG DELETE "HKLM\Mount_SOFTWARE\Microsoft\WindowsUpdate\Orchestrator\UScheduler_Oobe\CrossDeviceUpdate" /f
118+
@REM REG DELETE "HKLM\Mount_SOFTWARE\Microsoft\WindowsUpdate\Orchestrator\UScheduler_Oobe\DevHomeUpdate" /f
119+
@REM REG DELETE "HKLM\Mount_SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Orchestrator\UScheduler\DevHomeUpdate" /f
120+
@REM @REM REG DELETE "HKLM\Mount_SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Orchestrator\UScheduler\EdgeUpdate" /f
121+
@REM REG DELETE "HKLM\Mount_SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Orchestrator\UScheduler\OutlookUpdate" /f
122+
@REM REG DELETE "HKLM\Mount_SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Orchestrator\UScheduler\CrossDeviceUpdate" /f
123+
124+
@REM REG UNLOAD "HKLM\Mount_SOFTWARE"
125+
126+
127+
128+
@REM echo 修改默认用户注册表
129+
@REM REG LOAD "HKLM\Mount_Default" "Users\Default\NTUSER.DAT"
130+
@REM echo 跳过系统配置检测
131+
@REM for %%a in (SV1,SV2) do REG ADD "HKLM\Mount_Default\Control Panel\UnsupportedHardwareNotificationCache" /f /v "%%a" /t REG_DWORD /d 0
132+
@REM echo 禁用 OneDriveSetup自动启动
133+
@REM REG DELETE "HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /f /v "OneDriveSetup"
134+
@REM echo 屏蔽“同意个人数据跨境传输”
135+
@REM REG ADD "HKLM\Mount_Default\Software\Microsoft\Windows\CurrentVersion\CloudExperienceHost\Intent\PersonalDataExport" /f /v "PDEShown" /t REG_DWORD /d 2
136+
@REM echo 禁用 Windows 全新安装后擅自安装三方 App
137+
@REM for %%a in (
138+
@REM ContentDeliveryAllowed
139+
@REM DesktopSpotlightOemEnabled
140+
@REM FeatureManagementEnabled
141+
@REM OemPreInstalledAppsEnabled
142+
@REM PreInstalledAppsEnabled
143+
@REM PreInstalledAppsEverEnabled
144+
@REM RemediationRequired
145+
@REM SilentInstalledAppsEnabled
146+
@REM SlideshowEnabled
147+
@REM SoftLandingEnabled
148+
@REM SystemPaneSuggestionsEnabled
149+
@REM SubscribedContentEnabled
150+
@REM ) do REG ADD "HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\ContentDeliveryManager" /v "%%a" /t REG_DWORD /d "0" /f
151+
@REM echo 禁用 Windows 在各处无用的建议提示
152+
@REM for %%a in (
153+
@REM 310093Enabled
154+
@REM 338388Enabled
155+
@REM 338389Enabled
156+
@REM 338393Enabled
157+
@REM 353694Enabled
158+
@REM 353696Enabled
159+
@REM ) do REG ADD "HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\ContentDeliveryManager" /v "SubscribedContent-%%a" /t REG_DWORD /d "0" /f
160+
@REM echo 禁用游戏栏 Game Bar
161+
@REM REG ADD "HKLM\Mount_Default\SOFTWARE\Microsoft\GameBar" /v "UseNexusForGameBarEnabled" /t REG_DWORD /d "0" /f
162+
@REM echo 隐藏任务栏小组件
163+
@REM REG ADD "HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced" /v "TaskbarDa" /t REG_DWORD /d "0" /f
164+
@REM echo 隐藏任务栏聊天
165+
@REM REG ADD "HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced" /v "TaskbarMn" /t REG_DWORD /d "0" /f
166+
@REM echo 任务栏显示搜索图标
167+
@REM REG ADD "HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\Search" /v "SearchboxTaskbarMode" /t REG_DWORD /d "1" /f
168+
@REM echo 任务栏禁用资讯和兴趣
169+
@REM REG ADD "HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\Feeds" /v "ShellFeedsTaskbarViewMode" /t REG_DWORD /d "2" /f
170+
@REM REG ADD "HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\Feeds" /v "ShellFeedsTaskbarOpenOnHover" /t REG_DWORD /d "0" /f
171+
@REM REG ADD "HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\Feeds" /v "IsFeedsAvailable" /t REG_DWORD /d "0" /f
172+
@REM REG ADD "HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\Feeds" /v "IsEnterpriseDevice" /t REG_DWORD /d "1" /f
173173

174174
REG UNLOAD "HKLM\Mount_Default"
175175
>"Windows\Setup\xrsys.txt" echo isxrsys

0 commit comments

Comments
 (0)