-
Notifications
You must be signed in to change notification settings - Fork 15
/
tweaks.mst
395 lines (367 loc) · 39.9 KB
/
tweaks.mst
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
242
243
244
245
246
247
248
249
250
251
252
253
254
255
256
257
258
259
260
261
262
263
264
265
266
267
268
269
270
271
272
273
274
275
276
277
278
279
280
281
282
283
284
285
286
287
288
289
290
291
292
293
294
295
296
297
298
299
300
301
302
303
304
305
306
307
308
309
310
311
312
313
314
315
316
317
318
319
320
321
322
323
324
325
326
327
328
329
330
331
332
333
334
335
336
337
338
339
340
341
342
343
344
345
346
347
348
349
350
351
352
353
354
355
356
357
358
359
360
361
362
363
364
365
366
367
368
369
370
371
372
373
374
375
376
377
378
379
380
381
382
383
384
385
386
387
388
389
390
391
392
393
394
395
BASE-GROUP
[GROUP][Initial Setup][Import unattend.xml - Skips initial setup/wifi/user pages][%COLOR4% * unattend.xml must be in folder]
[COMMANDQ][ECHO. Importing unattend.xml...][CMD][IA]
[COMMANDQ][IF EXIST "%CACHE_FOLDER%\unattend.xml" MD "%WINTAR%\PANTHER"%}%NUL][CMD][IA]
[COMMANDQ][IF EXIST "%CACHE_FOLDER%\unattend.xml" TAKEOWN /F "%WINTAR%\PANTHER\unattend.xml"%}%NUL][CMD][IA]
[COMMANDQ][IF EXIST "%CACHE_FOLDER%\unattend.xml" ICACLS "%WINTAR%\PANTHER\unattend.xml" /grant %USERNAME%:F%}%NUL][CMD][IA]
[COMMANDQ][IF EXIST "%CACHE_FOLDER%\unattend.xml" COPY /Y "%CACHE_FOLDER%\unattend.xml" "%WINTAR%\PANTHER"%}%NUL][CMD][IA]
[COMMANDQ][IF EXIST "%CACHE_FOLDER%\unattend.xml" IF EXIST "%WINTAR%\PANTHER\unattend.xml" ECHO. The operation completed successfully.][CMD][IA]
[COMMANDQ][IF NOT EXIST "%CACHE_FOLDER%\unattend.xml" ECHO. ERROR: unattend.xml does not exist in folder.][CMD][IA]
[GROUP][Initial Setup][First Logon Waiting Screen %COLOR5%Enable]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\Policies\SYSTEM" /v "EnableFirstLogonAnimation" /t REG_DWORD /d "1" /f][REG][IA]
[GROUP][Initial Setup][First Logon Waiting Screen %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\Policies\SYSTEM" /v "EnableFirstLogonAnimation" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Advertisements][Copilot %COLOR5%Enable]
[COMMAND][reg.exe add "%HIVE_USER%\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced" /v "ShowCopilotButton" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_USER%\SOFTWARE\Policies\Microsoft\Windows\WindowsCopilot" /v "TurnOffWindowsCopilot" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_USER%\SOFTWARE\Policies\Microsoft\Windows\Explorer" /v "DisableSearchSuggestions" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\SOFTWARE\Policies\Microsoft\Windows\Explorer" /v "DisableSearchSuggestions" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Advertisements][Copilot %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_USER%\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced" /v "ShowCopilotButton" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_USER%\SOFTWARE\Policies\Microsoft\Windows\WindowsCopilot" /v "TurnOffWindowsCopilot" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_USER%\SOFTWARE\Policies\Microsoft\Windows\Explorer" /v "DisableSearchSuggestions" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\SOFTWARE\Policies\Microsoft\Windows\Explorer" /v "DisableSearchSuggestions" /t REG_DWORD /d "1" /f][REG][IA]
[GROUP][Advertisements][Start Menu Ads %COLOR5%Enable]
[COMMAND][reg.exe add "%HIVE_USER%\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced" /v "Start_IrisRecommendations" /t REG_DWORD /d "1" /f][REG][IA]
[GROUP][Advertisements][Start Menu Ads %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_USER%\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced" /v "Start_IrisRecommendations" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Advertisements][Spotlight Ads %COLOR5%Enable]
[COMMAND][reg.exe add "%HIVE_USER%\SOFTWARE\Microsoft\Windows\CurrentVersion\ContentDeliveryManager" /v "RotatingLockScreenOverlayEnabled" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_USER%\SOFTWARE\Microsoft\Windows\CurrentVersion\ContentDeliveryManager" /v "SubscribedContent-338387Enabled" /t REG_DWORD /d "1" /f][REG][IA]
[GROUP][Advertisements][Spotlight Ads %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_USER%\SOFTWARE\Microsoft\Windows\CurrentVersion\ContentDeliveryManager" /v "RotatingLockScreenOverlayEnabled" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_USER%\SOFTWARE\Microsoft\Windows\CurrentVersion\ContentDeliveryManager" /v "SubscribedContent-338387Enabled" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Appearence][Animations %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_USER%\Control Panel\Desktop\WindowMetrics" /v "MinAnimate" /t REG_SZ /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_USER%\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced" /v "TaskbarAnimations" /t REG_DWORD /d 0 /f][REG][IA]
[GROUP][Appearence][Use Light mode]
[COMMAND][reg.exe add "%HIVE_USER%\SOFTWARE\Microsoft\Windows\CurrentVersion\Themes\Personalize" /v "AppsUseLightTheme" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_USER%\SOFTWARE\Microsoft\Windows\CurrentVersion\Themes\Personalize" /v "SystemUsesLightTheme" /t REG_DWORD /d "1" /f][REG][IA]
[GROUP][Appearence][Use Dark mode]
[COMMAND][reg.exe add "%HIVE_USER%\SOFTWARE\Microsoft\Windows\CurrentVersion\Themes\Personalize" /v "AppsUseLightTheme" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_USER%\SOFTWARE\Microsoft\Windows\CurrentVersion\Themes\Personalize" /v "SystemUsesLightTheme" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Startup][Boot Menu Timeout][%COLOR4% * item will be scheduled for %COLOR7%SetupComplete]
[#][Scheduling boot timeout command...][7]
[$1][ Enter the boot timeout in seconds:][VAR1]
[COMMAND][BCDEDIT /TIMEOUT %VAR1%][CMD][SC]
[GROUP][Startup][RunOnce initializes before desktop]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\Explorer" /v "AsyncRunOnce" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Startup][Desktop initializes before RunOnce]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\Explorer" /v "AsyncRunOnce" /t REG_DWORD /d "1" /f][REG][IA]
[GROUP][Startup][Skip preparing desktop]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\Policies\SYSTEM" /v "DelayedDesktopSwitchTimeout" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Startup][WinLogon verbose output %COLOR5%Enable]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\Policies\SYSTEM" /v "VerboseStatus" /t REG_DWORD /d "1" /f][REG][IA]
[GROUP][Startup][WinLogon verbose output %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\Policies\SYSTEM" /v "VerboseStatus" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Network][Online accounts %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\Policies\SYSTEM" /v "NoConnectedUser" /t REG_DWORD /d "3" /f][REG][IA]
[GROUP][Network][Cloud content %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Policies\Microsoft\Windows\CloudContent" /ve /t REG_SZ /d "" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Policies\Microsoft\Windows\CloudContent" /v "DisableWindowsConsumerFeatures" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Policies\Microsoft\Windows\CloudContent" /v "DisableSoftLanding" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Policies\Microsoft\Windows\CloudContent" /v "DisableWindowsSpotlightFeatures" /t REG_DWORD /d "1" /f][REG][IA]
[GROUP][Network][OneDrive %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_USER%\SOFTWARE\Classes\CLSID\{018D5C66-4533-4307-9B53-224DE2ED1FE6}" /v "SYSTEM.IsPinnedToNameSpaceTree" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe delete "%HIVE_SYSTEM%\ControlSet001\Services\OneSyncSvc" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Services\OneSyncSvc" /v "ImagePath" /t REG_EXPAND_SZ /d "NUL" /f][REG][IA]
[GROUP][Network][Windows store %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Policies\Microsoft\WindowsStore" /v "RemoveWindowsStore" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_USER%\SOFTWARE\Policies\Microsoft\Windows\Explorer" /v "NoUseStoreOpenWith" /t REG_DWORD /d "1" /f][REG][IA]
[GROUP][Network][Bluetooth discovery %COLOR5%Enable]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\PolicyManager\current\device\Bluetooth" /v "AllowAdvertising" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\PolicyManager\current\device\Browser" /v "AllowAddressBarDropdown" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\PolicyManager\current\device\SYSTEM" /v "AllowExperimentation" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\PolicyManager\current\device\SmartGlass" /v "BluetoothPolicy" /t REG_DWORD /d "1" /f][REG][IA]
[GROUP][Network][Bluetooth discovery %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\PolicyManager\current\device\Bluetooth" /v "AllowAdvertising" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\PolicyManager\current\device\Browser" /v "AllowAddressBarDropdown" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\PolicyManager\current\device\SYSTEM" /v "AllowExperimentation" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\PolicyManager\current\device\SmartGlass" /v "BluetoothPolicy" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Network][Link layer topology discovery %COLOR5%Enable]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Policies\Microsoft\Windows\LLTD" /v "EnableRspndr" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Policies\Microsoft\Windows\LLTD" /v "AllowRspndrOnDomain" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Policies\Microsoft\Windows\LLTD" /v "AllowRspndrOnPublicNet" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Policies\Microsoft\Windows\LLTD" /v "ProhibitRspndrOnPrivateNet" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Network][Link layer topology discovery %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Policies\Microsoft\Windows\LLTD" /v "EnableRspndr" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Policies\Microsoft\Windows\LLTD" /v "AllowRspndrOnDomain" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Policies\Microsoft\Windows\LLTD" /v "AllowRspndrOnPublicNet" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Policies\Microsoft\Windows\LLTD" /v "ProhibitRspndrOnPrivateNet" /t REG_DWORD /d "1" /f][REG][IA]
[GROUP][Network][Network access for explorer.exe %COLOR5%Enable]
[COMMAND][reg.exe add "%HIVE_USER%\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer" /v "NoInternetOpenWith" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_USER%\SOFTWARE\Policies\Microsoft\Assistance\Client\1.0" /v "NoOnlineAssist" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Network][Network access for explorer.exe %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_USER%\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer" /v "NoInternetOpenWith" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_USER%\SOFTWARE\Policies\Microsoft\Assistance\Client\1.0" /v "NoOnlineAssist" /t REG_DWORD /d "1" /f][REG][IA]
[GROUP][Network][Network access for driver search %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\DriverSearching" /v "SearchOrderConfig" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Network][Prioritize Ethernet][%COLOR4% * item will be scheduled for %COLOR7%SetupComplete]
[COMMAND][NETSH interface ipv4 SET interface "Wi-Fi" metric=5][CMD][SC]
[COMMAND][NETSH interface ipv4 SET interface "Ethernet" metric=10][CMD][SC]
[GROUP][Network][Prioritize WiFi][%COLOR4% * item will be scheduled for %COLOR7%SetupComplete]
[COMMAND][NETSH interface ipv4 SET interface "Wi-Fi" metric=10][CMD][SC]
[COMMAND][NETSH interface ipv4 SET interface "Ethernet" metric=5][CMD][SC]
[GROUP][Security][Strict rule set for LSA]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\Lsa" /v "LimitBlankPasswordUse" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\Lsa" /v "LsaCfgFlags" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\Lsa" /v "LsaPid" /t REG_DWORD /d "632" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\Lsa" /v "ProductType" /t REG_DWORD /d "125" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\Lsa" /v "RunAsPPL" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\Lsa" /v "SubmitControl" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\Lsa" /v "disabledomaincreds" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\Lsa" /v "everyoneincludesanonymous" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\Lsa" /v "forceguest" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\Lsa" /v "NoLmHash" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\Lsa" /v "restrictanonymous" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\Lsa" /v "restrictanonymoussam" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\Lsa" /v "RestrictRemoteSAM" /t REG_SZ /d "O:BAG:BAD:(A;;RC;;;BA)" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\Lsa\MSV1_0" /v "allownullsessionfallback" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Security][UAC always prompt]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\Policies\SYSTEM" /v "ConsentPromptBehaviorAdmin" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\Policies\SYSTEM" /v "ConsentPromptBehaviorUser" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\Policies\SYSTEM" /v "FilterAdministratorToken" /t REG_DWORD /d "1" /f][REG][IA]
[GROUP][Security][UAC never prompt]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\Policies\SYSTEM" /v "ConsentPromptBehaviorAdmin" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\Policies\SYSTEM" /v "ConsentPromptBehaviorUser" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\Policies\SYSTEM" /v "FilterAdministratorToken" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Security][Virtualization based security %COLOR5%Enable]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\DeviceGuard" /v "EnableVirtualizationBasedSecurity" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\DeviceGuard" /v "RequirePlatformSecurityFeatures" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\DeviceGuard" /v "Locked" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\DeviceGuard\Scenarios\HypervisorEnforcedCodeIntegrity" /v "Enabled" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\DeviceGuard\Scenarios\HypervisorEnforcedCodeIntegrity" /v "Locked" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\LSA" /v "LsaCfgFlags" /t REG_DWORD /d "1" /f][REG][IA]
[GROUP][Security][Virtualization based security %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\DeviceGuard" /v "EnableVirtualizationBasedSecurity" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\DeviceGuard" /v "RequirePlatformSecurityFeatures" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\DeviceGuard" /v "Locked" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\DeviceGuard\Scenarios\HypervisorEnforcedCodeIntegrity" /v "Enabled" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\DeviceGuard\Scenarios\HypervisorEnforcedCodeIntegrity" /v "Locked" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\LSA" /v "LsaCfgFlags" /t REG_DWORD /d "2" /f][REG][IA]
[GROUP][Security][Script execution %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows Script Host\Settings" /v "Enabled" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Classes\PROTOCOLS\Handler\vbscript" /v "DISABLED_CLSID" /t REG_SZ /d "{3050F3B2-98B5-11CF-BB82-00AA00BDCE0B}" /f][REG][IA]
[GROUP][Consent Store][accessoryManager %COLOR2%Deny]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\CapabilityAccessManager\ConsentStore\accessoryManager" /v "Value" /t REG_SZ /d "Deny" /f][REG][IA]
[GROUP][Consent Store][activity %COLOR2%Deny]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\CapabilityAccessManager\ConsentStore\activity" /v "Value" /t REG_SZ /d "Deny" /f][REG][IA]
[GROUP][Consent Store][appDiagnostics %COLOR2%Deny]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\CapabilityAccessManager\ConsentStore\appDiagnostics" /v "Value" /t REG_SZ /d "Deny" /f][REG][IA]
[GROUP][Consent Store][appointments %COLOR2%Deny]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\CapabilityAccessManager\ConsentStore\appointments" /v "Value" /t REG_SZ /d "Deny" /f][REG][IA]
[GROUP][Consent Store][backgroundSpatialPerception %COLOR2%Deny]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\CapabilityAccessManager\ConsentStore\backgroundSpatialPerception" /v "Value" /t REG_SZ /d "Deny" /f][REG][IA]
[GROUP][Consent Store][bluetooth %COLOR2%Deny]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\CapabilityAccessManager\ConsentStore\bluetooth" /v "Value" /t REG_SZ /d "Deny" /f][REG][IA]
[GROUP][Consent Store][bluetoothSync %COLOR2%Deny]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\CapabilityAccessManager\ConsentStore\bluetoothSync" /v "Value" /t REG_SZ /d "Deny" /f][REG][IA]
[GROUP][Consent Store][broadFileSystemAccess %COLOR2%Deny]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\CapabilityAccessManager\ConsentStore\broadFileSystemAccess" /v "Value" /t REG_SZ /d "Deny" /f][REG][IA]
[GROUP][Consent Store][cellularData %COLOR2%Deny]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\CapabilityAccessManager\ConsentStore\cellularData" /v "Value" /t REG_SZ /d "Deny" /f][REG][IA]
[GROUP][Consent Store][chat %COLOR2%Deny]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\CapabilityAccessManager\ConsentStore\chat" /v "Value" /t REG_SZ /d "Deny" /f][REG][IA]
[GROUP][Consent Store][contacts %COLOR2%Deny]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\CapabilityAccessManager\ConsentStore\contacts" /v "Value" /t REG_SZ /d "Deny" /f][REG][IA]
[GROUP][Consent Store][documentsLibrary %COLOR2%Deny]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\CapabilityAccessManager\ConsentStore\documentsLibrary" /v "Value" /t REG_SZ /d "Deny" /f][REG][IA]
[GROUP][Consent Store][email %COLOR2%Deny]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\CapabilityAccessManager\ConsentStore\email" /v "Value" /t REG_SZ /d "Deny" /f][REG][IA]
[GROUP][Consent Store][internetClient %COLOR2%Deny]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\CapabilityAccessManager\ConsentStore\internetClient" /v "Value" /t REG_SZ /d "Deny" /f][REG][IA]
[GROUP][Consent Store][location %COLOR2%Deny]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\CapabilityAccessManager\ConsentStore\location" /v "Value" /t REG_SZ /d "Deny" /f][REG][IA]
[GROUP][Consent Store][locationHistory %COLOR2%Deny]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\CapabilityAccessManager\ConsentStore\locationHistory" /v "Value" /t REG_SZ /d "Deny" /f][REG][IA]
[GROUP][Consent Store][microphone %COLOR2%Deny]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\CapabilityAccessManager\ConsentStore\microphone" /v "Value" /t REG_SZ /d "Deny" /f][REG][IA]
[GROUP][Consent Store][phoneCall %COLOR2%Deny]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\CapabilityAccessManager\ConsentStore\phoneCall" /v "Value" /t REG_SZ /d "Deny" /f][REG][IA]
[GROUP][Consent Store][phoneCallHistory %COLOR2%Deny]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\CapabilityAccessManager\ConsentStore\phoneCallHistory" /v "Value" /t REG_SZ /d "Deny" /f][REG][IA]
[GROUP][Consent Store][picturesLibrary %COLOR2%Deny]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\CapabilityAccessManager\ConsentStore\picturesLibrary" /v "Value" /t REG_SZ /d "Deny" /f][REG][IA]
[GROUP][Consent Store][proximity %COLOR2%Deny]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\CapabilityAccessManager\ConsentStore\proximity" /v "Value" /t REG_SZ /d "Deny" /f][REG][IA]
[GROUP][Consent Store][radios %COLOR2%Deny]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\CapabilityAccessManager\ConsentStore\radios" /v "Value" /t REG_SZ /d "Deny" /f][REG][IA]
[GROUP][Consent Store][sms %COLOR2%Deny]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\CapabilityAccessManager\ConsentStore\sms" /v "Value" /t REG_SZ /d "Deny" /f][REG][IA]
[GROUP][Consent Store][userAccountInformation %COLOR2%Deny]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\CapabilityAccessManager\ConsentStore\userAccountInformation" /v "Value" /t REG_SZ /d "Deny" /f][REG][IA]
[GROUP][Consent Store][userDataTasks %COLOR2%Deny]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\CapabilityAccessManager\ConsentStore\userDataTasks" /v "Value" /t REG_SZ /d "Deny" /f][REG][IA]
[GROUP][Consent Store][userNotificationListener %COLOR2%Deny]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\CapabilityAccessManager\ConsentStore\userNotificationListener" /v "Value" /t REG_SZ /d "Deny" /f][REG][IA]
[GROUP][Consent Store][videosLibrary %COLOR2%Deny]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\CapabilityAccessManager\ConsentStore\videosLibrary" /v "Value" /t REG_SZ /d "Deny" /f][REG][IA]
[GROUP][Consent Store][webcam %COLOR2%Deny]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\CapabilityAccessManager\ConsentStore\webcam" /v "Value" /t REG_SZ /d "Deny" /f][REG][IA]
[GROUP][Trackers / Loggers][Boot / Shutdown Diagnostics %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\Diagnostics\Performance\BootCKCLSettings" /v "Start" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\Diagnostics\Performance\SecondaryLogonCKCLSettings" /v "Start" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\Diagnostics\Performance\ShutdownCKCLSettings" /v "Start" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\Diagnostics\Performance" /v "DisableDiagnosticTracing" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_USER%\SOFTWARE\Microsoft\Siuf\Rules" /v "PeriodInNanoSeconds" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_USER%\SOFTWARE\Microsoft\Siuf\Rules" /v "NumberOfSIUFInPeriod" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Trackers / Loggers][Circular Kernel Context %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\WMI\Autologger\Circular Kernel Context Logger" /v "Start" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Trackers / Loggers][CloudExperienceHostOobe %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\WMI\Autologger\CloudExperienceHostOobe" /v "Start" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Trackers / Loggers][Component Based Servicing %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Windows\CurrentVersion\Component Based Servicing" /v "EnableLog" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Trackers / Loggers][DiagLog %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\WMI\Autologger\DiagLog" /v "Start" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Trackers / Loggers][Diagtrack Listener %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\WMI\Autologger\Diagtrack-Listener" /v "Start" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Trackers / Loggers][FaceTel %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\WMI\Autologger\FaceTel" /v "Start" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Trackers / Loggers][Graphics RdpIdd Trace %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\WMI\Autologger\Microsoft-Windows-Rdp-Graphics-RdpIdd-Trace" /v "Start" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Trackers / Loggers][HolographicDevice %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\WMI\Autologger\HolographicDevice" /v "Start" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Trackers / Loggers][LwtNetLog %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\WMI\Autologger\LwtNetLog" /v "Start" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Trackers / Loggers][NetCore %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\WMI\Autologger\NetCore" /v "Start" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Trackers / Loggers][NtfsLog %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\WMI\Autologger\NtfsLog" /v "Start" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Trackers / Loggers][RadioMgr %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\WMI\Autologger\RadioMgr" /v "Start" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Trackers / Loggers][ReadyBoot %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\WMI\Autologger\ReadyBoot" /v "Start" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Trackers / Loggers][ReFSLog %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\WMI\Autologger\ReFSLog" /v "Start" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Trackers / Loggers][Spooler %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\WMI\Autologger\SpoolerLogger" /v "Start" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Trackers / Loggers][SQM %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\WMI\Autologger\SQMLogger" /v "Start" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Trackers / Loggers][UBPM %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\WMI\Autologger\UBPM" /v "Start" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Trackers / Loggers][WdiContextLog %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\WMI\Autologger\WdiContextLog" /v "Start" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Trackers / Loggers][WiFiSession %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\WMI\Autologger\WiFiSession" /v "Start" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Trackers / Loggers][WMI - WBEM %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\WBEM\CIMOM" /v "Logging" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Telemetry][Data Collection %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Policies\Microsoft\Windows\DataCollection" /v "AllowCommercialDataPipeline" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Policies\Microsoft\Windows\DataCollection" /v "AllowDesktopAnalyticsProcessing" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Policies\Microsoft\Windows\DataCollection" /v "AllowDeviceNameInTelemetry" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Policies\Microsoft\Windows\DataCollection" /v "AllowTelemetry" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Policies\Microsoft\Windows\DataCollection" /v "AllowUpdateComplianceProcessing" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Policies\Microsoft\Windows\DataCollection" /v "AllowWUfBCloudProcessing" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Policies\Microsoft\Windows\DataCollection" /v "DisableEnterpriseAuthProxy" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Policies\Microsoft\Windows\DataCollection" /v "DisableOneSettingsDownloads" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Policies\Microsoft\Windows\DataCollection" /v "DoNotShowFeedbackNotifications" /t REG_DWORD /d "1" /f][REG][IA]
[GROUP][Telemetry][Error Reporting %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Policies\Microsoft\Windows\Windows Error Reporting" /v "Disabled" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Policies\Microsoft\Windows\Windows Error Reporting" /v "DontSendAdditionalData" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Policies\Microsoft\Windows\Windows Error Reporting" /v "LoggingDisabled" /t REG_DWORD /d "1" /f][REG][IA]
[GROUP][Miscellaneous][Notification center %COLOR5%Enable]
[COMMAND][reg.exe add "%HIVE_USER%\SOFTWARE\Policies\Microsoft\Windows\Explorer" /v "DisableNotificationCenter" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Miscellaneous][Notification center %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_USER%\SOFTWARE\Policies\Microsoft\Windows\Explorer" /v "DisableNotificationCenter" /t REG_DWORD /d "1" /f][REG][IA]
[GROUP][Miscellaneous][Background applications %COLOR5%Enable]
[COMMAND][reg.exe add "%HIVE_USER%\SOFTWARE\Microsoft\Windows\CurrentVersion\BackgroundAccessApplications" /v "GlobalUserDisabled" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Miscellaneous][Background applications %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_USER%\SOFTWARE\Microsoft\Windows\CurrentVersion\BackgroundAccessApplications" /v "GlobalUserDisabled" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Policies\Microsoft\Edge" /v "BackgroundModeEnabled" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Miscellaneous][DCOM %COLOR5%Enable]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Ole" /v "EnableDCOM" /t REG_SZ /d "Y" /f][REG][IA]
[GROUP][Miscellaneous][DCOM %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Microsoft\Ole" /v "EnableDCOM" /t REG_SZ /d "N" /f][REG][IA]
[GROUP][Miscellaneous][Driver updates %COLOR5%Enable]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Policies\Microsoft\Windows\DriverSearching" /v "DriverUpdateWizardWuSearchEnabled" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Policies\Microsoft\Windows\WindowsUpdate" /v "ExcludeWUDriversInQualityUpdate" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Miscellaneous][Driver updates %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Policies\Microsoft\Windows\DriverSearching" /v "DriverUpdateWizardWuSearchEnabled" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SOFTWARE%\Policies\Microsoft\Windows\WindowsUpdate" /v "ExcludeWUDriversInQualityUpdate" /t REG_DWORD /d "1" /f][REG][IA]
[GROUP][Miscellaneous][Wakelocks other %COLOR5%Enable]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\Power\PowerSettings\238C9FA8-0AAD-41ED-83F4-97BE242C8F20\bd3b718a-0680-4d9d-8ab2-e1d2b4ac806d\DefaultPowerSchemeValues\381b4222-f694-41f0-9685-ff5bb260df2e" /v "AcSettingIndex" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\Power\PowerSettings\238C9FA8-0AAD-41ED-83F4-97BE242C8F20\bd3b718a-0680-4d9d-8ab2-e1d2b4ac806d\DefaultPowerSchemeValues\381b4222-f694-41f0-9685-ff5bb260df2e" /v "DcSettingIndex" /t REG_DWORD /d "1" /f][REG][IA]
[GROUP][Miscellaneous][Wakelocks other %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\Power\PowerSettings\238C9FA8-0AAD-41ED-83F4-97BE242C8F20\bd3b718a-0680-4d9d-8ab2-e1d2b4ac806d\DefaultPowerSchemeValues\381b4222-f694-41f0-9685-ff5bb260df2e" /v "AcSettingIndex" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\Power\PowerSettings\238C9FA8-0AAD-41ED-83F4-97BE242C8F20\bd3b718a-0680-4d9d-8ab2-e1d2b4ac806d\DefaultPowerSchemeValues\381b4222-f694-41f0-9685-ff5bb260df2e" /v "DcSettingIndex" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Miscellaneous][Wakelocks network %COLOR5%Enable]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\Power\PowerSettings\F15576E8-98B7-4186-B944-EAFA664402D9\DefaultPowerSchemeValues\381b4222-f694-41f0-9685-ff5bb260df2e" /v "AcSettingIndex" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\Power\PowerSettings\F15576E8-98B7-4186-B944-EAFA664402D9\DefaultPowerSchemeValues\381b4222-f694-41f0-9685-ff5bb260df2e" /v "DcSettingIndex" /t REG_DWORD /d "1" /f][REG][IA]
[GROUP][Miscellaneous][Wakelocks network %COLOR2%Disable]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\Power\PowerSettings\F15576E8-98B7-4186-B944-EAFA664402D9\DefaultPowerSchemeValues\381b4222-f694-41f0-9685-ff5bb260df2e" /v "AcSettingIndex" /t REG_DWORD /d "0" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\Power\PowerSettings\F15576E8-98B7-4186-B944-EAFA664402D9\DefaultPowerSchemeValues\381b4222-f694-41f0-9685-ff5bb260df2e" /v "DcSettingIndex" /t REG_DWORD /d "0" /f][REG][IA]
[GROUP][Miscellaneous][Create new admin][%COLOR4% * item will be scheduled for %COLOR7%SetupComplete]
[#][Scheduling user creation...][7]
[$2][ Enter the admin name 0-9 A-Z - No Spaces][VAR2]
[COMMAND][Net User %VAR2% /add][CMD][SC]
[COMMAND][Net User %VAR2% /passwordreq:No][CMD][SC]
[COMMAND][Net User %VAR2% /passwordchg:No][CMD][SC]
[COMMAND][Net Accounts /maxpwage:unlimited][CMD][SC]
[COMMAND][WMIC USERACCOUNT WHERE Name="%VAR2%" SET PasswordExpires=FALSE][CMD][SC]
[COMMAND][Net localgroup Administrators %VAR2% /add][CMD][SC]
[GROUP][Miscellaneous][Create new user][%COLOR4% * item will be scheduled for %COLOR7%SetupComplete]
[#][Scheduling user creation...][7]
[$2][ Enter the username 0-9 A-Z - No Spaces][VAR2]
[COMMAND][Net User %VAR2% /add][CMD][SC]
[COMMAND][Net User %VAR2% /passwordreq:No][CMD][SC]
[COMMAND][Net User %VAR2% /passwordchg:No][CMD][SC]
[COMMAND][Net Accounts /maxpwage:unlimited][CMD][SC]
[COMMAND][WMIC USERACCOUNT WHERE Name="%VAR2%" SET PasswordExpires=FALSE][CMD][SC]
[GROUP][Miscellaneous][Pagefile %COLOR2%Disable][%COLOR4% * item will be scheduled for %COLOR7%SetupComplete]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\Session Manager\Memory Management" /v "ClearPageFileAtShutdown" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\Session Manager\Memory Management" /v "DisablePagingExecutive" /t REG_DWORD /d "1" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\Session Manager\Memory Management" /v "PagingFiles" /t REG_MULTI_SZ /d "" /f][REG][IA]
[COMMAND][reg.exe add "%HIVE_SYSTEM%\ControlSet001\Control\Session Manager\Memory Management" /v "ExistingPageFiles" /t REG_MULTI_SZ /d "" /f][REG][IA]
[COMMAND][powercfg.exe -h off][CMD][SC]
[COMMAND][wmic pagefileset where name="C:\\pagefile.sys" delete][CMD][SC]
[COMMAND][wmic pagefileset where name="D:\\pagefile.sys" delete][CMD][SC]
[COMMAND][wmic pagefileset where name="E:\\pagefile.sys" delete][CMD][SC]
[GROUP][Miscellaneous][Schedule next boot Recovery][%COLOR4% * item will be scheduled for %COLOR7%RunOnce]
[COMMANDQ][START CMD /C "%PROG_SOURCE%\windick.cmd" -nextboot -recovery][CMD][RO]
[GROUP][Miscellaneous][Schedule next boot VHDX][%COLOR4% * item will be scheduled for %COLOR7%RunOnce]
[COMMANDQ][START CMD /C "%PROG_SOURCE%\windick.cmd" -nextboot -vhdx][CMD][RO]
[GROUP][Miscellaneous][Install autoboot switcher service][%COLOR4% * item will be scheduled for %COLOR7%RunOnce]
[COMMANDQ][IF EXIST "%PROG_SOURCE%\autoboot.cmd" START CMD /C "%PROG_SOURCE%\windick.cmd" -autoboot -install][CMD][RO]
[COMMANDQ][IF EXIST "%PROG_SOURCE%\autoboot.cmd" COPY /Y "%PROG_SOURCE%\autoboot.cmd" "%DRVTAR%\$"%}%NUL][CMD][IA]
[COMMANDQ][IF NOT EXIST "%PROG_SOURCE%\autoboot.cmd" ECHO. ERROR: autoboot.cmd does not exist in folder.][CMD][IA]
[GROUP][Import from program\cache folder][Import wallpaper.jpg][%COLOR4% * wallpaper.jpg must be in folder]
[COMMANDQ][ECHO. Importing wallpaper.jpg...][CMD][IA]
[COMMANDQ][IF EXIST "%CACHE_FOLDER%\wallpaper.jpg" TAKEOWN /F "%WINTAR%\web\wallpaper\Windows\img0.jpg"%}%NUL][CMD][IA]
[COMMANDQ][IF EXIST "%CACHE_FOLDER%\wallpaper.jpg" ICACLS "%WINTAR%\web\wallpaper\Windows\img0.jpg" /grant %USERNAME%:F%}%NUL][CMD][IA]
[COMMANDQ][IF EXIST "%CACHE_FOLDER%\wallpaper.jpg" COPY /Y "%CACHE_FOLDER%\wallpaper.jpg" "%WINTAR%\web\wallpaper\Windows\img0.jpg"%}%NUL][CMD][IA]
[COMMANDQ][IF EXIST "%CACHE_FOLDER%\wallpaper.jpg" IF EXIST "%WINTAR%\web\wallpaper\Windows\img0.jpg" ECHO. The operation completed successfully.][CMD][IA]
[COMMANDQ][IF NOT EXIST "%CACHE_FOLDER%\wallpaper.jpg" ECHO. ERROR: wallpaper.jpg does not exist in folder.][CMD][IA]
[GROUP][Import from program\cache folder][Import appassociations.xml][%COLOR4% * appassociations.xml must be in folder]
[COMMANDQ][ECHO. Importing appassociations.xml...][CMD][IA]
[COMMANDQ][IF EXIST "%CACHE_FOLDER%\appassociations.xml" DISM /ENGLISH /%APPLY_TARGET% /IMPORT-DefaultAppAssociations:"%CACHE_FOLDER%\appassociations.xml"%}%NUL][CMD][IA]
[COMMANDQ][IF EXIST "%CACHE_FOLDER%\appassociations.xml" ECHO. The operation completed successfully.][CMD][IA]
[COMMANDQ][IF NOT EXIST "%CACHE_FOLDER%\appassociations.xml" ECHO. ERROR: appassociations.xml does not exist in folder.][CMD][IA]
[GROUP][Import from program\cache folder][Import firewallrules.xml][%COLOR4% * item will be scheduled for %COLOR7%RunOnce %COLOR4%- .xml must be in folder]
[COMMANDQ][ECHO. Importing firewallrules.xml...][CMD][RO]
[COMMANDQ][IF EXIST "%CACHE_FOLDER%\firewallrules.xml" NETSH advfirewall IMPORT "%CACHE_FOLDER%\firewallrules.xml"%}%NUL][CMD][RO]
[COMMANDQ][IF EXIST "%CACHE_FOLDER%\firewallrules.xml" COPY /Y "%CACHE_FOLDER%\firewallrules.xml" "%DRVTAR%\$"%}%NUL][CMD][IA]
[COMMANDQ][IF NOT EXIST "%CACHE_FOLDER%\firewallrules.xml" ECHO. ERROR: firewallrules.xml does not exist in folder.][CMD][IA]
[GROUP][Import from program\cache folder][Import power schemes from xml][%COLOR4% * item will be scheduled for %COLOR7%RunOnce %COLOR4%- .xml must be in folder]
[COMMANDQ][ECHO. Importing power schemes from xml...][CMD][RO]
[COMMANDQ]IF EXIST "%CACHE_FOLDER%\power_bal.xml" POWERCFG /IMPORT "%CACHE_FOLDER%\power_bal.xml"%}%NUL][CMD][RO]
[COMMANDQ]IF EXIST "%CACHE_FOLDER%\power_min.xml" POWERCFG /IMPORT "%CACHE_FOLDER%\power_min.xml"%}%NUL][CMD][RO]
[COMMANDQ]IF EXIST "%CACHE_FOLDER%\power_max.xml" POWERCFG /IMPORT "%CACHE_FOLDER%\power_max.xml"%}%NUL][CMD][RO]
[COMMANDQ][IF EXIST "%CACHE_FOLDER%\power_bal.xml" COPY /Y "%CACHE_FOLDER%\power_bal.xml" "%DRVTAR%\$"%}%NUL][CMD][IA]
[COMMANDQ][IF EXIST "%CACHE_FOLDER%\power_min.xml" COPY /Y "%CACHE_FOLDER%\power_min.xml" "%DRVTAR%\$"%}%NUL][CMD][IA]
[COMMANDQ][IF EXIST "%CACHE_FOLDER%\power_max.xml" COPY /Y "%CACHE_FOLDER%\power_max.xml" "%DRVTAR%\$"%}%NUL][CMD][IA]
[COMMANDQ][IF NOT EXIST "%CACHE_FOLDER%\power_bal.xml" IF NOT EXIST "%CACHE_FOLDER%\power_min.xml" IF NOT EXIST "%CACHE_FOLDER%\power_max.xml" ECHO. ERROR: no power scheme xml files exist in folder.][CMD][IA]
[GROUP][Tutorial][Create new folder at base of drive target]
[COMMAND][MD "%DRVTAR%\new_folder_test"][CMD][IA]
[GROUP][Tutorial][Takeown + Grant permissions to new folder]
[COMMAND][takeown /f "%DRVTAR%\new_folder_test"][CMD][IA]
[COMMAND][icacls "%DRVTAR%\new_folder_test" /grant %USERNAME%:F][CMD][IA]
[GROUP][Tutorial][Copy file from main folder to new folder]
[COMMAND][copy "%PROG_SOURCE%\settings.ini" "%DRVTAR%\new_folder_test"][CMD][IA]
[GROUP][Tutorial][Create .txt file in new folder]
[COMMAND][ECHO.text file %}% "%DRVTAR%\new_folder_test\file.txt"][CMD][IA]
[GROUP][Tutorial][Create .txt file in new folder + escape a character]
[COMMAND][ECHO.text file + %@%%+% escaped%}% "%DRVTAR%\new_folder_test\file.txt"][CMD][IA]
[GROUP][Tutorial][Copy file from pkx package folder to new folder][%COLOR4% * when used in an pkx pack]
[COMMAND][copy "%PKX_FOLDER%\package.lst" "%DRVTAR%\new_folder_test"][CMD][IA]
[GROUP][Tutorial][DISM variable (APPLY_TARGET) for vdisk or current environment]
[COMMAND][DISM /ENGLISH /%APPLY_TARGET% /NORESTART /ADD-PROVISIONEDAPPXPACKAGE /PACKAGEPATH:"%PACK_FOLDER%\x.appx"][CMD][IA]