Die Systemkonfiguration stellt bei uns jetzt eine Batch-Datei dar.
Einfach den Code in einer Datei namens Win10Settings.bat speichern und fertig ist es ;-)
Diese Bat-Datei kann dann als Softwarepaket verteilt und installiert werden.

Was genau immer gemacht wird steht in den Kommentaren zum Code.

Als erstes erstellen wir mal einige Ordner und vergeben Berechtigungen auf diese Ordner. Am Ende soll ja auch jemand reinmalen können.

View source
  1.  
  2. REM ****Create Folder for Support ****
  3.  
  4.  
  5.  
  6. if not exist "%ProgramFiles%\Your Supportfolder" mkdir "%ProgramFiles%\Your Supportfolder"
  7. icacls "%ProgramFiles%\Your Supportfolder" /grant *S-1-5-11:(OI)(CI)F /T
  8. REM *** Grant Permissions to Authenticated Users to Support Folder ****
  9. if not exist "%ProgramFiles%\Your Supportfolder\Settings\User" mkdir "%ProgramFiles%\Your Supportfolder\Settings\User"
  10. if not exist "%ProgramFiles%\Your Supportfolder\Bilder\Logo" mkdir "%ProgramFiles%\Your Supportfolder\Bilder\Logo"
  11. if not exist "%ProgramFiles%\Your Supportfolder\Bilder\Icons" mkdir "%ProgramFiles%\Your Supportfolder\Bilder\Icons"
  12. if not exist "%ProgramFiles%\Your Supportfolder\Links" mkdir "%ProgramFiles%\Your Supportfolder\Links"
  13. if not exist "%ProgramFiles%\Your Supportfolder\Links\Favoriten" mkdir "%ProgramFiles%\Your Supportfolder\Links\Favoriten"
  14. if not exist "%ProgramFiles%\Your Supportfolder\Tools" mkdir "%ProgramFiles%\Your Supportfolder\Tools"
  15. if not exist "%ProgramData%\Microsoft\Windows\Start Menu\Programs\Helpdesk" mkdir "%ProgramData%\Microsoft\Windows\Start Menu\Programs\Helpdesk"
  16. if not exist "%ProgramFiles%\Your Supportfolder\Design" mkdir "%ProgramFiles%\Your Supportfolder\Design"
  17. icacls "%SystemRoot%\Web" /grant *S-1-5-11:(OI)(CI)F /T
  18.  

Wir wollen gerne C:\Temp als temp-Ordner haben, also setzen wir dies

View source
  1.  
  2. cd\
  3. if NOT exist %SYSTEMDRIVE%\TEMP (md %SYSTEMDRIVE%\TEMP)
  4.  
  5.  
  6.  
  7. reg add "HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\Environment" /v "TEMP" /t REG_EXPAND_SZ /d %%SYSTEMDRIVE%%\TEMP /f
  8. reg add "HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\Environment" /v "TMP" /t REG_EXPAND_SZ /d %%SYSTEMDRIVE%%\TEMP /f
  9. reg add "HKEY_USERS\.DEFAULT\Environment" /v "TEMP" /t REG_EXPAND_SZ /d %%SYSTEMDRIVE%%\TEMP /f
  10. reg add "HKEY_USERS\.DEFAULT\Environment" /v "TMP" /t REG_EXPAND_SZ /d %%SYSTEMDRIVE%%\TEMP /f
  11. takeown /f %SystemRoot%\Temp /a /r /d y
  12. icacls %SystemRoot%\Temp /grant Administratoren:F /T
  13. icacls %SystemRoot%\Temp /grant *S-1-5-11:(OI)(CI)F /T
  14. rd /s /q %SystemRoot%\Temp
  15.  

 

View source
  1.  
  2.  
  3.  
  4.  
  5. Rem ****Create Shortcut for Oldschool IE and put in Accessoires*****
  6. set SCRIPT="%TEMP%\createlinkie.vbs"
  7. echo Set oWS = WScript.CreateObject("WScript.Shell") >> %SCRIPT%
  8. echo sLinkFile = "%ALLUSERSPROFILE%\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk" >> %SCRIPT%
  9. echo Set oLink = oWS.CreateShortcut(sLinkFile) >> %SCRIPT%
  10. echo oLink.TargetPath = "%ProgramFiles(x86)%\Internet Explorer\iexplore.exe" >> %SCRIPT%
  11. echo oLink.Save >> %SCRIPT%
  12. cscript /nologo %SCRIPT%
  13. del %SCRIPT%
  14.  

 

View source
  1.  
  2.  
  3.  
  4.  
  5. REM ***********************Set Keyboard to inintialize the Num-Lock Key at Startup and first Logon************
  6. reg add "HKEY_USERS\.DEFAULT\Control Panel\Keyboard" /v "InitialKeyboardIndicators" /t REG_SZ /d 2147483650 /f

View source
  1.  
  2.  
  3.  
  4.  
  5. REM *** Disable creation of an Advertising ID ***
  6. reg add "HKLM\Software\Microsoft\Windows\CurrentVersion\AdvertisingInfo" /v "Enabled" /t REG_DWORD /d 0 /f

 

View source
  1.  
  2.  
  3.  
  4.  
  5. REM *** Remove Telemetry & Data Collection ***
  6. REM Changes in registry do not reflect back to GPEDIT.MSC. Better to do it directly through GPEDIT.MSC UI.
  7. reg add "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Device Metadata" /v PreventDeviceMetadataFromNetwork /t REG_DWORD /d 1 /f
  8. reg add "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\DataCollection" /v "AllowTelemetry" /t REG_DWORD /d 0 /f
  9. reg add "HKLM\SOFTWARE\Policies\Microsoft\MRT" /v DontOfferThroughWUAU /t REG_DWORD /d 1 /f
  10. reg add "HKLM\SOFTWARE\Policies\Microsoft\SQMClient\Windows" /v "CEIPEnable" /t REG_DWORD /d 0 /f
  11. reg add "HKLM\SOFTWARE\Policies\Microsoft\Windows\AppCompat" /v "AITEnable" /t REG_DWORD /d 0 /f
  12. reg add "HKLM\SOFTWARE\Policies\Microsoft\Windows\AppCompat" /v "DisableUAR" /t REG_DWORD /d 1 /f
  13. reg add "HKLM\SOFTWARE\Policies\Microsoft\Windows\DataCollection" /v "AllowTelemetry" /t REG_DWORD /d 0 /f
  14. reg add "HKLM\SYSTEM\CurrentControlSet\Control\WMI\AutoLogger\AutoLogger-Diagtrack-Listener" /v "Start" /t REG_DWORD /d 0 /f
  15. reg add "HKLM\SYSTEM\CurrentControlSet\Control\WMI\AutoLogger\SQMLogger" /v "Start" /t REG_DWORD /d 0 /f
  16. reg add "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WINEVT\Channels\Microsoft-Windows-Application-Experience/Program-Telemetry" /v "Enabled" /t REG_DWORD /d 0 /f
  17. reg add "HKLM\SYSTEM\CurrentControlSet\Control\WMI\AutoLogger\TCPIPLOGGER" /v "Start" /t REG_DWORD /d 0 /f REM *** NOT SURE ABOUT THIS ONE YET
  18. reg add "HKLM\SYSTEM\CurrentControlSet\Control\WMI\AutoLogger\ReadyBoot" /v "Start" /t REG_DWORD /d 0 /f REM *** NOT SURE ABOUT THIS ONE YET

 

View source
  1.  
  2.  
  3.  
  4.  
  5. REM *** Don't allow Windows Defender to submit samples to MAPS (formerly SpyNet) ***
  6. REM Changes in registry do not reflect back to GPEDIT.MSC. Better to do it directly through GPEDIT.MSC UI.
  7. REM Or in this case through: Settings > Update & Security > Windows Defender
  8. %SystemRoot%\System32\setaclx64 -on "HKLM\SOFTWARE\Microsoft\Windows Defender\Spynet" -ot reg -actn setowner -ownr "n:Administrators" -rec yes
  9. %SystemRoot%\System32\setaclx64 -on "HKLM\SOFTWARE\Microsoft\Windows Defender\Spynet" -ot reg -actn ace -ace "n:Administrators;p:full" -rec yes
  10. reg add "HKLM\SOFTWARE\Microsoft\Windows Defender\Spynet" /v "SpyNetReporting" /t REG_DWORD /d 0 /f
  11. reg add "HKLM\SOFTWARE\Microsoft\Windows Defender\Spynet" /v "SubmitSamplesConsent" /t REG_DWORD /d 0 /f

 

View source
  1.  
  2.  
  3.  
  4.  
  5. REM *** Set the Primary DNS-Suffix of Networkcard to "Gaertner.com"
  6. reg add "HKLM\System\CurrentControlSet\Services\Tcpip\Parameters" /v "SearchList" /t REG_SZ /d "yourdomain.local" /f

 

View source
  1.  
  2.  
  3.  
  4.  
  5. REM *** Win10 - Add "Reboot to Recovery" to right-click menu of "This PC" (credit goes to Sliden from MDL forums) ***
  6. %SystemRoot%\System32\setaclx64 -on "HKEY_CLASSES_ROOT\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell" -ot reg -actn setowner -ownr "n:Administrators" -rec yes
  7. %SystemRoot%\System32\setaclx64 -on "HKEY_CLASSES_ROOT\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell" -ot reg -actn ace -ace "n:Administrators;p:full" -rec yes
  8. reg add "HKEY_CLASSES_ROOT\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\Reboot to Recovery" /v "Icon" /t REG_SZ /d %SystemRoot%\System32\imageres.dll,-110" /f
  9. reg add "HKEY_CLASSES_ROOT\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\Reboot to Recovery\command" /ve /d "shutdown.exe -r -o -f -t 00" /f

 

View source
  1.  
  2.  
  3.  
  4.  
  5. REM *** Disable Cortana (Speech Search Assistant, which also sends information to Microsoft) ***
  6. REM Changes in registry do not reflect back to GPEDIT.MSC. Better to do it directly through GPEDIT.MSC UI.
  7. reg add "HKLM\SOFTWARE\Policies\Microsoft\Windows\Windows Search" /v "AllowCortana" /t REG_DWORD /d 0 /f

 

View source
  1.  
  2.  
  3.  
  4.  
  5. REM *** Remove Music, Pictures & Videos from Start Menu places (Settings > Personalization > Start > Choose which folders appear on Start) ***
  6. del "C:\ProgramData\Microsoft\Windows\Start Menu Places\05 - Music.lnk"
  7. del "C:\ProgramData\Microsoft\Windows\Start Menu Places\06 - Pictures.lnk"
  8. del "C:\ProgramData\Microsoft\Windows\Start Menu Places\07 - Videos.lnk"

 

View source
  1.  
  2.  
  3.  
  4.  
  5. REM *** Remove "Show Libraries" from Folder Options -> View tab (Advanced Settings) ***
  6. reg delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\NavPane\ShowLibraries" /f

 

View source
  1.  
  2.  
  3.  
  4.  
  5. REM *** Remove Music (appears under This PC in File Explorer) ***
  6. reg delete "HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders" /v "My Music" /f
  7. reg delete "HKEY_CLASSES_ROOT\SystemFileAssociations\MyMusic" /f
  8. reg delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders" /v "CommonMusic" /f
  9. reg delete "HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders" /v "My Music" /f
  10. reg delete "HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders" /v "My Music" /f
  11. reg delete "HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders" /v "My Music" /f
  12. reg delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MyComputer\NameSpace\{1CF1260C-4DD0-4ebb-811F-33C572699FDE}" /f
  13. reg delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MyComputer\NameSpace\{3dfdf296-dbec-4fb4-81d1-6a3438bcf4de}" /f
  14. reg delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders" /v "CommonMusic" /f
  15. reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders" /v "CommonMusic" /f
  16. reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders" /v "CommonMusic" /f
  17. reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\MyComputer\NameSpace\{3dfdf296-dbec-4fb4-81d1-6a3438bcf4de}" /f
  18. reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\MyComputer\NameSpace\{1CF1260C-4DD0-4ebb-811F-33C572699FDE}" /f
  19. reg delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{3f2a72a7-99fa-4ddb-a5a8-c604edf61d6b}" /f
  20.  
  21.  
  22.  
  23. %SystemRoot%\System32\setaclx64 -on "HKEY_CLASSES_ROOT\CLSID\{1CF1260C-4DD0-4ebb-811F-33C572699FDE}" -ot reg -actn setowner -ownr "n:Administrators" -rec yes
  24. %SystemRoot%\System32\setaclx64 -on "HKEY_CLASSES_ROOT\CLSID\{1CF1260C-4DD0-4ebb-811F-33C572699FDE}" -ot reg -actn ace -ace "n:Administrators;p:full" -rec yes
  25. reg delete "HKEY_CLASSES_ROOT\CLSID\{1CF1260C-4DD0-4ebb-811F-33C572699FDE}" /f
  26.  
  27.  
  28.  
  29. %SystemRoot%\System32\setaclx64 -on "HKEY_CLASSES_ROOT\CLSID\{3dfdf296-dbec-4fb4-81d1-6a3438bcf4de}" -ot reg -actn setowner -ownr "n:Administrators" -rec yes
  30. %SystemRoot%\System32\setaclx64 -on "HKEY_CLASSES_ROOT\CLSID\{3dfdf296-dbec-4fb4-81d1-6a3438bcf4de}" -ot reg -actn ace -ace "n:Administrators;p:full" -rec yes
  31. reg delete "HKEY_CLASSES_ROOT\CLSID\{3dfdf296-dbec-4fb4-81d1-6a3438bcf4de}" /f
  32.  
  33.  
  34.  
  35. %SystemRoot%\System32\setaclx64 -on "HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{1CF1260C-4DD0-4ebb-811F-33C572699FDE}" -ot reg -actn setowner -ownr "n:Administrators" -rec yes
  36. %SystemRoot%\System32\setaclx64 -on "HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{1CF1260C-4DD0-4ebb-811F-33C572699FDE}" -ot reg -actn ace -ace "n:Administrators;p:full" -rec yes
  37. reg delete "HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{1CF1260C-4DD0-4ebb-811F-33C572699FDE}" /f
  38. %SystemRoot%\System32\setaclx64 -on "HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{3dfdf296-dbec-4fb4-81d1-6a3438bcf4de}" -ot reg -actn setowner -ownr "n:Administrators" -rec yes
  39. %SystemRoot%\System32\setaclx64 -on "HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{3dfdf296-dbec-4fb4-81d1-6a3438bcf4de}" -ot reg -actn ace -ace "n:Administrators;p:full" -rec yes
  40. reg delete "HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{3dfdf296-dbec-4fb4-81d1-6a3438bcf4de}" /f

 

View source
  1.  
  2.  
  3.  
  4.  
  5. REM *** Remove Pictures (appears under This PC in File Explorer) ***
  6. reg delete "HKEY_CLASSES_ROOT\SystemFileAssociations\MyPictures" /f
  7. reg delete "HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders" /v "My Pictures" /f
  8. reg delete "HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders" /v "My Pictures" /f
  9. reg delete "HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\1\52C64B7E" /v "@C:\Windows\System32\Windows.UI.Immersive.dll,-38304" /f
  10. reg delete "HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders" /v "My Pictures" /f
  11. reg delete "HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders" /v "My Pictures" /f
  12. reg delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders" /v "CommonPictures" /f
  13. reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{0b2baaeb-0042-4dca-aa4d-3ee8648d03e5}" /f
  14. reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\StartMenu\StartPanel\PinnedItems\Pictures" /f
  15. reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders" /v "CommonPictures" /f
  16.  
  17.  
  18.  
  19. %SystemRoot%\System32\setaclx64 -on "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{b3690e58-e961-423b-b687-386ebfd83239}" -ot reg -actn setowner -ownr "n:Administrators" -rec yes
  20. %SystemRoot%\System32\setaclx64 -on "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{b3690e58-e961-423b-b687-386ebfd83239}" -ot reg -actn ace -ace "n:Administrators;p:full" -rec yes
  21. reg delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{b3690e58-e961-423b-b687-386ebfd83239}" /f
  22.  
  23.  
  24.  
  25. reg delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{c1f8339f-f312-4c97-b1c6-ecdf5910c5c0}" /f
  26. reg delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{0b2baaeb-0042-4dca-aa4d-3ee8648d03e5}" /f
  27. reg delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{4dcafe13-e6a7-4c28-be02-ca8c2126280d}" /f
  28.  
  29.  
  30.  
  31. %SystemRoot%\System32\setaclx64 -on "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{b3690e58-e961-423b-b687-386ebfd83239}" -ot reg -actn setowner -ownr "n:Administrators" -rec yes
  32. %SystemRoot%\System32\setaclx64 -on "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{b3690e58-e961-423b-b687-386ebfd83239}" -ot reg -actn ace -ace "n:Administrators;p:full" -rec yes
  33. reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{b3690e58-e961-423b-b687-386ebfd83239}" /f
  34.  
  35.  
  36.  
  37. reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{c1f8339f-f312-4c97-b1c6-ecdf5910c5c0}" /f
  38. reg delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MyComputer\NameSpace\{24ad3ad4-a569-4530-98e1-ab02f9417aa8}" /f
  39. reg delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders" /v "CommonPictures" /f
  40. reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders" /v "CommonPictures" /f
  41. reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\MyComputer\NameSpace\{24ad3ad4-a569-4530-98e1-ab02f9417aa8}" /f
  42.  
  43.  
  44.  
  45. %SystemRoot%\System32\setaclx64 -on "HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3ADD1653-EB32-4cb0-BBD7-DFA0ABB5ACCA}" -ot reg -actn setowner -ownr "n:Administrators" -rec yes
  46. %SystemRoot%\System32\setaclx64 -on "HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3ADD1653-EB32-4cb0-BBD7-DFA0ABB5ACCA}" -ot reg -actn ace -ace "n:Administrators;p:full" -rec yes
  47. reg delete "HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3ADD1653-EB32-4cb0-BBD7-DFA0ABB5ACCA}" /f
  48.  
  49.  
  50.  
  51. %SystemRoot%\System32\setaclx64 -on "HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{24ad3ad4-a569-4530-98e1-ab02f9417aa8}" -ot reg -actn setowner -ownr "n:Administrators" -rec yes
  52. %SystemRoot%\System32\setaclx64 -on "HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{24ad3ad4-a569-4530-98e1-ab02f9417aa8}" -ot reg -actn ace -ace "n:Administrators;p:full" -rec yes
  53. reg delete "HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{24ad3ad4-a569-4530-98e1-ab02f9417aa8}" /f
  54.  
  55.  
  56.  
  57. %SystemRoot%\System32\setaclx64 -on "HKEY_CLASSES_ROOT\CLSID\{3ADD1653-EB32-4cb0-BBD7-DFA0ABB5ACCA}" -ot reg -actn setowner -ownr "n:Administrators" -rec yes
  58. %SystemRoot%\System32\setaclx64 -on "HKEY_CLASSES_ROOT\CLSID\{3ADD1653-EB32-4cb0-BBD7-DFA0ABB5ACCA}" -ot reg -actn ace -ace "n:Administrators;p:full" -rec yes
  59. reg delete "HKEY_CLASSES_ROOT\CLSID\{3ADD1653-EB32-4cb0-BBD7-DFA0ABB5ACCA}" /f
  60.  
  61.  
  62.  
  63. %SystemRoot%\System32\setaclx64 -on "HKEY_CLASSES_ROOT\CLSID\{24ad3ad4-a569-4530-98e1-ab02f9417aa8}" -ot reg -actn setowner -ownr "n:Administrators" -rec yes
  64. %SystemRoot%\System32\setaclx64 -on "HKEY_CLASSES_ROOT\CLSID\{24ad3ad4-a569-4530-98e1-ab02f9417aa8}" -ot reg -actn ace -ace "n:Administrators;p:full" -rec yes
  65. reg delete "HKEY_CLASSES_ROOT\CLSID\{24ad3ad4-a569-4530-98e1-ab02f9417aa8}" /f
  66.  
  67.  
  68.  
  69. %SystemRoot%\System32\setaclx64 -on "HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{3ADD1653-EB32-4cb0-BBD7-DFA0ABB5ACCA}" -ot reg -actn setowner -ownr "n:Administrators" -rec yes
  70. %SystemRoot%\System32\setaclx64 -on "HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{3ADD1653-EB32-4cb0-BBD7-DFA0ABB5ACCA}" -ot reg -actn ace -ace "n:Administrators;p:full" -rec yes
  71. reg delete "HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{3ADD1653-EB32-4cb0-BBD7-DFA0ABB5ACCA}" /f

 

View source
  1.  
  2.  
  3.  
  4.  
  5. REM *** Remove Videos (appears under This PC in File Explorer) ***
  6. reg delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders" /v "CommonVideo" /f
  7. reg delete "HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders" /v "My Video" /f
  8. reg delete "HKEY_CLASSES_ROOT\SystemFileAssociations\MyVideo" /f
  9. reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders" /v "CommonVideo" /f
  10. reg delete "HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders" /v "My Video" /f
  11. reg delete "HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders" /v "My Video" /f
  12. reg delete "HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders" /v "My Video" /f
  13. reg delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MyComputer\NameSpace\{f86fa3ab-70d2-4fc7-9c99-fcbf05467f3a}" /f
  14. reg delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders" /v "CommonVideo" /f
  15. reg delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{51294DA1-D7B1-485b-9E9A-17CFFE33E187}" /f
  16. reg delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{ea25fbd7-3bf7-409e-b97f-3352240903f4}" /f
  17. reg delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{292108be-88ab-4f33-9a26-7748e62e37ad}" /f
  18. reg delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{5fa96407-7e77-483c-ac93-691d05850de8}" /f
  19. reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders" /v "CommonVideo" /f
  20. reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\FolderTypes\{51294DA1-D7B1-485b-9E9A-17CFFE33E187}" /f
  21.  
  22.  
  23.  
  24. %SystemRoot%\System32\setaclx64 -on "HKEY_CLASSES_ROOT\CLSID\{f86fa3ab-70d2-4fc7-9c99-fcbf05467f3a}" -ot reg -actn setowner -ownr "n:Administrators" -rec yes
  25. %SystemRoot%\System32\setaclx64 -on "HKEY_CLASSES_ROOT\CLSID\{f86fa3ab-70d2-4fc7-9c99-fcbf05467f3a}" -ot reg -actn ace -ace "n:Administrators;p:full" -rec yes
  26. reg delete "HKEY_CLASSES_ROOT\CLSID\{f86fa3ab-70d2-4fc7-9c99-fcbf05467f3a}" /f
  27.  
  28.  
  29.  
  30. %SystemRoot%\System32\setaclx64 -on "HKEY_CLASSES_ROOT\CLSID\{A0953C92-50DC-43bf-BE83-3742FED03C9C}" -ot reg -actn setowner -ownr "n:Administrators" -rec yes
  31. %SystemRoot%\System32\setaclx64 -on "HKEY_CLASSES_ROOT\CLSID\{A0953C92-50DC-43bf-BE83-3742FED03C9C}" -ot reg -actn ace -ace "n:Administrators;p:full" -rec yes
  32. reg delete "HKEY_CLASSES_ROOT\CLSID\{A0953C92-50DC-43bf-BE83-3742FED03C9C}" /f
  33.  
  34.  
  35.  
  36. %SystemRoot%\System32\setaclx64 -on "HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{f86fa3ab-70d2-4fc7-9c99-fcbf05467f3a}" -ot reg -actn setowner -ownr "n:Administrators" -rec yes
  37. %SystemRoot%\System32\setaclx64 -on "HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{f86fa3ab-70d2-4fc7-9c99-fcbf05467f3a}" -ot reg -actn ace -ace "n:Administrators;p:full" -rec yes
  38. reg delete "HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{f86fa3ab-70d2-4fc7-9c99-fcbf05467f3a}" /f
  39.  
  40.  
  41.  
  42. %SystemRoot%\System32\setaclx64 -on "HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{A0953C92-50DC-43bf-BE83-3742FED03C9C}" -ot reg -actn setowner -ownr "n:Administrators" -rec yes
  43. %SystemRoot%\System32\setaclx64 -on "HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{A0953C92-50DC-43bf-BE83-3742FED03C9C}" -ot reg -actn ace -ace "n:Administrators;p:full" -rec yes
  44. reg delete "HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{A0953C92-50DC-43bf-BE83-3742FED03C9C}" /f

 

View source
  1.  
  2.  
  3.  
  4.  
  5. REM *** Remove Pictures, Music, Videos from MUIcache ***
  6. reg delete "HKCU\SOFTWARE\Classes\Local Settings\MuiCache\1\52C64B7E" /v "@windows.storage.dll,-21790" /f
  7. reg delete "HKCU\SOFTWARE\Classes\Local Settings\MuiCache\1\52C64B7E" /v "@windows.storage.dll,-34584" /f
  8. reg delete "HKCU\SOFTWARE\Classes\Local Settings\MuiCache\1\52C64B7E" /v "@windows.storage.dll,-34595" /f
  9. reg delete "HKCU\SOFTWARE\Classes\Local Settings\MuiCache\1\52C64B7E" /v "@windows.storage.dll,-34620" /f
  10. reg delete "HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\1\52C64B7E" /v "@windows.storage.dll,-21790" /f

 

View source
  1.  
  2.  
  3.  
  4.  
  5. REM *** Enable verbose status messages when you sign in/out of Windows ***
  6. REM In Win7, Better to do it via GPEDIT.MSC, as it also updates the POL file (GPEDIT option is missing in Win10).
  7. REM GPEDIT.MSC > Computer Configuration > Administrative Templates > System: Verbose vs normal status messages. Set to "Enabled".
  8. reg add "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System" /v "VerboseStatus" /t REG_DWORD /d 1 /f

 

View source
  1.  
  2.  
  3.  
  4.  
  5. REM *** REM The .reg files below will add and change the DWORD value in the registry key below. ****
  6. REM 0 or delete = enable
  7. REM 1 = disable
  8. reg add "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System" /v "dontdisplaylastusername" /t REG_DWORD /d 0 /f

 

View source
  1.  
  2.  
  3.  
  4.  
  5. REM *** Remove Retail Demo ***
  6. takeown /f %ProgramData%\Microsoft\Windows\RetailDemo /a /r /d y
  7. icacls %ProgramData%\Microsoft\Windows\RetailDemo /grant Administratoren:F /T
  8. rd /s /q %ProgramData%\Microsoft\Windows\RetailDemo
  9.  
  10.  
  11.  
  12. takeown /f "C:\Windows\SystemApps\Microsoft.Windows.CloudExperienceHost_cw5n1h2txyewy\RetailDemo" /a /r /d y
  13. icacls "C:\Windows\SystemApps\Microsoft.Windows.CloudExperienceHost_cw5n1h2txyewy\RetailDemo" /grant Administratoren:F /T
  14. rd /s /q "C:\Windows\SystemApps\Microsoft.Windows.CloudExperienceHost_cw5n1h2txyewy\RetailDemo"

 

View source
  1.  
  2.  
  3.  
  4.  
  5. REM *** Always show all icons on the taskbar (next to clock) ***
  6. REM 0 = Show all icons
  7. REM 1 = Hide icons on the taskbar
  8. reg add "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer" /v "EnableAutoTray" /t REG_DWORD /d 0 /f

 

View source
  1.  
  2.  
  3.  
  4.  
  5. REM *** Disable WiFi Sense (shares your WiFi network login with other people) ***
  6. reg add "HKLM\SOFTWARE\Microsoft\PolicyManager\default\WiFi\AllowAutoConnectToWiFiSenseHotspots" /v "value" /t REG_DWORD /d 0 /f
  7. reg add "HKLM\SOFTWARE\Microsoft\PolicyManager\default\WiFi\AllowWiFiHotSpotReporting" /v "value" /t REG_DWORD /d 0 /f

 

View source
  1.  
  2.  
  3.  
  4.  
  5. REM *** SERVICES tweaks - basically to disable tracking and info gathering ***
  6. REM The Windows Search service is set to demand (Manual), since it's needed when using the start menu search.
  7. sc config DiagTrack start= disabled
  8. sc config diagnosticshub.standardcollector.service start= disabled
  9. sc config dmwappushservice start= disabled
  10. sc config RemoteRegistry start= disabled
  11. sc config TrkWks start= disabled
  12. sc config WMPNetworkSvc start= disabled
  13. sc config WSearch start= demand

 

View source
  1.  
  2.  
  3.  
  4.  
  5. REM *** Disable Superfetch (A must for SSD drives, but good to do in general) ***
  6. REM Disabling this service prevents further creation of PF files in C:\Windows\Prefetch.
  7. REM After disabling this service, it is completely safe to delete everything in that folder, except for the ReadyBoot folder.
  8. sc config SysMain start= disabled
  9. reg add "HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\PrefetchParameters" /v "EnableSuperfetch" /t REG_DWORD /d 0 /f
  10. reg add "HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\PrefetchParameters" /v "EnablePrefetcher" /t REG_DWORD /d 0 /f

 

View source
  1.  
  2.  
  3.  
  4.  
  5. REM *** SCHEDULED TASKS tweaks ***
  6. schtasks /Change /TN "Microsoft\Windows\AppID\SmartScreenSpecific" /Disable
  7. schtasks /Change /TN "Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser" /Disable
  8. schtasks /Change /TN "Microsoft\Windows\Application Experience\ProgramDataUpdater" /Disable
  9. schtasks /Change /TN "Microsoft\Windows\Application Experience\StartupAppTask" /Disable
  10.  
  11.  
  12.  
  13. schtasks /Change /TN "Microsoft\Windows\Customer Experience Improvement Program\Consolidator" /Disable
  14. schtasks /Change /TN "Microsoft\Windows\Customer Experience Improvement Program\KernelCeipTask" /Disable
  15. schtasks /Change /TN "Microsoft\Windows\Customer Experience Improvement Program\UsbCeip" /Disable
  16. schtasks /Change /TN "Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector" /Disable
  17.  
  18.  
  19.  
  20. schtasks /Change /TN "Microsoft\Windows\FileHistory\File History (maintenance mode)" /Disable
  21. schtasks /Change /TN "Microsoft\Windows\Maintenance\WinSAT" /Disable
  22. schtasks /Change /TN "Microsoft\Windows\NetTrace\GatherNetworkInfo" /Disable
  23. schtasks /Change /TN "Microsoft\Windows\PI\Sqm-Tasks" /Disable
  24.  
  25.  
  26.  
  27. schtasks /Change /TN "Microsoft\Windows\Windows Error Reporting\QueueReporting" /Disable
  28. schtasks /Change /TN "Microsoft\Windows\WindowsUpdate\Automatic App Update" /Disable

 

View source
  1.  
  2.  
  3.  
  4.  
  5. REM *** Add the option "Processor performance core parking min cores" ***
  6. reg add "HKLM\SYSTEM\CurrentControlSet\Control\Power\PowerSettings\54533251-82be-4824-96c1-47b60b740d00\0cc5b647-c1df-4637-891a-dec35c318583" /v "Attributes" /t REG_DWORD /d 0 /f

 

View source
  1.  
  2.  
  3.  
  4.  
  5. REM *** Disable CPU Core Parking ***
  6. REM Default value is 100 decimal.
  7. REM Basically "Core parking" means that the OS can use less CPU cores when they're not needed, thus saving power.
  8. REM This, however, can somewhat hamper performance, so advanced users prefer to disable this feature.
  9. REM Better to do this on a desktop. If you’re using a laptop and battery life is important to you - don't change this.
  10. REM source: https://bitsum.com/parkcontrol/
  11. reg add "HKLM\SYSTEM\CurrentControlSet\Control\Power\PowerSettings\54533251-82be-4824-96c1-47b60b740d00\0cc5b647-c1df-4637-891a-dec35c318583" /v "ValueMax" /t REG_DWORD /d 0 /f

 

View source
  1.  
  2.  
  3.  
  4.  
  5. REM *** Remove the DiagTrack package using DISM ***
  6. REM dism /online /Get-Packages
  7. dism /online /remove-package /packagename:Microsoft-Windows-DiagTrack-Internal-Package~31bf3856ad364e35~amd64~~10.0.10240.16384 /NoRestart

 

View source
  1.  
  2.  
  3.  
  4.  
  5. REM *** Remove XAML (Modern) apps using DISM ***
  6. REM To view installed XAML apps: dism /online /Get-ProvisionedAppxPackages
  7. dism /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.3DBuilder_2015.624.2254.0_neutral_~_8wekyb3d8bbwe
  8. dism /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.3DBuilder_10.9.50.0_neutral_~_8wekyb3d8bbwe
  9. dism /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.BingFinance_10004.3.193.0_neutral_~_8wekyb3d8bbwe
  10. dism /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.BingFinance_4.6.169.0_neutral_~_8wekyb3d8bbwe
  11. dism /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.BingNews_10004.3.193.0_neutral_~_8wekyb3d8bbwe
  12. dism /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.BingNews_4.6.169.0_neutral_~_8wekyb3d8bbwe
  13. dism /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.BingSports_4.6.169.0_neutral_~_8wekyb3d8bbwe
  14. dism /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.MicrosoftSolitaireCollection_3.3.9211.0_neutral_~_8wekyb3d8bbwe
  15. dism /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.Getstarted_2015.622.1108.0_neutral_~_8wekyb3d8bbwe
  16. dism /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.MicrosoftOfficeHub_2015.4218.23751.0_neutral_~_8wekyb3d8bbwe
  17. dism /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.MicrosoftSolitaireCollection_3.1.6103.0_neutral_~_8wekyb3d8bbwe
  18. dism /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.Office.OneNote_2015.4201.10091.0_neutral_~_8wekyb3d8bbwe
  19. dism /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.SkypeApp_3.2.1.0_neutral_~_kzf8qxf38zg5c
  20. dism /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.WindowsPhone_2015.620.10.0_neutral_~_8wekyb3d8bbwe
  21. dism /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.XboxApp_2015.617.130.0_neutral_~_8wekyb3d8bbwe
  22. dism /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.ZuneMusic_2019.6.10841.0_neutral_~_8wekyb3d8bbwe
  23. dism /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.ZuneVideo_2019.6.10811.0_neutral_~_8wekyb3d8bbwe
  24. dism /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.ZuneVideo_2019.6.13251.0_neutral_~_8wekyb3d8bbwe
  25. dism /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.ZuneMusic_2019.6.13251.0_neutral_~_8wekyb3d8bbwe
  26. dism /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.XboxApp_2015.930.526.0_neutral_~_8wekyb3d8bbwe
  27. dism /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.BingFinance_4.6.169.0_neutral_~_8wekyb3d8bbwe

 

View source
  1.  
  2.  
  3.  
  4.  
  5. REM *** Activate TelnetClient
  6. dism /online /enable-feature /featurename:TelnetClient
  7.  
  8.  
  9.  
  10. Rem *** Deactivate RSAT-Tools ****
  11. dism /online /disable-feature /FeatureName:RSATClient
  12.  
  13.  
  14.  
  15. REM *** ADD Features .Net Framework 3.5 ***
  16. DISM /Online /Add-Package /PackagePath:"\\srv-emp01-vm\configurator$\Packages\Windows10\NetFramework35\Microsoft-Windows-NetFx3-OnDemand-Package.cab"
  17. dism /online /enable-feature /featurename:NetFX3 /source:"\\srv-emp01-vm\configurator$\Packages\Windows10\NetFramework35\" /LimitAccess

 

View source
  1.  
  2.  
  3.  
  4.  
  5. REM *** REmove sym-links to MS-Store like Candy Crush ****
  6. reg load "HKLM\temp_default_profile" "C:\Users\Default\ntuser.dat"
  7. reg add "HKLM\temp_default_profile\Software\Microsoft\Windows\CurrentVersion\ContentDeliveryManager" /v PreinstalledAppsEnabled /d 0 /t "REG_DWORD" /f
  8. reg add "HKLM\temp_default_profile\Software\Microsoft\Windows\CurrentVersion\Themes" /v CurrentTheme /t REG_SZ /d "%SYSTEMROOT%\Resources\Themes\Meyle 2.0.theme" /f
  9. reg unload "HKLM\temp_default_profile"

 

View source
  1.  
  2.  
  3.  
  4.  
  5. Rem **** Disable sponsored Apps Like Facebook *****
  6. reg add "HKLM\SOFTWARE\Policies\Microsoft\Windows\CloudContent" /v "DisableWindowsConsumerFeatures" /t REG_DWORD /d 1 /f

 

View source
  1.  
  2.  
  3.  
  4.  
  5. Rem *** Disable the STRG+ALT+DEL feature --> Show LockScreenImage
  6. reg add "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System" /v "DisableCAD" /t REG_DWORD /d 1 /f

 

View source
  1.  
  2.  
  3.  
  4.  
  5. reg add "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\OEMInformation" /v "Manufacturer" /t REG_SZ /d "YOUR COMPANY" /f
  6. reg add "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\OEMInformation" /v "Model" /t REG_SZ /d "" /f
  7. reg add "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\OEMInformation" /v "SupportPhone" /t REG_SZ /d "YOUR HELPDESK" /f
  8. reg add "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\OEMInformation" /v "SupportURL" /t REG_SZ /d "YOUR HELPDESKURL" /f

 

View source
  1.  
  2.  
  3.  
  4.  
  5. REM *** Set Networkcardordering to Ethernet First ****
  6. "%~dp0nvspbind.exe" /++ "WLAN" ms_tcpip
  7. "%~dp0nvspbind.exe" /++ "WLAN" ms_tcpip6
  8. "%~dp0nvspbind.exe" /++ "Ethernet" ms_tcpip
  9. "%~dp0nvspbind.exe" /++ "Ethernet" ms_tcpip6

 

View source
  1.  
  2.  
  3.  
  4.  
  5. REM *** Enable RDP-Services for Device ******
  6. reg add "HKLM\SYSTEM\CurrentControlSet\Control\Terminal Server" /v "fDenyTSConnections" /t REG_DWORD /d 0 /f
  7. reg add "HKLM\SYSTEM\CurrentControlSet\Control\Terminal Server" /v "AllowRemoteRPC" /t REG_DWORD /d 1 /f

 

View source
  1.  
  2.  
  3.  
  4.  
  5. REM *** DISABLE ALL IPV6 Settings
  6. REM Typ 0 Um alle IPv6-Komponenten (Windows-Standardeinstellung) aktivieren.
  7. REM Typ 0xFF Deaktivieren Sie alle IPv6-Komponenten mit Ausnahme der IPv6-Loopback-Schnittstelle. Dieser Wert wird auch Windows bevorzugen IPv4 über IPv6 durch Ändern der Einträge in der Präfixrichtlinientabelle konfiguriert. Weitere Informationen finden Sie unter Auswahl von Quell- und Zieladressen.
  8. REM Typ 0 x 20 IPv4 auf IPv6 durch Ändern der Einträge in der Präfixrichtlinientabelle bevorzugt.
  9. REM Typ 0 x 10 So deaktivieren Sie IPv6 auf allen Nontunnel Schnittstellen (LAN und Point to Point Protocol [PPP] Schnittstellen).
  10. REM Typ 0 x 01 So deaktivieren Sie IPv6 auf allen Tunnelschnittstellen. Dazu gehören Intra-Site Automatic Tunnel Addressing Protokoll (ISATAP), 6to4- und Teredo.
  11. REM Typ 0x11 So deaktivieren Sie alle IPv6-Schnittstellen außer der IPv6-Loopback-Schnittstelle.
  12. netsh interface teredo set state disabled
  13. netsh interface ipv6 6to4 set state state=disabled undoonstop=disabled
  14. netsh interface ipv6 isatap set state state=disabled
  15. reg add "HKLM\SYSTEM\CurrentControlSet\Services\Tcpip6\Parameters" /v "DisabledComponents" /t REG_DWORD /d 16 /f

 

View source
  1.  
  2.  
  3.  
  4.  
  5. REM *** Set the default Systemfont to Arial ***
  6. reg add "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes" /v "MS Shell Dlg" /t REG_SZ /d "Arial" /f
  7. reg add "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes" /v "MS Shell Dlg 2" /t REG_SZ /d "Arial" /f
  8. reg add "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\FontSubstitutes" /v "MS Shell Dlg" /t REG_SZ /d "Arial" /f
  9. reg add "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\FontSubstitutes" /v "MS Shell Dlg 2" /t REG_SZ /d "Arial" /f

 

View source
  1.  
  2. REM Set the Active Setup for UserSettings!
  3.  
  4.  
  5.  
  6. XCOPY "%~dp0Win10UserSettings.bat" "%ProgramFiles%\Your SupportFolder\Settings\User\Win10UserSettings.bat*" /Y
  7. reg add "HKLM\Software\Microsoft\Active Setup\Installed Components\Windows 10 Settings" /v "StubPath" /t REG_SZ /d "%ProgramFiles%\Your SupportFolder\Settings\User\Win10UserSettings.bat" /f
  8. reg add "HKLM\Software\Microsoft\Active Setup\Installed Components\Windows 10 Settings" /v "Version" /t REG_SZ /d "1" /f

 

View source
  1.  
  2.  
  3.  
  4.  
  5. REM *** Set LocScreen Time (Console-Lock) to 10 min. ***
  6. reg add "HKLM\SYSTEM\CurrentControlSet\Control\Power\PowerSettings\7516b95f-f776-4464-8c53-06167f40cc99\8EC4B3A5-6868-48c2-BE75-4F3044BE88A7" /v "Attributes" /t REG_DWORD /d 2 /f
  7. reg add "HKLM\SYSTEM\CurrentControlSet\Control\Power\PowerSettings\7516b95f-f776-4464-8c53-06167f40cc99\8EC4B3A5-6868-48c2-BE75-4F3044BE88A7" /v "ValueMax" /t REG_DWORD /d 258 /f
  8. reg add "HKLM\SYSTEM\CurrentControlSet\Control\Power\PowerSettings\7516b95f-f776-4464-8c53-06167f40cc99\8EC4B3A5-6868-48c2-BE75-4F3044BE88A7" /v "ValueMin" /t REG_DWORD /d 258 /f

 

View source
  1.  
  2.  
  3.  
  4.  
  5. REM *** ADD Right Click Action to the User in Default: Run as different User:
  6. reg delete "HKEY_CLASSES_ROOT\exefile\shell\runasuser" /v "Extended" /f
  7. reg delete "HKEY_CLASSES_ROOT\batfile\shell\runasuser" /v "Extended" /f
  8. reg delete "HKEY_CLASSES_ROOT\cmdfile\shell\runasuser" /v "Extended" /f
  9. reg delete "HKEY_CLASSES_ROOT\mscfile\shell\runasuser" /v "Extended" /f
  10. reg delete "HKEY_CLASSES_ROOT\Msi.Package\shell\runasuser" /v "Extended" /f

 

View source
  1.  
  2.  
  3.  
  4.  
  5. REM *** Install the No Point and Print option *****
  6. reg add "HKLM\SOFTWARE\Policies\Microsoft\Windows NT\Printers\PointAndPrint" /v "Restricted" /t REG_DWORD /d 1 /f
  7. reg add "HKLM\SOFTWARE\Policies\Microsoft\Windows NT\Printers\PointAndPrint" /v "NoWarningNoElevationOnInstall" /t REG_DWORD /d 1 /f
  8. reg add "HKLM\SOFTWARE\Policies\Microsoft\Windows NT\Printers\PointAndPrint" /v "UpdatePromptSettings" /t REG_DWORD /d 1 /f

 

View source
  1.  
  2.  
  3.  
  4.  
  5. REM *** Show Hibernate in StartMenu ***
  6. reg add "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FlyoutMenuSettings" /v "ShowHibernateOption" /t REG_DWORD /d 1 /f

 

View source
  1.  
  2.  
  3.  
  4.  
  5. REM ***Activate WinRM for W10 Clients***
  6. winrm qc -quiet
  7. REM *** Enable Bitlocker for Device ****
  8. BdeHdCfg.exe -target default -quiet