- Removed the forced Pro edition enforcement. This is so the answer file can still be used with Home and especially Enterprise versions like LTSC.
- Added an order to temporarily disable all network adapters so Windows Updates aren't installed during the OOBE phase. (This should stop Windows Defender from being Enabled automatically.)
- Added a FirstLogon command that enables the network adapter again when the first user loads in after the OOBE phase.
- Removed Microsoft Edge and Google Chrome Policies as it seems to negatively impact user browsing experience.
- Defined a new list of services that should be set to Disabled and Manual as the original list in v2.0.0 caused issues. The process count isn't as low as before but Windows should be more functional.
- Released UnattendedWinstall v2.0.0
- Added Core version which disables Windows Defender. Specifically, it disables the following services "Sense, WdBoot, WdFilter, WdNisDrv, WdNisSvc, WinDefend" which in turns prevents the MsMpEng.exe process from running. Credit to Christoph Schneegans for explaining.
- Combined 64bit, 32bit and ARM64 support into a single
autounattend.xml
file for each version of the file. - Fixed the
ei.cfg
file creation to correctly show all available editions of Windows during the setup. - User Account Control is now set to default (level 3) at the end of the
currentuser.cmd
script. - Set Powershell ExecutionPolicy to "AllSigned" for better security. Thanks https://github.com/cyb3rm4gus
- Set "When Windows Detects Communication Activity" under "System > Sound > More sound settings > Communications" to "Do Nothing". Thanks https://github.com/MicaelJarniac
- Added Blocks the “Allow my organization to manage my device” and “No, sign in to this app only” pop-up message. Thanks https://github.com/Syntax3rror404
- Changed
NetworkThrottlingIndex
to 10 (Default) - Removed the "Disables Hibernation" entry.
- Created
TROUBLESHOOTING.md
to provide fixes to common "issues." - Updated
README.md
for better readability and included more information and FAQ's.
These Updates apply to ALL Versions
README.md - Fixed wrong ISO/Windows
folder creation in Method 3. (Can't create folders with "/")
reg.exe add "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System" /v Wallpaper /t REG_SZ /d "C:\Windows\Web\Wallpaper\Windows\img19.jpg" /f
Changed img0.jpg to img19.jpg to compliment the automatic enabling of dark mode.
:: Disables Wallpaper JPEG Quality Reduction in Windows 10
reg.exe add "HKEY_CURRENT_USER\Control Panel\Desktop" /v JPEGImportQuality /t REG_DWORD /d 100 /f
:: Set Desktop Background Dark Mode Wallpaper
reg.exe add "HKEY_CURRENT_USER\Control Panel\Desktop" /v Wallpaper /t REG_SZ /d "C:\Windows\Web\Wallpaper\Windows\img19.jpg" /f
Completely Removed defaultuser.cmd
- It doesn't work as intended, registry settings are applied to user accounts via the currentuser.cmd
script.
These Updates apply to the Standard and IoT-LTSC-Like Versions
reg.exe add "HKEY_CURRENT_USER\Control Panel\Desktop" /v DragFullWindows /t REG_SZ /d 1 /f
reg.exe add "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced" /v ListviewAlphaSelect /t REG_DWORD /d 1 /f
Reason: Enabled these Settings for a more aesthetically pleasing Windows Experience.
Added <![CDATA[]]>
to all .
<settings pass="specialize"></settings>
Changes in the specialize
phase
- Added -WindowStyle Hidden
to the powershell.exe commands to run the scripts minimized. (The Windows still appear briefly.)
- Combined the remove-caps.ps1
, remove-features.ps1
scripts together into the remove-packages.ps1
Script and changed the file path to 'C:\Windows\Setup\Scripts\remove-packages.ps1'
.
- Changed the command for Run Chris Titus WinUtil Tweaks
Added the following items to wintweaks.ps1
Dism /Online /Enable-Feature /FeatureName:NetFx3 /All /Source:X:\sources\sxs /LimitAccess
Reason: Auto-enables .NET Framework 3.5 (it's already a part of Windows) This fixes - #19
# Create WinUtil shortcut on the desktop (sourced from CTT MicroWin)
$desktopPath = "C:\Users\Default\Desktop"
# Specify the target PowerShell command
$command = "powershell.exe -NoProfile -ExecutionPolicy Bypass -Command 'irm https://christitus.com/win | iex'"
# Specify the path for the shortcut
$shortcutPath = Join-Path $desktopPath 'LAUNCH-CTT-WINUTIL.lnk'
# Create a shell object
$shell = New-Object -ComObject WScript.Shell
# Create a shortcut object
$shortcut = $shell.CreateShortcut($shortcutPath)
# Set properties of the shortcut
$shortcut.TargetPath = "powershell.exe"
$shortcut.Arguments = "-NoProfile -ExecutionPolicy Bypass -Command `"$command`""
# Save the shortcut
$shortcut.Save()
# Make the shortcut have 'Run as administrator' property on
$bytes = [System.IO.File]::ReadAllBytes($shortcutPath)
# Set byte value at position 0x15 in hex, or 21 in decimal, from the value 0x00 to 0x20 in hex
$bytes[0x15] = $bytes[0x15] -bor 0x20
[System.IO.File]::WriteAllBytes($shortcutPath, $bytes)
Reason: This fixes #30 where the CTT WinUtil didn't launch correctly.
<!-- Create or modify ei.cfg file -->
<RunSynchronousCommand wcm:action="add">
<Order>7</Order>
<Path>cmd /c echo [Channel]>%SYSTEMDRIVE%\sources\ei.cfg && echo Retail>>%SYSTEMDRIVE%\sources\ei.cfg && echo [VL]>>%SYSTEMDRIVE%\sources\ei.cfg && echo 0>>%SYSTEMDRIVE%\sources\ei.cfg</Path>
</RunSynchronousCommand>
Reason: Prevents auto detection of Windows Edition and forces Windows Setup to show all available Editions of Windows during setup.
:: Unpins all apps from the Start Menu
reg.exe add "HKLM\SOFTWARE\Microsoft\PolicyManager\current\device\Start" /v ConfigureStartPins /t REG_SZ /d "{ \"pinnedList\": [] }" /f
reg.exe add "HKLM\SOFTWARE\Microsoft\PolicyManager\current\device\Start" /v ConfigureStartPins_ProviderSet /t REG_DWORD /d 1 /f
reg.exe add "HKLM\SOFTWARE\Microsoft\PolicyManager\current\device\Start" /v ConfigureStartPins_WinningProvider /t REG_SZ /d B5292708-1619-419B-9923-E5D9F3925E71 /f
reg.exe add "HKLM\SOFTWARE\Microsoft\PolicyManager\providers\B5292708-1619-419B-9923-E5D9F3925E71\default\Device\Start" /v ConfigureStartPins /t REG_SZ /d "{ \"pinnedList\": [] }" /f
reg.exe add "HKLM\SOFTWARE\Microsoft\PolicyManager\providers\B5292708-1619-419B-9923-E5D9F3925E71\default\Device\Start" /v ConfigureStartPins_LastWrite /t REG_DWORD /d 1 /f
Reason: Was previously removed (by mistake) - It cleans up the start menu.
Added ARM versions of all files. This fixes #8
:: Disables User Account Control
reg.exe add "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System" /v EnableLUA /t REG_DWORD /d 0 /f
Reason: Without this entry, the currentuser.cmd
file won't automatically run as Admin and some of the commands will fail. If you use UAC, just enable it in Control Panel.
:: Hides the Language Switcher on the Taskbar
reg.exe add "HKEY_CURRENT_USER\SOFTWARE\Microsoft\CTF\LangBar" /v ShowStatus /t REG_DWORD /d 3 /f
Reason: Doesn't work.
Uploaded first edition of IoT-LTSC-Like Answer File
:: Start Menu Customizations
:: Disables Recently Added Apps and Recommendations in the Start Menu
reg.exe add "HKU\DefaultUser\Software\Policies\Microsoft\Windows\Explorer" /v HideRecentlyAddedApps /t REG_DWORD /d 1 /f
reg.exe add "HKU\DefaultUser\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced" /v Start_IrisRecommendations /t REG_DWORD /d 0 /f
:: Start Menu Customizations
:: Disables Recently Added Apps and Recommendations in the Start Menu
reg.exe add "HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\Explorer" /v HideRecentlyAddedApps /t REG_DWORD /d 1 /f
reg.exe add "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced" /v Start_IrisRecommendations /t REG_DWORD /d 0 /f
:: Start Menu Customization
reg.exe add "HKLM\SOFTWARE\Microsoft\PolicyManager\current\device\Start" /v ConfigureStartPins /t REG_SZ /d "{ \"pinnedList\": [] }" /f
reg.exe add "HKLM\SOFTWARE\Microsoft\PolicyManager\current\device\Start" /v ConfigureStartPins_ProviderSet /t REG_DWORD /d 1 /f
reg.exe add "HKLM\SOFTWARE\Microsoft\PolicyManager\current\device\Start" /v ConfigureStartPins_WinningProvider /t REG_SZ /d B5292708-1619-419B-9923-E5D9F3925E71 /f
reg.exe add "HKLM\SOFTWARE\Microsoft\PolicyManager\providers\B5292708-1619-419B-9923-E5D9F3925E71\default\Device\Start" /v ConfigureStartPins /t REG_SZ /d "{ \"pinnedList\": [] }" /f
reg.exe add "HKLM\SOFTWARE\Microsoft\PolicyManager\providers\B5292708-1619-419B-9923-E5D9F3925E71\default\Device\Start" /v ConfigureStartPins_LastWrite /t REG_DWORD /d 1 /f
:: Enables the "Settings" and "File Explorer" Icon in the Start Menu
reg.exe add "HKLM\SOFTWARE\Microsoft\PolicyManager\current\device\Start" /v AllowPinnedFolderSettings /t REG_DWORD /d 00000001 /f
reg.exe add "HKLM\SOFTWARE\Microsoft\PolicyManager\current\device\Start" /v AllowPinnedFolderSettings_ProviderSet /t REG_DWORD /d 00000001 /f
reg.exe add "HKLM\SOFTWARE\Microsoft\PolicyManager\current\device\Start" /v AllowPinnedFolderFileExplorer /t REG_DWORD /d 00000001 /f
reg.exe add "HKLM\SOFTWARE\Microsoft\PolicyManager\current\device\Start" /v AllowPinnedFolderFileExplorer_ProviderSet /t REG_DWORD /d 00000001 /f
Reason: Intended for Windows 11 but doesn't work as originally intended and prevents the user from changing the settings manually.
:: Disables User Account Control
reg.exe add "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System" /v EnableLUA /t REG_DWORD /d 0 /f
:: Disables User Account Control
reg.exe add "HKU\DefaultUser\SOFTWARE\Microsoft\Windows\CurrentVersion\Privacy" /v UserAccountControlSettings /t REG_DWORD /d 0 /f
:: Disables User Account Control
reg.exe add "HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Privacy" /v UserAccountControlSettings /t REG_DWORD /d 0 /f
Reason: Could cause security issues, user can set it manually.
<RunSynchronousCommand wcm:action="add">
<Order>10</Order>
<Description>Adds Take Ownership to the Right Click Context Menu</Description>
<Path>cmd.exe /c "reg.exe import "C:\Windows\Setup\Scripts\take-ownership.reg" >>"C:\Windows\Setup\Scripts\take-ownership.log" 2>&1"</Path>
</RunSynchronousCommand>
<!--Adds "Take Ownership" to the Right Click Context Menu-->
<File path="C:\Windows\Setup\Scripts\take-ownership.reg"><![CDATA[
Windows Registry Editor Version 5.00
; Created by: Shawn Brink
; Created on: September 6, 2021
; Updated on: January 7, 2024
; Tutorial: https://www.elevenforum.com/t/add-take-ownership-to-context-menu-in-windows-11.1230/
[-HKEY_CLASSES_ROOT\*\shell\TakeOwnership]
[-HKEY_CLASSES_ROOT\*\shell\runas]
[HKEY_CLASSES_ROOT\*\shell\TakeOwnership]
@="Take Ownership"
"Extended"=-
"HasLUAShield"=""
"NoWorkingDirectory"=""
"NeverDefault"=""
[HKEY_CLASSES_ROOT\*\shell\TakeOwnership\command]
@="powershell -windowstyle hidden -command \"Start-Process cmd -ArgumentList '/c takeown /f \\\"%1\\\" && icacls \\\"%1\\\" /grant *S-1-3-4:F /t /c /l & pause' -Verb runAs\""
"IsolatedCommand"= "powershell -windowstyle hidden -command \"Start-Process cmd -ArgumentList '/c takeown /f \\\"%1\\\" && icacls \\\"%1\\\" /grant *S-1-3-4:F /t /c /l & pause' -Verb runAs\""
[HKEY_CLASSES_ROOT\Directory\shell\TakeOwnership]
@="Take Ownership"
"AppliesTo"="NOT (System.ItemPathDisplay:=\"C:\\Users\" OR System.ItemPathDisplay:=\"C:\\ProgramData\" OR System.ItemPathDisplay:=\"C:\\Windows\" OR System.ItemPathDisplay:=\"C:\\Windows\\System32\" OR System.ItemPathDisplay:=\"C:\\Program Files\" OR System.ItemPathDisplay:=\"C:\\Program Files (x86)\")"
"Extended"=-
"HasLUAShield"=""
"NoWorkingDirectory"=""
"Position"="middle"
[HKEY_CLASSES_ROOT\Directory\shell\TakeOwnership\command]
@="powershell -windowstyle hidden -command \"$Y = ($null | choice).Substring(1,1); Start-Process cmd -ArgumentList ('/c takeown /f \\\"%1\\\" /r /d ' + $Y + ' && icacls \\\"%1\\\" /grant *S-1-3-4:F /t /c /l /q & pause') -Verb runAs\""
"IsolatedCommand"="powershell -windowstyle hidden -command \"$Y = ($null | choice).Substring(1,1); Start-Process cmd -ArgumentList ('/c takeown /f \\\"%1\\\" /r /d ' + $Y + ' && icacls \\\"%1\\\" /grant *S-1-3-4:F /t /c /l /q & pause') -Verb runAs\""
[HKEY_CLASSES_ROOT\Drive\shell\runas]
@="Take Ownership"
"Extended"=-
"HasLUAShield"=""
"NoWorkingDirectory"=""
"Position"="middle"
"AppliesTo"="NOT (System.ItemPathDisplay:=\"C:\\\")"
[HKEY_CLASSES_ROOT\Drive\shell\runas\command]
@="cmd.exe /c takeown /f \"%1\\\" /r /d y && icacls \"%1\\\" /grant *S-1-3-4:F /t /c & Pause"
"IsolatedCommand"="cmd.exe /c takeown /f \"%1\\\" /r /d y && icacls \"%1\\\" /grant *S-1-3-4:F /t /c & Pause"]]>
</File>
Reason: Useful Context Menu Entry to Quickly Take Ownership of Files and Folders
<ProductKey>
<Key>00000-00000-00000-00000-00000</Key>
<WillShowUI>Always</WillShowUI> <!-- This ensures the UI will show to select the edition of Windows -->
</ProductKey>
Reason: Prevents Windows from Automatically Selecting a Windows Edition due to a OEM key being installed in the BIOS/UEFI.
Update XML file so it is properly escaped and prevents errors.
Set-Service -Name 'wscsvc' -StartupType Manual -ErrorAction Continue
Reason: Could cause security issues
Disables IPv6
New-ItemProperty -Path 'HKLM:\SYSTEM\CurrentControlSet\Services\Tcpip6\Parameters' -Name 'DisabledComponents' -PropertyType 'DWord' -Value 255 -Force
Disable-NetAdapterBinding -Name "*" -ComponentID ms_tcpip6
Reason: Doesn't really provide any benefits.
:: Block Automatic Upgrade from Windows 10 22H2 to Windows 11 Although Manual Upgrade is Still Allowed - Credit CyberCPU Tech
reg.exe add "HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate" /v "TargetReleaseVersion" /t REG_DWORD /d 1 /f
reg.exe add "HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate" /v "TargetReleaseVersionInfo" /t REG_SZ /d "22H2" /f
reg.exe add "HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate" /v "ProductVersion" /t REG_SZ /d "Windows 10" /f
:: Disables Windows Recall on Copilot+ PC - Credit Britec09
reg.exe add "HKU\DefaultUser\Software\Policies\Microsoft\Windows\WindowsAI" /f
reg.exe add "HKU\DefaultUser\Software\Policies\Microsoft\Windows\WindowsAI" /v "DisableAIDataAnalysis" /t REG_DWORD /d 1 /f
reg.exe add "HKU\DefaultUser\Software\Policies\Microsoft\Windows\Windows AI" /v "TurnOffSavingSnapshots" /t REG_DWORD /d 1 /f
:: Disables Windows Recall on Copilot+ PC - Credit Britec09
reg.exe add "HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\WindowsAI" /f
reg.exe add "HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\WindowsAI" /v "DisableAIDataAnalysis" /t REG_DWORD /d 1 /f
reg.exe add "HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\Windows AI" /v "TurnOffSavingSnapshots" /t REG_DWORD /d 1 /f
Updated description and changed Quality and Feature Updates delay to 365 days which is the maximum allowed period.
:: Sets Windows Update to Only Install Security Updates and Delay Other Updates for 1 Year
reg.exe add "HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU" /v AUOptions /t REG_DWORD /d 3 /f
reg.exe add "HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate" /v DeferFeatureUpdates /t REG_DWORD /d 1 /f
reg.exe add "HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate" /v DeferFeatureUpdatesPeriodInDays /t REG_DWORD /d 365 /f
reg.exe add "HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate" /v DeferQualityUpdates /t REG_DWORD /d 1 /f
reg.exe add "HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate" /v DeferQualityUpdatesPeriodInDays /t REG_DWORD /d 365 /f
Restore and Set Windows Photo Viewer as default image viewer.
Updated following description:
:: Controls whether the memory page file is cleared at shutdown. Value 0 means it will not be cleared, speeding up shutdown.
reg.exe add "HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management" /v ClearPageFileAtShutdown /t REG_DWORD /d 0 /f
Removed the following entry as it removes the ability for the user to set a custom picture on the sign-in/lock screen and that wasn't my original purpose.
Disables the lock screen
reg.exe add "HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Personalization" /v NoLockScreen /t REG_DWORD /d 1 /f
Removed the following entry as it causes the legacy language bar to be displayed on the lock screen.
Hides the Language Switcher on the Taskbar
Set-WinLanguageBarOption -UseLegacyLanguageBar
The following preinstalled bloatware apps are removed during the Windows installation process:
Package Name | Name in Windows |
---|---|
Microsoft.Microsoft3DViewer |
3D Viewer |
Microsoft.BingSearch |
Bing Search |
Microsoft.WindowsCamera |
Camera |
Clipchamp.Clipchamp |
Clipchamp |
Microsoft.WindowsAlarms |
Alarms & Clock |
Microsoft.549981C3F5F10 |
Cortana |
Microsoft.Windows.DevHome |
Dev Home |
MicrosoftCorporationII.MicrosoftFamily |
Family Safety |
Microsoft.WindowsFeedbackHub |
Feedback Hub |
Microsoft.GetHelp |
Get Help |
microsoft.windowscommunicationsapps |
Mail and Calendar |
Microsoft.WindowsMaps |
Maps |
Microsoft.ZuneVideo |
Movies & TV |
Microsoft.BingNews |
News |
Microsoft.WindowsNotepad |
Notepad |
Microsoft.MicrosoftOfficeHub |
Office Hub |
Microsoft.Office.OneNote |
OneNote |
Microsoft.OutlookForWindows |
Outlook |
Microsoft.Paint |
Paint |
Microsoft.MSPaint |
Paint 3D |
Microsoft.People |
People |
Microsoft.Windows.Photos |
Photos |
Microsoft.PowerAutomateDesktop |
Power Automate Desktop |
MicrosoftCorporationII.QuickAssist |
Quick Assist |
Microsoft.SkypeApp |
Skype |
Microsoft.ScreenSketch |
Snip & Sketch |
Microsoft.MicrosoftSolitaireCollection |
Solitaire Collection |
Microsoft.MicrosoftStickyNotes |
Sticky Notes |
MSTeams |
Teams |
Microsoft.Getstarted |
Tips |
Microsoft.Todos |
To Do |
Microsoft.WindowsSoundRecorder |
Voice Recorder |
Microsoft.BingWeather |
Weather |
Microsoft.ZuneMusic |
Groove Music |
Microsoft.WindowsTerminal |
Windows Terminal |
Microsoft.Xbox.TCUI |
Xbox Console Companion |
Microsoft.XboxApp |
Xbox |
Microsoft.XboxGameOverlay |
Xbox Game Bar |
Microsoft.XboxGamingOverlay |
Xbox Game Bar |
Microsoft.XboxIdentityProvider |
Xbox Identity Provider |
Microsoft.XboxSpeechToTextOverlay |
Xbox Speech To Text Overlay |
Microsoft.GamingApp |
Xbox Game Pass |
Microsoft.YourPhone |
Phone Link |
Microsoft.MicrosoftEdge |
Microsoft Edge |
Microsoft.MicrosoftEdge.Stable |
Microsoft Edge (Stable) |
Microsoft.OneDrive |
OneDrive |
Microsoft.MicrosoftEdgeDevToolsClient |
Microsoft Edge DevTools Client |
Microsoft.549981C3F5F10 |
Cortana (Duplicate) |
Microsoft.MixedReality.Portal |
Mixed Reality Portal |
Microsoft.Windows.Ai.Copilot.Provider |
Windows Copilot |
Microsoft.WindowsMeetNow |
Meet Now |
Microsoft.WindowsStore |
Microsoft Store |
Package Name | Name in Windows |
---|---|
Browser.InternetExplorer | Internet Explorer |
MathRecognizer | Math Recognizer |
Microsoft.Windows.Notepad | Notepad |
OpenSSH.Client | OpenSSH Client |
Microsoft.Windows.MSPaint | Microsoft Paint |
Microsoft.Windows.PowerShell.ISE | PowerShell ISE |
App.Support.QuickAssist | Quick Assist |
App.StepsRecorder | Steps Recorder |
Media.WindowsMediaPlayer | Windows Media Player |
Microsoft.Windows.WordPad | WordPad |
Microsoft-SnippingTool | Snipping Tool |
- Bypasses Microsoft Account Creation
- Disables User Account Control
- Disables the lock screen
- Disable Windows Spotlight and set the normal Windows Picture as the desktop background
- Disable Windows Spotlight on the lock screen
- Disable Windows Spotlight suggestions, tips, tricks, and more on the lock screen
- Disable Windows Spotlight on Settings
- Set desktop background to a normal Windows picture
- Ensure the wallpaper style is set to fill (2 is for fill, 10 is for fit)
- Prevents Dev Home Installation
- Prevents New Outlook for Windows Installation
- Prevents Chat Auto Installation & Removes Chat Icon
- Start Menu Customization
- Enables the "Settings" and "File Explorer" Icon in the Start Menu
- Enable Long File Paths with Up to 32,767 Characters
- Disables News and Interests
- Disables Windows Consumer Features Like App Promotions etc.
- Disables Bitlocker Auto Encryption on Windows 11 24H2 and Onwards
- Sets Windows Update to Only Install Security Updates and Delay Other Updates for 2 Years
- Disables Cortana
- Disables Activity History
- Disables Hibernation
- Disables Location Tracking
- Disables Telemetry
- Disables Windows Ink Workspace
- Disables Feedback Notifications
- Disables the Advertising ID for All Users
- Disables Windows Error Reporting
- Disables Delivery Optimization
- Disables Remote Assistance
- Search Windows Update for Drivers First
- Gives Multimedia Applications like Games and Video Editing a Higher Priority
- Clears Memory Page File at Shutdown
- Enables NDU (Network Diagnostic Usage) Service on Startup
- Increases IRP stack size to 30 for the LanmanServer service to Improve Network Performance and Stability
- Hides the Meet Now Button on the Taskbar
- Gives Graphics Cards a Higher Priority for Gaming
- Gives the CPU a Higher Priority for Gaming
- Gives Games a higher priority in the system's scheduling
- Fix Managed by your organization in Edge
- Set Registry Keys to Disable Wifi-Sense
- Disables Storage Sense
- Disable Xbox GameDVR
- Disable Tablet Mode
- Always go to desktop mode on sign-in
- Disable "Use my sign-in info to automatically finish setting up my device after an update or restart"
- Disables OneDrive Automatic Backups of Important Folders (Documents, Pictures etc.)
- Disables the "Push To Install" feature in Windows
- Disables Consumer Account State Content
- Disables Cloud Optimized Content
- Deletes Microsoft Edge Registry Entries
- Deleting Application Compatibility Appraiser
- Deleting Customer Experience Improvement Program
- Deleting Program Data Updater
- Deleting autochk proxy
- Deleting QueueReporting
- Disabling the Delivery of Personalized or Suggested Content Like App Suggestions, Tips, and Advertisements in Windows
- Removes Copilot
- Removes Store Banner in Notepad
- Removes OneDrive
- Align the taskbar to the left on Windows 11
- Hides Search Icon on Taskbar
- Disables Recently Added Apps and Recommendations in the Start Menu
- Hides or Removes People from Taskbar
- Hides Task View Button on Taskbar
- Hides and Removes News and Interests from PC and Taskbar
- Hides or Removes Notifications
- Disables User Account Control
- Disables User Account Sync
- Disables Location Services
- Disables Input Personalization Settings
- Disables Automatic Feedback Sampling
- Disables Recent Documents Tracking
- Disable "Let websites provide locally relevant content by accessing my language list"
- Disables "Let Windows track app launches to improve Start and search results"
- Disables Background Apps
- Disables App Diagnostics
- Disables Delivery Optimization
- Disables Tablet Mode
- Disables Use Sign-In Info for User Account
- Disables Maps Auto Download
- Disables Telemetry and Ads
- Manages and displays the status of ongoing operations, such as file copy, move, delete, etc.
- Set File Explorer to Open This PC instead of Quick Access
- Set Display for Performance
- On Shutdown, Windows will automatically close any running applications
- Sets the Mouse hover time to 400 milliseconds
- Hides the Meet Now Button on the Taskbar
- Disables the Second Out-Of-Box Experience
- Set Display for Performance
- Set Registry Keys to Enable End Task With Right Click
- Disables Notification Tray and Calendar
- Set Classic Right-Click Menu for Windows 11
- Disable Xbox GameDVR
- Disables Bing Search in Start Menu
- Enables NumLock on Startup
- Disables Mouse Acceleration
- Disables Sticky Keys
- Disables Snap Assist Flyout
- Enables Show File Extensions
- Enables Dark Mode
- Hides the Language Switcher on the Taskbar
- Makes Taskbar Transparent in Windows 10
- Makes Taskbar Small in Windows 10
- Don't Update Last Access Time Stamp - This Can Improve File System Performance
- Creates Desktop Shortcut for the Chris Titus Windows Utility So You Can Easily Launch it to Install Programs
- Hides the Language Switcher on the Taskbar
- Configure Maximum Password Age in Windows
- Allow Execution of PowerShell Script Files
- Groups or splits svchost.exe processes based on the amount of physical memory in the system to optimize performance
- Removes Microsoft Edge
- Removes OneDrive
- Removes Microsoft Teams
- Disables IPv6
- Disables Telemetry
- Disable Scheduled Tasks
- Enable the Ultimate Performance power plan
- Set the Ultimate Performance power plan as active
- Set Services to Manual:
- AJRouter
- ALG
- AppIDSvc
- AppMgmt
- AppReadiness
- AppXSvc
- Appinfo
- AxInstSV
- BDESVC
- BITS
- BthAvctpSvc
- BthHFSrv
- CDPSvc
- CertPropSvc
- ClipSVC
- ConsentUxUserSvc_*
- CoreMessagingRegistrar
- CscService
- DcpSvc
- DevQueryBroker
- DeviceAssociationBrokerSvc_*
- DeviceAssociationService
- DeviceInstall
- DevicePickerUserSvc_*
- DevicesFlowUserSvc_*
- DispBrokerDesktopSvc
- DisplayEnhancementService
- DmEnrollmentSvc
- DoSvc
- DsSvc
- DsmSvc
- EFS
- EapHost
- EntAppSvc
- FDResPub
- Fax
- FrameServer
- FrameServerMonitor
- GraphicsPerfSvc
- HomeGroupListener
- HomeGroupProvider
- HvHost
- IEEtwCollectorService
- IKEEXT
- InstallService
- InventorySvc
- IpxlatCfgSvc
- LicenseManager
- LxpSvc
- MSDTC
- MSiSCSI
- MapsBroker
- McpManagementService
- MessagingService_*
- MicrosoftEdgeElevationService
- MixedRealityOpenXRSvc
- MsKeyboardFilter
- NPSMSvc_*
- NaturalAuthentication
- NcaSvc
- NcbService
- NcdAutoSetup
- NetSetupSvc
- NgcCtnrSvc
- NgcSvc
- NlaSvc
- P9RdrService_*
- PNRPAutoReg
- PNRPsvc
- PcaSvc
- PerceptionSimulation
- Pla
- Seclogon
- Shpamsvc
- Smphost
- Spectrum
- Sppsvc
- Ssh-agent
- Svsvc
- Swprv
- TabletInputService
- TapiSrv
- TextInputManagementService
- TimeBroker
- TimeBrokerSvc
- TokenBroker
- TroubleshootingSvc
- TrustedInstaller
- UI0Detect
- UdkUserSvc_*
- UmRdpService
- UnistoreSvc_*
- UserDataSvc_*
- UsoSvc
- VaultSvc
- W32Time
- WEPHOSTSVC
- WFDSConMgrSvc
- WMPNetworkSvc
- WManSvc
- WPDBusEnum
- WSService
- WSearch
- WaaSMedicSvc
- WalletService
- WarpJITSvc
- WbioSrvc
- Wcmsvc
- WcsPlugInService
- WdNisSvc
- WdiServiceHost
- WdiSystemHost
- WebClient
- Wecsvc
- WerSvc
- WiaRpc
- WinHttpAutoProxySvc
- WinRM
- WlanSvc
- WpcMonSvc
- WpnService
- WpnUserService_*
- WwanSvc
- XblAuthManager
- XblGameSave
- XboxGipSvc
- XboxNetApiSvc
- Autotimesvc
- Bthserv
- Camsvc
- Cbdhsvc_*
- Cloudidsvc