Stavo scavando attraverso un vecchio back-up CD oggi e inciampato su un file ADM personalizzato che ho creato quando ero Amministrazione di un Windows Server 2003 / XP dominio Windows. Usare, copiare il seguente codice nel blocchetto per appunti, salvare il file con estensione adm sulla cartella System32 di un server di dominio. Aprire l'Editor Criteri di gruppo e aggiungere il file, quindi accedere alle "Impostazioni tecnici" per abilitare una qualsiasi delle impostazioni.
There are Machine and User settings including…
Abilitazione l'utilità EZ-GPO
Synaptics sensibilità del touchpad correzione
Disable lots of start-up applications
Disable lots of unneeded services
Controllo delle funzionalità Windows antivirus inc, messaggero, segnalazione degli errori, cd-Bruning
Media Player - disabilita azioni automatiche
impostazioni Java
impostazioni Adobe
Audacity settings
SmartBoard settings
Windows Defender settings
Internet Explorer settings
Impostazioni di Screen Saver
[xml];;;;;;;;;;;;;
CLASS MACHINE
;;;;;;;;;;;;;
CATEGORY “Technicians Settings”
 CATEGORY !!EZ_GPO
 POLICY !!BASE_CFG
 KEYNAME “SoftwarePoliciesTerraNovumEZ_GPO”
 EXPLAIN !!BASE_CFG_EXP
 PART “Power Management Settings Schema” DROPDOWNLIST REQUIRED
 VALUENAME “SettingsScheme”
 ITEMLIST
 NAME !!SettingsSchemeSimpleIndex VALUE “Simple” Default
 END ITEMLIST
 END PART
 PART “Power Management Settings Schema Major Version” NUMERIC REQUIRED
 VALUENAME “MajorVersion”
 DEFAULT 2
 MIN 1
 MAX 100
 END PART
 PART “Power Management Settings Schema Minor Version” NUMERIC REQUIRED
 VALUENAME “MinorVersion”
 DEFAULT 0
 MIN 0
 MAX 99
 END PART
 PART “Control Variable [Do Not Modify]” DROPDOWNLIST REQUIRED
 VALUENAME “Control”
 ITEMLIST
 NAME “Control Variable [Do Not Modify]” VALUE “Verify” Default
 END ITEMLIST
 END PART
 END POLICY
 POLICY !!OPTIONS
 KEYNAME “SoftwarePoliciesTerraNovumEZ_GPOOptions”
 EXPLAIN !!OPTIONS_EXP
 PART “Force Standby to Be Set on All Machines” CHECKBOX
 VALUENAME “ForceStandby”
 VALUEON NUMERIC 1 ;Force Standby flag
 VALUEOFF NUMERIC 0
 END PART
 END POLICY
 POLICY !!SETTINGS_SCHEME_SIMPLE
 KEYNAME “SoftwarePoliciesTerraNovumEZ_GPOSimple”
 EXPLAIN !!SETTINGS_SCHEME_SIMPLE_EXP
 PART “AC No User Monitor Timeout” NUMERIC REQUIRED
 VALUENAME “ACUserMonIdleTime”
 DEFAULT 10
 MIN 0
 MAX 300
 END PART
 PART “AC No User System Standby Timeout” NUMERIC REQUIRED
 VALUENAME “ACUserStandByIdleTime”
 DEFAULT 15
 MIN 0
 MAX 300
 END PART
 PART “AC No User Hibernate Timeout” NUMERIC REQUIRED
 VALUENAME “ACMachHibernateIdleTime”
 DEFAULT 30
 MIN 0
 MAX 300
 END PART
 PART “DC No User Monitor Timeout” NUMERIC REQUIRED
 VALUENAME “DCUserMonIdleTime”
 DEFAULT 2
 MIN 0
 MAX 300
 END PART
 PART “DC No User System Standby Timeout” NUMERIC REQUIRED
 VALUENAME “DCUserStandByIdleTime”
 DEFAULT 5
 MIN 0
 MAX 300
 END PART
 PART “DC No User Hibernate Timeout” NUMERIC REQUIRED
 VALUENAME “DCMachHibernateIdleTime”
 DEFAULT 10
 MIN 0
 MAX 300
 END PART
 END POLICY
 END CATEGORY ; EZ_GPO
 CATEGORY “Hardware”
 POLICY “Touchpad Sensitivity Fix”
 KEYNAME “SOFTWARESynapticsSynTPDefaults”
 VALUENAME “AutoRecalibration”
 VALUEON NUMERIC 1
 VALUEOFF NUMERIC 0
 END POLICY
 END CATEGORY
 CATEGORY “Startup”
 ;not fully managed
 POLICY “Disable Startup Programs”
 KEYNAME “SOFTWAREMicrosoftWindowsCurrentVersionRun”
 PART “D‑Link Wireless Tray” CHECKBOX
 VALUENAME “D‑Link AirPlus G”
 VALUEON DELETE
 VALUEOFF “%ProgramFiles%D‑LinkAirPlus GAirGCFG.exe”
 END PART
 PART “D‑Link Wireless Config Util” CHECKBOX
 VALUENAME “ANIWZCS2Service”
 VALUEON DELETE
 VALUEOFF “%ProgramFiles%ANIANIWZCS2 ServiceWZCSLDR2.exe”
 END PART
 PART “Installshield Updates” CHECKBOX
 VALUENAME “ISUSPM Startup”
 VALUEON DELETE
 VALUEOFF “%ProgramFiles%Common FilesInstallShieldUpdateServiceisuspm.exe ‑startup”
 END PART
 PART “Installshield Updates Scheduler” CHECKBOX
 VALUENAME “ISUSScheduler”
 VALUEON DELETE
 VALUEOFF “%ProgramFiles%Common FilesInstallShieldUpdateServiceissch.exe ‑start”
 END PART
 PART “Synchronization Manager” CHECKBOX
 VALUENAME “Synchronization Manager”
 VALUEON DELETE
 VALUEOFF “%SystemRoot%system32mobsync.exe /logon”
 END PART
 PART “Belkin Wireless Tray” CHECKBOX
 VALUENAME “wltray.exe”
 VALUEON DELETE
 VALUEOFF “%SystemRoot%System32wltray.exe”
 END PART
 PART “Logitech Software Update” CHECKBOX
 VALUENAME “LogitechSoftwareUpdate”
 VALUEON DELETE
 VALUEOFF “%ProgramFiles%LogitechVideoManifestEngine.exe”
 END PART
 PART “Logitech Camera Checker” CHECKBOX
 VALUENAME “LogitechVideoRepair”
 VALUEON DELETE
 VALUEOFF “%ProgramFiles%LogitechVideoISStart.exe”
 END PART
 PART “Logitech Camera Tray” CHECKBOX
 VALUENAME “LogitechVideoTray”
 VALUEON DELETE
 VALUEOFF “%ProgramFiles%LogitechVideoLogiTray.exe”
 END PART
 PART “Logitech Camera Utility” CHECKBOX
 VALUENAME “LVCOMSX”
 VALUEON DELETE
 VALUEOFF “%SystemRoot%LVCOMSX.exe”
 END PART
 PART “Norton Ghost” CHECKBOX
 VALUENAME “NGClient”
 VALUEON DELETE
 VALUEOFF “%ProgramFiles%SymantecGhostngctw32.exe”
 END PART
 PART “Java Update” CHECKBOX
 VALUENAME “SunJavaUpdateSched”
 VALUEON DELETE
 VALUEOFF “jusched.exe”
 END PART
 PART “Nero” CHECKBOX
 VALUENAME “NeroCheck”
 VALUEON DELETE
 VALUEOFF “%SystemRoot%NeroCheck.exe”
 END PART
 PART “Nero #2” CHECKBOX
 VALUENAME “NeroFilterCheck”
 VALUEON DELETE
 VALUEOFF “%SystemRoot%NeroCheck.exe”
 END PART
 PART “In CD” CHECKBOX
 VALUENAME “InCD”
 VALUEON DELETE
 VALUEOFF “%ProgramFiles%AheadInCDInCD.exe”
 END PART
 PART “Quicktime” CHECKBOX
 VALUENAME “QuickTime Task”
 VALUEON DELETE
 VALUEOFF “qttask.exe”
 END PART
 PART “Intel Vga Tray Icon” CHECKBOX
 VALUENAME “IgfxTray”
 VALUEON DELETE
 VALUEOFF “%SystemRoot%igfxtray.exe”
 END PART
 PART “Intel Vga Tray #1” CHECKBOX
 VALUENAME “Persistence”
 VALUEON DELETE
 VALUEOFF “%SystemRoot%igfxpers.exe”
 END PART
 PART “Intel VGA Tray #2″ CHECKBOX
 VALUENAME “igfxpers”
 VALUEON DELETE
 VALUEOFF “%SystemRoot%igfxpers.exe”
 END PART
 PART “Intel Hotkeys” CHECKBOX
 VALUENAME “HotKeysCmds”
 VALUEON DELETE
 VALUEOFF “%SystemRoot%hkcmd.exe”
 END PART
 PART “Intel HotKeys #2” CHECKBOX
 VALUENAME “igfxhkcmd”
 VALUEON DELETE
 VALUEOFF “%SystemRoot%hkcmd.exe”
 END PART
 PART “Intel Audio Studio” CHECKBOX
 VALUENAME “IntelAudioStudio”
 VALUEON DELETE
 VALUEOFF “%ProgramFiles%Intel Audio StudioIntelAudioStudio.exe TRAY”
 END PART
 PART “nVidia Control Panel” CHECKBOX
 VALUENAME “NvCplDaemon”
 VALUEON DELETE
 VALUEOFF “RUNDLL32.EXE %SystemRoot%NvCpl.dll,NvStartup”
 END PART
 PART “nVidia Media Center” CHECKBOX
 VALUENAME “NvMediaCenter”
 VALUEON DELETE
 VALUEOFF “RUNDLL32.EXE %SystemRoot%NvMcTray.dll,NvTaskbarInit”
 END PART
 PART “nVidia Wizard” CHECKBOX
 VALUENAME “nwiz”
 VALUEON DELETE
 VALUEOFF “nwiz.exe /install”
 END PART
 PART “PowerDVD Remote Control” CHECKBOX
 VALUENAME “Remote Control”
 VALUEON DELETE
 VALUEOFF “%ProgramFiles%CyberLinkPowerDVDPDVDServ.exe”
 END PART
 PART “PowerDVD Remote Control 2” CHECKBOX
 VALUENAME “RemoteControl”
 VALUEON DELETE
 VALUEOFF “%ProgramFiles%CyberLinkPowerDVDPDVDServ.exe”
 END PART
 PART “PowerDVD Language” CHECKBOX
 VALUENAME “LanguageShortcut”
 VALUEON DELETE
 VALUEOFF “%ProgramFiles%CyberLinkPowerDVDLanguageLanguage.exe”
 END PART
 PART “Realtek Input Pop-Up” CHECKBOX
 VALUENAME “High Definition Audio Property Page Shortcut”
 VALUEON DELETE
 VALUEOFF “HDAShCut.exe”
 END PART
 PART “Sounds Manager” CHECKBOX
 VALUENAME “SoundMan”
 VALUEON DELETE
 VALUEOFF “Soundman.exe”
 END PART
 PART “Realtek Audio Utility” CHECKBOX
 VALUENAME “Alcmtr”
 VALUEON DELETE
 VALUEOFF “ALCMTR.EXE”
 END PART
 PART “Realtek HD Audio Control Panel” CHECKBOX
 VALUENAME “RTHDCPL”
 VALUEON DELETE
 VALUEOFF “RTHDCPL.EXE”
 END PART
 PART “Reaktek Audio Device Detection” CHECKBOX
 VALUENAME “AlcWzrd”
 VALUEON DELETE
 VALUEOFF “ALCWZRD.EXE”
 END PART
 PART “Realtek Voice Manager” CHECKBOX
 VALUENAME “SkyTel”
 VALUEON DELETE
 VALUEOFF “SkyTel.exe”
 END PART
 PART “SoundMax Tray” CHECKBOX
 VALUENAME “SoundMaxPnP”
 VALUEON DELETE
 VALUEOFF “%ProgramFiles%Analog DevicesCoresmax4pnp.exe”
 END PART
 PART “IDT Audio Tray” CHECKBOX
 VALUENAME “SysTrayApp”
 VALUEON DELETE
 VALUEOFF “%ProgramFiles%IDTWDMsttray.exe”
 END PART
 PART “Acer Keyboard Utility” CHECKBOX
 VALUENAME “HControl”
 VALUEON DELETE
 VALUEOFF “%SystemDrive%WINDOWSATK0100HControl.exe”
 END PART
 PART “Softmodem Helper” CHECKBOX
 VALUENAME “SMSERIAL”
 VALUEON DELETE
 VALUEOFF “%SystemDrive%WINDOWSsm56hlpr.exe”
 END PART
 PART “Softmodem Utility” CHECKBOX
 VALUENAME “AGRSMMSG”
 VALUEON DELETE
 VALUEOFF “AGRSMMSG.exe”
 END PART
 PART “Synaptics Touchpad Enhancement” CHECKBOX
 VALUENAME “SynTPEnh”
 VALUEON DELETE
 VALUEOFF “%ProgramFiles%SynapticsSynTPEnh.exe”
 END PART
 PART “Synaptics Touchpad Enhancement #2” CHECKBOX
 VALUENAME “SynTPStart”
 VALUEON DELETE
 VALUEOFF “%ProgramFiles%SynapticsSynTPStart.exe”
 END PART
 PART “Alps TouchPad Tray” CHECKBOX
 VALUENAME “Apoint”
 VALUEON DELETE
 VALUEOFF “%ProgramFiles%Apoint2kApoint.exe”
 END PART
 PART “Adobe Reader Speed Launcher” CHECKBOX
 VALUENAME “Adobe Reader Speed Launcher”
 VALUEON DELETE
 VALUEOFF “%ProgramFiles%AdobeReader 8.0ReaderReader_sl.exe”
 END PART
 PART “Adobe Photo Downloader” CHECKBOX
 VALUENAME “Adobe Photo Downloader”
 VALUEON DELETE
 VALUEOFF “%ProgramFiles%AdobePhotoshop Elements 5.0apdproxy.exe”
 END PART
 PART “HP Software Update” CHECKBOX
 VALUENAME “HP Software Update”
 VALUEON DELETE
 VALUEOFF “%ProgramFiles%Hewlett-PackardHP Software UpdateHPWuSchd2.exe”
 END PART
 PART “Olympus Camera Software” CHECKBOX
 VALUENAME “OM_Monitor”
 VALUEON DELETE
 VALUEOFF “%ProgramFiles%OLYMPUSOLYMPUS MasterFirstStart.exe”
 END PART
 PART “IntelliPoint” CHECKBOX
 VALUENAME “IntelliPoint”
 VALUEON DELETE
 VALUEOFF “%ProgramFiles%Microsoft IntelliPointipoint.exe”
 END PART
 PART “Roxio Drag-to-Disc” CHECKBOX
 VALUENAME “RoxioDragToDisc”
 VALUEON DELETE
 VALUEOFF “%ProgramFiles%RoxioEasy CD Creator 6DragToDiscDrgToDsc.exe”
 END PART
 PART “Roxio Engine Utility” CHECKBOX
 VALUENAME “RoxioEngineUtility”
 VALUEON DELETE
 VALUEOFF “%ProgramFiles%Common FilesRoxio SharedSystemEngUtil.exe”
 END PART
 PART “S3 Video Driver Helper” CHECKBOX
 VALUENAME “VTTimer”
 VALUEON DELETE
 VALUEOFF “VTTimer.exe”
 END PART
 PART “S3 Video Driver Tray Icon” CHECKBOX
 VALUENAME “VTtrayp”
 VALUEON DELETE
 VALUEOFF “VTtrayp.exe”
 END PART
 PART “HP QuickLaunch Buttons Tray” CHECKBOX
 VALUENAME “QlbCtrl”
 VALUEON DELETE
 VALUEOFF “%ProgramFiles%Hewlett-PackardHP Quick Launch ButtonsQlbCtrl.exe /Start”
 END PART
 PART “PCTel Modem Utility” CHECKBOX
 VALUENAME “PCTVOICE”
 VALUEON DELETE
 VALUEOFF “pctspk.exe”
 END PART
 END POLICY
 ;not fully managed
 POLICY “System Services”
 KEYNAME “SYSTEMCurrentControlSetServices”
 PART “CD Burning Service” DROPDOWNLIST NOSORT
 KEYNAME “SYSTEMCurrentControlSetServicesImapi”
 VALUENAME “Start”
 ITEMLIST
 NAME “Disabled” VALUE NUMERIC “4”
 NAME “Manual” VALUE NUMERIC “3” DEFAULT
 NAME “Automatic” VALUE NUMERIC “2”
 END ITEMLIST
 END PART
 PART “Smart Board Service” DROPDOWNLIST NOSORT
 KEYNAME “SYSTEMCurrentControlSetServicesSMART Board Service”
 VALUENAME “Start”
 ITEMLIST
 NAME “Disabled” VALUE NUMERIC “4”
 NAME “Manual” VALUE NUMERIC “3” DEFAULT
 NAME “Automatic” VALUE NUMERIC “2”
 END ITEMLIST
 END PART
 PART “Smart Board Web Server” DROPDOWNLIST NOSORT
 KEYNAME “SYSTEMCurrentControlSetServicesSMART Web Server”
 VALUENAME “Start”
 ITEMLIST
 NAME “Disabled” VALUE NUMERIC “4”
 NAME “Manual” VALUE NUMERIC “3” DEFAULT
 NAME “Automatic” VALUE NUMERIC “2”
 END ITEMLIST
 END PART
 PART “Messenger” DROPDOWNLIST NOSORT
 KEYNAME “SYSTEMCurrentControlSetServicesMessenger”
 VALUENAME “Start”
 ITEMLIST
 NAME “Disabled” VALUE NUMERIC “4” DEFAULT
 NAME “Manual” VALUE NUMERIC “3”
 NAME “Automatic” VALUE NUMERIC “2”
 END ITEMLIST
 END PART
 PART “Remote Registry” DROPDOWNLIST NOSORT
 KEYNAME “SYSTEMCurrentControlSetServicesRemoteRegistry”
 VALUENAME “Start”
 ITEMLIST
 NAME “Disabled” VALUE NUMERIC “4”
 NAME “Manual” VALUE NUMERIC “3”
 NAME “Automatic” VALUE NUMERIC “2” DEFAULT
 END ITEMLIST
 END PART
 PART “Universal PnP” DROPDOWNLIST NOSORT
 KEYNAME “SYSTEMCurrentControlSetServicesupnphost”
 VALUENAME “Start”
 ITEMLIST
 NAME “Disabled” VALUE NUMERIC “4”
 NAME “Manual” VALUE NUMERIC “3” DEFAULT
 NAME “Automatic” VALUE NUMERIC “2”
 END ITEMLIST
 END PART
 PART “Admin Alerts” DROPDOWNLIST NOSORT
 KEYNAME “SYSTEMCurrentControlSetServicesAlerter”
 VALUENAME “Start”
 ITEMLIST
 NAME “Disabled” VALUE NUMERIC “4” DEFAULT
 NAME “Manual” VALUE NUMERIC “3”
 NAME “Automatic” VALUE NUMERIC “2”
 END ITEMLIST
 END PART
 PART “Clipboard Server” DROPDOWNLIST NOSORT
 KEYNAME “SYSTEMCurrentControlSetServicesClipSrv”
 VALUENAME “Start”
 ITEMLIST
 NAME “Disabled” VALUE NUMERIC “4” DEFAULT
 NAME “Manual” VALUE NUMERIC “3”
 NAME “Automatic” VALUE NUMERIC “2”
 END ITEMLIST
 END PART
 PART “Indexing Service” DROPDOWNLIST NOSORT
 KEYNAME “SYSTEMCurrentControlSetServicesCiSvc”
 VALUENAME “Start”
 ITEMLIST
 NAME “Disabled” VALUE NUMERIC “4”
 NAME “Manual” VALUE NUMERIC “3” DEFAULT
 NAME “Automatic” VALUE NUMERIC “2”
 END ITEMLIST
 END PART
 PART “nVidia Driver Helper Service” DROPDOWNLIST NOSORT
 KEYNAME “SYSTEMCurrentControlSetServicesNVSvc”
 VALUENAME “Start”
 ITEMLIST
 NAME “Disabled” VALUE NUMERIC “4”
 NAME “Manual” VALUE NUMERIC “3” DEFAULT
 NAME “Automatic” VALUE NUMERIC “2”
 END ITEMLIST
 END PART
 PART “Performance Logs and Alerts” DROPDOWNLIST NOSORT
 KEYNAME “SYSTEMCurrentControlSetServicesSysmonLog”
 VALUENAME “Start”
 ITEMLIST
 NAME “Disabled” VALUE NUMERIC “4”
 NAME “Manual” VALUE NUMERIC “3” DEFAULT
 NAME “Automatic” VALUE NUMERIC “2”
 END ITEMLIST
 END PART
 PART “Remote Assistance” DROPDOWNLIST NOSORT
 KEYNAME “SYSTEMCurrentControlSetServicesRDSessMgr”
 VALUENAME “Start”
 ITEMLIST
 NAME “Disabled” VALUE NUMERIC “4”
 NAME “Manual” VALUE NUMERIC “3” DEFAULT
 NAME “Automatic” VALUE NUMERIC “2”
 END ITEMLIST
 END PART
 PART “Telnet” DROPDOWNLIST NOSORT
 KEYNAME “SYSTEMCurrentControlSetServicesTlntSvr”
 VALUENAME “Start”
 ITEMLIST
 NAME “Disabled” VALUE NUMERIC “4” DEFAULT
 NAME “Manual” VALUE NUMERIC “3”
 NAME “Automatic” VALUE NUMERIC “2”
 END ITEMLIST
 END PART
 PART “UPS” DROPDOWNLIST NOSORT
 KEYNAME “SYSTEMCurrentControlSetServicesUPS”
 VALUENAME “Start”
 ITEMLIST
 NAME “Disabled” VALUE NUMERIC “4”
 NAME “Manual” VALUE NUMERIC “3” DEFAULT
 NAME “Automatic” VALUE NUMERIC “2”
 END ITEMLIST
 END PART
 END POLICY
 END CATEGORY
 CATEGORY “Windows Features”
 POLICY “Overide Antivirus Monitoring”
 KEYNAME “SOFTWAREMicrosoftSecurity Center”
 VALUENAME “AntiVirusOverride”
 VALUEON NUMERIC 1
 VALUEOFF NUMERIC 0
 END POLICY
 POLICY “Disable Windows Error Reporting”
 KEYNAME “SOFTWAREMicrosoftPCHealthErrorReporting”
 VALUENAME DoReport
 VALUEON NUMERIC 0
 VALUEOFF NUMERIC 1
 END POLICY
 POLICY “Prevent Windows Messenger from Running”
 KEYNAME “SOFTWAREMicrosoftMessengerClient”
 VALUENAME “PreventRun”
 VALUEON NUMERIC 1
 VALUEOFF NUMERIC 0
 END POLICY
 POLICY “Enable CD-Burning for all Users”
 KEYNAME “SoftwareMicrosoftWindows NTCurrentVersionWinlogon”
 VALUENAME “AllocateDASD”
 VALUEON NUMERIC 2
 VALUEOFF NUMERIC 0
 END POLICY
 END CATEGORY
 CATEGORY “Windows Media Player”
 POLICY “Disable Automatic Update”
 KEYNAME “SOFTWAREMicrosoftWindowsMediaPlayer”
 VALUENAME “DisableAutoUpdate”
 VALUEON NUMERIC 1
 VALUEOFF NUMERIC 0
 END POLICY
 POLICY “Disable Automatic Upgrade”
 KEYNAME “SOFTWAREMicrosoftWindowsMediaPlayer”
 VALUENAME “EnableAutoUpgrade”
 VALUEON “No”
 VALUEOFF “Yes”
 END POLICY
 END CATEGORY
 CATEGORY “Java”
 POLICY “Plugin”
 KEYNAME “SOFTWAREJavaSoftJava Plug-in1.6.0_01”
 VALUENAME “HideSystemTrayIcon”
 VALUEON NUMERIC “1”
 VALUEOFF NUMERIC “0”
 ACTIONLISTON
 KEYNAME “SOFTWAREJavaSoftJava Plug-in1.6.0_02”
 VALUENAME “HideSystemTrayIcon” VALUE NUMERIC 1
 KEYNAME “SOFTWAREJavaSoftJava Plug-in1.6.0_03”
 VALUENAME “HideSystemTrayIcon” VALUE NUMERIC 1
 END ACTIONLISTON
 ACTIONLISTOFF
 KEYNAME “SOFTWAREJavaSoftJava Plug-in1.6.0_02”
 VALUENAME “HideSystemTrayIcon” VALUE NUMERIC 0
 KEYNAME “SOFTWAREJavaSoftJava Plug-in1.6.0_03”
 VALUENAME “HideSystemTrayIcon” VALUE NUMERIC 0
 END ACTIONLISTOFF
 END POLICY
 POLICY “Update”
 KEYNAME “SOFTWAREJavaSoftJava UpdatePolicy”
 PART “Disable Update” CHECKBOX
 VALUENAME “EnableJavaUpdate”
 VALUEON NUMERIC “0”
 VALUEOFF NUMERIC “1”
 END PART
 PART “Disable Auto Update” CHECKBOX
 VALUENAME “EnableAutoUpdateCheck”
 VALUEON NUMERIC “0”
 VALUEOFF NUMERIC “1”
 END PART
 PART “Don’t Notify on Download” CHECKBOX
 VALUENAME “NotifyDownload”
 VALUEON NUMERIC “0”
 VALUEOFF NUMERIC “1”
 END PART
 PART “Don’t Notify on Install” CHECKBOX
 VALUENAME “NotifyInstall”
 VALUEON NUMERIC “0”
 VALUEOFF NUMERIC “1”
 END PART
 PART “Don’t Prompt for AutoUpdate” CHECKBOX
 VALUENAME “PromptAutoUpdateCheck”
 VALUEON NUMERIC “0”
 VALUEOFF NUMERIC “1”
 END PART
 END POLICY
 END CATEGORY
 CATEGORY “Adobe”
 POLICY “Adobe Updater”
 KEYNAME “SoftwareAdobeUpdater”
 PART “Disable” CHECKBOX
 VALUENAME “Enterprise”
 VALUEON NUMERIC 1
 VALUEOFF NUMERIC 0
 END PART
 END POLICY
 POLICY “Reader EULA”
 KEYNAME “SOFTWAREAdobeAcrobat Reader8.0AdobeViewer”
 VALUENAME “Accept EULA” VALUEON NUMERIC 1
 ACTIONLISTON
 VALUENAME “Launched”
 VALUE NUMERIC 1
 END ACTIONLISTON
 ACTIONLISTOFF
 VALUENAME “Launched”
 VALUE NUMERIC 0
 END ACTIONLISTOFF
 END POLICY
 POLICY “Reader Features”
 KEYNAME “SOFTWAREAdobeAcrobat Reader8.0FeatureLockdown”
 PART “Disable Updater” CHECKBOX
 VALUENAME “bUpdater”
 VALUEON NUMERIC “0”
 VALUEOFF NUMERIC “1”
 END PART
 PART “Disable E‑Book Menu” CHECKBOX
 VALUENAME “bShowEbookMenu”
 VALUEON NUMERIC “0”
 VALUEOFF NUMERIC “1”
 END PART
 PART “Disable Purchase” CHECKBOX
 VALUENAME “bPurchaseAcro”
 VALUEON NUMERIC “0”
 VALUEOFF NUMERIC “1”
 END PART
 PART “Disable Create PDF Online” CHECKBOX
 VALUENAME “bCreatePDFOnline”
 VALUEON NUMERIC “0”
 VALUEOFF NUMERIC “1”
 END PART
 PART “Disable Browser Integration” CHECKBOX
 VALUENAME “bBrowserIntegration”
 VALUEON NUMERIC “0”
 VALUEOFF NUMERIC “1”
 END PART
 PART “Disable Send to FedEx Kinko’s” CHECKBOX
 VALUENAME “bFedExInternetPrinting”
 VALUEON NUMERIC “0”
 VALUEOFF NUMERIC “1”
 END PART
 END POLICY
 POLICY “Photoshop Elements”
 KEYNAME “SoftwareMicrosoftWindowsCurrentVersionUninstall{A7B609FB-83D8-4FC3-8477–1BC65ECFE85B}”
 PART “EULA Accepted” CHECKBOX
 VALUENAME “epic_eula_accepted”
 VALUEON NUMERIC 1
 VALUEOFF NUMERIC 0
 END PART
 PART “EULA Accepted Time” CHECKBOX
 VALUENAME “epic_eula_accepted_time”
 VALUEON “2006−11−01 10:00”
 END PART
 PART “EULA Selected” CHECKBOX
 VALUENAME “epic_eula_selected”
 VALUEON NUMERIC 0
 VALUEOFF NUMERIC 1
 END PART
 PART “Locale” CHECKBOX
 VALUENAME “epic_eula_selected_locale”
 VALUEON “en_us”
 END PART
 PART “Registration” CHECKBOX
 VALUENAME “EPIC_REGS_COUNT”
 VALUEON NUMERIC 4
 VALUEOFF NUMERIC 0
 END PART
 PART “Registration Date” CHECKBOX
 VALUENAME “EPIC_REGS_DATE”
 VALUEON “2006−11−01 10:00”
 END PART
 PART “Registration Declined” CHECKBOX
 VALUENAME “EPIC_REGS_DECLINE_COUNT”
 VALUEON NUMERIC 0
 VALUEOFF NUMERIC 1
 END PART
 PART “Registration State” CHECKBOX
 VALUENAME “EPIC_REGS_STATE”
 VALUEON NUMERIC 1
 VALUEOFF NUMERIC 0
 END PART
 PART “Registration Type” CHECKBOX
 VALUENAME “EPIC_REGS_TYPE”
 VALUEON NUMERIC 4
 VALUEOFF NUMERIC 0
 END PART
 END POLICY
 POLICY “Première Elements”
 KEYNAME “SoftwareMicrosoftWindowsCurrentVersionUninstall{530AFAFF-6F0A-48BB-88D0-04F9658322D3}”
 PART “EULA Accepted” CHECKBOX
 VALUENAME “epic_eula_accepted”
 VALUEON NUMERIC 1
 VALUEOFF NUMERIC 0
 END PART
 PART “EULA Accepted Time” CHECKBOX
 VALUENAME “epic_eula_accepted_time”
 VALUEON “2006−11−01 10:00”
 END PART
 PART “EULA Selected” CHECKBOX
 VALUENAME “epic_eula_selected”
 VALUEON NUMERIC 0
 VALUEOFF NUMERIC 1
 END PART
 PART “Locale” CHECKBOX
 VALUENAME “epic_eula_selected_locale”
 VALUEON “en_us”
 END PART
 PART “Registration” CHECKBOX
 VALUENAME “EPIC_REGS_COUNT”
 VALUEON NUMERIC 4
 VALUEOFF NUMERIC 0
 END PART
 PART “Registration Date” CHECKBOX
 VALUENAME “EPIC_REGS_DATE”
 VALUEON “2006−11−01 10:00”
 END PART
 PART “Registration Declined” CHECKBOX
 VALUENAME “EPIC_REGS_DECLINE_COUNT”
 VALUEON NUMERIC 0
 VALUEOFF NUMERIC 1
 END PART
 PART “Registration State” CHECKBOX
 VALUENAME “EPIC_REGS_STATE”
 VALUEON NUMERIC 1
 VALUEOFF NUMERIC 0
 END PART
 PART “Registration Type” CHECKBOX
 VALUENAME “EPIC_REGS_TYPE”
 VALUEON NUMERIC 4
 VALUEOFF NUMERIC 0
 END PART
 END POLICY
 END CATEGORY
 CATEGORY “Audacity”
 POLICY “Lame”
 KEYNAME “SOFTWAREAudacityAudacityMP3”
 PART “Lame Path” EDITTEXT
 VALUENAME “MP3LibPath”
 DEFAULT “%ProgramFiles%Audacitylame_enc.dll”
 EXPANDABLETEXT
 END PART
 END POLICY
 POLICY “Language”
 KEYNAME “SOFTWAREAudacityAudacityLocale”
 PART “Audacity Language” DROPDOWNLIST
 VALUENAME “Language”
 ITEMLIST
 NAME “English” VALUE “en”
 END ITEMLIST
 END PART
 END POLICY
 END CATEGORY
 CATEGORY “SmartBoard”
 POLICY “Disable Com-Port Prompt”
 KEYNAME “SoftwareSMART Technologies Inc.SMART Board SoftwareBoard Tools”
 VALUENAME “noboard”
 VALUEON NUMERIC 1
 VALUEOFF DELETE
 END POLICY
 POLICY “Gallery”
 KEYNAME “SoftwareSMART Technologies Inc.Gallery”
 PART “Network Path” EDITTEXT
 VALUENAME “DefaultManifest”
 DEFAULT “\gatewayglobalsmartimsmanifest.xml”
 EXPANDABLETEXT
 END PART
 END POLICY
 END CATEGORY
 CATEGORY “Dazzle 03”
 POLICY “Disable Save To Web Intro”
 KEYNAME “SoftwareIndigo LearningDazzle03”
 VALUENAME “ShowSaveToWebIntro”
 VALUEON NUMERIC 0
 VALUEOFF NUMERIC 1
 END POLICY
 END CATEGORY
 CATEGORY “Windows Defender”
 POLICY “Set Scheduled Scans”
 KEYNAME “SOFTWAREMicrosoftWindows DefenderScan”
 PART “Scheduled Day” DROPDOWNLIST NOSORT
 VALUENAME “ScheduleDay”
 ITEMLIST
 NAME “Disabled” VALUE NUMERIC “8”
 NAME “Monday” VALUE NUMERIC “2”
 NAME “Tuesday” VALUE NUMERIC “3”
 NAME “Wednesday” VALUE NUMERIC “4”
 NAME “Thursday” VALUE NUMERIC “5”
 NAME “Friday” VALUE NUMERIC “6”
 NAME “Saturday” VALUE NUMERIC “7”
 NAME “Sunday” VALUE NUMERIC “1”
 END ITEMLIST
 END PART
 PART “Scheduled Time” NUMERIC
 VALUENAME “ScheduleTime”
 MIN 0
 MAX 1440
 SPIN 30
 DEFAULT 0
 END PART
 PART “Scan Type” DROPDOWNLIST
 VALUENAME “ScanParameters”
 ITEMLIST
 NAME “Quick Scan” VALUE NUMERIC “1”
 NAME “Full Scan” VALUE NUMERIC “2”
 END ITEMLIST
 END PART
 END POLICY
 POLICY !!DisableAntiSpyware
 KEYNAME “SoftwareMicrosoftWindows Defender”
 EXPLAIN !!DisableAntiSpyware_Explain
 VALUENAME “DisableAntiSpyware”
 VALUEON NUMERIC 1
 VALUEOFF NUMERIC 0
 END POLICY
 POLICY !!DisableUnknownRTP
 KEYNAME “SoftwareMicrosoftWindows DefenderReal-Time Protection”
 EXPLAIN !!DisableUnknownRTP_Explain
 VALUENAME “EnableUnknownPrompts”
 VALUEON NUMERIC 1
 VALUEOFF NUMERIC 0
 END POLICY
 POLICY !!CheckForSignaturesBeforeRunningScan
 KEYNAME “SoftwareMicrosoftWindows DefenderScan”
 EXPLAIN !!CheckForSignaturesBeforeRunningScan_Explain
 VALUENAME “CheckForSignaturesBeforeRunningScan”
 VALUEON NUMERIC 1
 VALUEOFF NUMERIC 0
 END POLICY
 POLICY !!ForceFullUpdate
 KEYNAME “SoftwareMicrosoftWindows DefenderSignature Updates”
 EXPLAIN !!ForceFullUpdate_Explain
 VALUENAME “ForceFullUpdate”
 VALUEON NUMERIC 1
 VALUEOFF NUMERIC 0
 END POLICY
 POLICY !!EnableLoggingForKnownGood
 KEYNAME “SoftwareMicrosoftWindows DefenderReporting”
 EXPLAIN !!EnableLoggingForKnownGood_Explain
 VALUENAME “DisableLoggingForKnownGood”
 VALUEON NUMERIC 0
 VALUEOFF NUMERIC 1
 END POLICY
 POLICY !!EnableLoggingForUnknown
 KEYNAME “SoftwareMicrosoftWindows DefenderReporting”
 EXPLAIN !!EnableLoggingForUnknown_Explain
 VALUENAME “DisableLoggingForUnknown”
 VALUEON NUMERIC 0
 VALUEOFF NUMERIC 1
 END POLICY
 POLICY !!SpyNetReporting
 KEYNAME “SoftwareMicrosoftWindows DefenderSpyNet”
 EXPLAIN !!SpyNetReporting_Explain
 PART !!SpyNetReporting_DropDownList DROPDOWNLIST REQUIRED
 VALUENAME “SpyNetReporting”
 ITEMLIST
 NAME !!SpyNetReporting_DropDownList_Disabled VALUE NUMERIC 0
 NAME !!SpyNetReporting_DropDownList_Basic VALUE NUMERIC 1
 NAME !!SpyNetReporting_DropDownList_Advanced VALUE NUMERIC 2
 END ITEMLIST
 END PART
 END POLICY
 POLICY !!CheckAlternateDownloadLocation
 KEYNAME “SoftwareMicrosoftWindows DefenderSignature Updates”
 EXPLAIN !!CheckAlternateDownloadLocation_Explain
 VALUENAME “CheckAlternateDownloadLocation”
 VALUEON NUMERIC 0
 VALUEOFF NUMERIC 1
 END POLICY
 END CATEGORY
END CATEGORY
;;;;;;;;;;
CLASS USER
;;;;;;;;;;
CATEGORY “Technician Settings”
 CATEGORY “Cookies”
 POLICY “Allow cookies on enable website”
 KEYNAME “SoftwareMicrosoftWindowsCurrentVersionInternet SettingsP3PHistoryenable-online.com”
 VALUENAME “”
 VALUEON NUMERIC 1
 VALUEOFF DELETE
 END POLICY
 END CATEGORY
 CATEGORY “SmartBoard”
 POLICY “Disable Com-Port Prompt”
 KEYNAME “SoftwareSMART Technologies Inc.SMART Board SoftwareBoard Tools”
 VALUENAME “noboard”
 VALUEON NUMERIC 1
 VALUEOFF DELETE
 END POLICY
 POLICY “Gallery”
 KEYNAME “SoftwareSMART Technologies Inc.Gallery”
 PART “Network Path” EDITTEXT
 VALUENAME “DefaultManifest”
 DEFAULT “\gatewayglobalsmartSMART Essentials For EducatorsGallery Data Filesgallery_categories.xml”
 EXPANDABLETEXT
 END PART
 END POLICY
 END CATEGORY
 CATEGORY “Startup Programs”
 ;not fully managed
 POLICY “Disable Startup Programs”
 KEYNAME “SOFTWAREMicrosoftWindowsCurrentVersionRun”
 PART “Office Language Tools” CHECKBOX
 VALUENAME “ctfmon”
 VALUEON DELETE
 VALUEOFF “%SystemRoot%ctfmon.exe”
 END PART
 PART “Office Language Tools 2” CHECKBOX
 VALUENAME “CTFMON.EXE”
 VALUEON DELETE
 VALUEOFF “%SystemRoot%ctfmon.exe”
 END PART
 PART “Msn Messenger” CHECKBOX
 VALUENAME “MsnMsgr”
 VALUEON DELETE
 VALUEOFF “%ProgramFiles%MSN Messengermsnmsgr.exe /background”
 END PART
 PART “Windows Messenger” CHECKBOX
 VALUENAME “msmsgs”
 VALUEON DELETE
 VALUEOFF “%ProgramFiles%Messengermsmsgs.exe /background”
 END PART
 END POLICY
 END CATEGORY
 CATEGORY “IE7 Settings”
 POLICY “Always show Menubar”
 KEYNAME “SoftwareMicrosoftInternet ExplorerMain”
 VALUENAME “AlwaysShowMenus”
 VALUEON NUMERIC 1
 VALUEOFF NUMERIC 0
 END POLICY
 POLICY “Set Menubar to Top Position”
 KEYNAME “SoftwareMicrosoftInternet ExplorerToolbarWebBrowser”
 VALUENAME “ITBar7Position”
 VALUEON NUMERIC 1
 VALUEOFF NUMERIC 0
 END POLICY
 POLICY “Set Google as Default Search”
 KEYNAME “SoftwareMicrosoftInternet ExplorerSearchScopes”
 VALUENAME “DefaultScope” VALUEON {2D16E5B6-2F07-4341–934E-118468986E78}
 ACTIONLISTON
 VALUENAME “Version” VALUE NUMERIC 1
 KEYNAME “SoftwareMicrosoftInternet ExplorerSearchScopes{2D16E5B6-2F07-4341–934E-118468986E78}”
 VALUENAME “DisplayName” VALUE “Google”
 VALUENAME “URL” VALUE “https://www.google.com/search?q={searchTerms}&rls=com.microsoft:{Lingua}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}”
 END ACTIONLISTON
 END POLICY
 POLICY “Disable First Run Wizard”
 KEYNAME “SoftwareMicrosoftInternet ExplorerMain”
 VALUENAME “DisableFirstRunCustomize”
 VALUEON NUMERIC 1
 VALUEOFF NUMERIC 0
 END POLICY
 POLICY “Disable Phishing Filter”
 KEYNAME “SoftwareMicrosoftInternet ExplorerPhishingFilter”
 VALUENAME “Enabled”
 VALUEON NUMERIC 0
 VALUEOFF NUMERIC 1
 END POLICY
 POLICY “Turn Off Language Bar on Startup”
 KEYNAME “SoftwareMicrosoftCTF”
 VALUENAME “Disable Thread Input Manager” VALUEON NUMERIC 1
 ACTIONLISTON
 VALUENAME “ExtraIconsOnMinimized” VALUE NUMERIC 0
 KEYNAME “SOFTWAREMicrosoftInternet ExplorerInternational”
 VALUENAME “AcceptLanguage” VALUE “en-gb”
 KEYNAME “SoftwareMicrosoftCTFMSUTB”
 VALUENAME “ShowDeskBand” VALUE NUMERIC 1
 KEYNAME “SoftwareMicrosoftCTFLangBar”
 VALUENAME “ShowStatus” VALUE NUMERIC 3
 END ACTIONLISTON
 END POLICY
 POLICY “Turn off Language Bar on Startup (part 2)”
 KEYNAME “Keyboard LayoutPreload”
 VALUENAME “2” VALUEON DELETE
 ACTIONLISTON
 VALUENAME “ShowStatus” VALUE NUMERIC 2
 KEYNAME “SoftwareClassesCLSID{540D8A8B-1C3F-4E32-8132–530F6A502090}”
 VALUENAME “MenuTextPUI” VALUE DELETE
 END ACTIONLISTON
 END POLICY
 POLICY “Disable Customer Improvement Program”
 KEYNAME “SoftwareMicrosoftInternet ExplorerSQM”
 VALUENAME “DisableCustomerImprovementProgram”
 VALUEON NUMERIC 1
 VALUEOFF NUMERIC 0
 END POLICY
 END CATEGORY
 CATEGORY “Adobe Reader 8”
 POLICY “Show a taskbar icon for each document”
 KEYNAME “SoftwareAdobeAcrobat Reader8.0AVGeneral”
 VALUENAME “bDocumentsInTaskbar”
 VALUEON “1”
 VALUEOFF DELETE
 END POLICY
 POLICY “Beyond Acrobat”
 KEYNAME “SoftwareAdobeAcrobat Reader8.0Downtown”
 PART “Don’t show at launch” CHECKBOX
 VALUENAME “bDontShowAtLaunch”
 VALUEON NUMERIC “1”
 VALUEOFF NUMERIC “0”
 END PART
 PART “Don’t Go online” CHECKBOX
 VALUENAME “bGoOnline”
 VALUEON NUMERIC “0”
 VALUEOFF NUMERIC “1”
 END PART
 END POLICY
 END CATEGORY
 CATEGORY “Windows Defender”
 POLICY “Set Scheduled Scans”
 KEYNAME “SOFTWAREMicrosoftWindows DefenderScan”
 PART “Scheduled Day” DROPDOWNLIST NOSORT
 VALUENAME “ScheduleDay”
 ITEMLIST
 NAME “Disabled” VALUE NUMERIC “8”
 NAME “Monday” VALUE NUMERIC “2”
 NAME “Tuesday” VALUE NUMERIC “3”
 NAME “Wednesday” VALUE NUMERIC “4”
 NAME “Thursday” VALUE NUMERIC “5”
 NAME “Friday” VALUE NUMERIC “6”
 NAME “Saturday” VALUE NUMERIC “7”
 NAME “Sunday” VALUE NUMERIC “1”
 END ITEMLIST
 END PART
 PART “Scheduled Time” NUMERIC
 VALUENAME “ScheduleTime”
 MIN 0
 MAX 1440
 SPIN 30
 DEFAULT 0
 END PART
 PART “Scan Type” DROPDOWNLIST
 VALUENAME “ScanParameters”
 ITEMLIST
 NAME “Quick Scan” VALUE NUMERIC “1”
 NAME “Full Scan” VALUE NUMERIC “2”
 END ITEMLIST
 END PART
 END POLICY
 POLICY “Disable Non-Admin Access”
 KEYNAME “SOFTWAREMicrosoftWindows DefenderUX Configuration”
 VALUENAME “AllowNonAdminFunctionality”
 VALUEON NUMERIC 0
 VALUEOFF NUMERIC 1
 END POLICY
 END CATEGORY
 CATEGORY “ScreenSaver”
 ;not fully managed
 POLICY “ScreenSaver Settings”
 KEYNAME “Control PanelDesktop”
 PART “Screensaver Time” NUMERIC
 VALUENAME “ScreenSaveTimeOut”
 MIN 1
 MAX 120
 DEFAULT 10
 END PART
 PART “Set Screensaver” DROPDOWNLIST NOSORT
 VALUENAME “SCRNSAVE.EXE”
 ITEMLIST
 NAME “Default” VALUE “%SystemRoot%scrnsave.scr”
 NAME “3D Flying Objects” VALUE “%SystemRoot%ss3dfo.scr”
 NAME “3D Text” VALUE “%SystemRoot%sstext3d.scr”
 NAME “Logon” VALUE “%SystemRoot%logon.scr”
 NAME “Bezier Curves” VALUE “%SystemRoot%ssbezier.scr”
 NAME “3D Flowerbox” VALUE “%SystemRoot%ssflwbox.scr”
 NAME “Marquee” VALUE “%SystemRoot%ssmarque.scr”
 NAME “My Pictures Slideshow” VALUE “%SystemRoot%ssmypics.scr”
 NAME “Mystify” VALUE “%SystemRoot%ssmyst.scr”
 NAME “3D Pipes” VALUE “%SystemRoot%sspipes.scr”
 NAME “Flying Stars” VALUE “%SystemRoot%ssstars.scr”
 END ITEMLIST
 END PART
 END POLICY
 POLICY “Flying Objects Settings”
 KEYNAME “SoftwareMicrosoftScreensaversFlying Objects”
 PART “Options” NUMERIC
 VALUENAME “Options”
 DEFAULT 1
 END PART
 PART “Type” NUMERIC
 VALUENAME “Type”
 DEFAULT 6
 END PART
 PART “Tesselation” NUMERIC
 VALUENAME “Tesselation”
 DEFAULT 200
 END PART
 PART “Size” NUMERIC
 VALUENAME “Size”
 DEFAULT 175
 END PART
 PART “Texture” EDITTEXT
 VALUENAME “Texture”
 DEFAULT “\serverlogoscr.bmp”
 EXPANDABLETEXT
 END PART
 PART “TextureFileOffset” NUMERIC
 VALUENAME “TextureFileOffset”
 DEFAULT 12
 END PART
 PART “AllScreensSame” NUMERIC
 VALUENAME “AllScreensSame”
 DEFAULT 0
 END PART
 END POLICY
 POLICY “3D Text Settings”
 KEYNAME “SoftwareMicrosoftScreensaversText3D”
 PART “Rotation Speed” NUMERIC
 VALUENAME “RotationSpeed”
 DEFAULT 10
 END PART
 PART “Rotation Style” NUMERIC
 VALUENAME “RotationStyle”
 DEFAULT 3
 END PART
 PART “Size” NUMERIC
 VALUENAME “Size”
 DEFAULT 5
 END PART
 PART “Text to Show” EDITTEXT
 VALUENAME “DisplayString”
 DEFAULT “Greasbrough”
 EXPANDABLETEXT
 END PART
 PART “Font” EDITTEXT
 VALUENAME “FontFace”
 DEFAULT “Agency FB”
 EXPANDABLETEXT
 END PART
 PART “Specular” NUMERIC
 VALUENAME “Specular”
 DEFAULT 1
 END PART
 PART “Surface Type” NUMERIC
 VALUENAME “SurfaceType”
 DEFAULT 1
 END PART
 END POLICY
 END CATEGORY
 CATEGORY “Windows Features”
 POLICY “Don’t hide inactive icons”
 KEYNAME “SoftwareMicrosoftWindowsCurrentVersionExplorer”
 VALUENAME “EnableAutoTray”
 VALUEON NUMERIC 0
 VALUEOFF NUMERIC 1
 END POLICY
 POLICY “Disable Desktop clean-up wizard”
 KEYNAME “SoftwareMicrosoftWindowsCurrentVersionExplorerDesktopCleanupWiz”
 VALUENAME “NoRun”
 VALUEON NUMERIC 1
 VALUEOFF NUMERIC 0
 END POLICY
 POLICY “Enable classic control panel”
 KEYNAME “SoftwareMicrosoftWindowsCurrentVersionExplorer”
 VALUENAME “ForceClassicControlPanel”
 VALUEON NUMERIC 1
 VALUEOFF NUMERIC 0
 END POLICY
 POLICY “Don’t highlight newly installed software”
 KEYNAME “SoftwareMicrosoftWindowsCurrentVersionExplorerAdvanced”
 VALUENAME “Start_NotifyNewApps”
 VALUEON NUMERIC 0
 VALUEOFF NUMERIC 1
 END POLICY
 POLICY “Enable ClearType”
 KEYNAME “Control PanelDesktop”
 VALUENAME “FontSmoothingType”
 VALUEON NUMERIC 2
 VALUEOFF NUMERIC 1
 END POLICY
 POLICY “Disable Tour Popup”
 KEYNAME “SOFTWAREMicrosoftWindowsCurrentVersionAppletsTour”
 VALUENAME “RunCount”
 VALUEON NUMERIC 0
 VALUEOFF DELETE
 END POLICY
 END CATEGORY
 CATEGORY !!EZ_GPO
 POLICY !!BASE_CFG
 KEYNAME “SoftwarePoliciesTerraNovumEZ_GPO”
 EXPLAIN !!BASE_CFG_EXP
 PART “Power Management Settings Schema” DROPDOWNLIST REQUIRED
 VALUENAME “SettingsScheme”
 ITEMLIST
 NAME !!SettingsSchemeSimpleIndex VALUE “Simple” Default
 END ITEMLIST
 END PART
 PART “Power Management Settings Schema Major Version” NUMERIC REQUIRED
 VALUENAME “MajorVersion”
 DEFAULT 2
 MIN 2
 MAX 99
 END PART
 PART “Power Management Settings Schema Minor Version” NUMERIC REQUIRED
 VALUENAME “MinorVersion”
 DEFAULT 0
 MIN 0
 MAX 99
 END PART
 PART “Control Variable [Do Not Modify]” DROPDOWNLIST REQUIRED
 VALUENAME “Control”
 ITEMLIST
 NAME “Control Variable [Do Not Modify]” VALUE “Verify” Default
 END ITEMLIST
 END PART
 END POLICY
 POLICY !!OPTIONS
 KEYNAME “SoftwarePoliciesTerraNovumEZ_GPOOptions”
 EXPLAIN !!OPTIONS_EXP
 PART “Security Override” CHECKBOX
 VALUENAME “SecurityBypass”
 VALUEON NUMERIC 1 ;Security Override flag
 VALUEOFF NUMERIC 0
 END PART
 PART “Force Standby to Be Set on All Machines” CHECKBOX
 VALUENAME “ForceStandby”
 VALUEON NUMERIC 1 ;Force Standby flag
 VALUEOFF NUMERIC 0
 END PART
 END POLICY
 POLICY !!SETTINGS_SCHEME_SIMPLE
 KEYNAME “SoftwarePoliciesTerraNovumEZ_GPOSimple”
 EXPLAIN !!SETTINGS_SCHEME_SIMPLE_EXP
 PART “AC User Monitor Timeout” NUMERIC REQUIRED
 VALUENAME “ACUserMonIdleTime”
 DEFAULT 10
 MIN 0
 MAX 300
 END PART
 PART “AC User System Standby Timeout” NUMERIC REQUIRED
 VALUENAME “ACUserStandByIdleTime”
 DEFAULT 15
 MIN 0
 MAX 300
 END PART
 PART “AC Machine Hibernate Timeout” NUMERIC REQUIRED
 VALUENAME “ACMachHibernateIdleTime”
 DEFAULT 30
 MIN 0
 MAX 300
 END PART
 PART “DC User Monitor Timeout” NUMERIC REQUIRED
 VALUENAME “DCUserMonIdleTime”
 DEFAULT 5
 MIN 0
 MAX 300
 END PART
 PART “DC User System Standby Timeout” NUMERIC REQUIRED
 VALUENAME “DCUserStandByIdleTime”
 DEFAULT 10
 MIN 0
 MAX 300
 END PART
 PART “DC Machine Hibernate Timeout” NUMERIC REQUIRED
 VALUENAME “DCMachHibernateIdleTime”
 DEFAULT 15
 MIN 0
 MAX 300
 END PART
 END POLICY
 END CATEGORY ; EZ_GPO
END CATEGORY
[strings]
DisableAntiSpyware=“Turn off Windows Defender”
DisableAntiSpyware_Explain=“Turns off Windows Defender Real-Time Protection, and no more scans are scheduled.nnIf you enable this policy setting, Windows Defender does not run, and computers will not be scanned for spyware or other potentially unwanted software.nnIf you disable or do not configure this policy setting, by default Windows Defender runs and computers are scanned for spyware and other potentially unwanted software.”
DisableUnknownRTP=“Turn off Real-Time Protection Prompts for Unknown Detection”
DisableUnknownRTP_Explain=“Turns off Real-Time Protection prompts for unknown detection.nnIf you enable this policy setting, Windows Defender does not prompt users to allow or block unknown activity.nnIf you disable or do not configure this policy setting, by default Windows Defender prompts users to allow or block unknown activity on the computer.”
CheckForSignaturesBeforeRunningScan=“Check for New Signatures Before Scheduled Scans”
CheckForSignaturesBeforeRunningScan_Explain=“Checks for new signatures before running scheduled scans.nnIf you enable this policy setting, the scheduled scan checks for new signatures before it scans the computer.nnIf you disable or do not configure this policy setting, the scheduled scan begins without downloading new signatures.”
ForceFullUpdate=“Download Entire Signature Set”
ForceFullUpdate_Explain=“Downloads the full signature set, rather than only the signatures that have been updated since the last signature download. Downloading the full signature set can help troubleshoot problems with signature installations, but because the file is large, it can take longer to download. nnIf you enable this policy setting, the full signatures set is downloaded.nnIf you disable or do not configure this policy setting, by default only updated signatures are downloaded.”
EnableLoggingForKnownGood=“Enable Logging Known Good Detections”
EnableLoggingForKnownGood_Explain=“Enables logging detection data during Real-time Protection when Windows Defender detects known good files. Logging detections provides you with detailed information about the programs that run on the computers you monitor.nnIf you enable this policy setting, known good files are logged.nnIf you disable or do not configure this policy setting, by default known good files are not logged.nnEnabling this policy setting can result in a greater number of events in the log.”
EnableLoggingForUnknown=“Enable Logging Unknown Detections”
EnableLoggingForUnknown_Explain=“Enables logging detections during Real-time Protection when Windows Defender detects unknown files. Logging detections provides you with detailed information about the programs that run on the computers you monitor.nnIf you enable or do not configure this policy setting, by default unknown files are logged.nnIf you disable this policy setting, unknown files are not logged.nnEnabling this policy setting can result in a greater number of events in the log.”
SpyNetReporting=“Configure Microsoft SpyNet Reporting”
SpyNetReporting_Explain=“Adjusts membership in Microsoft SpyNet.nnMicrosoft SpyNet is the online community that helps you choose how to respond to potential spyware threats. The community also helps stop the spread of new spyware infections.nnHere’s how it works. When Windows Defender detects software or changes by software not yet classified for risks, you see how other members responded to the alert. In turn, the action you apply help other members choose how to respond. Your actions also help Microsoft choose which software to investigate for potential threats. You can choose to send basic or additional information about detected software. Additional information helps improve how Windows Defender works. It can include, per esempio, the location of detected items on your computer if harmful software has been removed. Windows Defender will automatically collect and send the information.nnIf you enable this policy setting and choose “No Membership” from the drop-down list, SpyNet membership will be disabled. At this setting, no information will be sent to Microsoft. You will not be alerted if Windows Defender detects unclassified software running on your computer. Local users will not be able to change their SpyNet membership.nnIf you enable this policy setting and choose “Basic” from the drop-down list, SpyNet membership is set to “Basic”. At this setting, basic information about the detected items and the actions you apply will be shared with the online community. You will not be alerted if Windows Defender detects software that has not yet been classified for risks.nnIf you enable this policy setting and choose “Advanced” from the drop-down list, SpyNet membership is set to “Advanced”. At this setting, you send your choices and additional information about detected items. You are alerted so you can take action when Windows Defender detects changes to your computer by unclassified software. Your decisions to allow or block changes help Microsoft create new definitions for Windows Defender and better detect harmful software. In some instances, personal information may be sent but no information is used to contact you.nnIf you disable or do not configure this policy setting, by default SpyNet membership is disabled. At this setting, no information will be sent to Microsoft. You will not be alerted if Windows Defender detects unclassified software running on your computer. Local users will still be able to change their SpyNet membership.”
SpyNetReporting_DropDownList=“Microsoft SpyNet Membership”
SpyNetReporting_DropDownList_Disabled=“No Membership”
SpyNetReporting_DropDownList_Basic=“Basic”
SpyNetReporting_DropDownList_Advanced=“Advanced”
CheckAlternateDownloadLocation=“Turn on definition updates through both WSUS and Windows Update”
CheckAlternateDownloadLocation_Explain=“This policy setting allows you to configure Windows Defender to check and install definition updates from Windows Update when a locally managed Windows Server Update Services (WSUS) server is not available.nnWindows Defender checks for defintion updates using the Automatic Updates client. The Automatic Updates client can be configured to check the public Windows Update Web site or a locally managed WSUS server. When a computer is not able to connect to an internal WSUS server, such as when a portable computer is roaming outside of the corporate network, Windows Defender can be configured to also check Windows Update to ensure definition updates are delivered to these roaming machines.nnIf you enable or do not configure this policy setting, by default Windows Defender will check for definition updates from Windows Update, if connections to a locally managed WSUS server fail.nnIf you disable this policy setting, Windows Defender will check for definition updates only on a locally managed WSUS server, if the Automatic Updates client is so configured.nn”
WindowsXP=“Microsoft Windows XP or later”
GPOnly=“Unsupported Administrative Templates”
GPOnlyPolicy=“EZ_GPO.adm”
EZ_GPO=“EZ GPO by the Environmental Protection Agency”
MONITOR_PM=“PC Power Management”
BASE_CFG=“Base Options”
BASE_CFG_EXP=“These are the base configuration settings for the program to function. You should enable this and choose all of the defaults unless you are sure about what you are doing. See the documentation for more info.”
OPTIONS=“Options”
OPTIONS_EXP=“The first option named Security Bypass (NB: User based only and not found under the Computer Policy hive) directs the tool to bypass the hardcoded restrictions placed on it to change power management settings. See the documentation for more but it is only needed when users are of type user or guest. Appunto, this is a safety override (like rm ‑f) and does not actually gives users of insufficient rights, the ability to change PM settings. The second option, Force Standby, overrides the default behavior of the tool which enables system standby on machines capable of S3 (ACPI ver.2) o meglio. Enabling this option will allow the tool to set standby on earlier ACPI and APM2 capable machines. This could be useful for non Intel or laptop heavy environments since standby worked better on non S3 capable laptops as opposed to desktops.
SettingsSchemeSimpleIndex=“Simple Settings Scheme”
SETTINGS_SCHEME_SIMPLE=“Simple Scheme”
SETTINGS_SCHEME_SIMPLE_EXP=“This is the most basic Settings Scheme available. Each setting can be set to a range of 0–300 minutes where 0 = ‘Never’. NB: Hibernation should be higher than System Standby or set to 0. It should never be equal to System Standby.”[/xml]


“Hi James I realise it has been a long while, but I just checked this on windows 11 (build 23H2)…”