@@ -61,115 +61,115 @@ echo
61
61
REG LOAD " HKLM\Mount_SYSTEM" " Windows\System32\config\SYSTEM"
62
62
echo 接管系统部署
63
63
REG ADD " HKLM\Mount_SYSTEM\Setup" /f /v " CmdLine" /t REG_SZ /d " deploy.exe"
64
- echo 干废WD服务
65
- for %%a in (
66
- MsSecFlt
67
- Sense
68
- WdBoot
69
- WdFilter
70
- WdNisDrv
71
- WdNisSvc
72
- WinDefend
73
- SgrmAgent
74
- SgrmBroker
75
- webthreatdefsvc
76
- webthreatdefsvc
77
- ) do REG ADD " HKLM\Mount_SYSTEM\ControlSet001\Services\%%a " /f /v " Start" /t REG_DWORD /d 4
78
- echo 跳过系统配置检测
79
- for %%a in (
80
- BypassCPUCheck
81
- BypassRAMCheck
82
- BypassSecureBootCheck
83
- BypassStorageCheck
84
- BypassTPMCheck
85
- ) do REG ADD " HKLM\Mount_SYSTEM\Setup\LabConfig" /f /v " %%a " /t REG_DWORD /d 1
86
- REG ADD " HKLM\Mount_SYSTEM\Setup\MoSetup" /f /v " AllowUpgradesWithUnsupportedTPMOrCPU" /t REG_DWORD /d 1
87
- echo 禁用BitLocker自动加密
88
- REG ADD " HKLM\Mount_SYSTEM\ControlSet001\BitLocker" /f /v " PreventDeviceEncryption" /t REG_DWORD /d 1
64
+ @ REM echo 干废WD服务
65
+ @ REM for %%a in (
66
+ @ REM MsSecFlt
67
+ @ REM Sense
68
+ @ REM WdBoot
69
+ @ REM WdFilter
70
+ @ REM WdNisDrv
71
+ @ REM WdNisSvc
72
+ @ REM WinDefend
73
+ @ REM SgrmAgent
74
+ @ REM SgrmBroker
75
+ @ REM webthreatdefsvc
76
+ @ REM webthreatdefsvc
77
+ @ REM ) do REG ADD "HKLM\Mount_SYSTEM\ControlSet001\Services\%%a" /f /v "Start" /t REG_DWORD /d 4
78
+ @ REM echo 跳过系统配置检测
79
+ @ REM for %%a in (
80
+ @ REM BypassCPUCheck
81
+ @ REM BypassRAMCheck
82
+ @ REM BypassSecureBootCheck
83
+ @ REM BypassStorageCheck
84
+ @ REM BypassTPMCheck
85
+ @ REM ) do REG ADD "HKLM\Mount_SYSTEM\Setup\LabConfig" /f /v "%%a" /t REG_DWORD /d 1
86
+ @ REM REG ADD "HKLM\Mount_SYSTEM\Setup\MoSetup" /f /v "AllowUpgradesWithUnsupportedTPMOrCPU" /t REG_DWORD /d 1
87
+ @ REM echo 禁用BitLocker自动加密
88
+ @ REM REG ADD "HKLM\Mount_SYSTEM\ControlSet001\BitLocker" /f /v "PreventDeviceEncryption" /t REG_DWORD /d 1
89
89
REG UNLOAD " HKLM\Mount_SYSTEM"
90
90
91
- echo 修改软件注册表
92
- REG LOAD " HKLM\Mount_SOFTWARE" " Windows\System32\config\SOFTWARE"
93
- echo 干废WD组策略
94
- REG ADD " HKLM\Mount_SOFTWARE\Policies\Microsoft\Windows Defender" /f /v " DisableAntiSpyware" /t REG_DWORD /d 1
95
- REG ADD " HKLM\Mount_SOFTWARE\Policies\Microsoft\Windows Defender" /f /v " DisableAntiVirus" /t REG_DWORD /d 1
96
- REG ADD " HKLM\Mount_SOFTWARE\Policies\Microsoft\Windows Defender" /f /v " AllowFastServiceStartup" /t REG_DWORD /d 0
97
- REG ADD " HKLM\Mount_SOFTWARE\Policies\Microsoft\Windows Defender\Real-Time Protection" /f /v " DisableRealtimeMonitoring" /t REG_DWORD /d 1
98
- REG ADD " HKLM\Mount_SOFTWARE\Policies\Microsoft\Windows Defender\Real-Time Protection" /f /v " DisableIOAVProtection" /t REG_DWORD /d 1
99
- REG ADD " HKLM\Mount_SOFTWARE\Policies\Microsoft\Windows Defender\Real-Time Protection" /f /v " DisableOnAccessProtection" /t REG_DWORD /d 1
100
- REG ADD " HKLM\Mount_SOFTWARE\Policies\Microsoft\Windows Defender\Real-Time Protection" /f /v " DisableBehaviorMonitoring" /t REG_DWORD /d 1
101
- REG ADD " HKLM\Mount_SOFTWARE\Policies\Microsoft\Windows Defender\Real-Time Protection" /f /v " DisableScanOnRealtimeEnable" /t REG_DWORD /d 1
102
- echo 干废WD设置
103
- REG ADD " HKLM\Mount_SOFTWARE\Microsoft\Windows Defender" /f /v " DisableAntiSpyware" /t REG_DWORD /d 1
104
- REG ADD " HKLM\Mount_SOFTWARE\Microsoft\Windows Defender" /f /v " DisableAntiVirus" /t REG_DWORD /d 1
105
- REG ADD " HKLM\Mount_SOFTWARE\Microsoft\Windows Defender\Features" /f /v " TamperProtection" /t REG_DWORD /d 4
106
- REG ADD " HKLM\Mount_SOFTWARE\Microsoft\Windows Defender\Features" /f /v " TamperProtectionSource" /t REG_DWORD /d 2
107
- REG ADD " HKLM\Mount_SOFTWARE\Microsoft\Windows Defender\Spynet" /f /v " SpyNetReporting" /t REG_DWORD /d 0
108
- REG ADD " HKLM\Mount_SOFTWARE\Microsoft\Windows Defender\Spynet" /f /v " SubmitSamplesConsent" /t REG_DWORD /d 0
109
- echo 禁用保留存储的空间占用
110
- REG ADD " HKLM\Mount_SOFTWARE\Microsoft\Windows\CurrentVersion\ReserveManager" /v " MiscPolicyInfo" /t REG_DWORD /d " 2" /f
111
- REG ADD " HKLM\Mount_SOFTWARE\Microsoft\Windows\CurrentVersion\ReserveManager" /v " PassedPolicy" /t REG_DWORD /d " 0" /f
112
- REG ADD " HKLM\Mount_SOFTWARE\Microsoft\Windows\CurrentVersion\ReserveManager" /v " ShippedWithReserves" /t REG_DWORD /d " 0" /f
113
- echo 处理OOBE
114
- REG ADD " HKLM\Mount_SOFTWARE\Microsoft\Windows\CurrentVersion\OOBE" /v " BypassNRO" /t REG_DWORD /d " 1" /f
115
- REG DELETE " HKLM\Mount_SOFTWARE\Microsoft\WindowsUpdate\Orchestrator\UScheduler_Oobe" /v " DevHomeUpdate" /f
116
- @ REM REG DELETE "HKLM\Mount_SOFTWARE\Microsoft\WindowsUpdate\Orchestrator\UScheduler_Oobe\EdgeUpdate" /f
117
- REG DELETE " HKLM\Mount_SOFTWARE\Microsoft\WindowsUpdate\Orchestrator\UScheduler_Oobe\CrossDeviceUpdate" /f
118
- REG DELETE " HKLM\Mount_SOFTWARE\Microsoft\WindowsUpdate\Orchestrator\UScheduler_Oobe\DevHomeUpdate" /f
119
- REG DELETE " HKLM\Mount_SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Orchestrator\UScheduler\DevHomeUpdate" /f
120
- @ REM REG DELETE "HKLM\Mount_SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Orchestrator\UScheduler\EdgeUpdate" /f
121
- REG DELETE " HKLM\Mount_SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Orchestrator\UScheduler\OutlookUpdate" /f
122
- REG DELETE " HKLM\Mount_SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Orchestrator\UScheduler\CrossDeviceUpdate" /f
123
-
124
- REG UNLOAD " HKLM\Mount_SOFTWARE"
125
-
126
-
127
-
128
- echo 修改默认用户注册表
129
- REG LOAD " HKLM\Mount_Default" " Users\Default\NTUSER.DAT"
130
- echo 跳过系统配置检测
131
- for %%a in (SV1,SV2) do REG ADD " HKLM\Mount_Default\Control Panel\UnsupportedHardwareNotificationCache" /f /v " %%a " /t REG_DWORD /d 0
132
- echo 禁用 OneDriveSetup自动启动
133
- REG DELETE " HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /f /v " OneDriveSetup"
134
- echo 屏蔽“同意个人数据跨境传输”
135
- REG ADD " HKLM\Mount_Default\Software\Microsoft\Windows\CurrentVersion\CloudExperienceHost\Intent\PersonalDataExport" /f /v " PDEShown" /t REG_DWORD /d 2
136
- echo 禁用 Windows 全新安装后擅自安装三方 App
137
- for %%a in (
138
- ContentDeliveryAllowed
139
- DesktopSpotlightOemEnabled
140
- FeatureManagementEnabled
141
- OemPreInstalledAppsEnabled
142
- PreInstalledAppsEnabled
143
- PreInstalledAppsEverEnabled
144
- RemediationRequired
145
- SilentInstalledAppsEnabled
146
- SlideshowEnabled
147
- SoftLandingEnabled
148
- SystemPaneSuggestionsEnabled
149
- SubscribedContentEnabled
150
- ) do REG ADD " HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\ContentDeliveryManager" /v " %%a " /t REG_DWORD /d " 0" /f
151
- echo 禁用 Windows 在各处无用的建议提示
152
- for %%a in (
153
- 310093Enabled
154
- 338388Enabled
155
- 338389Enabled
156
- 338393Enabled
157
- 353694Enabled
158
- 353696Enabled
159
- ) do REG ADD " HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\ContentDeliveryManager" /v " SubscribedContent-%%a " /t REG_DWORD /d " 0" /f
160
- echo 禁用游戏栏 Game Bar
161
- REG ADD " HKLM\Mount_Default\SOFTWARE\Microsoft\GameBar" /v " UseNexusForGameBarEnabled" /t REG_DWORD /d " 0" /f
162
- echo 隐藏任务栏小组件
163
- REG ADD " HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced" /v " TaskbarDa" /t REG_DWORD /d " 0" /f
164
- echo 隐藏任务栏聊天
165
- REG ADD " HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced" /v " TaskbarMn" /t REG_DWORD /d " 0" /f
166
- echo 任务栏显示搜索图标
167
- REG ADD " HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\Search" /v " SearchboxTaskbarMode" /t REG_DWORD /d " 1" /f
168
- echo 任务栏禁用资讯和兴趣
169
- REG ADD " HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\Feeds" /v " ShellFeedsTaskbarViewMode" /t REG_DWORD /d " 2" /f
170
- REG ADD " HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\Feeds" /v " ShellFeedsTaskbarOpenOnHover" /t REG_DWORD /d " 0" /f
171
- REG ADD " HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\Feeds" /v " IsFeedsAvailable" /t REG_DWORD /d " 0" /f
172
- REG ADD " HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\Feeds" /v " IsEnterpriseDevice" /t REG_DWORD /d " 1" /f
91
+ @ REM echo 修改软件注册表
92
+ @ REM REG LOAD "HKLM\Mount_SOFTWARE" "Windows\System32\config\SOFTWARE"
93
+ @ REM echo 干废WD组策略
94
+ @ REM REG ADD "HKLM\Mount_SOFTWARE\Policies\Microsoft\Windows Defender" /f /v "DisableAntiSpyware" /t REG_DWORD /d 1
95
+ @ REM REG ADD "HKLM\Mount_SOFTWARE\Policies\Microsoft\Windows Defender" /f /v "DisableAntiVirus" /t REG_DWORD /d 1
96
+ @ REM REG ADD "HKLM\Mount_SOFTWARE\Policies\Microsoft\Windows Defender" /f /v "AllowFastServiceStartup" /t REG_DWORD /d 0
97
+ @ REM REG ADD "HKLM\Mount_SOFTWARE\Policies\Microsoft\Windows Defender\Real-Time Protection" /f /v "DisableRealtimeMonitoring" /t REG_DWORD /d 1
98
+ @ REM REG ADD "HKLM\Mount_SOFTWARE\Policies\Microsoft\Windows Defender\Real-Time Protection" /f /v "DisableIOAVProtection" /t REG_DWORD /d 1
99
+ @ REM REG ADD "HKLM\Mount_SOFTWARE\Policies\Microsoft\Windows Defender\Real-Time Protection" /f /v "DisableOnAccessProtection" /t REG_DWORD /d 1
100
+ @ REM REG ADD "HKLM\Mount_SOFTWARE\Policies\Microsoft\Windows Defender\Real-Time Protection" /f /v "DisableBehaviorMonitoring" /t REG_DWORD /d 1
101
+ @ REM REG ADD "HKLM\Mount_SOFTWARE\Policies\Microsoft\Windows Defender\Real-Time Protection" /f /v "DisableScanOnRealtimeEnable" /t REG_DWORD /d 1
102
+ @ REM echo 干废WD设置
103
+ @ REM REG ADD "HKLM\Mount_SOFTWARE\Microsoft\Windows Defender" /f /v "DisableAntiSpyware" /t REG_DWORD /d 1
104
+ @ REM REG ADD "HKLM\Mount_SOFTWARE\Microsoft\Windows Defender" /f /v "DisableAntiVirus" /t REG_DWORD /d 1
105
+ @ REM REG ADD "HKLM\Mount_SOFTWARE\Microsoft\Windows Defender\Features" /f /v "TamperProtection" /t REG_DWORD /d 4
106
+ @ REM REG ADD "HKLM\Mount_SOFTWARE\Microsoft\Windows Defender\Features" /f /v "TamperProtectionSource" /t REG_DWORD /d 2
107
+ @ REM REG ADD "HKLM\Mount_SOFTWARE\Microsoft\Windows Defender\Spynet" /f /v "SpyNetReporting" /t REG_DWORD /d 0
108
+ @ REM REG ADD "HKLM\Mount_SOFTWARE\Microsoft\Windows Defender\Spynet" /f /v "SubmitSamplesConsent" /t REG_DWORD /d 0
109
+ @ REM echo 禁用保留存储的空间占用
110
+ @ REM REG ADD "HKLM\Mount_SOFTWARE\Microsoft\Windows\CurrentVersion\ReserveManager" /v "MiscPolicyInfo" /t REG_DWORD /d "2" /f
111
+ @ REM REG ADD "HKLM\Mount_SOFTWARE\Microsoft\Windows\CurrentVersion\ReserveManager" /v "PassedPolicy" /t REG_DWORD /d "0" /f
112
+ @ REM REG ADD "HKLM\Mount_SOFTWARE\Microsoft\Windows\CurrentVersion\ReserveManager" /v "ShippedWithReserves" /t REG_DWORD /d "0" /f
113
+ @ REM echo 处理OOBE
114
+ @ REM REG ADD "HKLM\Mount_SOFTWARE\Microsoft\Windows\CurrentVersion\OOBE" /v "BypassNRO" /t REG_DWORD /d "1" /f
115
+ @ REM REG DELETE "HKLM\Mount_SOFTWARE\Microsoft\WindowsUpdate\Orchestrator\UScheduler_Oobe" /v "DevHomeUpdate" /f
116
+ @ REM @REM REG DELETE "HKLM\Mount_SOFTWARE\Microsoft\WindowsUpdate\Orchestrator\UScheduler_Oobe\EdgeUpdate" /f
117
+ @ REM REG DELETE "HKLM\Mount_SOFTWARE\Microsoft\WindowsUpdate\Orchestrator\UScheduler_Oobe\CrossDeviceUpdate" /f
118
+ @ REM REG DELETE "HKLM\Mount_SOFTWARE\Microsoft\WindowsUpdate\Orchestrator\UScheduler_Oobe\DevHomeUpdate" /f
119
+ @ REM REG DELETE "HKLM\Mount_SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Orchestrator\UScheduler\DevHomeUpdate" /f
120
+ @ REM @REM REG DELETE "HKLM\Mount_SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Orchestrator\UScheduler\EdgeUpdate" /f
121
+ @ REM REG DELETE "HKLM\Mount_SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Orchestrator\UScheduler\OutlookUpdate" /f
122
+ @ REM REG DELETE "HKLM\Mount_SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Orchestrator\UScheduler\CrossDeviceUpdate" /f
123
+
124
+ @ REM REG UNLOAD "HKLM\Mount_SOFTWARE"
125
+
126
+
127
+
128
+ @ REM echo 修改默认用户注册表
129
+ @ REM REG LOAD "HKLM\Mount_Default" "Users\Default\NTUSER.DAT"
130
+ @ REM echo 跳过系统配置检测
131
+ @ REM for %%a in (SV1,SV2) do REG ADD "HKLM\Mount_Default\Control Panel\UnsupportedHardwareNotificationCache" /f /v "%%a" /t REG_DWORD /d 0
132
+ @ REM echo 禁用 OneDriveSetup自动启动
133
+ @ REM REG DELETE "HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /f /v "OneDriveSetup"
134
+ @ REM echo 屏蔽“同意个人数据跨境传输”
135
+ @ REM REG ADD "HKLM\Mount_Default\Software\Microsoft\Windows\CurrentVersion\CloudExperienceHost\Intent\PersonalDataExport" /f /v "PDEShown" /t REG_DWORD /d 2
136
+ @ REM echo 禁用 Windows 全新安装后擅自安装三方 App
137
+ @ REM for %%a in (
138
+ @ REM ContentDeliveryAllowed
139
+ @ REM DesktopSpotlightOemEnabled
140
+ @ REM FeatureManagementEnabled
141
+ @ REM OemPreInstalledAppsEnabled
142
+ @ REM PreInstalledAppsEnabled
143
+ @ REM PreInstalledAppsEverEnabled
144
+ @ REM RemediationRequired
145
+ @ REM SilentInstalledAppsEnabled
146
+ @ REM SlideshowEnabled
147
+ @ REM SoftLandingEnabled
148
+ @ REM SystemPaneSuggestionsEnabled
149
+ @ REM SubscribedContentEnabled
150
+ @ REM ) do REG ADD "HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\ContentDeliveryManager" /v "%%a" /t REG_DWORD /d "0" /f
151
+ @ REM echo 禁用 Windows 在各处无用的建议提示
152
+ @ REM for %%a in (
153
+ @ REM 310093Enabled
154
+ @ REM 338388Enabled
155
+ @ REM 338389Enabled
156
+ @ REM 338393Enabled
157
+ @ REM 353694Enabled
158
+ @ REM 353696Enabled
159
+ @ REM ) do REG ADD "HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\ContentDeliveryManager" /v "SubscribedContent-%%a" /t REG_DWORD /d "0" /f
160
+ @ REM echo 禁用游戏栏 Game Bar
161
+ @ REM REG ADD "HKLM\Mount_Default\SOFTWARE\Microsoft\GameBar" /v "UseNexusForGameBarEnabled" /t REG_DWORD /d "0" /f
162
+ @ REM echo 隐藏任务栏小组件
163
+ @ REM REG ADD "HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced" /v "TaskbarDa" /t REG_DWORD /d "0" /f
164
+ @ REM echo 隐藏任务栏聊天
165
+ @ REM REG ADD "HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced" /v "TaskbarMn" /t REG_DWORD /d "0" /f
166
+ @ REM echo 任务栏显示搜索图标
167
+ @ REM REG ADD "HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\Search" /v "SearchboxTaskbarMode" /t REG_DWORD /d "1" /f
168
+ @ REM echo 任务栏禁用资讯和兴趣
169
+ @ REM REG ADD "HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\Feeds" /v "ShellFeedsTaskbarViewMode" /t REG_DWORD /d "2" /f
170
+ @ REM REG ADD "HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\Feeds" /v "ShellFeedsTaskbarOpenOnHover" /t REG_DWORD /d "0" /f
171
+ @ REM REG ADD "HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\Feeds" /v "IsFeedsAvailable" /t REG_DWORD /d "0" /f
172
+ @ REM REG ADD "HKLM\Mount_Default\SOFTWARE\Microsoft\Windows\CurrentVersion\Feeds" /v "IsEnterpriseDevice" /t REG_DWORD /d "1" /f
173
173
174
174
REG UNLOAD " HKLM\Mount_Default"
175
175
> " Windows\Setup\xrsys.txt" echo isxrsys
0 commit comments