Jump to content

Desteklenmeyen Donanıma Windows 11 24h2 Nasıl Kurulur


HARBİKIZ
 Share

Recommended Posts

AdnanGumus, 13 saat önce yazdı:

bunun hazırı yokmu diyende olur 😃

Çok karışık görünmekle beraber, tarayıcıdan sayfayı çevir derseniz kolaylıkla anlaşılır hale gelir.

Bilmiyorum girdiğim reg kayıtları komutlarda var mı? Ama herşeyi  bana göre yapmıştım. İsimleri değişin. Ayarları kontrol edin, hata olabilir. Kullanmak için linke tıklayın, sayfada en allta gidin, xml olarak kaydedin. (tabi kontrol edip size göre düzenledikten sonra...)

https://schneegans.de/windows/unattend-generator/?LanguageMode=Unattended&UILanguage=tr-TR&Locale=tr-TR&Keyboard=0000041f&GeoLocation=264&ProcessorArchitecture=amd64&BypassRequirementsCheck=true&BypassNetworkCheck=true&ComputerNameMode=Custom&ComputerName=kadet&TimeZoneMode=Implicit&PartitionMode=Unattended&PartitionLayout=MBR&RecoveryMode=None&WindowsEditionMode=Unattended&WindowsEdition=pro&UserAccountMode=Unattended&AccountName0=Admin&AccountPassword0=password&AccountGroup0=Administrators&AccountName1=User&AccountPassword1=password&AccountGroup1=Users&AccountName2=&AccountName3=&AccountName4=&AutoLogonMode=Own&PasswordExpirationMode=Unlimited&LockoutMode=Default&HideFiles=HiddenSystem&TaskbarSearch=Box&DisableWidgets=true&ClassicContextMenu=true&LeftTaskbar=true&DeleteTaskbarIcons=true&DisableDefender=true&DisableUac=true&DisableSac=true&DisableSmartScreen=true&DisableFastStartup=true&EnableLongPaths=true&AllowPowerShellScripts=true&DisableLastAccess=true&NoAutoRebootWithLoggedOnUsers=true&TurnOffSystemSounds=true&DisableAppSuggestions=true&PreventDeviceEncryption=true&HideEdgeFre=true&MakeEdgeUninstallable=true&VBoxGuestAdditions=true&VMwareTools=true&WifiMode=Interactive&ExpressSettings=DisableAll&KeysMode=Skip&WallpaperMode=Solid&WallpaperColor=%2302849b&Remove3DViewer=true&RemoveBingSearch=true&RemoveCamera=true&RemoveClipchamp=true&RemoveClock=true&RemoveCopilot=true&RemoveCortana=true&RemoveDevHome=true&RemoveFamily=true&RemoveFeedbackHub=true&RemoveGetHelp=true&RemoveInternetExplorer=true&RemoveMailCalendar=true&RemoveMaps=true&RemoveMathInputPanel=true&RemoveMixedReality=true&RemoveNews=true&RemoveNotepad=true&RemoveOffice365=true&RemoveOneDrive=true&RemoveOneNote=true&RemoveOpenSSHClient=true&RemoveOutlook=true&RemovePaint3D=true&RemovePeople=true&RemovePowerAutomate=true&RemovePowerShellISE=true&RemoveQuickAssist=true&RemoveRecall=true&RemoveRdpClient=true&RemoveSkype=true&RemoveSolitaire=true&RemoveStepsRecorder=true&RemoveStickyNotes=true&RemoveTeams=true&RemoveGetStarted=true&RemoveToDo=true&RemoveVoiceRecorder=true&RemoveWeather=true&RemoveZuneMusic=true&RemoveWindowsTerminal=true&RemoveXboxApps=true&RemoveYourPhone=true&StartTilesMode=Empty&StartPinsMode=Empty&SystemScript0=powercfg.exe+%2FHIBERNATE+OFF&SystemScriptType0=Cmd&SystemScript1=Set-MpPrefence+-DisableRealtimeMonitoring+%24true%3B&SystemScriptType1=Ps1&SystemScript2=Windows+Registry+Editor+Version+5.00 [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\LocationAndSensors] "DisableWindowsLocationProvider"%3Ddword%3A00000001 "DisableLocationScripting"%3Ddword%3A00000001 "DisableLocation"%3Ddword%3A00000001 [-HKEY_CLASSES_ROOT\AllFilesystemObjects\shellex\ContextMenuHandlers\Copy+To] %40%3D"{C2FBB630-2971-11D1-A18C-00C04FD75D13}" [-HKEY_CLASSES_ROOT\AllFilesystemObjects\shellex\ContextMenuHandlers\Move+To] %40%3D"{C2FBB631-2971-11D1-A18C-00C04FD75D13}" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Taskband] "NumThumbnails"%3Ddword%3A00000000 [HKEY_CLASSES_ROOT\SystemFileAssociations\.ps1\shell\0] "MUIVerb"%3D"Powershell+ile+çalıştır" [HKEY_CLASSES_ROOT\SystemFileAssociations\.ps1\shell\0\Command] %40%3D"\"C%3A\\Windows\\System32\\WindowsPowerShell\\v1.0\\powershell.exe\"+\"-Command\"+\"if((Get-ExecutionPolicy+)+-ne+'AllSigned')+{+Set-ExecutionPolicy+-Scope+Process+Bypass+}%3B+%26+'%1'\"" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Regedit\Favorites] "DesktopBackground"%3D"Bilgisayar\\HKEY_CLASSES_ROOT\\DesktopBackground" "Directory"%3D"Bilgisayar\\HKEY_CLASSES_ROOT\\Directory" "*"%3D"Bilgisayar\\HKEY_CLASSES_ROOT\\*" "Folder"%3D"Bilgisayar\\HKEY_CLASSES_ROOT\\Folder" "HKLM_SOFTWARE"%3D"Bilgisayar\\HKEY_LOCAL_MACHINE\\SOFTWARE" "HKCU_Software"%3D"Bilgisayar\\HKEY_CURRENT_USER\\Software" "Environment"%3D"Bilgisayar\\HKEY_CURRENT_USER\\Environment" "Cursors"%3D"Bilgisayar\\HKEY_CURRENT_USER\\Control+Panel\\Cursors" "USER_Wallpapers"%3D"Bilgisayar\\HKEY_CURRENT_USER\\Software\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Wallpapers" "HKCU_Run"%3D"Bilgisayar\\HKEY_CURRENT_USER\\Software\\Microsoft\\Windows\\CurrentVersion\\Run" "HKCU_RunOnce"%3D"Bilgisayar\\HKEY_CURRENT_USER\\Software\\Microsoft\\Windows\\CurrentVersion\\RunOnce" "HKCU_Fonts"%3D"Bilgisayar\\HKEY_CURRENT_USER\\Software\\Microsoft\\Windows+NT\\CurrentVersion\\Fonts" "Cursors_DEFAULT"%3D"Bilgisayar\\HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Control+Panel\\Cursors" "HKLM_Run"%3D"Bilgisayar\\HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "HKLM_RunOnce"%3D"Bilgisayar\\HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\RunOnce" "Windows+Search"%3D"Bilgisayar\\HKEY_LOCAL_MACHINE\\SOFTWARE\\Policies\\Microsoft\\Windows\\Windows+Search" "HKLM_WOW6432NODE_Run"%3D"Bilgisayar\\HKEY_LOCAL_MACHINE\\SOFTWARE\\WOW6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "HKLM_WOW6432NODE_RunOnce"%3D"Bilgisayar\\HKEY_LOCAL_MACHINE\\SOFTWARE\\WOW6432Node\\Microsoft\\Windows\\CurrentVersion\\RunOnce" "Regedit_Favorites"%3D"Bilgisayar\\HKEY_CURRENT_USER\\Software\\Microsoft\\Windows\\CurrentVersion\\Applets\\Regedit\\Favorites" "kamera+açık-kapalı+bildirimi"%3D"Bilgisayar\\HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\OEM\\Device\\Capture" "Explorer"%3D"Bilgisayar\\HKEY_CURRENT_USER\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer" "Advanced+Explorer"%3D"Bilgisayar\\HKEY_CURRENT_USER\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Advanced" "Wallpapers"%3D"Bilgisayar\\HKEY_CURRENT_USER\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Wallpapers" "AllFilesystemObjects"%3D"Bilgisayar\\HKEY_CLASSES_ROOT\\AllFilesystemObjects" "Klasöre_kopyala+taşı+gönder+yol+olrak+kopyala"%3D"Bilgisayar\\HKEY_CLASSES_ROOT\\AllFilesystemObjects\\shellex" "MountedDevices"%3D"Bilgisayar\\HKEY_LOCAL_MACHINE\\SYSTEM\\MountedDevices" "LabConfig(bypass11)"%3D"Bilgisayar\\HKEY_LOCAL_MACHINE\\SYSTEM\\Setup\\LabConfig" "HKLM_Fonts"%3D"Bilgisayar\\HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows+NT\\CurrentVersion\\Fonts" "User+Shell+Folders"%3D"Bilgisayar\\HKEY_CURRENT_USER\\Software\\Microsoft\\Windows\\CurrentVersion\\Explorer\\User+Shell+Folders" [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\AdvertisingInfo] "DisabledByGroupPolicy"%3Ddword%3A00000001 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced] "Start_TrackProgs"%3Ddword%3A00000001 [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\TabletPC] "PreventHandwritingDataSharing"%3Ddword%3A00000000 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] "VerboseStatus"%3Ddword%3A00000001 [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows+NT\DNSClient] "DisableSmartNameResolution"%3Ddword%3A00000001 [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DataCollection] "AllowTelemetry"%3Ddword%3A00000000 "DoNotShowFeedbackNotifications"%3Ddword%3A00000001 [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Windows+Search] "AllowCortana"%3Ddword%3A00000000 "AllowCortanaAboveLock"%3Ddword%3A00000000 "AllowCloudSearch"%3Ddword%3A00000000 "AllowSearchToUseLocation"%3Ddword%3A00000000 "DisableWebSearch"%3Ddword%3A00000001 "ConnectedSearchUseWeb"%3Ddword%3A00000000 "ConnectedSearchUseWebOverMeteredConnections"%3Ddword%3A00000000 [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\OneDrive] "DisableFileSyncNGSC"%3Ddword%3A00000001 "DisableFileSync"%3Ddword%3A00000001 "DisableMeteredNetworkFileSync"%3Ddword%3A00000001 "DisableLibrariesDefaultSaveToOneDrive"%3Ddword%3A00000001 [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Windows+Error+Reporting] "Disabled"%3Ddword%3A00000001 [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\GameDVR] "AllowGameDVR"%3Ddword%3A00000000 &SystemScriptType2=Reg&FirstLogonScript2=Windows+Registry+Editor+Version+5.00 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Remote+Assistance] "fAllowToGetHelp"%3Ddword%3A00000000 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session+Manager] "BootExecute"%3Dhex(7)%3A61%2C00%2C75%2C00%2C74%2C00%2C6f%2C00%2C63%2C00%2C68%2C00%2C65%2C00%2C63%2C00%2C6b%2C00%2C20%2C\ ++00%2C61%2C00%2C75%2C00%2C74%2C00%2C6f%2C00%2C63%2C00%2C68%2C00%2C6b%2C00%2C20%2C00%2C2f%2C00%2C6b%2C00%2C3a%2C00%2C43%2C00%2C\ ++20%2C00%2C2f%2C00%2C6b%2C00%2C3a%2C00%2C44%2C00%2C20%2C00%2C2a%2C00%2C00%2C00%2C00%2C00 [HKEY_CURRENT_USER\Software\Classes\Local+Settings\Software\Microsoft\Windows\Shell\Bags\AllFolders\Shell] "Logo"%3D"d%3A\\somefile.jpg" [HKEY_CLASSES_ROOT\Directory\shell\EmptyFolder] "Icon"%3D"shell32.dll%2C-16715" "MUIVerb"%3D"Burdakileri+temizle" "Position"%3D"bottom" "NeverDefault"%3D"" [HKEY_CLASSES_ROOT\Directory\shell\EmptyFolder\Command] %40%3D"cmd+%2Fc+\"cd+%2Fd+%1+%26%26+del+%2Fs+%2Ff+%2Fq+*.*\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Google] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Google\Chrome] "DefaultGeolocationSetting"%3Ddword%3A00000002 "DefaultKeygenSetting"%3Ddword%3A00000002 "ShowCastIconInToolbar"%3Ddword%3A00000001 "HomepageLocation"%3D"google.com" "HomepageIsNewTabPage"%3Ddword%3A00000001 "NewTabPageLocation"%3D"google.com" "PasswordLeakDetectionEnabled"%3Ddword%3A00000000 "SafeBrowsingProtectionLevel"%3Ddword%3A00000000 "SafeBrowsingDeepScanningEnabled"%3Ddword%3A00000000 "SafeBrowsingExtendedReportingEnabled"%3Ddword%3A00000000 "RestoreOnStartup"%3Ddword%3A00000004 "AbusiveExperienceInterventionEnforce"%3Ddword%3A00000000 "TabFreezingEnabled"%3Ddword%3A00000000 "WebRtcEventLogCollectionAllowed"%3Ddword%3A00000000 "DownloadRestrictions"%3Ddword%3A00000000 "RemoteDebuggingAllowed"%3Ddword%3A00000000 "AllowOutdatedPlugins"%3Ddword%3A00000001 "UserFeedbackAllowed"%3Ddword%3A00000000 "SafeBrowsingExtendedReportingOptInAllowed"%3Ddword%3A00000000 "IntensiveWakeUpThrottlingEnabled"%3Ddword%3A00000000 "DNSInterceptionChecksEnabled"%3Ddword%3A00000000 "AlternateErrorPagesEnabled"%3Ddword%3A00000000 "ChromeCleanupEnabled"%3Ddword%3A00000000 "ComponentUpdatesEnabled"%3Ddword%3A00000000 "AccessibilityImageLabelsEnabled"%3Ddword%3A00000001 "EnableMediaRouter"%3Ddword%3A00000001 "CloudPrintProxyEnabled"%3Ddword%3A00000000 "MediaRecommendationsEnabled"%3Ddword%3A00000000 "DnsPrefetchingEnabled"%3Ddword%3A00000000 "NetworkPredictionOptions"%3Ddword%3A00000002 "SpellCheckServiceEnabled"%3Ddword%3A00000000 "RendererCodeIntegrityEnabled"%3Ddword%3A00000000 "MetricsReportingEnabled"%3Ddword%3A00000000 "SafeBrowsingForTrustedSourcesEnabled"%3Ddword%3A00000000 "SafeBrowsingEnabled"%3Ddword%3A00000000 "SearchSuggestEnabled"%3Ddword%3A00000001 "CommandLineFlagSecurityWarningsEnabled"%3Ddword%3A00000000 "AdvancedProtectionDeepScanningEnabled"%3Ddword%3A00000000 "PromotionalTabsEnabled"%3Ddword%3A00000000 "WelcomePageOnOSUpgradeEnabled"%3Ddword%3A00000000 "SitePerProcess"%3Ddword%3A00000000 "SpellcheckEnabled"%3Ddword%3A00000000 "CloudPrintSubmitEnabled"%3Ddword%3A00000000 "InsecureFormsWarningsEnabled"%3Ddword%3A00000001 "WindowOcclusionEnabled"%3Ddword%3A00000001 "WPADQuickCheckEnabled"%3Ddword%3A00000001 "ForceGoogleSafeSearch"%3Ddword%3A00000001 "SuppressUnsupportedOSWarning"%3Ddword%3A00000000 "SuppressChromeFrameTurndownPrompt"%3Ddword%3A00000000 "NTPCardsVisible"%3Ddword%3A00000000 "ThirdPartyBlockingEnabled"%3Ddword%3A00000000 "DisableSafeBrowsingProceedAnyway"%3Ddword%3A00000000 "TotalMemoryLimitMb"%3Ddword%3A00002048 "HighEfficiencyModeEnabled"%3Ddword%3A00000000 "PrivacySandboxAdMeasurementEnabled"%3Ddword%3A00000000 "PrivacySandboxAdTopicsEnabled"%3Ddword%3A00000000 "PrivacySandboxPromptEnabled"%3Ddword%3A00000000 "PrivacySandboxSiteEnabledAdsEnabled"%3Ddword%3A00000000 "SafeBrowsingSurveysEnabled"%3Ddword%3A00000000 "PasswordProtectionWarningTrigger"%3Ddword%3A00000000 "AdvancedProtectionAllowed"%3Ddword%3A00000000 "AlwaysOpenPdfExternally"%3Ddword%3A00000001 "BatterySaverModeAvailability"%3Ddword%3A00000000 "BrowserNetworkTimeQueriesEnabled"%3Ddword%3A00000000 "BuiltInDnsClientEnabled"%3Ddword%3A00000001 "ChromeCleanupReportingEnabled"%3Ddword%3A00000000 "DomainReliabilityAllowed"%3Ddword%3A00000000 "DownloadBubbleEnabled"%3Ddword%3A00000001 "GoogleSearchSidePanelEnabled"%3Ddword%3A00000000 "HideWebStoreIcon"%3Ddword%3A00000001 "HttpsUpgradesEnabled"%3Ddword%3A00000000 "NetworkServiceSandboxEnabled"%3Ddword%3A00000000 "ShoppingListEnabled"%3Ddword%3A00000000 "AdditionalDnsQueryTypesEnabled"%3Ddword%3A00000000 "AudioSandboxEnabled"%3Ddword%3A00000000 "CORSNonWildcardRequestHeadersSupport"%3Ddword%3A00000000 "TabOrganizerSettings"%3Ddword%3A00000002 "CreateThemesSettings"%3Ddword%3A00000002 "HelpMeWriteSettings+"%3Ddword%3A00000002 [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Google\Chrome\3rdparty] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Google\Chrome\3rdparty\extensions] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Google\Chrome\3rdparty\extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Google\Chrome\3rdparty\extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm\policy] "adminSettings"%3D"{\"timeStamp\"%3A1675698823409%2C\"version\"%3A\"1.46.0\"%2C\"userSettings\"%3A{\"advancedUserEnabled\"%3Atrue%2C\"cloudStorageEnabled\"%3Atrue%2C\"uiAccentCustom0\"%3A\"%2356a22b\"%2C\"externalLists\"%3A\"https%3A%2F%2Ffilters.adtidy.org%2Fwindows%2Ffilters%2F18.txt\\nhttps%3A%2F%2Fgitlab.com%2FSorrow-San%2F9anime-adblock-filters%2Fraw%2Fmaster%2F9Anime+filter+list\\nhttps%3A%2F%2Fgitlab.com%2FSorrow-San%2F9anime-adblock-filters%2Fraw%2Fmaster_with_banners%2F9Anime+filter+list\\nhttps%3A%2F%2Fhg.adblockplus.org%2Ffacebookfilters%2Fraw-file%2Fdefault%2Ffb_annoyances_newsfeed.txt\\nhttps%3A%2F%2Fraw.githubusercontent.com%2FDandelionSprout%2Fadfilt%2Fmaster%2FI+Don't+Want+to+Download+Your+Browser.txt\\nhttps%3A%2F%2Fraw.githubusercontent.com%2FDandelionSprout%2Fadfilt%2Fmaster%2FImgurPureImageryExperience.txt\\nhttps%3A%2F%2Fraw.githubusercontent.com%2FDandelionSprout%2Fadfilt%2Fmaster%2FKnowYourMemePureBrowsingExperience.txt\\nhttps%3A%2F%2Fraw.githubusercontent.com%2FDandelionSprout%2Fadfilt%2Fmaster%2FRickrollLinkIdentifier.txt\\nhttps%3A%2F%2Fraw.githubusercontent.com%2FDandelionSprout%2Fadfilt%2Fmaster%2FSensitive+lists%2FSayNoToRacismOnTwitch.txt\\nhttps%3A%2F%2Fraw.githubusercontent.com%2FDandelionSprout%2Fadfilt%2Fmaster%2FSensitive+lists%2FTwitter+De-Politificator.txt\\nhttps%3A%2F%2Fraw.githubusercontent.com%2FDandelionSprout%2Fadfilt%2Fmaster%2FTwitchEvenMorePureViewingExperience.txt\\nhttps%3A%2F%2Fraw.githubusercontent.com%2FDandelionSprout%2Fadfilt%2Fmaster%2FTwitchPureViewingExperience.txt\\nhttps%3A%2F%2Fraw.githubusercontent.com%2FDandelionSprout%2Fadfilt%2Fmaster%2FTwitterPureReadingExperience.txt\\nhttps%3A%2F%2Fraw.githubusercontent.com%2FDandelionSprout%2Fadfilt%2Fmaster%2FWebsiteStretcher4K.txt\\nhttps%3A%2F%2Fraw.githubusercontent.com%2FDandelionSprout%2Fadfilt%2Fmaster%2FWikiaPureBrowsingExperience.txt\\nhttps%3A%2F%2Fraw.githubusercontent.com%2FManu1400%2Fi-don-t-care-about-newsletters%2Fmaster%2Fadp.txt\\nhttps%3A%2F%2Fraw.githubusercontent.com%2FMassMove%2FAttackVectors%2Fmaster%2FLocalJournals%2Ffake-local-journals-list.txt\\nhttps%3A%2F%2Fraw.githubusercontent.com%2FNebula-Mechanica%2FAnti-AutoTranslation-List%2Fmaster%2Fanti-autotranslation-list.txt\\nhttps%3A%2F%2Fraw.githubusercontent.com%2FPoorPocketsMcNewHold%2Fsteamscamsites%2Fmaster%2Fsteamscamsite.txt\\nhttps%3A%2F%2Fraw.githubusercontent.com%2FRecon%2Fromanian-media-propaganda-adblock-list%2Fmaster%2Fro-media-blocklist.txt\\nhttps%3A%2F%2Fraw.githubusercontent.com%2FRudloff%2Fadblock-imokwithcookies%2Fmaster%2Ffilters.txt\\nhttps%3A%2F%2Fraw.githubusercontent.com%2Fionuttbara%2Fmelody_windows%2Fmain%2Fublockfilter.txt\\nhttps%3A%2F%2Fraw.githubusercontent.com%2Fcaffeinewriter%2FDontPushMe%2Fmaster%2Ffilterlist.txt\\nhttps%3A%2F%2Fraw.githubusercontent.com%2Fdeletescape%2Fnoads%2Fmaster%2Flists%2Funbreak.txt\\nhttps%3A%2F%2Fraw.githubusercontent.com%2Fryanbr%2Ffanboy-adblock%2Fmaster%2Ffake-news.txt\\nhttps%3A%2F%2Fraw.githubusercontent.com%2Ftroysjanda%2FMyBlockLists%2Fmaster%2Fyahoocomplete.txt\\nhttps%3A%2F%2Fwww.i-dont-care-about-cookies.eu%2Fabp%2F\"%2C\"ignoreGenericCosmeticFilters\"%3Atrue%2C\"importedLists\"%3A[\"https%3A%2F%2Ffilters.adtidy.org%2Fwindows%2Ffilters%2F18.txt\"%2C\"https%3A%2F%2Fgitlab.com%2FSorrow-San%2F9anime-adblock-filters%2Fraw%2Fmaster%2F9Anime+filter+list\"%2C\"https%3A%2F%2Fgitlab.com%2FSorrow-San%2F9anime-adblock-filters%2Fraw%2Fmaster_with_banners%2F9Anime+filter+list\"%2C\"https%3A%2F%2Fhg.adblockplus.org%2Ffacebookfilters%2Fraw-file%2Fdefault%2Ffb_annoyances_newsfeed.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2FDandelionSprout%2Fadfilt%2Fmaster%2FI+Don't+Want+to+Download+Your+Browser.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2FDandelionSprout%2Fadfilt%2Fmaster%2FImgurPureImageryExperience.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2FDandelionSprout%2Fadfilt%2Fmaster%2FKnowYourMemePureBrowsingExperience.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2FDandelionSprout%2Fadfilt%2Fmaster%2FSensitive+lists%2FSayNoToRacismOnTwitch.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2FDandelionSprout%2Fadfilt%2Fmaster%2FSensitive+lists%2FTwitter+De-Politificator.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2FDandelionSprout%2Fadfilt%2Fmaster%2FTwitchEvenMorePureViewingExperience.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2FDandelionSprout%2Fadfilt%2Fmaster%2FTwitchPureViewingExperience.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2FDandelionSprout%2Fadfilt%2Fmaster%2FTwitterPureReadingExperience.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2FDandelionSprout%2Fadfilt%2Fmaster%2FWebsiteStretcher4K.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2FDandelionSprout%2Fadfilt%2Fmaster%2FWikiaPureBrowsingExperience.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2FManu1400%2Fi-don-t-care-about-newsletters%2Fmaster%2Fadp.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2FMassMove%2FAttackVectors%2Fmaster%2FLocalJournals%2Ffake-local-journals-list.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2FNebula-Mechanica%2FAnti-AutoTranslation-List%2Fmaster%2Fanti-autotranslation-list.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2FPoorPocketsMcNewHold%2Fsteamscamsites%2Fmaster%2Fsteamscamsite.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2FRecon%2Fromanian-media-propaganda-adblock-list%2Fmaster%2Fro-media-blocklist.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2FRudloff%2Fadblock-imokwithcookies%2Fmaster%2Ffilters.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2Fionuttbara%2Fmelody_windows%2Fmain%2Fublockfilter.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2Fcaffeinewriter%2FDontPushMe%2Fmaster%2Ffilterlist.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2Fdeletescape%2Fnoads%2Fmaster%2Flists%2Funbreak.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2FeEIi0A5L%2Fadblock_filter%2Fmaster%2Fkujira_filter.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2Fryanbr%2Ffanboy-adblock%2Fmaster%2Ffake-news.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2Ftroysjanda%2FMyBlockLists%2Fmaster%2Fyahoocomplete.txt\"%2C\"https%3A%2F%2Fwww.i-dont-care-about-cookies.eu%2Fabp%2F\"]%2C\"popupPanelSections\"%3A63}%2C\"selectedFilterLists\"%3A[\"user-filters\"%2C\"ublock-filters\"%2C\"ublock-badware\"%2C\"ublock-privacy\"%2C\"ublock-quick-fixes\"%2C\"ublock-abuse\"%2C\"ublock-unbreak\"%2C\"adguard-generic\"%2C\"adguard-mobile\"%2C\"easylist\"%2C\"adguard-spyware-url\"%2C\"easyprivacy\"%2C\"urlhaus-1\"%2C\"plowe-0\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2FDandelionSprout%2Fadfilt%2Fmaster%2FTwitchEvenMorePureViewingExperience.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2FDandelionSprout%2Fadfilt%2Fmaster%2FKnowYourMemePureBrowsingExperience.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2FDandelionSprout%2Fadfilt%2Fmaster%2FWikiaPureBrowsingExperience.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2FDandelionSprout%2Fadfilt%2Fmaster%2FImgurPureImageryExperience.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2FDandelionSprout%2Fadfilt%2Fmaster%2FTwitterPureReadingExperience.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2FDandelionSprout%2Fadfilt%2Fmaster%2FSensitive+lists%2FSayNoToRacismOnTwitch.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2FDandelionSprout%2Fadfilt%2Fmaster%2FTwitchPureViewingExperience.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2FDandelionSprout%2Fadfilt%2Fmaster%2FI+Don't+Want+to+Download+Your+Browser.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2FDandelionSprout%2Fadfilt%2Fmaster%2FSensitive+lists%2FTwitter+De-Politificator.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2FDandelionSprout%2Fadfilt%2Fmaster%2FWebsiteStretcher4K.txt\"%2C\"https%3A%2F%2Fgitlab.com%2FSorrow-San%2F9anime-adblock-filters%2Fraw%2Fmaster_with_banners%2F9Anime+filter+list\"%2C\"https%3A%2F%2Fgitlab.com%2FSorrow-San%2F9anime-adblock-filters%2Fraw%2Fmaster%2F9Anime+filter+list\"%2C\"https%3A%2F%2Ffilters.adtidy.org%2Fwindows%2Ffilters%2F18.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2FNebula-Mechanica%2FAnti-AutoTranslation-List%2Fmaster%2Fanti-autotranslation-list.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2Fcaffeinewriter%2FDontPushMe%2Fmaster%2Ffilterlist.txt\"%2C\"https%3A%2F%2Fhg.adblockplus.org%2Ffacebookfilters%2Fraw-file%2Fdefault%2Ffb_annoyances_newsfeed.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2FMassMove%2FAttackVectors%2Fmaster%2FLocalJournals%2Ffake-local-journals-list.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2Fryanbr%2Ffanboy-adblock%2Fmaster%2Ffake-news.txt\"%2C\"https%3A%2F%2Fwww.i-dont-care-about-cookies.eu%2Fabp%2F\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2FManu1400%2Fi-don-t-care-about-newsletters%2Fmaster%2Fadp.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2FRudloff%2Fadblock-imokwithcookies%2Fmaster%2Ffilters.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2Fionuttbara%2Fmelody_windows%2Fmain%2Fublockfilter.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2Fdeletescape%2Fnoads%2Fmaster%2Flists%2Funbreak.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2FRecon%2Fromanian-media-propaganda-adblock-list%2Fmaster%2Fro-media-blocklist.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2FPoorPocketsMcNewHold%2Fsteamscamsites%2Fmaster%2Fsteamscamsite.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2Ftroysjanda%2FMyBlockLists%2Fmaster%2Fyahoocomplete.txt\"%2C\"https%3A%2F%2Fraw.githubusercontent.com%2FeEIi0A5L%2Fadblock_filter%2Fmaster%2Fkujira_filter.txt\"]%2C\"hiddenSettings\"%3A{}%2C\"whitelist\"%3A[\"about-scheme\"%2C\"chrome-extension-scheme\"%2C\"chrome-scheme\"%2C\"edge-scheme\"%2C\"moz-extension-scheme\"%2C\"opera-scheme\"%2C\"vivaldi-scheme\"%2C\"wyciwyg-scheme\"]%2C\"dynamicFilteringString\"%3A\"behind-the-scene+*+*+noop\\nbehind-the-scene+*+inline-script+noop\\nbehind-the-scene+*+1p-script+noop\\nbehind-the-scene+*+3p-script+noop\\nbehind-the-scene+*+3p-frame+noop\\nbehind-the-scene+*+image+noop\\nbehind-the-scene+*+3p+noop\"%2C\"urlFilteringString\"%3A\"\"%2C\"hostnameSwitchesString\"%3A\"no-large-media%3A+behind-the-scene+false\\nno-csp-reports%3A+*+true\"}" [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Google\Chrome\ClearBrowsingDataOnExitList] "1"%3D"cached_images_and_files" [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Google\Chrome\ExtensionInstallForcelist] "1"%3D"cjpalhdlnbpafiamejdnhcphjbkeiagm" [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Google\Chrome\RestoreOnStartupURLs] "1"%3D"duckduckgo.com" [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Google\Update] "InstallDefault"%3Ddword%3A00000004 "UpdateDefault"%3Ddword%3A00000003 "ProxyMode"%3D"direct" "CloudPolicyOverridesPlatformPolicy"%3Ddword%3A00000000 "AutoUpdateCheckPeriodMinutes"%3Ddword%3A00005140 "Install{4CCED17F-7852-4AFC-9E9E-C89D8795BDD2}"%3Ddword%3A00000000 "Install{ADDE8406-A0F3-4AC2-8878-ADC0BD37BD86}"%3Ddword%3A00000000 "TargetChannel{8A69D345-D564-463C-AFF1-A69D9E530F96}"%3D"extended" [HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Policies\Microsoft\Microsoft+Antimalware] "ServiceKeepAlive"%3Ddword%3A00000000 "AllowFastServiceStartup"%3Ddword%3A00000000 "DisableRoutinelyTakingAction"%3Ddword%3A00000001 "DisableAntiSpyware"%3Ddword%3A00000001 "DisableAntiVirus"%3Ddword%3A00000001 [HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Policies\Microsoft\Microsoft+Antimalware\SpyNet] "SpyNetReporting"%3Ddword%3A00000000 "LocalSettingOverrideSpyNetReporting"%3Ddword%3A00000000 [HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Policies\Microsoft\MRT] "DontOfferThroughWUAU"%3Ddword%3A00000001 [HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Policies\Microsoft\Windows+Defender] "DisableAntiVirus"%3Ddword%3A00000001 "DisableAntiSpyware"%3Ddword%3A00000001 "DisableRoutinelyTakingAction"%3Ddword%3A00000001 "PUAProtection"%3Ddword%3A00000000 "ServiceKeepAlive"%3Ddword%3A00000000 "AllowFastServiceStartup"%3Ddword%3A00000000 "DisableLocalAdminMerge"%3Ddword%3A00000001 "RandomizeScheduleTaskTimes"%3Ddword%3A00000000 "DisableRealtimeMonitoring"%3Ddword%3A00000001 [HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Policies\Microsoft\Windows+Defender\Exclusions] "DisableAutoExclusions"%3Ddword%3A00000001 [HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Policies\Microsoft\Windows+Defender\MpEngine] "MpEnablePus"%3Ddword%3A00000000 "MpCloudBlockLevel"%3Ddword%3A00000000 "MpBafsExtendedTimeout"%3Ddword%3A00000000 "EnableFileHashComputation"%3Ddword%3A00000000 [HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Policies\Microsoft\Windows+Defender\NIS] [HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Policies\Microsoft\Windows+Defender\NIS\Consumers] [HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Policies\Microsoft\Windows+Defender\NIS\Consumers\IPS] "ThrottleDetectionEventsRate"%3Ddword%3A00000000 "DisableSignatureRetirement"%3Ddword%3A00000001 "DisableProtocolRecognition"%3Ddword%3A00000001 [HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Policies\Microsoft\Windows+Defender\Policy+Manager] "DisableScanningNetworkFiles"%3Ddword%3A00000001 [HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Policies\Microsoft\Windows+Defender\Real-Time+Protection] "LocalSettingOverrideDisableOnAccessProtection"%3Ddword%3A00000000 "LocalSettingOverrideRealtimeScanDirection"%3Ddword%3A00000000 "LocalSettingOverrideDisableIOAVProtection"%3Ddword%3A00000000 "LocalSettingOverrideDisableBehaviorMonitoring"%3Ddword%3A00000000 "LocalSettingOverrideDisableIntrusionPreventionSystem"%3Ddword%3A00000000 "LocalSettingOverrideDisableRealtimeMonitoring"%3Ddword%3A00000000 "DisableIOAVProtection"%3Ddword%3A00000001 "DisableRealtimeMonitoring"%3Ddword%3A00000001 "DisableBehaviorMonitoring"%3Ddword%3A00000001 "DisableOnAccessProtection"%3Ddword%3A00000001 "DisableScanOnRealtimeEnable"%3Ddword%3A00000001 "RealtimeScanDirection"%3Ddword%3A00000002 "DisableInformationProtectionControl"%3Ddword%3A00000001 "DisableIntrusionPreventionSystem"%3Ddword%3A00000001 "DisableRawWriteNotification"%3Ddword%3A00000001 "IOAVMaxSize"%3Ddword%3A00000512 "DisableScriptScanning"%3Ddword%3A00000001 [HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Policies\Microsoft\Windows+Defender\Reporting] "DisableEnhancedNotifications"%3Ddword%3A00000001 "DisableGenericRePorts"%3Ddword%3A00000001 "WppTracingLevel"%3Ddword%3A00000000 "WppTracingComponents"%3Ddword%3A00000000 [HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Policies\Microsoft\Windows+Defender\Scan] "LowCpuPriority"%3Ddword%3A00000001 "DisableRestorePoint"%3Ddword%3A00000001 "DisableArchiveScanning"%3Ddword%3A00000000 "DisableScanningNetworkFiles"%3Ddword%3A00000000 "DisableCatchupFullScan"%3Ddword%3A00000000 "DisableCatchupQuickScan"%3Ddword%3A00000001 "DisableEmailScanning"%3Ddword%3A00000000 "DisableHeuristics"%3Ddword%3A00000001 "DisableReparsePointScanning"%3Ddword%3A00000001 [HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Policies\Microsoft\Windows+Defender\Signature+Updates] "SignatureDisableNotification"%3Ddword%3A00000001 "RealtimeSignatureDelivery"%3Ddword%3A00000000 "ForceUpdateFromMU"%3Ddword%3A00000000 "DisableScheduledSignatureUpdateOnBattery"%3Ddword%3A00000001 "UpdateOnStartUp"%3Ddword%3A00000000 "SignatureUpdateCatchupInterval"%3Ddword%3A00000002 "DisableUpdateOnStartupWithoutEngine"%3Ddword%3A00000001 "ScheduleTime"%3Ddword%3A00001440 "DisableScanOnUpdate"%3Ddword%3A00000001 [HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Policies\Microsoft\Windows+Defender\SmartScreen] "ConfigureAppInstallControlEnabled"%3Ddword%3A00000001 "ConfigureAppInstallControl"%3D"Anywhere" [HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Policies\Microsoft\Windows+Defender\Spynet] "DisableBlockAtFirstSeen"%3Ddword%3A00000001 "LocalSettingOverrideSpynetReporting"%3Ddword%3A00000000 "SpynetReporting"%3Ddword%3A00000000 "SubmitSamplesConsent"%3Ddword%3A00000002 [HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Policies\Microsoft\Windows+Defender\UX+Configuration] "SuppressRebootNotification"%3Ddword%3A00000001 [HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Policies\Microsoft\Windows+Defender\Windows+Defender+Exploit+Guard] [HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Policies\Microsoft\Windows+Defender\Windows+Defender+Exploit+Guard\ASR] "ExploitGuard_ASR_Rules"%3Ddword%3A00000000 [HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Policies\Microsoft\Windows+Defender\Windows+Defender+Exploit+Guard\Controlled+Folder+Access] "EnableControlledFolderAccess"%3Ddword%3A00000000 [HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Policies\Microsoft\Windows+Defender\Windows+Defender+Exploit+Guard\Network+Protection] [HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Policies\Microsoft\Windows+Defender+Security+Center] [HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Policies\Microsoft\Windows+Defender+Security+Center\Account+protection] "UILockdown"%3Ddword%3A00000001 [HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Policies\Microsoft\Windows+Defender+Security+Center\App+and+Browser+protection] "DisallowExploitProtectionOverride"%3Ddword%3A00000001 "UILockdown"%3Ddword%3A00000001 [HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Policies\Microsoft\Windows+Defender+Security+Center\Device+performance+and+health] "UILockdown"%3Ddword%3A00000001 [HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Policies\Microsoft\Windows+Defender+Security+Center\Device+security] "DisableTpmFirmwareUpdateWarning"%3Ddword%3A00000001 "UILockdown"%3Ddword%3A00000001 "HideSecureBoot"%3Ddword%3A00000001 [HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Policies\Microsoft\Windows+Defender+Security+Center\Family+options] "UILockdown"%3Ddword%3A00000001 [HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Policies\Microsoft\Windows+Defender+Security+Center\Notifications] "DisableEnhancedNotifications"%3Ddword%3A00000001 "DisableNotifications"%3Ddword%3A00000001 [HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Policies\Microsoft\Windows+Defender+Security+Center\Systray] "HideSystray"%3Ddword%3A00000001 [HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Policies\Microsoft\Windows+Defender+Security+Center\Virus+and+threat+protection] "HideRansomwareRecovery"%3Ddword%3A00000001&FirstLogonScriptType2=Reg&UserOnceScript2=Windows+Registry+Editor+Version+5.00 [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Desktop\NameSpace\DelegateFolders\{F5FB2C77-0E2F-4A16-A381-3E560C68BC83}] [-HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Desktop\NameSpace\DelegateFolders\{F5FB2C77-0E2F-4A16-A381-3E560C68BC83}] [HKEY_CURRENT_USER\Software\Policies\Microsoft\Edge] "HubsSidebarEnabled"%3Ddword%3A00000000 "NetworkPredictionOptions"%3Ddword%3A00000000 "DefaultGeolocationSetting"%3Ddword%3A00000002 "SyncDisabled"%3Ddword%3A00000001 [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\MicrosoftEdge\Main] "AllowPrelaunch"%3Ddword%3A00000000 [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\MicrosoftEdge\TabPreloader] "AllowTabPreloading"%3Ddword%3A00000000 [HKEY_CURRENT_USER\Policies\Microsoft\Windows\CloudContent] "DisableTailoredExperiencesWithDiagnosticData"%3Ddword%3A00000001 [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CloudContent] "DisableCloudOptimizedContent"%3Ddword%3A00000001 "DisableConsumerAccountStateContent"%3Ddword%3A00000001 "DisableWindowsConsumerFeatures"%3Ddword%3A00000001 "DisableTailoredExperiencesWithDiagnosticData"%3Ddword%3A00000001 [HKEY_CLASSES_ROOT\DesktopBackground\Shell\RestartExplorer] "MUIVerb"%3D"Explorer+Yenile" "Icon"%3D"shell32.dll%2C238" "Position"%3D"bottom" [HKEY_CLASSES_ROOT\DesktopBackground\Shell\RestartExplorer\Command] %40%3D"mshta+vbscript%3Acreateobject(\"shell.application\").shellexecute(\"tskill.exe\"%2C\"explorer\"%2C\"\"%2C\"open\"%2C0)(close)" [HKEY_CLASSES_ROOT\SystemFileAssociations\.exe\shell\FirewallRules] "MUIVerb"%3D"Güvenlik+Duvarı+Kuralları" "Icon"%3D"FirewallControlPanel.dll%2C0" "SubCommands"%3D"" [HKEY_CLASSES_ROOT\SystemFileAssociations\.exe\shell\FirewallRules\Shell] [HKEY_CLASSES_ROOT\SystemFileAssociations\.exe\shell\FirewallRules\Shell\Item0] "MUIVerb"%3D"Girişe+İzin+Verme" "Icon"%3D"imageres.dll%2C-105" [HKEY_CLASSES_ROOT\SystemFileAssociations\.exe\shell\FirewallRules\Shell\Item0\Command] %40%3D"mshta+vbscript%3Acreateobject(\"shell.application\").shellexecute(\"netsh.exe\"%2C\"advfirewall+firewall+add+rule+name+%3D+\"\"%1\"\"+dir+%3D+in+program+%3D+\"\"%1\"\"+action+%3D+block\"%2C\"\"%2C\"runas\"%2C0)(close)" [HKEY_CLASSES_ROOT\SystemFileAssociations\.exe\shell\FirewallRules\Shell\Item1] "MUIVerb"%3D"Çıkışa+İzin+Verme" "Icon"%3D"imageres.dll%2C-105" [HKEY_CLASSES_ROOT\SystemFileAssociations\.exe\shell\FirewallRules\Shell\Item1\Command] %40%3D"mshta+vbscript%3Acreateobject(\"shell.application\").shellexecute(\"netsh.exe\"%2C\"advfirewall+firewall+add+rule+name+%3D+\"\"%1\"\"+dir+%3D+out+program+%3D+\"\"%1\"\"+action+%3D+block\"%2C\"\"%2C\"runas\"%2C0)(close)" [HKEY_CLASSES_ROOT\SystemFileAssociations\.exe\shell\FirewallRules\Shell\Item2] "MUIVerb"%3D"Girişe+İzin+Ver" "Icon"%3D"imageres.dll%2C-106" [HKEY_CLASSES_ROOT\SystemFileAssociations\.exe\shell\FirewallRules\Shell\Item2\Command] %40%3D"mshta+vbscript%3Acreateobject(\"shell.application\").shellexecute(\"netsh.exe\"%2C\"advfirewall+firewall+delete+rule+name+%3D+\"\"%1\"\"+dir+%3D+in+program+%3D+\"\"%1\"\"\"%2C\"\"%2C\"runas\"%2C0)(close)" [HKEY_CLASSES_ROOT\SystemFileAssociations\.exe\shell\FirewallRules\Shell\Item3] "MUIVerb"%3D"Çıkışa+İzin+Ver" "Icon"%3D"imageres.dll%2C-106" [HKEY_CLASSES_ROOT\SystemFileAssociations\.exe\shell\FirewallRules\Shell\Item3\Command] %40%3D"mshta+vbscript%3Acreateobject(\"shell.application\").shellexecute(\"netsh.exe\"%2C\"advfirewall+firewall+delete+rule+name+%3D+\"\"%1\"\"+dir+%3D+out+program+%3D+\"\"%1\"\"\"%2C\"\"%2C\"runas\"%2C0)(close)" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ReserveManager] "ShippedWithReserves"%3Ddword%3A00000000 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\NamingTemplates] "CopyNameTemplate"%3D"%s" [HKEY_CLASSES_ROOT\.ini] [HKEY_CLASSES_ROOT\.ini\shell] %40%3D"open" [HKEY_CLASSES_ROOT\.ini\shell\Open] "MultiSelectModel"%3D- "ProgrammaticAccessOnly"%3D- [HKEY_CLASSES_ROOT\.ini\shell\Open\command] %40%3Dhex(2)%3A6e%2C00%2C6f%2C00%2C74%2C00%2C65%2C00%2C70%2C00%2C61%2C00%2C64%2C00%2C2e%2C00%2C65%2C00%2C78%2C00%2C65%2C00%2C20%2C\ ++00%2C22%2C00%2C25%2C00%2C31%2C00%2C22%2C00%2C00%2C00 "DelegateExecute"%3D- [HKEY_CLASSES_ROOT\batfile\shell\setdesktopwallpaper] "MUIVerb"%3D"Trustedinstaller+yetkisiyle+çalıştır" "HasLUAShield"%3D"" "Icon"%3D"powershell.exe%2C0" [HKEY_CLASSES_ROOT\batfile\shell\setdesktopwallpaper\command] %40%3D"C%3A\\Windows\\System32\\WindowsPowerShell\\v1.0\\powershell.exe+-win+1+-nop+-c+iex((10..40|%%{(gp+'Registry%3A%3AHKCR\\RunAsTI'+%24_+-ea+0).%24_})-join[char]10)%3B+%23+--%%+\"%L\"" %3B+RunAsTI+on+.cmd [HKEY_CLASSES_ROOT\cmdfile\shell\setdesktopwallpaper] "MUIVerb"%3D"Trustedinstaller+yetkisiyle+çalıştır" "HasLUAShield"%3D"" "Icon"%3D"powershell.exe%2C0" [HKEY_CLASSES_ROOT\cmdfile\shell\setdesktopwallpaper\command] %40%3D"C%3A\\Windows\\System32\\WindowsPowerShell\\v1.0\\powershell.exe+-win+1+-nop+-c+iex((10..40|%%{(gp+'Registry%3A%3AHKCR\\RunAsTI'+%24_+-ea+0).%24_})-join[char]10)%3B+%23+--%%+\"%L\"" %3B+RunAsTI+on+.exe [HKEY_CLASSES_ROOT\exefile\shell\setdesktopwallpaper] "MUIVerb"%3D"Trustedinstaller+yetkisiyle+çalıştır" "HasLUAShield"%3D"" "Icon"%3D"powershell.exe%2C0" [HKEY_CLASSES_ROOT\exefile\shell\setdesktopwallpaper\command] %40%3D"C%3A\\Windows\\System32\\WindowsPowerShell\\v1.0\\powershell.exe+-win+1+-nop+-c+iex((10..40|%%{(gp+'Registry%3A%3AHKCR\\RunAsTI'+%24_+-ea+0).%24_})-join[char]10)%3B+%23+--%%+\"%L\"" %3B+RunAsTI+on+.msc [HKEY_CLASSES_ROOT\mscfile\shell\setdesktopwallpaper] "MUIVerb"%3D"Trustedinstaller+yetkisiyle+çalıştır" "HasLUAShield"%3D"" "Icon"%3D"powershell.exe%2C0" [HKEY_CLASSES_ROOT\mscfile\shell\setdesktopwallpaper\command] %40%3D"C%3A\\Windows\\System32\\WindowsPowerShell\\v1.0\\powershell.exe+-win+1+-nop+-c+iex((10..40|%%{(gp+'Registry%3A%3AHKCR\\RunAsTI'+%24_+-ea+0).%24_})-join[char]10)%3B+%23+--%%+\"%L\"" %3B+RunAsTI+on+.ps1 [HKEY_CLASSES_ROOT\Microsoft.PowerShellScript.1\shell\setdesktopwallpaper] "MUIVerb"%3D"Trustedinstaller+yetkisiyle+çalıştır" "HasLUAShield"%3D"" "Icon"%3D"powershell.exe%2C0" [HKEY_CLASSES_ROOT\Microsoft.PowerShellScript.1\shell\setdesktopwallpaper\command] %40%3D"C%3A\\Windows\\System32\\WindowsPowerShell\\v1.0\\powershell.exe+-win+1+-nop+-c+iex((10..40|%%{(gp+'Registry%3A%3AHKCR\\RunAsTI'+%24_+-ea+0).%24_})-join[char]10)%3B+%23+--%%+powershell+-nop+-c+iex((gc+-lit+'%L')-join[char]10)" %3B+RunAsTI+on+.reg [HKEY_CLASSES_ROOT\regfile\shell\setdesktopwallpaper] "MUIVerb"%3D"Trustedinstaller+olarak+içe+aktar" "HasLUAShield"%3D"" "Icon"%3D"powershell.exe%2C0" [HKEY_CLASSES_ROOT\regfile\shell\setdesktopwallpaper\command] %40%3D"C%3A\\Windows\\System32\\WindowsPowerShell\\v1.0\\powershell.exe+-win+1+-nop+-c+iex((10..40|%%{(gp+'Registry%3A%3AHKCR\\RunAsTI'+%24_+-ea+0).%24_})-join[char]10)%3B+%23+--%%+regedit+%2Fs+\"%L\"" %3B+RunAsTI+on+Folder [HKEY_CLASSES_ROOT\Folder\shell\setdesktopwallpaper] "MuiVerb"%3D"Trustedinstaller+olarak+aç" "HasLUAShield"%3D"" "Icon"%3D"powershell.exe%2C0" "AppliesTo"%3D"NOT+System.ParsingName%3A%3D\"%3A%3A{645FF040-5081-101B-9F08-00AA002F954E}\"" [HKEY_CLASSES_ROOT\Folder\shell\setdesktopwallpaper\command] %40%3D"C%3A\\Windows\\System32\\WindowsPowerShell\\v1.0\\powershell.exe+-win+1+-nop+-c+iex((10..40|%%{(gp+'Registry%3A%3AHKCR\\RunAsTI'+%24_+-ea+0).%24_})-join[char]10)%3B+%23+--%%+\"%L\"" %3B+RunAsTI+function [HKEY_CLASSES_ROOT\RunAsTI] "10"%3D"function+RunAsTI+(%24cmd%2C%24arg)+{+%24id%3D'RunAsTI'%3B+%24key%3D\"Registry%3A%3AHKU\\%24(((whoami+%2Fuser)-split'+')[-1])\\Volatile+Environment\"%3B+%24code%3D%40'" "11"%3D"+%24I%3D[int32]%3B+%24M%3D%24I.module.gettype(\"System.Runtime.Interop`Services.Mar`shal\")%3B+%24P%3D%24I.module.gettype(\"System.Int`Ptr\")%3B+%24S%3D[string]" "12"%3D"+%24D%3D%40()%3B+%24T%3D%40()%3B+%24DM%3D[AppDomain]%3A%3ACurrentDomain.\"DefineDynami`cAssembly\"(1%2C1).\"DefineDynami`cModule\"(1)%3B+%24Z%3D[uintptr]%3A%3Asize+" "13"%3D"+0..5|%+{%24D+%2B%3D+%24DM.\"Defin`eType\"(\"AveYo_%24_\"%2C1179913%2C[ValueType])}%3B+%24D+%2B%3D+[uintptr]%3B+4..6|%+{%24D+%2B%3D+%24D[%24_].\"MakeByR`efType\"()}" "14"%3D"+%24F%3D'kernel'%2C'advapi'%2C'advapi'%2C+(%24S%2C%24S%2C%24I%2C%24I%2C%24I%2C%24I%2C%24I%2C%24S%2C%24D[7]%2C%24D[8])%2C+([uintptr]%2C%24S%2C%24I%2C%24I%2C%24D[9])%2C([uintptr]%2C%24S%2C%24I%2C%24I%2C[byte[]]%2C%24I)" "15"%3D"+0..2|%+{%249%3D%24D[0].\"DefinePInvok`eMethod\"(('CreateProcess'%2C'RegOpenKeyEx'%2C'RegSetValueEx')[%24_]%2C%24F[%24_]%2B'32'%2C8214%2C1%2C%24S%2C%24F[%24_%2B3]%2C1%2C4)}" "16"%3D"+%24DF%3D(%24P%2C%24I%2C%24P)%2C(%24I%2C%24I%2C%24I%2C%24I%2C%24P%2C%24D[1])%2C(%24I%2C%24S%2C%24S%2C%24S%2C%24I%2C%24I%2C%24I%2C%24I%2C%24I%2C%24I%2C%24I%2C%24I%2C[int16]%2C[int16]%2C%24P%2C%24P%2C%24P%2C%24P)%2C(%24D[3]%2C%24P)%2C(%24P%2C%24P%2C%24I%2C%24I)" "17"%3D"+1..5|%+{%24k%3D%24_%3B+%24n%3D1%3B+%24DF[%24_-1]|%+{%249%3D%24D[%24k].\"Defin`eField\"('f'+%2B+%24n%2B%2B%2C+%24_%2C+6)}}%3B+0..5|%+{%24T+%2B%3D+%24D[%24_].\"Creat`eType\"()}" "18"%3D"+0..5|%+{nv+\"A%24_\"+([Activator]%3A%3ACreateInstance(%24T[%24_]))+-fo}%3B+function+F+(%241%2C%242)+{%24T[0].\"G`etMethod\"(%241).invoke(0%2C%242)}" "19"%3D"+%24TI%3D(whoami+%2Fgroups)-like'*1-16-16384*'%3B+%24As%3D0%3B+if(!%24cmd)+{%24cmd%3D'control'%3B%24arg%3D'admintools'}%3B+if+(%24cmd-eq'This+PC'){%24cmd%3D'file%3A'}" "20"%3D"+if+(!%24TI)+{'TrustedInstaller'%2C'lsass'%2C'winlogon'|%+{if+(!%24As)+{%249%3Dsc.exe+start+%24_%3B+%24As%3D%40(get-process+-name+%24_+-ea+0|%+{%24_})[0]}}" "21"%3D"+function+M+(%241%2C%242%2C%243)+{%24M.\"G`etMethod\"(%241%2C[type[]]%242).invoke(0%2C%243)}%3B+%24H%3D%40()%3B+%24Z%2C(4*%24Z%2B16)|%+{%24H+%2B%3D+M+\"AllocHG`lobal\"+%24I+%24_}" "22"%3D"+M+\"WriteInt`Ptr\"+(%24P%2C%24P)+(%24H[0]%2C%24As.Handle)%3B+%24A1.f1%3D131072%3B+%24A1.f2%3D%24Z%3B+%24A1.f3%3D%24H[0]%3B+%24A2.f1%3D1%3B+%24A2.f2%3D1%3B+%24A2.f3%3D1%3B+%24A2.f4%3D1" "23"%3D"+%24A2.f6%3D%24A1%3B+%24A3.f1%3D10*%24Z%2B32%3B+%24A4.f1%3D%24A3%3B+%24A4.f2%3D%24H[1]%3B+M+\"StructureTo`Ptr\"+(%24D[2]%2C%24P%2C[boolean])+((%24A2+-as+%24D[2])%2C%24A4.f2%2C%24false)" "24"%3D"+%24Run%3D%40(%24null%2C+\"powershell+-win+1+-nop+-c+iex+`%24env%3AR%3B+%23+%24id\"%2C+0%2C+0%2C+0%2C+0x0E080600%2C+0%2C+%24null%2C+(%24A4+-as+%24T[4])%2C+(%24A5+-as+%24T[5]))" "25"%3D"+F+'CreateProcess'+%24Run%3B+return}%3B+%24env%3AR%3D''%3B+rp+%24key+%24id+-force%3B+%24priv%3D[diagnostics.process].\"GetM`ember\"('SetPrivilege'%2C42)[0]" "26"%3D"+'SeSecurityPrivilege'%2C'SeTakeOwnershipPrivilege'%2C'SeBackupPrivilege'%2C'SeRestorePrivilege'+|%+{%24priv.Invoke(%24null%2C+%40(\"%24_\"%2C2))}" "27"%3D"+%24HKU%3D[uintptr][uint32]2147483651%3B+%24NT%3D'S-1-5-18'%3B+%24reg%3D(%24HKU%2C%24NT%2C8%2C2%2C(%24HKU+-as+%24D[9]))%3B+F+'RegOpenKeyEx'+%24reg%3B+%24LNK%3D%24reg[4]" "28"%3D"+function+L+(%241%2C%242%2C%243)+{sp+'Registry%3A%3AHKCR\\AppID\\{CDCBCFCA-3CDC-436f-A4E2-0E02075250C2}'+'RunAs'+%243+-force+-ea+0" "29"%3D"++%24b%3D[Text.Encoding]%3A%3AUnicode.GetBytes(\"\\Registry\\User\\%241\")%3B+F+'RegSetValueEx'+%40(%242%2C'SymbolicLinkValue'%2C0%2C6%2C[byte[]]%24b%2C%24b.Length)}" "30"%3D"+function+Q+{[int](gwmi+win32_process+-filter+'name%3D\"explorer.exe\"'|%3F{%24_.getownersid().sid-eq%24NT}|select+-last+1).ProcessId}" "31"%3D"+%24env%3Awt%3D'powershell'%3B+dir+\"%24env%3AProgramFiles\\WindowsApps\\Microsoft.WindowsTerminal*\\wt.exe\"+-rec|%+{%24env%3Awt%3D'\"'%2B%24_.FullName%2B'\"+\"-d+.\"'}" "32"%3D"+%2411bug%3D(%24((gwmi+Win32_OperatingSystem).BuildNumber)-eq'22000')-AND((%24cmd-eq'file%3A')-OR(test-path+-lit+%24cmd+-PathType+Container))" "33"%3D"+if+(%2411bug)+{'System.Windows.Forms'%2C'Microsoft.VisualBasic'+|%+{%249%3D[Reflection.Assembly]%3A%3ALoadWithPartialName(\"'%24_\")}}" "34"%3D"+if+(%2411bug)+{%24path%3D'^(l)'%2B%24(%24cmd+-replace+'([\\%2B\\^\\%\\~\\(\\)\\[\\]])'%2C'{%241}')%2B'{ENTER}'%3B+%24cmd%3D'control.exe'%3B+%24arg%3D'admintools'}" "35"%3D"+L+(%24key-split'\\\\')[1]+%24LNK+''%3B+%24R%3D[diagnostics.process]%3A%3Astart(%24cmd%2C%24arg)%3B+if+(%24R)+{%24R.PriorityClass%3D'High'%3B+%24R.WaitForExit()}" "36"%3D"+if+(%2411bug)+{%24w%3D0%3B+do+{if(%24w-gt40){break}%3B+sleep+-mi+250%3B%24w%2B%2B}+until+(Q)%3B+[Microsoft.VisualBasic.Interaction]%3A%3AAppActivate(%24(Q))}" "37"%3D"+if+(%2411bug)+{[Windows.Forms.SendKeys]%3A%3ASendWait(%24path)}%3B+do+{sleep+7}+while(Q)%3B+L+'.Default'+%24LNK+'Interactive+User'" "38"%3D"'%40%3B+%24V%3D''%3B'cmd'%2C'arg'%2C'id'%2C'key'|%{%24V%2B%3D\"`n`%24%24_%3D'%24(%24(gv+%24_+-val)-replace\"'\"%2C\"''\")'%3B\"}%3B+sp+%24key+%24id+%24(%24V%2C%24code)+-type+7+-force+-ea+0" "39"%3D"+start+powershell+-args+\"-win+1+-nop+-c+`n%24V+`%24env%3AR%3D(gi+`%24key+-ea+0).getvalue(`%24id)-join''%3B+iex+`%24env%3AR\"+-verb+runas" "40"%3D"}%3B+%24A%3D([environment]%3A%3Acommandline-split'-[-]%%2B+%3F'%2C2)[1]-split'\"([^\"]%2B)\"|([^+]%2B)'%2C2|%{%24_.Trim('+\"')}%3B+RunAsTI+%24A[1]+%24A[2]%3B+%23+AveYo%2C+2022.04.07" %3B [HKEY_CLASSES_ROOT\.bat\ShellNew] "NullFile"%3D"" "ItemName"%3Dhex(2)%3A40%2C00%2C25%2C00%2C53%2C00%2C79%2C00%2C73%2C00%2C74%2C00%2C65%2C00%2C6d%2C00%2C52%2C00%2C6f%2C00%2C\ ++6f%2C00%2C74%2C00%2C25%2C00%2C5c%2C00%2C53%2C00%2C79%2C00%2C73%2C00%2C74%2C00%2C65%2C00%2C6d%2C00%2C33%2C00%2C32%2C00%2C5c%2C\ ++00%2C61%2C00%2C63%2C00%2C70%2C00%2C70%2C00%2C61%2C00%2C67%2C00%2C65%2C00%2C2e%2C00%2C64%2C00%2C6c%2C00%2C6c%2C00%2C2c%2C00%2C\ ++2d%2C00%2C36%2C00%2C30%2C00%2C30%2C00%2C32%2C00%2C00%2C00 [HKEY_CLASSES_ROOT\.reg\ShellNew] "Data"%3D"Windows+Registry+Editor+Version+5.00" [HKEY_CLASSES_ROOT\.vbs\ShellNew] "NullFile"%3D"" "ItemName"%3Dhex(2)%3A40%2C00%2C25%2C00%2C53%2C00%2C79%2C00%2C73%2C00%2C74%2C00%2C65%2C00%2C6d%2C00%2C52%2C00%2C6f%2C00%2C\ ++6f%2C00%2C74%2C00%2C25%2C00%2C5c%2C00%2C53%2C00%2C79%2C00%2C73%2C00%2C74%2C00%2C65%2C00%2C6d%2C00%2C33%2C00%2C32%2C00%2C5c%2C\ ++00%2C77%2C00%2C73%2C00%2C68%2C00%2C65%2C00%2C78%2C00%2C74%2C00%2C2e%2C00%2C64%2C00%2C6c%2C00%2C6c%2C00%2C2c%2C00%2C2d%2C00%2C\ ++34%2C00%2C38%2C00%2C30%2C00%2C32%2C00%2C00%2C00&UserOnceScriptType2=Reg&WdacMode=Skip

 

Edited by alcalmc
  • Like 1
Link to comment
Share on other sites

benim ihtiyacım yok olanlar yararlı olur dediğim gibi msdn 11 24h2 indiriyorum  vakit geç olmazsa kurarım yinede teşekkürler.

masaüstü pc gayet iyi durumda fazla kurcalamadım eski laptoplarda kurup deneyeceğim

7c767dd.png

Edited by AdnanGumus
24h2
  • Like 1
Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

 Share

  • Recently Browsing   0 members

    No registered users viewing this page.

×
×
  • Create New...