|
@echo off
reg add "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer" /v "NoInternetOpenWith" /t REG_DWORD /d "1" /f
reg add "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel" /v "{20D04FE0-3AEA-1069-A2D8-08002B30309D}" /t REG_DWORD /d "0" /f
reg add "HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer" /v "NoDriveTypeAutoRun" /t REG_DWORD /d "255" /f
reg add "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Desktop\NameSpace\{B416D21B-3B22-B6D4-BBD3-BBD452DB3D5B}" /ve /t REG_SZ /d "Internet Explorer" /f
reg add "HKCR\CLSID\{B416D21B-3B22-B6D4-BBD3-BBD452DB3D5B}" /ve /t REG_SZ /d "Internet Explorer" /f
reg add "HKCR\CLSID\{B416D21B-3B22-B6D4-BBD3-BBD452DB3D5B}" /v "InfoTip" /t REG_SZ /d "@C:\Windows\system32\zh-CN\ieframe.dll.mui,-881" /f
reg add "HKCR\CLSID\{B416D21B-3B22-B6D4-BBD3-BBD452DB3D5B}" /v "LocalizedString" /t REG_SZ /d "@C:\Windows\system32\zh-CN\ieframe.dll.mui,-880" /f
reg add "HKCR\CLSID\{B416D21B-3B22-B6D4-BBD3-BBD452DB3D5B}\DefaultIcon" /ve /t REG_SZ /d "C:\Windows\system32\ieframe.dll,-190" /f
reg add "HKCR\CLSID\{B416D21B-3B22-B6D4-BBD3-BBD452DB3D5B}\Shell\NoAddOns" /ve /t REG_SZ /d "在没有加载项的情况下启动" /f
reg add "HKCR\CLSID\{B416D21B-3B22-B6D4-BBD3-BBD452DB3D5B}\Shell\NoAddOns\Command" /ve /t REG_SZ /d "C:\Program Files\Internet Explorer\iexplore.exe about:NoAdd-ons" /f
reg add "HKCR\CLSID\{B416D21B-3B22-B6D4-BBD3-BBD452DB3D5B}\Shell\Open" /ve /t REG_SZ /d "打开主页(H)" /f
reg add "HKCR\CLSID\{B416D21B-3B22-B6D4-BBD3-BBD452DB3D5B}\Shell\Open\Command" /ve /t REG_SZ /d "C:\Program Files\Internet Explorer\iexplore.exe" /f
reg add "HKCR\CLSID\{B416D21B-3B22-B6D4-BBD3-BBD452DB3D5B}\Shell\Properties" /ve /t REG_SZ /d "属性(R)" /f
reg add "HKCR\CLSID\{B416D21B-3B22-B6D4-BBD3-BBD452DB3D5B}\Shell\Properties\Command" /ve /t REG_SZ /d "Rundll32.exe Shell32.dll,Control_RunDLL Inetcpl.cpl" /f
reg add "HKCR\CLSID\{B416D21B-3B22-B6D4-BBD3-BBD452DB3D5B}\ShellFolder" /v "Attributes" /t REG_DWORD /d "48" /f
reg add "HKCR\CLSID\{B416D21B-3B22-B6D4-BBD3-BBD452DB3D5B}\ShellFolder" /v "HideAsDeletePerUser" /t REG_SZ /d "" /f
reg add "HKCR\CLSID\{B416D21B-3B22-B6D4-BBD3-BBD452DB3D5B}\ShellFolder" /v "HideFolderVerbs" /t REG_SZ /d "" /f
reg add "HKCR\CLSID\{B416D21B-3B22-B6D4-BBD3-BBD452DB3D5B}\ShellFolder" /v "HideOnDesktopPerUser" /t REG_SZ /d "" /f
reg add "HKCR\CLSID\{B416D21B-3B22-B6D4-BBD3-BBD452DB3D5B}\ShellFolder" /v "WantsParseDisplayName" /t REG_SZ /d "" /f
reg add "HKCU\Software\Microsoft\Internet Explorer\Main" /v "Start Page" /t REG_SZ /d "https://www.baidu.com" /f
reg add "HKCU\Software\Microsoft\Internet Explorer\Main" /v "Default_Page_URL" /t REG_SZ /d "https://www.baidu.com" /f
reg add "HKCU\Software\Microsoft\Internet Explorer\Main" /v "RunOnceHasShown" /t REG_DWORD /d "1" /f
reg add "HKCU\Software\Microsoft\Internet Explorer\Main" /v "RunOnceComplete" /t REG_DWORD /d "1" /f
reg add "HKLM\SOFTWARE\Microsoft\Internet Explorer\Main" /v "DisableFirstRunCustomize" /t REG_DWORD /d "1" /f
reg add "HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings" /v "EnableAutodial" /t REG_DWORD /d "0" /f
reg add "HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings" /v "EnableAutodial" /t REG_DWORD /d "0" /f
reg add "HKCU\Software\Microsoft\Windows NT\CurrentVersion\Winlogon" /v "AutoRestartShell" /t REG_DWORD /d "1" /f
reg add "HKCU\Software\Microsoft\Windows\Windows Error Reporting" /v "Disabled" /t REG_DWORD /d "1" /f
reg add "HKCU\Software\Policies\Microsoft\Windows\Windows Error Reporting" /v "LoggingDisabled" /t REG_DWORD /d "1" /f
reg add "HKLM\SOFTWARE\Policies\Microsoft\PCHealth\ErrorReporting" /v "DoReport" /t REG_DWORD /d "0" /f
reg add "HKLM\SOFTWARE\Microsoft\PCHealth\ErrorReporting" /v "ShowUI" /t REG_DWORD /d "0" /f
reg add "HKLM\SOFTWARE\Microsoft\PCHealth\ErrorReporting" /v "DoReport" /t REG_DWORD /d "0" /f
reg add "HKCU\Software\Microsoft\Driver Signing" /v "Policy" /t REG_DWORD /d "1" /f
reg add "HKLM\SOFTWARE\Microsoft\Driver Signing" /v "Policy" /t REG_BINARY /d "01" /f
reg add "HKCU\Software\Policies\Microsoft\Windows NT\Driver Signing" /v "BehaviorOnFailedVerify" /t REG_DWORD /d "1" /f
reg add "HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer" /v "Link" /t REG_BINARY /d "00000000" /f
reg add "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer" /v "Link" /t REG_BINARY /d "00000000" /f
reg add "HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer" /v "HideSCAHealth" /t REG_DWORD /d "1" /f
reg add "HKCR\*\shell\Notepad" /ve /t REG_SZ /d "用记事本打开" /f
reg add "HKCR\*\shell\Notepad\Command" /ve /t REG_SZ /d "notepad %%1" /f
reg add "HKCR\*\shell\runas" /ve /t REG_SZ /d "管理员取得所有权" /f
reg add "HKCR\*\shell\runas" /v "NoWorkingDirectory" /t REG_SZ /d "" /f
reg add "HKCR\*\shell\runas\command" /ve /t REG_SZ /d "cmd.exe /c takeown /f \"%%1\" && icacls \"%%1\" /grant administrators:F" /f
reg add "HKCR\*\shell\runas\command" /v "IsolatedCommand" /t REG_SZ /d "cmd.exe /c takeown /f \"%%1\" && icacls \"%%1\" /grant administrators:F" /f
reg add "HKCR\exefile\shell\runas2" /ve /t REG_SZ /d "管理员取得所有权" /f
reg add "HKCR\exefile\shell\runas2" /v "NoWorkingDirectory" /t REG_SZ /d "" /f
reg add "HKCR\exefile\shell\runas2\command" /ve /t REG_SZ /d "cmd.exe /c takeown /f \"%%1\" && icacls \"%%1\" /grant administrators:F" /f
reg add "HKCR\exefile\shell\runas2\command" /v "IsolatedCommand" /t REG_SZ /d "cmd.exe /c takeown /f \"%%1\" && icacls \"%%1\" /grant administrators:F" /f
reg add "HKCR\Directory\shell\runas" /ve /t REG_SZ /d "管理员取得所有权" /f
reg add "HKCR\Directory\shell\runas" /v "NoWorkingDirectory" /t REG_SZ /d "" /f
reg add "HKCR\Directory\shell\runas\command" /ve /t REG_SZ /d "cmd.exe /c takeown /f \"%%1\" /r /d y && icacls \"%%1\" /grant administrators:F /t" /f
reg add "HKCR\Directory\shell\runas\command" /v "IsolatedCommand" /t REG_SZ /d "cmd.exe /c takeown /f \"%%1\" /r /d y && icacls \"%%1\" /grant administrators:F /t" /f
reg add "HKCU\Control Panel\Desktop" /v "AutoEndTasks" /t REG_SZ /d "1" /f
reg add "HKCU\Control Panel\Desktop" /v "HungAppTimeout" /t REG_SZ /d "1000" /f
reg add "HKCU\Control Panel\Desktop" /v "WaitToKillAppTimeout" /t REG_SZ /d "5000" /f
reg add "HKLM\SYSTEM\CurrentControlSet\Control" /v "WaitToKillServiceTimeout" /t REG_SZ /d "5000" /f
reg add "HKLM\SYSTEM\ControlSet001\Control\CrashControl" /v "AutoReboot" /t REG_DWORD /d "0" /f
reg add "HKLM\SYSTEM\ControlSet001\Control\CrashControl" /v "CrashDumpEnabled" /t REG_DWORD /d "0" /f
reg add "HKLM\SYSTEM\ControlSet001\Control\CrashControl" /v "LogEvent" /t REG_DWORD /d "0" /f
reg add "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ControlPanel" /v "AllItemsIconView" /t REG_DWORD /d "1" /f
reg add "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ControlPanel" /v "StartupPage" /t REG_DWORD /d "1" /f
reg add "HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer" /v "NoResolveTrack" /t REG_DWORD /d "1" /f
reg add "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced" /v "AlwaysShowMenus" /t REG_DWORD /d "1" /f
reg add "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\CabinetState" /v "FullPath" /t REG_DWORD /d "1" /f
reg add "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced" /v "Start_ShowRun" /t REG_DWORD /d "1" /f
reg add "HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer" /v "NoRecentDocsHistory" /t REG_DWORD /d "1" /f
reg add "HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer" /v "NoSMHelp" /t REG_DWORD /d "1" /f
reg delete "HKLM\SYSTEM\CurrentControlSet\services\AudioSrv" /v "DependOnService" /f
reg add "HKLM\SYSTEM\CurrentControlSet\services\AudioSrv" /v "DependOnService" /t REG_MULTI_SZ /d "AudioEndpointBuilder\0RpcSs" /f
reg add "HKLM\SYSTEM\CurrentControlSet\services\TCPIP6\Parameters" /v "DisabledComponents" /t REG_DWORD /d "4294967295" /f
reg delete "HKCR\Briefcase\ShellNew" /f
reg delete "HKCR\.BMP\ShellNew" /f
reg delete "HKCR\.contact\ShellNew" /f
reg delete "HKCR\.jnt\jntfile\ShellNew" /f
reg delete "HKCR\.zip\ShellNew" /f
reg delete "HKCR\.rar\ShellNew" /f
reg delete "HKCR\.doc\Word.Document.8\ShellNew" /f
reg delete "HKCR\.ppt\PowerPoint.Show.8\ShellNew" /f
reg delete "HKCR\.xls\Excel.Sheet.8\ShellNew" /f
reg delete "HKCR\.doc\WPS.Doc.6\ShellNew" /f
reg delete "HKCR\.docx\WPS.Docx.6\ShellNew" /f
reg delete "HKCR\.dps\WPP.Presentation.6\ShellNew" /f
reg delete "HKCR\.et\ET.Workbook.6\ShellNew" /f
reg delete "HKCR\.ppt\WPP.PPT.6\ShellNew" /f
reg delete "HKCR\.pptx\WPP.PPTX.6\ShellNew" /f
reg delete "HKCR\.xls\ET.Xls.6\ShellNew" /f
reg delete "HKCR\.xlsm\ET.Xlsm.6\ShellNew" /f
reg delete "HKCR\.xlsx\ET.Xlsx.6\ShellNew" /f
reg delete "HKCR\.wps\WPS.Document.6\ShellNew" /f
reg delete "HKCR\.rtf\ShellNew" /f
reg delete "HKCR\.psd\ShellNew" /f
reg delete "HKCR\lnkfile\shellex\ContextMenuHandlers\Compatibility" /f
reg delete "HKCR\exefile\shellex\ContextMenuHandlers\Compatibility" /f
reg delete "HKCR\batfile\ShellEx\ContextMenuHandlers\Compatibility" /f
reg delete "HKCR\cmdfile\ShellEx\ContextMenuHandlers\Compatibility" /f
reg delete "HKCR\Msi.Package\shellex\ContextMenuHandlers\Compatibility" /f
reg delete "HKCR\AllFilesystemObjects\shellex\ContextMenuHandlers\{596AB062-B4D2-4215-9F74-E9109B0A8153}" /f
reg delete "HKCR\CLSID\{450D8FBA-AD25-11D0-98A8-0800361B1103}\shellex\ContextMenuHandlers\{596AB062-B4D2-4215-9F74-E9109B0A8153}" /f
reg delete "HKCR\CLSID\{450D8FBA-AD25-11D0-98A8-0800361B1103}\shellex\PropertySheetHandlers\{596AB062-B4D2-4215-9F74-E9109B0A8153}" /f
reg delete "HKCR\Directory\shellex\ContextMenuHandlers\{596AB062-B4D2-4215-9F74-E9109B0A8153}" /f
reg delete "HKCR\Directory\shellex\PropertySheetHandlers\{596AB062-B4D2-4215-9F74-E9109B0A8153}" /f
reg delete "HKCR\Drive\shellex\ContextMenuHandlers\{596AB062-B4D2-4215-9F74-E9109B0A8153}" /f
reg delete "HKCR\Drive\shellex\PropertySheetHandlers\{596AB062-B4D2-4215-9F74-E9109B0A8153}" /f
reg delete "HKCR\Folder\ShellEx\ContextMenuHandlers\Library Location" /f
reg add "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Icons" /v 29 /d "%systemroot%\system32\imageres.dll,196" /t reg_sz /f
reg add "HKCR\Directory\Background\shell\runas" /ve /t REG_SZ /d "以管理员身份运行CMD" /f
reg add "HKCR\Directory\Background\shell\runas" /v "HasLUAShield" /t REG_SZ /d "" /f
reg add "HKCR\Directory\Background\shell\runas\command" /ve /t REG_SZ /d "cmd.exe /s /k pushd \"%%V\"" /f
reg add "HKCR\Drive\shell\runas" /ve /t REG_SZ /d "以管理员身份运行CMD" /f
reg add "HKCR\Drive\shell\runas" /v "HasLUAShield" /t REG_SZ /d "" /f
reg add "HKCR\Drive\shell\runas\command" /ve /t REG_SZ /d "cmd.exe /s /k pushd \"%%V\"" /f
reg add "HKCR\LibraryFolder\background\shell\runas" /ve /t REG_SZ /d "以管理员身份运行CMD" /f
reg add "HKCR\LibraryFolder\background\shell\runas" /v "HasLUAShield" /t REG_SZ /d "" /f
reg add "HKCR\LibraryFolder\background\shell\runas\command" /ve /t REG_SZ /d "cmd.exe /s /k pushd \"%%V\"" /f
for %%a in (C D E F G H I J K L M N O P Q R S T U V W X Y Z) do @(
if exist %%a:\nul (
net share %%a$ /delete>nul
)
)
net share admin$ /delete>nul
reg add "HKLM\SYSTEM\CurrentControlSet\Services\lanmanserver\parameters" /v "AutoShareWks" /t REG_DWORD /d "0" /f
reg add "HKLM\SYSTEM\CurrentControlSet\Services\lanmanserver\parameters" /v "AutoShareServer" /t REG_DWORD /d "0" /f
reg add "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced" /v "SharingWizardOn" /t REG_DWORD /d "0" /f
sc config LanmanServer start= Disabled
sc config AeLookupSvc start= Disabled
sc config BITS start= Demand
sc config DPS start= Demand
sc config SysMain start= Demand
sc config FontCache start= Disabled
sc config FontCache3.0.0.0 start= Disabled
sc config MMCSS start= Disabled
sc config IPBusEnum start= Disabled
sc config PNRPAutoReg start= Disabled
sc config wercplsupport start= Disabled
sc config PcaSvc start= Disabled
sc config QWAVE start= Disabled
sc config wscsvc start= Disabled
sc config WinDefend start= Disabled
sc config WerSvc start= Disabled
sc config MpsSvc start= Disabled
sc config dot3svc start= Disabled
sc config WinHttpAutoProxySvc start= Disabled
sc config wuauserv start= Disabled
sc config iphlpsvc start= Disabled
sc config RemoteRegistry start= Disabled
schtasks /delete /tn "\Microsoft\Windows\Application Experience\AitAgent" /f
schtasks /delete /tn "\Microsoft\Windows\Application Experience\ProgramDataUpdater" /f
schtasks /delete /tn "\Microsoft\Windows\Application Experience" /f
schtasks /delete /tn "\Microsoft\Windows\Autochk\Proxy" /f
schtasks /delete /tn "\Microsoft\Windows\Autochk" /f
schtasks /delete /tn "\Microsoft\Windows\Defrag\ScheduledDefrag" /f
schtasks /delete /tn "\Microsoft\Windows\Defrag" /f
schtasks /delete /tn "\Microsoft\Windows\Diagnosis\Scheduled" /f
schtasks /delete /tn "\Microsoft\Windows\Diagnosis" /f
schtasks /delete /tn "\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector" /f
schtasks /delete /tn "\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver" /f
schtasks /delete /tn "\Microsoft\Windows\DiskDiagnostic" /f
schtasks /delete /tn "\Microsoft\Windows\Maintenance\WinSAT" /f
schtasks /delete /tn "\Microsoft\Windows\Maintenance" /f
schtasks /delete /tn "\Microsoft\Windows\Media Center\ActivateWindowsSearch" /f
schtasks /delete /tn "\Microsoft\Windows\Media Center\ConfigureInternetTimeService" /f
schtasks /delete /tn "\Microsoft\Windows\Media Center\DispatchRecoveryTasks" /f
schtasks /delete /tn "\Microsoft\Windows\Media Center\ehDRMInit" /f
schtasks /delete /tn "\Microsoft\Windows\Media Center\InstallPlayReady" /f
schtasks /delete /tn "\Microsoft\Windows\Media Center\mcupdate" /f
schtasks /delete /tn "\Microsoft\Windows\Media Center\MediaCenterRecoveryTask" /f
schtasks /delete /tn "\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask" /f
schtasks /delete /tn "\Microsoft\Windows\Media Center\OCURActivate" /f
schtasks /delete /tn "\Microsoft\Windows\Media Center\OCURDiscovery" /f
schtasks /delete /tn "\Microsoft\Windows\Media Center\PBDADiscovery" /f
schtasks /delete /tn "\Microsoft\Windows\Media Center\PBDADiscoveryW1" /f
schtasks /delete /tn "\Microsoft\Windows\Media Center\PBDADiscoveryW2" /f
schtasks /delete /tn "\Microsoft\Windows\Media Center\PeriodicScanRetry" /f
schtasks /delete /tn "\Microsoft\Windows\Media Center\PvrRecoveryTask" /f
schtasks /delete /tn "\Microsoft\Windows\Media Center\PvrScheduleTask" /f
schtasks /delete /tn "\Microsoft\Windows\Media Center\RecordingRestart" /f
schtasks /delete /tn "\Microsoft\Windows\Media Center\RegisterSearch" /f
schtasks /delete /tn "\Microsoft\Windows\Media Center\ReindexSearchRoot" /f
schtasks /delete /tn "\Microsoft\Windows\Media Center\SqlLiteRecoveryTask" /f
schtasks /delete /tn "\Microsoft\Windows\Media Center\UpdateRecordPath" /f
schtasks /delete /tn "\Microsoft\Windows\Media Center\Extender" /f
schtasks /delete /tn "\Microsoft\Windows\Media Center" /f
schtasks /delete /tn "\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem" /f
schtasks /delete /tn "\Microsoft\Windows\Power Efficiency Diagnostics" /f
schtasks /delete /tn "\Microsoft\Windows\Registry\RegIdleBackup" /f
schtasks /delete /tn "\Microsoft\Windows\Registry" /f
schtasks /delete /tn "\Microsoft\Windows\SystemRestore\SR" /f
schtasks /delete /tn "\Microsoft\Windows\SystemRestore" /f
schtasks /delete /tn "\Microsoft\Windows\WDI\ResolutionHost" /f
schtasks /delete /tn "\Microsoft\Windows\WDI" /f
schtasks /delete /tn "\Microsoft\Windows\Windows Error Reporting\QueueReporting" /f
schtasks /delete /tn "\Microsoft\Windows\Windows Error Reporting" /f
schtasks /delete /tn "\Microsoft\Windows\Windows Media Sharing\UpdateLibrary" /f
schtasks /delete /tn "\Microsoft\Windows\Windows Media Sharing" /f
schtasks /delete /tn "\Microsoft\Windows\WindowsBackup\ConfigNotification" /f
schtasks /delete /tn "\Microsoft\Windows\WindowsBackup" /f
schtasks /delete /tn "\Microsoft\Windows Defender\MP Scheduled Scan" /f
schtasks /delete /tn "\Microsoft\Windows Defender\MpIdleTask" /f
schtasks /delete /tn "\Microsoft\Windows Defender" /f
powercfg -h off
pause.
|
|