Multi-OEM/Retail Project {MRP} - Mk3

Discussion in 'MDL Projects and Applications' started by mxman2k, Oct 15, 2016.

  1. mxman2k

    mxman2k MDL Developer

    Jun 20, 2007
    6,406
    21,439
    210
    #10901 mxman2k, May 22, 2024
    Last edited: May 22, 2024
    (OP)
    My test install on a non MSDM PC...

    Code:
    Multi-OEM/Retail Project Version : CY24M05D22-R158.BT1 - Beta Test [MDL Forum ONLY]
     
    NOTE: This is a BETA release, features/wording may change before BaseLine release.
     
    MRP was unable to obtain permission of certain registry areas [DE_I1, DE_S1], some User selected options/features may not work as expected.
     
    The extracted OEM's folder structure appears correct.
     
    Installed DotNet Framework{s} : v1.1.4322, v2.0.50727, v3.0.30729.4926, v3.5.30729.4926, v4.0.30319, v4.8.x or later {Rev:533320}
    Installed Powershell Versions : 1.0, 2.0, 3.0, 4.0, 5.0, 5.1
    PS Scripted Diagnostics       : Unrestricted
    Unicode Mode In Operation     : Yes - {Original Code 850}
    Unattend XML Present          : Yes - Unattend.xml file detected in Panther folder
    VBScript/vbs Information      : VBScript.dll is present.
    Using 'MRPConfig.ini' File    : Yes - Checking for any selected options.
    Config Creator Version Used   : 61.0 {Advanced Mode} {Edited 20/05/2024 1:47:44 PM Locale Format}
    MRP User Options Pre-Check    : Completed OK
    MRP Extra Debug Logging Mode  : Enabled
    W1x TitleBar Colorization     : Enabled  - Title Bars will be colorized to Blue. See log notes later.
    Highlight Colorization        : Enabled  - Highlighted Text will be colorized to Blue. See log notes later.
    Change Lock/Login Screen's    : Enabled  - Screen's will be replaced via the brand's theme.
    Confirm File Delete           : Enabled  - User is notified when a file/folder is being deleted.
    Show 'ThisPC' On Desktop      : Enabled  - Display the icon on the Desktop.
    Project Uses Silent Operation : Disabled - Information screens will be shown.
    MRP Deletes 'Scripts' Folder  : Enabled  - This will delete ALL the contents of the Scripts folder when MRP ends.
    Allow W1x Local Account Setup : Enabled  - This may be prevented by M$.
    RunOnce Method of Operation   : Default  - Synchronous {'All at once'}
     
    [LNSEP] ----------------------------------------------------------------------------------------------------------------
    [START] Primary/Branding script routines begin.
    [NOTES] WMIC command is present in this OS, normal WMI processing should occur.
    [NOTES] Some options may not be available OR function as expected due to other factors within the OS.
    [NOTES] On Windows 11 and above OS's some options may be auto disabled, and/or not work as expected.
    [NOTES] Auto-translations will be performed on the majority of the options, unless the user has manually entered their own wording for them.
    [NOTES] The OS may need to be activated so that some theme elements and/or other options can be fully operative.
    [OSINF] =============================================================
    [OSINF] =================[ Detected OS Information ]=================
    [OSINF] =============================================================
    [OSINF] OS Install Date/Time  : 05/22/2024 {UTC} -- 10:17am
    [OSINF] Installation Type     : Client {Non Server}
    [OSINF] OS Media Boot Method  : Clean
    [OSINF] HyperVisor Detected   : No
    [OSINF] Domain Detected       : No
    [OSINF] Full Name             : Microsoft Windows 11 Education
    [OSINF] Stock Keeping Unit #  : 121
    [OSINF] Version {Product}     : Windows 11 Education
    [OSINF] Version {SKU}         : Windows Education
    [OSINF] Edition {Registry}    : Education
    [OSINF] Edition {CBS}         : Professional
    [OSINF] Edition {Composition} : Enterprise
    [OSINF] Edition {Type}        : General
    [OSINF] Architecture          : 64 Bit {AR:1}
    [OSINF] Release Identifier    : 2009
    [OSINF] Short Display Version : 24H2
    [OSINF] Build Information     : 26100.1.amd64fre.ge_release.240331-1435
    [OSINF] Internal Build Number : 26100
    [OSINF] Experience Pack #     : 1000.26100.1.0
    [OSINF] Branch Code Name      : Germanium
    [OSINF] Branch Reference      : ge_release
    [OSINF] Readiness Level       : Semi-Annual Channel [Targeted CB] {8 Dec / 0xa} {Default Ref: M1}
    [OSINF] Reference Version     : 10.0.26100.1
    [OSINF] ProductID Reference   : 3280
    [OSINF] Update Build Revision : 560
    [OSINF] Base Build Rev Number : 1 {0x1}
    [OSINF] General UILang/Code   : en-GB / 2057 {0x809h}
    [OSINF] General Locale        : English - United Kingdom
    [OSINF] Multiple Lang Names   : en-GB
    [OSINF] GeoID Nation ISO Loc  : United Kingdom [242]
    [OSINF] GeoID Nation CUR Loc  : United Kingdom [242]
    [OSINF] Time Zone Data {Reg}  : GMT Standard Time {Bias: +01:00}
    [OSINF] Time Zone Data {TZU}  : GMT Standard Time
    [OSINF] Daylight Saving Mode  : Yes
    [OSINF] DST Adjust Clock Mode : Enabled/Checked
    [OSINF] TPM 2.x Bypass Check  : N/A
    [OSINF] SecureBoot Bypass     : N/A
    [OSINF] Low RAM Bypass Check  : N/A
    [OSINF] Allow W1x WU Upgrades : Yes {0x1} [Registry Value]
    [MBINF] =============================================================
    [MBINF] =================[ Motherboard Information ]=================
    [MBINF] =============================================================
    [MBINF] #01 SP Product Name   : [System Product Name]
    [MBINF] #02 CS Model Name     : [System Product Name]
    [MBINF] #03 BP Base Product   : [PRIME B760M-K D4]
    [MBINF] #04 BMH Vendor Name   : [ASUS]
    [MBINF] #05 SM System Vendor  : [ASUS]
    [MBINF] #06 BM Baseboard Name : [ASUSTeK COMPUTER INC.]
    [MBINF] #08 BIOS or SLIC ID 0 : [N/A]
    [MBINF] #08 BIOS or SLIC ID 1 : [ALASKA - 1072009]
    [MBINF] #09 SLIC Information  : [No SLIC table present]
    [MBINF] #09 SLIC Detect Plan  : [G4] [OA2T:0]
    [MBINF] #11 MSDM Information  : [No MSDM Table Present]
    [MBINF] Chassis Type          : [Desktop {3}]
    [MBINF] PC System Type        : [Desktop {0x1}]
    [BDINF] =============================================================
    [BDINF] ==================[ Main BIOS Information ]==================
    [BDINF] =============================================================
    [BDINF] Manufacturer/Type     : [American Megatrends Inc.]
    [BDINF] Version Number        : [1656]
    [BDINF] SMBIOS Version        : [3.5]
    [BDINF] Release Date          : [04/18/2024] {UTC or as defined by Manufacturer location}
    [BDINF] UEFI Certification{s} : [CA_2011 PCA_2011]
    [BDINF] S/Boot DBX Revocation : [Grub patch may not be applied]
    [MPINF] =============================================================
    [MPINF] ===================[ Processor Information ]=================
    [MPINF] =============================================================
    [MPINF] Full Name             : [12th Gen Intel{R} Core{TM} i3-12100F]
    [MPINF] Description           : [Intel64 Family 6 Model 151 Stepping 5]
    [MPINF] Architecture          : [32/64 Bit]
    [MPINF] Current Clock Speed   : [3300 Mhz] {Approx}
    [MPINF] Max Clock Speed       : [3.3 GHz] {Approx}
    [MPINF] L2 Cache Size         : [5120 MB]
    [MPINF] L3 Cache Size         : [12288 MB]
    [MPINF] Manufacturer ID Data  : [GenuineIntel]
    [MPINF] Processor Family      : [206]
    [MPINF] CPUID Signature       : [090675]
    [MPINF] Revision Number {Hex} : [0x9705]
    [MPINF] Sockets/CPU's Present : [1]
    [MPINF] Cores/Threads         : [4] / [8]
    [MPINF] VT Firmware Mode      : [Enabled]
    [MPINF] Notes: Data may vary depending if info is currently available within the database.
    [MPINF]        Clock Speeds and Cache data are correct at the time of detection.
    [MPINF]        Family data reference is obtained from SMBIOS, v2.0 to v2.5 is member 1 and later v2.6+ is member 2.
    [MELSP] =============================================================
    [MELSP] ===============[ Intel: Meltdown/Spectre Data ]==============
    [MELSP] =============================================================
    [MELSP] The Meltdown/Spectre routine was auto disabled due to not being fully compatible with this OS at this time.
    [MELSP] Later Intel 9th Gen and above CPU's have newer hardware-based protections against Meltdown/Spectre.
    [MMINF] =============================================================
    [MMINF] ====================[ Memory Information ]===================
    [MMINF] =============================================================
    [MMINF] Total Physical        : 7.81 GB
    [MMINF] Used During Setup     : 1.13 GB
    [MMINF] Available             : 6.68 GB [85.53%]
    [MMINF] Type Number           : 3
    [MMINF] Design Type           : DDR4 {26}
    [MMINF] Category              : Non-ECC
    [MMINF] Max Board Sockets     : 2 - May vary depending on the Motherboard's original test design/revision.
    [MMINF] Max Capacity          : 65536 MB - Depends on how the Chipset's memory array handles this information.
    [MMINF] Max Per Socket/Slot   : 32768 MB {Approx Value}
    [SUOEA] =============================================================
    [SUOEA] ===[ Show Other User Options Applied/Enabled Or Disabled ]===
    [SUOEA] =============================================================
    [SUOEA] =====================[ Applied Options ]=====================
    [SUOEA] =============================================================
    [SUOEA] Translations for most of the Context Menu texts will be performed via the OS where possible.
    [DMSRT] Disable 'MSRT' - {Malicious Software Removal Tool}.
    [NOWUR] Prevent the 'Automatic Restart' after any Windows Update operations. Later CU may reset this.
    [AUTCU] Use a bypass to allow WU upgrading to later OS's with 'unsupported' hardware. {Experimental}
    [CMECM] Add the 'Command Prompt' Context Menu entries.
    [PSECM] Add the 'Powershell Prompt' Context Menu entries.
    [CSECM] Add the 'Copy/MoveTo' Context Menu entries.
    [UFODT] Show the 'User' folder icon on the Desktop.
    [CPMDM] Add 'Disk Management' item to Control Panel, this allows easy access to the 'Virtual Disk Manager'.
    [DBSRS] Disable the 'Blue Screen Of Death's automatic OS restart, so you can view the error/stop messages.
    [DIMSD] Disable the UAC's 'Secure Desktop' dimming of the Desktop, this does not disable/alter any other UAC security functions.
    [NOIDX] Disable the Windows 'Search Indexing' Service{s}, this helps prevent HDD disk 'thrashing' and/or SSD wasted write cycles.
    [NOAMT] Disable any 'Automatic Computer Maintenance' scheduled tasks, like cleanup desktop shortcuts etc.
    [CPANV] Set the Control Panel's window view to Small icons.
    [VRBOS] Show verbose OS information when loading and shutting down the device.
    [MP3PC] Enable the use of the Fraunhofer IIS MP3 Professional HQ Codec within Windows, if found.
    [OLFFS] Add the Open 'file, folder' location context menu.
    [DVTEW] Disable the creation of video thumbnails within any Explorer windows to allow easier move/delete operations.
    [ESTCM] Add 'Screenshots' Context Menu entries. [OS Translated]
    [SDCCM] Add 'Disk Clean-up' entry to a SSD/HDD Drive's Context Menu.
    [ARAAP] Add 'Run as administrator' for Powershell Scripts Context Menu entry.
    [RSECT] Add 'Restart Explorer Service' to the Desktop's Context Menu. Wording may change via OS Translation.
    [CTMSI] Add 'System Information' to ThisPC/Computer's Context Menu. Wording may change via OS Translation.
    [DUCIR] Disable/block USB Plug-and-Play 'Co-Installers' auto-installing insecure apps/etc to prevent a possible security risk.
    [DSDTA] Disable the 'Shutdown Event Tracker' asking for reasons etc. Mainly used on Servers. {Policy Edit}
    [DCADL] Disable the 'CTRL-ALT-DEL' method for logging in. Mainly used on Servers. {Policy Edit}
    [SDLEV] Drive Letter view set as: Show all drive letters before any drive labels.
    [RAVBS] Add 'Run as Administrator' for .vbs scripts via 'right-click' C/Text Menus.
    [RAJSS] Add 'Run as Administrator' for .js scripts via 'right-click' C/Text Menus.
    [RDLLF] Add Install/Uninstall for .dll files via 'right-click' C/Text Menus.
    [ROCXF] Add Install/Uninstall for .ocx files via 'right-click' C/Text Menus.
    [TOCTM] The extended 'Take Ownership' entries will be added to the Context Menus using 'English' default wording.
    [SATCM] ----------------------------------------------------------------------------
    [SATCM] ---[ Administrative Tools Context Menu - OS Translations Where Possible ]---
    [SATCM] ----------------------------------------------------------------------------
    [SATCM] System Properties
    [SATCM] Control Panel
    [SATCM] Device Manager
    [SATCM] Event Viewer
    [SATCM] MSConfig {f06}
    [SATCM] Programs and Features
    [SATCM] Registry Editor
    [SATCM] Security and Maintenance {nAC} {iAC} {cCW}
    [SATCM] Services
    [SATCM] Task Scheduler
    [SATCM] PC/Windows Settings
    [SATCM] Windows Update
    [SATCM] ----------------------------------------------------------------------------
    [AWLBM] Enable 'F8 Legacy OS Boot Menu'. This may not always work on some motherboards due to BIOS function key conflicts.
    [AAFAS] Allow Apps from anywhere, default OS setting.
    [NOFBT] Disable 'Fast Boot' was set via MRP's 'SSDTweaks' Option, this can be re-enabled later via your OS's Power Plan options.
    [REM3D] Remove the '3D Objects Folder' entry from 'ThisPC's view.
    [CTNAB] Prevent Cortana from operating. Normal local 'Search Windows' functions are still available, unless Cortana was removed by other means.
    [REDSC] Remove 'Microsoft Edge' shortcuts. This may also appear to remove Edge from the OS.
    [DASMT] Don't use the TitleBar's Accent Color on Start, Taskbar and Action Centre etc. M$ may force this to not work.
    [NOCBH] Disable the 'Enhanced' multiple clipboard history feature. Note: Copy/Paste in Edge or some Apps may not work when this option is used.
    [NODDM] Do not allow Windows Updates from other PC's found on the Local Network/Internet, only use Microsoft Update Servers.
    [APVWX] Allow the old Windows 'Photoviewer' program to be associated for image previews. Set as 'default' viewer, but could get un-set by m$ in a later update.
    [P3DCM] Remove the 'Edit with Paint3D' Context Menu entry.
    [RDSKQ] Remove the Disk 'Quota' tab from the drive's 'Properties' menu.
    [RPFMT] Remove the 'Previous File Versions' tab from the 'Properties' menu.
    [RRDFE] Remove the 'Retail Demo' files from the Operating System.
    [DNIFD] Disable 'News and Interests' Feed.
    [DMAFD] Disable the majority of other Feeds.
    [NSOFW] Remove the 'Look for an App in the Store to open this file' Context Menu entry.
    [SMTBO] MRP's slim Start Menu and tidier Taskbar 'LayoutModification' file was applied.
    [DCAPP] Disable/Block Microsoft Compatibility Appraiser 'CompatTelRunner' and related tasks/telemetry where possible.
    [NBLOS] Disable the blurred 'Log-On' background screen effect.
    [HOAOS] Hide the create, or use, a Microsoft 'Online Account' screen during OOBE/Windows Setup. Does NOT affect creating a 'Local' account.
    [DFMYO] Disable the 'Find My Device' feature. This can be reverted in the Settings App later if required.
    [CPMAT] Show 'All Tasks' within the Control Panel view.
    [CPMUM] Show 'Manage User Accounts' {Classic User Accounts} within the Control Panel view.
    [SLONP] Show 'Libraries' folder on the Navigation Panel.
    [HQVNP] Hide the 'Quick Access' view on Explorer's Navigation Panels.
    [HFFNP] Hide 'Favorites' folder on the Navigation Panel.
    [RHFNP] Remove 'Home' from the Navigation Panel. May not work on a later Explorer app.
    [RGFNP] Remove 'Gallery' from the Navigation Panel. May not work on a later Explorer app.
    [SMDEW] Show more details on the copy dialog window.
    [EXEXR] Expand the Explorer window's ribbon menu for Windows 1x. Reboot or Logout/in cycle required for it to work. May no longer work on later Win 11 Builds.
    [DFLAU] Disable the first logon animation/adverts screen after a upgrade.
    [DCCOT] Disable 'Cloud Optimized Content' on the TaskBar for 20H2+. {Policy Edit}
    [APSCT] Add the 'PC Settings' sub C/Text Menu to Desktop's right-click menu.
    [ATMCT] Add the 'Task Manager' C/Text Menu to Desktop's right-click menu.
    [RPTCM] Remove most 'Pin To' C/T Menu items, mainly for Recycle Bin at present.
    [ASRPM] Adds 'System Restore' items to the desktop C/T menu.
    [DTSED] Disable the 22H2+ 'Desktop Stickers' feature.
    [EPDCT] Add the 'Permanently Delete' C/T menu for files/folders.
    [DSKFO] Disable 'Special Keys' such as 'Sticky' etc.
    [ARECT] Added 'Registration Entries' item to the New's C/T Menu.
    [HVECI] Hypervisor Enforced Code Integrity has been left as OS default. Note: This can block drivers from installing.
    [NOADV] Block as many OS Adverts as is possible. This may also have an effect on the 'Prevent Store Apps from auto-updating' MRP Option.
    [RSSAS] Removed All UWP Apps possible, but *NOT* the Store, Screen Snip, Calculator, Camera OR any that are 'System' required.
    [RSSAS] There are separate removal options for OneDrive, Bing related, Phone and XBox Apps.
    [RSSAS] Approximate time taken to remove any selected 'Special' Apps: 00h 00m 08s {Some options may also remove other associated Apps}
    [RSSAS] Remove the Windows 'Phone' App and hide its page within the 'Settings' App.
    [RSSAS] Remove the 'XBox' App{s} and hide its page within the 'Settings' App. Some M$ games may not run with Xbox App removed.
    [RCFTB] Remove/Uninstall Cortana App - Build 19041+ only. Note this sometimes may fail to uninstall due to OS permissions.
    [HDFST] Hide the Defender's icon from the System Tray area.
    [DVDBL] Disable the 'Vulnerable Driver Blocklist' to allow older drivers to be installed.
    [ATICT] Added [TI] 'Run as a different user' to the context menu. [OS Translated, but English fallback]
    [NSAAU] {**} Prevent any UWP/Store Apps from automatically updating.
    [DWCNW] {**} Disable the 'Windows Connect Now' feature as it could be a possible security risk.
    [REM6F] {**} Remove the majority of 'Library Folders' from ThisPC's main window. Note that the 'Camera Roll' feature may fail.
    [SSDTK] {**} SSD Tweaks - Disables PreFetch, SuperFetch, BootTrace, FastBoot, Search Indexing and Paging Executive.
    [SSDTK] {**} SSD Tweaks - Defrag Task was not disabled because the OS is fully SSD aware.
    [NORAC] {**} Disable the OS's Remote Assistance/Connections feature.
    [HIPFS] {**} Hide the 'Insider Programme' Page within the 'PC Settings' App, if present.
    [NWURS] {**} Do not reserve the 7GB+ Disk Space 'Feature' for future Windows Updates.
    [SAICM] {**} Set all Internet connections to 'Metered', including wired LAN.
    [SAICM]      Note: Microsoft Office may not update/operate properly when the 'Metered Connections' option is used.
    [ERABU] {##} Enable Registry automatic backups, {RS4+} - this may not work as expected if M$ has blocked it by a later update.
    [ENLPS] {##} Allow longer than 260 character's 'Long File Paths', {1607/RS1+}.
    [RBLCT] {##} Remove the 'Bitlocker' on/off Context Menu item{s}. Depends on the OS etc.
    [TSCTM] {##} Add the 'Theme Settings' entries on the Desktop's Context Menu.
    [DMWEL] {##} Disable majority of Windows Event Logging.
    [NOAFH] {##} Disable/prevent any 'Activity History' data collection.
    [NOTEL] {##} Reduce Telemetry via CEIP, AppCompat and Diagtrack etc. Also sets the 'Diagnostic and Feedback' option to lowest possible.
    [SUOEA] =============================================================
    [SUOEA] =====================[ Enabled Options ]=====================
    [SUOEA] =============================================================
    [WSTYL] User selected 'WallpaperStyle' value: Stretch image to display resolution. - This will be applied later via the Add-On Manager.
    [FEXTS] Show all File Extensions.
    [TOTNU] Transfer the user selected MRP Options to any 'New Users' created. This may not always copy all options/settings over due to OS permissions etc.
    [RSCIR] Remove the '-Shortcut' references from icons.
    [TOCBI] Turn off check boxes on icons.
    [SCADV] The shortcut's arrow design is set to: Classic/Small
    [LTTPI] Launch to 'ThisPC' view instead of the newer 'Quick Access'.
    [OCDEN] Disable Network connections to allow offline account creation etc. May require a manual re-enable later.
    [DERTM] Disable Windows Error Reporting.
    [MSBTL] Move Win11+'s 'Start Menu' Button from central area to the left, or right, side depending on locale.
    [DHTBW] Disable/Hide Taskbar News/Interests Widget, if present.
    [RNIWA] Uninstall/Remove 'News/Interests' and 'Chat' Widget Apps.
    [RRNMW] Remove the 'System Requirements Not Met' desktop watermark. Requires reboot.
    [ESAFA] Disable the 'Snap Assist' Flyout/Bar.
    [ESAFA] Prevent TaskBar Grouping, note this may not function correctly on early win11 builds.
    [UCCMS] Use 'Classic' expanded Context Menus. {Experimental and m$ may disable later}
    [HTBCI] Hide the Taskbar's 'Chat' icon, if present.
    [TBS11] Set Taskbar layout size to 'Default'.
    [ACPTB] Hide and disable 'Co-Pilot'.
    [DF1HP] Disable pressing 'F1' and 'Active' Help. NOTE: May not always work on all applications.
    [HMUAS] Hide/Prevent 'Most Used' Apps section showing on the Start Menu for Windows 1x.
    [DGSWM] Remove the 'Sharing Wizards' and 'Give access to' entries from the C/Text Menus.
    [DBITD] Remove the Windows 'Burn image to disc' feature entries from the C/Text Menus.
    [SSLEW] Show the 'Status Bar' data on Notepad and other Explorer windows, where possible.
    [EFEWD] Enable the 'Full Window Dragging' effect instead of just the frame outline.
    [ESPFE] Enable a separate process for Explorer.exe file.
    [RPBST] Hide the 'People Band' icon from the System Tray area.
    [PODAI] Prevent OneDrive from automatically installing after Setup has completed.
    [SSOSC] Show the 'seconds' on the System Tray's clock, Win10 and later 2262x+ Win11 builds Only. {May be disabled by m$ at anytime}
    [WUNFY] Set Windows Update to 'Notify' mode. This may get overridden by a later Windows Update.
    [DLSNS] Disable 'Lockscreen' notifications. This may get overridden by a later Windows Update.
    [SYSRF] Re-enable of the 'System Restore' task and feature will be enabled later via the Add-On Manager stage.
    [DLTSM] Disable the animated, 'Live', tiles on the large Start Menu. Depreciated on Windows 11+ OS Kernels.
    [HMNST] Hide Skype's 'Meet Now' icon on the System Tray, if present/detected.
    [UCMEW] Enable the 'Compact Mode' for the File Explorer's views.
    [DGMNW] Disable the 'Get More...' and 'Welcome Experience' notifications, mainly after updates installed.
    [DEWPC] Remove the 'Edit With Photos' Context Menu entry.
    [NMPTB] Hide/Unpin the 'Mail' icon on the TaskBar. May not always work due to OS conflicts.
    [NSPTB] Hide/Unpin the 'Store' icon on the TaskBar.
    [NTVTB] Hide/Unpin the 'Task View' icon on the TaskBar.
    [PDAOA] Turn Off 'Share Across Devices for Apps'.
    [UPSFS] Use the 'PrtScr' keyboard button for easy accessing of the screen 'Snipping Tool'.
    [TOSCF] Turn off the new 'Smart Clipboard' feature.
    [TOPTF] Turn Off the new 'Predictive Text' feature {Multilingual}.
    [UNLDA] Unlock Defender: Special Control Mode. {Experimental}
    [NOTES] Some MRP options like 'SmartAppControl' and 'SmartScreen' have been auto disabled to prevent major OS issues with latest CU.
    [WDTPS] Windows Defender Tamper Protection Status : Enabled
    [WDTPS] Windows Defender Tamper Protection Info   : Tamper Protection on, no Cloud Protection
    [RDCTM] Remove Defender's Context Menu items.
    [NOTES] {$$} Due to a change m$ made in the Dark/Light theme modes, MRP has set, or unset, both options as required for this OS/Build.
    [APPDT] {$$} Most Windows UWP Apps are now set to use the 'Dark' Theme. May require a 2nd reboot.
    [SUDTI] {$$} Windows System/File Explorer is now set to use the 'Dark' Theme. May require a 2nd reboot.
    [TOABA] {$$} Turn off all possible running 'Background' Apps.
    [TGBMD] {$$} Turn off Gaming Mode/Bar/DVR functions.
    [DFSBN] {$$} Adjust the 'Diagnostic and Feedback' setting to the lowest possible.
    [RANSA] {##} Remove all possible UWP Apps from the OS.
    [RANSA]      Except: Store, Screen Snip, Camera, Cortana/Search, XBox, Phone, Calculator OR any that are 'System' required.
    [RANSA]      Some links to online or non UWP Apps may still be present on the Start Menu{s}.
    [EETTB] {##} Add 'End Task' Right-Click item to the Task Bar's jump lists for Builds 22620+ {M$ Experimental}.
    [PEFPL] {##} Prevent 'MS Edge' from pre-loading automatically, plus reduce its 'Telemetry' footprint.
    [NOARA] {##} Disable the auto restarting of any Apps/Programs after reboot. May be overwritten by a later CU.
    [SUOEA] ===================================================
    [SUOEA] ==============[ Disabled MRP Options ]=============
    [SUOEA] ===================================================
    [NOTES] Because a Windows 11 or above OS has been installed, some specific options may be auto disabled to prevent issues.
    [TBSSI] The 'Use small TaskBar icons' option was auto disabled as it can upset the Win 11+ System Tray layout.
    [MTTBT] The 'Extra TaskBar Transparency' option could not be used due to the OS's new 'Acrylic' feature.
    [EESRC] The 'Enhanced Search' option has been auto-disabled because the 'SSDTweaks' was selected.
    [AOTCM] The Add 'OEM Info' option was auto disabled as it is no longer operative for Builds above 22100.
    [EBTRD] The 'Battery Time Remaining' option was auto disabled as the device appears to be non battery operated.
    [SCIPS] The option to Show 'Command Prompt' instead of 'Powershell' on the Win-X Menu was disabled as it is not compatible with Win11 at this time.
    [HVCIS] Advanced HVCI Option: Was disabled because the special Option's variable was not set via oobe.cmd file.
    [TBVW1] Some Taskbar view options have been auto disabled as they can cause issues on Windows 11+ OS Kernels.
    [PBLAE] The 'Prevent Bitlocker auto encryption' option was not used because the Device's Encryption system was already active. Disable manually.  
    [INFOS] ===================================================
    [INFOS] ============[ {xx} Marked Information ]============
    [INFOS] ===================================================
    [INFOS] {**} = This can be reverted later by script, check the '\Optional\MiscExtraScripts' folder within the main MRP archive.
    [INFOS] {$$} = This option is User changeable later via the Settings App or Control Panel etc.
    [INFOS] {##} = This is an experimental option, may not always work as expected depending on the OS Build etc.
    [AUTDN] ===================================================
    [AUTDN] ===[ MRP Automated System Drive Rename Routine ]===
    [AUTDN] ===================================================
    [AUTDN] The System Drive [C:] 'Local Disk' was renamed to 'Windows_11_Edu' via the selected automated option.
    [REPDR] ======================================================
    [REPDR] ===[ Retail.txt/Ei.cfg/PID.txt Detection Routines ]===
    [REPDR] ======================================================
    [REPDR] Note: Some results may be shown as 'not detected' if the install medium was removed during OS installation.
    [REPDR] The 'Retail.txt' file was not detected within the 'Scripts' folder.
    [REPDR] The 'ei.cfg' file was detected within the 'D:\Sources' folder. [DV]
    [REPDR] The 'PID.txt' file was not detected.
    [CKDMI] =============================================================
    [CKDMI] ===[ Querying DMI For OEM Manufacturer Brand Information ]===
    [CKDMI] =============================================================
    [CKDCF] DMI Internal Reference : 1c/4/1
    [CKDCF] No DMI conflicts was found.
    [CKDCF] DMI query routine has completed.
    [DCTPR] =============================================
    [DCTPR] ===[ DMI or Custom Theme Data Processing ]===
    [DCTPR] =============================================
    [DCTPR] Asus [#04] Manufacturer was detected for automated theme/branding.
    [DCTPR] =======================================
    [NOACT] The 'No OEM Activation' option was not selected, OEM activation will be applied where possible.
    [SYSPD] =======================================
    [SYSPD] ===[ Model Name Processing Routine ]===
    [SYSPD] =======================================
    [SYSPD] The DMI/BIOS's 'SystemProductName' value was voided [Ref:2].
    [CHKMN] The Computer's Model name was not defined within the BIOS, User specified or defined within '#03 CS BaseBoard Product'.
    [TBPRT] ===================================
    [TBPRT] ===[ Theme Processing Routines ]===
    [TBPRT] ===================================
    [USRFT] The User's specified theme was not defined.
    [TBTMS] ===========================================
    [TBTMS] ===[ Brand Transfer Management Routine ]===
    [TBTMS] ===========================================
    [TBTMS] Brand theme that will be attempted to be used : Asus
    [TBTMS] Original 'WallpaperStyle' value found within the 'Asus.theme' file : 2 {Stretch image to display resolution}
    [RMXML] The 'OOBE.xml' file has been processed by Windows Setup.
    [WPCHK] Wallpaper.jpg was transferred.
    [BGDFC] The brand's 'Backgrounds' folder was created.
    [BGDFC] The brand's 'BackgroundDefault.jpg' file was generated from the 'Wallpaper.jpg' image.
    [W8XAP] ===========================================================
    [W8XAP] ===[ Primary User Account Picture {BMP/PNG} Management ]===
    [W8XAP] ===========================================================
    [UBREP] The primary 'User' account picture{s} was replaced with the theme's 'User810' image file.
    [WXAP2] ============================================================
    [WXAP2] ===[ Additional User Account Picture's {PNG} Management ]===
    [WXAP2] ============================================================
    [UPREP] User-32.png was replaced.
    [UPREP] User-40.png was replaced.
    [UPREP] User-48.png was replaced.
    [UPREP] User-192.png was replaced.
    [X8LLR] ====================================
    [X8LLR] ===[ Lock\Log-On Screen Routine ]===
    [X8LLR] ====================================
    [WX8LS] Lock Screen 'img100' was replaced. Original renamed as img0100.
    [WX8LO] The 'Log-On' Background 'img105' was replaced. Original renamed as img0105.
    [OTFTR] ============================================
    [OTFTR] ===[ Brand/Theme Files Transfer Routine ]===
    [OTFTR] ============================================
    [OTFTR] The OS branding 'info' theme folder was created.
    [EWBSC] Additional found 'Wallpaper' file{s} was copied over for use as 'Desktop' backgrounds or a slideshow later, if required.
    [OTFTR] The theme's branding files have been transferred.
    [ATREP] The original 'Aero.theme' has been backed up and replaced.
    [ICTAO] Registry sections for 'InstallTheme' and 'CurrentTheme' was set to '$OEM$.theme'.
    [ATHBA] Asus OEM brand theme was applied.
    [BSHCS] ============================================
    [BSHCS] ===[ Primary/Branding Script Completion ]===
    [BSHCS] ============================================
    [BSHCS] The Primary/Branding script has completed.
    [BSHCS] ============================================
    [RBOOT] -----------------------------[ OOBE Reboot via Windows Setup ]-----------------------------
    [ADMAN] ===================================================
    [ADMAN] ============[ Add-On Manager: Started ]============
    [ADMAN] ===================================================
    [USR1X] ==============================================================================
    [USR1X] ===[ Colorization, User Account Pictures and Remove DefaultUser0 Routines ]===
    [USR1X] ==============================================================================
    [USRAC] The 'Enhanced' Log-On screen registry entry has been applied.
    [WXSTB] Title Bar: 'Blue' color has been applied via normal and uSID routines.
    [WXSHL] Highlight: 'Blue' text color has been applied via normal and uSID routines.
    [NOTES] Windows may need to be activated to set the Title Bar and other colors.
    [USRAC] User Account Picture's registry entries applied.
    [USRRO] Windows 'Registered Owner' {Winver} registry entry was corrected and set to the primary username.
    [USRD0] The 'defaultuser0' account was present, removal process has started.
    [RDUPM] Removal of the 'defaultuser0' account was successful.
    [TFFIB] The theme's registry fix was applied. Reboot is required after setup completed.
    [SATOU] ===================================================
    [SATOU] ====[ User Options that have now been applied ]====
    [SATOU] ===================================================
    [WSTYL] Original 'WallpaperStyle' registry value: 2 - Stretch image to display resolution.
    [WSTYL] User selected 'WallpaperStyle' value: 2 - Stretch image to display resolution. - Reboot may be required to fully apply this option/tweak.
    [FEXTS] Show File Extensions.
    [DBITD] Remove the Windows 'Burn image to disc' feature entries from the C/Text Menus.
    [SSLEW] Show 'Status Bar' data on Notepad and other Explorer windows.
    [EFEWD] Enable the 'Full Window Dragging' effect instead of just the frame outline.
    [ESPFE] Enable a separate process for Explorer.exe file.
    [TOTNU] Transfer Options to any 'New Users' created. This may not always transfer all User options/settings over due to OS Permissions.
    [RSCIR] Remove the '-Shortcut' reference on icons.
    [SCADV] The shortcut's arrow design is set to: Classic/Small
    [TOCBI] Turn off check boxes on icons.
    [DERTM] Disable Windows Error Reporting.
    [MSBTL] Move Win11+'s 'Start Menu' Button from central area to the left, or right, side depending on locale.
    [DHTBW] Disable/Hide Taskbar News/Interests Widget, if present.
    [RNIWA] Uninstall/Remove 'News/Interests' and 'Chat' Widget Apps.
    [RRNMW] Remove the 'System Requirements Not Met' desktop watermark. Requires reboot.
    [ESAFA] Disable the 'Snap Assist' Flyout/Bar.
    [UCCMS] Use 'Classic' expanded Context Menus. {Experimental and m$ may disable later}
    [HTBCI] Hide the Taskbar's 'Chat' icon, if present.
    [TBVW1] Taskbar view options have been auto disabled as they can cause issues on this OS Build.
    [DGSWM] Remove the 'Sharing Wizards' and 'Give access to' entries from C/Text Menus.
    [RPBST] Hide the 'People Band' icon on the System Tray.
    [LTTPI] Launch to 'ThisPC' instead of the newer 'Quick Access' view.
    [APPDT] Windows UWP Apps are set to use the 'Dark Theme'.
    [SUDTI] Windows System/File Explorer is set to use the 'Dark Theme'.
    [WUNFY] Set Windows Update to 'Notify' mode. May get overridden with a new Cumulative Update.
    [PODAI] Prevent 'OneDrive' from automatically installing.
    [TGBMD] Turn off Gaming Mode/Bar/DVR functions.
    [DFSBN] Adjust the 'Diagnostic and Feedback' setting to the lowest possible.
    [DEWPC] Remove the 'Edit With Photos' Context Menu.
    [SSOSC] Show the 'seconds' on the System Tray's clock, this depends on the locale and/or OS Build if they are shown.
    [NMPTB] Unpin the 'Mail' icon from the TaskBar. May not always work due to OS conflicts.
    [NSPTB] Unpin the 'Store' icon on the TaskBar.
    [NTVTB] Unpin the 'Task View' icon on the TaskBar.
    [PDAOA] Turn Off 'Share Across Devices for Apps'.
    [OCDEN] Attempt to automatically re-enable Network connections.
    [OCDEN] Note: You may need to manually re-enable Network connections later if not done automatically.
    [UPSFS] Use the 'PrtScr' keyboard button for easy accessing of the screen 'Snipping Tool'.
    [NOARA] Disable the auto restarting of Apps/Programs after a reboot.
    [PEFPL] Prevent 'Microsoft Edge' from pre-loading automatically and reduce its 'Telemetry' footprint.
    [DLSNS] Disable any 'Lockscreen' notifications.
    [DLTSM] Disable the animated, 'Live', tiles on the Start Menu. Depreciated on this OS Build.
    [HMNST] Hide Skype's 'Meet Now' icon on the System Tray, if present.
    [UCMEW] Use 'Compact Mode' for the File Explorer's views.
    [TOABA] Turn off all possible running 'Background' Apps.
    [DF1HP] Disable pressing 'F1' and 'Active' Help. NOTE: May not always work on all applications.
    [DGMNW] Disable the 'Get More...' and 'Welcome Experience' notifications, mainly after updates installed.
    [EETTB] Add 'End Task' Right-Click item to the Task Bar's jump lists for Builds 22620+, {Experimental}.
    [ACPTB] Hide and disable 'Co-Pilot'.
    [RDCTM] Remove Defender's Context Menu items.
    [UNLDA] Unlock Defender: Special Control Mode. {Experimental}
    [NOTES] Some MRP options like 'SmartAppControl' and 'SmartScreen' have been auto disabled to prevent major OS issues with latest CU.
    [WDTPS] Windows Defender Tamper Protection Status : Enabled
    [WDTPS] Windows Defender Tamper Protection Info   : Tamper Protection on, no Cloud Protection
    [RANSA] Removed: All possible UWP Apps from the OS, except the Store, Screen Snip, Camera, Cortana/Search, Calculator or any 'System' required.
    [RANSA]          Some links to online or non UWP Apps may still be present on the Start Menu{s}.
    [TOSCF] Turn off the new 'Smart Clipboard' feature.
    [TOPTF] Turn Off the new 'Predictive Text' feature {Multilingual}.
    [RWPHA] Removed the Windows 'Phone' App's Start Menu links, if present.
    [RXSMS] Removed the 'XBox' App's Start Menu links, if present.
    [SYSRF] The 'System Restore' Task and Feature has now been enabled.
    [AMBPS] =================================================================
    [AMBPS] ===[ Check BIOS/Boot Mode, OS Partition Type/Controller Mode ]===
    [AMBPS] =================================================================
    [AMBPS] BIOS/Boot Mode  : UEFI
    [AMBPS] Partition Type  : GPT
    [AMBPS] Secure Boot     : Disabled
    [AMHDC] Controller Mode : AHCI {I}
    [EXTSR] =====================================
    [EXTSR] ===[ External Add-On's Detection ]===
    [EXTSR] =====================================
    [EXTSR] No external Add-On's was detected or processed.
    [CHKLS] =============================================
    [CHKLS] ===[ Detecting License\Activation Status ]===
    [CHKLS] =============================================
    [CHKLS] License/Activation Status  : Notification
    [CHKLS] License Channel Status     : Retail {CTT}
    [CHKLS] Internet Connection Status : Appears not connected online
    [CHKLS] License Status Reason Code : 0xC004F034
    [CHKLS] License not found/invalid or could not connect to the Activation Server.
    [CHKLS] Online connection maybe required to complete Activation.
    [ADMAN] ===============================
    [ADMAN] ===[ Finalization Routines ]===
    [ADMAN] ===============================
    [CLNUP] Clean Up Routine Processed.
    [ADMAN] ===================================
    [ADMAN] ===[ Add-On Manager: Completed ]===
    [ADMAN] ===================================
    [ENDAM] -----------------------------------------------------------------------------
    [ENDAM] =========================================================================================
    [ENDAM] =                                                                                       =
    [ENDAM] = Please Note: As User options, UserTweaks or Wintel scripts have been detected it is   =
    [ENDAM] =              required for a reboot cycle to allow these options/tweaks to take full   =
    [ENDAM] =              effect. This also allows any Theme related processes to complete.        =
    [ENDAM] =                                                                                       =
    [ENDAM] =========================================================================================
    [ENDED]
    The Multi-OEM/Retail Project has completed.
     
    
    Interesting the part in green, it seems bit locker is enabled on this pc :eek: :g:

    The check in MRP is looking at the flags:

    fsutil behavior query DisableEncryption

    Which returns:
    DisableEncryption = 0 (Encryption is ENABLED) --> BL on.
    DisableEncryption = 1 (Encryption is DISABLED) --> BL off.
     
    Stop hovering to collapse... Click to collapse... Hover to expand... Click to expand...
  2. Carlos Detweiller

    Carlos Detweiller Emperor of Ice-Cream

    Dec 21, 2012
    6,827
    7,843
    210
    #10902 Carlos Detweiller, May 22, 2024
    Last edited: May 22, 2024
    I don't have any Bitlocker stuff enabled on my Windows 7 (if that even exists here), yet:
    Code:
    E:\>fsutil behavior query DisableEncryption
    DisableEncryption = 0
    
    E:\>
    That setting does not refer to BL directly, but if Encryption in general can be used on the system (e. g. Encryption in a file's Extended Attributes). It is therefore not an indicator if BL is enabled or not.

    Maybe it would be better to parse the output of "manage-bde.exe -status" instead?

    Edit:

    Code:
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\BitLocker
    
    "PreventDeviceEncryption" entry, value 0 or not existing = BL on, value 1 = BL off.
    
     
    Stop hovering to collapse... Click to collapse... Hover to expand... Click to expand...
  3. mxman2k

    mxman2k MDL Developer

    Jun 20, 2007
    6,406
    21,439
    210
    good idea about bde status... Will look into that..

    The fsutil works on 7/8.x/1x i thought i could use it just to test if it was actually on or off, but it seems i got the info wrong :oops:
     
    Stop hovering to collapse... Click to collapse... Hover to expand... Click to expand...
  4. mxman2k

    mxman2k MDL Developer

    Jun 20, 2007
    6,406
    21,439
    210
    manage-bde -status C: |findstr /C:"Protection Status" seems to be useful :)

    Powershell version fails :g: Get-BitlockerVolume C: | Select -expand "Protection Status"
     
    Stop hovering to collapse... Click to collapse... Hover to expand... Click to expand...
  5. mxman2k

    mxman2k MDL Developer

    Jun 20, 2007
    6,406
    21,439
    210
    powershell -command (New-Object -ComObject Shell.Application).NameSpace('C:').Self.ExtendedProperty('System.Volume.BitLockerProtection')

    I got 2

    0 = Unencryptable (i think)
    1 = Encrypted
    2 = Not Encrypted - my main pc drive isnt using BL and is set off
     
    Stop hovering to collapse... Click to collapse... Hover to expand... Click to expand...
  6. Carlos Detweiller

    Carlos Detweiller Emperor of Ice-Cream

    Dec 21, 2012
    6,827
    7,843
    210
    Code:
    PS E:\> Get-BitlockerVolume C: | Select -expand "Protection Status"
    Get-BitlockerVolume : The term 'Get-BitlockerVolume' is not recognized as the name of a cmdlet, function, script file, or operable program. Check the spelling of the name, or if a path was included, verify that the path is
    correct and try again.
    At line:1 char:1
    + Get-BitlockerVolume C: | Select -expand "Protection Status"
    + ~~~~~~~~~~~~~~~~~~~
        + CategoryInfo          : ObjectNotFound: (Get-BitlockerVolume:String) [], CommandNotFoundException
        + FullyQualifiedErrorId : CommandNotFoundException
    
    PS E:\>
    PS would also not work everywhere.

    Code:
    E:\>manage-bde -status C:
    BitLocker Drive Encryption: Configuration Tool version 6.1.7601
    Copyright (C) Microsoft Corporation. All rights reserved.
    
    ERROR: The volume C: could not be opened by BitLocker. This may be because
    the volume does not exist, or because it is not a valid BitLocker volume.
    
    E:\>
    bde-admin.exe does not list my C: partiton at all.
     
    Stop hovering to collapse... Click to collapse... Hover to expand... Click to expand...
  7. Carlos Detweiller

    Carlos Detweiller Emperor of Ice-Cream

    Dec 21, 2012
    6,827
    7,843
    210
    Code:
    E:\>powershell -command (New-Object -ComObject Shell.Application).NameSpace('C:').Self.ExtendedProperty('System.Volume.BitLockerProtection')
    0
    
    E:\>
    I got 0.
     
    Stop hovering to collapse... Click to collapse... Hover to expand... Click to expand...
  8. mxman2k

    mxman2k MDL Developer

    Jun 20, 2007
    6,406
    21,439
    210
    Hmm why cant m$ make things compatible :(

    I think the bitlocker bits will be for w10+ any way so at least it will be compatible -- i hope!

    Was going to use it in the GUI QT but it appears until i can get some sort of reliable method to parse things it may have to be just w10+ only :(
     
    Stop hovering to collapse... Click to collapse... Hover to expand... Click to expand...
  9. mxman2k

    mxman2k MDL Developer

    Jun 20, 2007
    6,406
    21,439
    210
    0 i think is 'Unencryptable' as it cant seem to find it on w7 :g:
     
    Stop hovering to collapse... Click to collapse... Hover to expand... Click to expand...
  10. Carlos Detweiller

    Carlos Detweiller Emperor of Ice-Cream

    Dec 21, 2012
    6,827
    7,843
    210
    It seems to be not encryptable, as it isn't listed as a valid BitLocker Volume. Even if I wanted (I don't), I couldn't encrypt it.
     
    Stop hovering to collapse... Click to collapse... Hover to expand... Click to expand...
  11. mxman2k

    mxman2k MDL Developer

    Jun 20, 2007
    6,406
    21,439
    210
    I have a autoit script which i can convert to exe - it uses WMI calls i wonder if that be ok on w7 ?
     
    Stop hovering to collapse... Click to collapse... Hover to expand... Click to expand...
  12. mxman2k

    mxman2k MDL Developer

    Jun 20, 2007
    6,406
    21,439
    210
    Converting to non GUI was a bit of a pain :D but will upload to beta test area.

    open admin console then run the exe it should return C:|blah blah or some errors :D

    i got:
    C:|Unprotected

    its a function i found for autoit and if it works ok on w7 too (once i worked the error bits out) then i can add it into the GUI QT later.
     
    Stop hovering to collapse... Click to collapse... Hover to expand... Click to expand...
  13. mxman2k

    mxman2k MDL Developer

    Jun 20, 2007
    6,406
    21,439
    210
    Found out why the ps code failed for protection status , it not have a space like shown on a ps window :g:

    Open admin cmd prompt and copy/paste below code, it should hopefully show On/Off for the system drive....

    Code:
    
    Powershell -NoProfile "(Get-BitlockerVolume %SystemDrive% | Select -expand 'Protectionstatus')"
    
    
    Saves parsing the mde output if more than one drive present!
     
    Stop hovering to collapse... Click to collapse... Hover to expand... Click to expand...
  14. Carlos Detweiller

    Carlos Detweiller Emperor of Ice-Cream

    Dec 21, 2012
    6,827
    7,843
    210
    Code:
    E:\>Powershell -NoProfile "(Get-BitlockerVolume %SystemDrive% | Select -expand 'Protectionstatus')"
    Get-BitlockerVolume : The term 'Get-BitlockerVolume' is not recognized as the name of a cmdlet, function, script file, or operable program. Check the spelling of the name, or if a path was included, verify that the path is
    correct and try again.
    At line:1 char:2
    + (Get-BitlockerVolume C: | Select -expand 'Protectionstatus')
    +  ~~~~~~~~~~~~~~~~~~~
        + CategoryInfo          : ObjectNotFound: (Get-BitlockerVolume:String) [], CommandNotFoundException
        + FullyQualifiedErrorId : CommandNotFoundException
    
    E:\>
    Does simply not exist on Windows 7.
     
    Stop hovering to collapse... Click to collapse... Hover to expand... Click to expand...
  15. mxman2k

    mxman2k MDL Developer

    Jun 20, 2007
    6,406
    21,439
    210
    Stop hovering to collapse... Click to collapse... Hover to expand... Click to expand...
  16. Carlos Detweiller

    Carlos Detweiller Emperor of Ice-Cream

    Dec 21, 2012
    6,827
    7,843
    210
    There is no such exe in the beta area.
     
    Stop hovering to collapse... Click to collapse... Hover to expand... Click to expand...
  17. mxman2k

    mxman2k MDL Developer

    Jun 20, 2007
    6,406
    21,439
    210
    is now -- i keep forgetting to press start to upload to the ftp :oops:

    Bitlockertest.exe
     
    Stop hovering to collapse... Click to collapse... Hover to expand... Click to expand...
  18. Enthousiast

    Enthousiast MDL Tester

    Oct 30, 2009
    49,991
    105,012
    450
  19. mxman2k

    mxman2k MDL Developer

    Jun 20, 2007
    6,406
    21,439
    210
    i'm multi tasking and doing a bad job of it :D
     
    Stop hovering to collapse... Click to collapse... Hover to expand... Click to expand...
  20. mxman2k

    mxman2k MDL Developer

    Jun 20, 2007
    6,406
    21,439
    210
    this is the autoit script/function i used in the exe, i just used a part result as it has many many other results it can display.

    Code:
    #RequireAdmin
    #include <array.au3>
    Local $sysdrive = EnvGet("systemdrive")
    
    ; Get information on the C-drive of the current computer + show extra information in the console
    Global $test = _BitlockerDriveInfo($sysdrive, @ComputerName, False)
    If @error Then
        ConsoleWrite("!> _BitlockerDriveInfo() error: " & @error & ". extended: " & @extended & @CRLF)
    ElseIf IsArray($test) Then
        ConsoleWrite($test[0][0] & "|" & $test[0][4] & @CRLF)
    EndIf
    ;
    
    ; #FUNCTION# ====================================================================================================================
    ; Name...........: _BitlockerDriveInfo
    ; Description ...: Get Bitlocker information for one or multiple drives
    ; Syntax.........: _BitlockerDriveInfo([$sDrive[, $sComputer = @ComputerName[, $bDebug = False]]])
    ; Parameters ....: $sDrive  - Optional: The drive. Allowed values are:
    ;                  |""      - Get the info for all available drives
    ;                  |Letter: - Get the info for the specific drive
    ;                  $sComputer - Optional: The computer from which the info should be requested
    ;                  $bDebug  - Optional: Shows the hex ReturnValue from the WMI methods if set to True
    ; Return values .: Success  - Returns a 2D array with the following information
    ;                  |[string] Drive Letter
    ;                  |[string] Drive Label
    ;                  |[string] Volume Type
    ;                  |[bool]   Initialized For Protection
    ;                  |[string] Protection Status
    ;                  |[string] Lock Status
    ;                  |[bool]   Auto Unlock Enabled
    ;                  |[bool]   Auto Unlock Key Stored
    ;                  |[string] Conversion Status
    ;                  |[string] Encryption Method
    ;                  |[int]    Encryption Percentage
    ;                  |[string] Wiping Status
    ;                  |[int]    Wiping Percentage
    ;                  |[array]  Key Protectors (Or [string] "None" if the drive isn't protected)
    ;                  Failure  - 0, sets @error to:
    ;                  |1 - There was an issue retrieving the COM object. @extended returns error code from ObjGet
    ;                  |2 - The specified drive in $Drive doesn't exist
    ;                  |3 - There was an issue running the WMI query
    ; Author ........: colombeen
    ; Modified.......:
    ; Remarks .......: Requires to be run with admin elevation. Windows Vista or newer!
    ;                  A BIG THANKS to everyone from the community who contributed!
    ; Related .......:
    ; Link ..........:
    ; Example .......: #include <Array.au3>
    ;                  $Header = "Drive Letter|Drive Label|Volume Type|Initialized For Protection|Protection Status|" & _
    ;                            "Lock Status|Auto Unlock Enabled|Auto Unlock Key Stored|Conversion Status|Encryption " & _
    ;                            "Method|Encryption Percentage|Wiping Status|Wiping Percentage|Key Protectors"
    ;                  _ArrayDisplay(_BitlockerDriveInfo(), "Bitlocker Drive Info", "", 64, Default, $Header)
    ; ===============================================================================================================================
    Func _BitlockerDriveInfo($sDrive = "", $sComputer = @ComputerName, $bDebug = False)
        Local $aConversionStatusMsg[7]  =   ["Unknown", "Fully Decrypted", "Fully Encrypted", "Encryption In Progress", "Decryption In Progress", "Encryption Paused", "Decryption Paused"]
        Local $aEncryptionMethodMsg[9]  =   ["Unknown", "None", "AES_128_WITH_DIFFUSER", "AES_256_WITH_DIFFUSER", "AES_128", "AES_256", "HARDWARE_ENCRYPTION", "XTS_AES_128", "XTS_AES_256"]
        Local $aKeyProtectorTypeMsg[11] =   ["Unknown or other protector type", "Trusted Platform Module (TPM)", "External key", "Numerical password", "TPM And PIN", "TPM And Startup Key", "TPM And PIN And Startup Key", "Public Key", "Passphrase", "TPM Certificate", "CryptoAPI Next Generation (CNG) Protector"]
        Local $aLockStatusMsg[3]        =   ["Unknown", "Unlocked", "Locked"]
        Local $aProtectionStatusMsg[3]  =   ["Unprotected", "Protected", "Unknown"]
        Local $aVolumeTypeMsg[3]        =   ["Operating System Volume", "Fixed Data Volume", "Portable Data Volume"]
        Local $aWipingStatusMsg[5]      =   ["Unknown", "Free Space Not Wiped", "Free Space Wiped", "Free Space Wiping In Progress", "Free Space Wiping Paused"]
        Local $iRow                     =   0
        Local $sRunMethod, $objWMIService, $objWMIQuery, $sDriveFilter, $iProtectionStatus, $iLockStatus, $bIsAutoUnlockEnabled, $bIsAutoUnlockKeyStored, $iConversionStatus, $iEncryptionPercentage, $iEncryptionFlags, $iWipingStatus, $iWipingPercentage, $iEncryptionMethod, $aVolumeKeyProtectorID, $aVolumeKeyProtectors, $iKeyProtectorType
    
        $objWMIService = ObjGet("winmgmts:{impersonationLevel=impersonate,authenticationLevel=pktPrivacy}!\\" & $sComputer & "\root\CIMV2\Security\MicrosoftVolumeEncryption")
        If @error Then Return SetError(1, @error, 0)
    
        If $sDrive <> "" Then
            Local $iDriveType = _WMIPropertyValue("DriveType", "Win32_LogicalDisk", "WHERE DeviceID='" & $sDrive & "'", Default, $sComputer)
            If @error Or ($iDriveType <> 2 And $iDriveType <> 3) Then Return SetError(2, 0, 0)
            $sDriveFilter = " WHERE DriveLetter='" & $sDrive & "'"
        EndIf
    
        $objWMIQuery = $objWMIService.ExecQuery("SELECT * FROM Win32_EncryptableVolume" & $sDriveFilter, "WQL", 0)
        If Not IsObj($objWMIQuery) Then Return SetError(3, 0, 0)
    
        Local $aResult[$objWMIQuery.count][14]
        For $objDrive In $objWMIQuery
            If $bDebug Then ConsoleWrite(@CRLF & "+> " & $objDrive.DriveLetter & @CRLF)
            If _WMIMethodExists($objDrive, "GetConversionStatus") Then
                $sRunMethod = $objDrive.GetConversionStatus($iConversionStatus, $iEncryptionPercentage, $iEncryptionFlags, $iWipingStatus, $iWipingPercentage)
                If $bDebug Then ConsoleWrite("!> GetConversionStatus    0x" & Hex($sRunMethod) & @CRLF)
            Else
                $iConversionStatus      =   -1
                $iWipingStatus          =   -1
                $iEncryptionPercentage  =   0
                $iWipingPercentage      =   0
            EndIf
            If _WMIMethodExists($objDrive, "GetEncryptionMethod") Then
                $sRunMethod = $objDrive.GetEncryptionMethod($iEncryptionMethod)
                If $bDebug Then ConsoleWrite("!> GetEncryptionMethod    0x" & Hex($sRunMethod) & @CRLF)
            Else
                $iEncryptionMethod      =   0
            EndIf
            If _WMIMethodExists($objDrive, "GetKeyProtectors") Then
                $sRunMethod = $objDrive.GetKeyProtectors("0", $aVolumeKeyProtectorID)
                If $bDebug Then ConsoleWrite("!> GetKeyProtectors       0x" & Hex($sRunMethod) & @CRLF)
            Else
                $aVolumeKeyProtectorID  =   0
            EndIf
            If _WMIMethodExists($objDrive, "GetLockStatus") Then
                $sRunMethod = $objDrive.GetLockStatus($iLockStatus)
                If $bDebug Then ConsoleWrite("!> GetLockStatus          0x" & Hex($sRunMethod) & @CRLF)
            Else
                $iLockStatus            =   -1
            EndIf
            If _WMIMethodExists($objDrive, "GetProtectionStatus") Then
                $sRunMethod = $objDrive.GetProtectionStatus($iProtectionStatus)
                If $bDebug Then ConsoleWrite("!> GetProtectionStatus    0x" & Hex($sRunMethod) & @CRLF)
            Else
                $iProtectionStatus      =   2
            EndIf
            If _WMIMethodExists($objDrive, "IsAutoUnlockEnabled") Then
                $sRunMethod = $objDrive.IsAutoUnlockEnabled($bIsAutoUnlockEnabled)
                If $bDebug Then ConsoleWrite("!> IsAutoUnlockEnabled    0x" & Hex($sRunMethod) & @CRLF)
            Else
                $bIsAutoUnlockEnabled   =   "Unknown"
            EndIf
            If _WMIMethodExists($objDrive, "IsAutoUnlockKeyStored") Then
                $sRunMethod = $objDrive.IsAutoUnlockKeyStored($bIsAutoUnlockKeyStored)
                If $bDebug Then ConsoleWrite("!> IsAutoUnlockKeyStored  0x" & Hex($sRunMethod) & @CRLF)
            Else
                $bIsAutoUnlockKeyStored =   "Unknown"
            EndIf
    
            If IsArray($aVolumeKeyProtectorID) And UBound($aVolumeKeyProtectorID) > 0 Then
                Dim $aVolumeKeyProtectors[UBound($aVolumeKeyProtectorID)][2]
    
                For $i = 0 To UBound($aVolumeKeyProtectorID) - 1
                    $aVolumeKeyProtectors[$i][0]        =   $aVolumeKeyProtectorID[$i]
                    If _WMIMethodExists($objDrive, "GetKeyProtectorType") Then
                        If $objDrive.GetKeyProtectorType($aVolumeKeyProtectorID[$i], $iKeyProtectorType) = 0 Then
                            $aVolumeKeyProtectors[$i][1]=   $aKeyProtectorTypeMsg[$iKeyProtectorType]
                        Else
                            $aVolumeKeyProtectors[$i][1]=   "Unknown"
                        EndIf
                    Else
                        $aVolumeKeyProtectors[$i][1]    =   "Unknown"
                    EndIf
                Next
            Else
                $aVolumeKeyProtectors                   =   "None"
            EndIf
    
            ; DriveLetter
            $aResult[$iRow][0]      =   $objDrive.DriveLetter
            ; DriveLabel
            $aResult[$iRow][1]      =   _WMIPropertyValue("VolumeName", "Win32_LogicalDisk", "WHERE DeviceID='" & $objDrive.DriveLetter & "'", Default, $sComputer)
            ; VolumeType
            If _WMIPropertyExists($objDrive, "VolumeType") Then
                $aResult[$iRow][2]  =   $aVolumeTypeMsg[$objDrive.VolumeType]
            Else
                If $objDrive.DriveLetter = _WMIPropertyValue("SystemDrive", "Win32_OperatingSystem", "", Default, $sComputer) Then
                    $aResult[$iRow][2]= $aVolumeTypeMsg[0]
                ElseIf _WMIPropertyValue("DriveType", "Win32_LogicalDisk", "WHERE DeviceID='" & $objDrive.DriveLetter & "'", Default, $sComputer) = 3 Then
                    $aResult[$iRow][2]= $aVolumeTypeMsg[1]
                ElseIf _WMIPropertyValue("DriveType", "Win32_LogicalDisk", "WHERE DeviceID='" & $objDrive.DriveLetter & "'", Default, $sComputer) = 2 Then
                    $aResult[$iRow][2]= $aVolumeTypeMsg[2]
                Else
                    $aResult[$iRow][2]= "Unknown"
                EndIf
            EndIf
            ; IsVolumeInitializedForProtection
            If _WMIPropertyExists($objDrive, "IsVolumeInitializedForProtection") Then
                $aResult[$iRow][3]  =   $objDrive.IsVolumeInitializedForProtection
            Else
                $aResult[$iRow][3]  =   "Unkown"
            EndIf
            ; ProtectionStatus
            $aResult[$iRow][4]      =   $aProtectionStatusMsg[$iProtectionStatus]
            ; LockStatus
            $aResult[$iRow][5]      =   $aLockStatusMsg[$iLockStatus + 1]
            ; IsAutoUnlockEnabled
            $aResult[$iRow][6]      =   $bIsAutoUnlockEnabled
            ; IsAutoUnlockEnabled
            $aResult[$iRow][7]      =   $bIsAutoUnlockKeyStored
            ; ConversionStatus
            $aResult[$iRow][8]      =   $aConversionStatusMsg[$iConversionStatus + 1]
            ; EncryptionMethod
            $aResult[$iRow][9]      =   $aEncryptionMethodMsg[$iEncryptionMethod + 1]
            ; EncryptionPercentage
            $aResult[$iRow][10]     =   $iEncryptionPercentage
            ; WipingStatus
            $aResult[$iRow][11]     =   $aWipingStatusMsg[$iWipingStatus + 1]
            ; WipingPercentage
            $aResult[$iRow][12]     =   $iWipingPercentage
            ; KeyProtectors
            $aResult[$iRow][13]     =   $aVolumeKeyProtectors
    
            $iRow += 1
        Next
        _ArraySort($aResult)
        Return $aResult
    EndFunc   ;==>_BitlockerDriveInfo
    
    Func _WMIPropertyExists($Object, $Property)
        If Not IsObj($Object) Then Return False
        For $sProperty In $Object.Properties_
            If $sProperty.Name = $Property Then Return True
        Next
        Return False
    EndFunc   ;==>_WMIPropertyExists
    
    Func _WMIMethodExists($Object, $Method)
        If Not IsObj($Object) Then Return False
        For $sMethod In $Object.Methods_
            If $sMethod.Name = $Method Then Return True
        Next
        Return False
    EndFunc   ;==>_WMIMethodExists
    
    Func _WMIPropertyValue($sProperty = "", $sClass = "", $sFilter = "", $sNamespace = Default, $sComputer = @ComputerName)
        Local $objWMIService, $objWMIQuery
    
        If $sClass = "" Or $sProperty = "" Then Return SetError(1, 0, 0)
        If $sFilter <> "" Then $sFilter = " " & $sFilter
        If $sNamespace = Default Then $sNamespace = "\root\CIMV2"
    
        $objWMIService = ObjGet("winmgmts:{impersonationLevel=impersonate,authenticationLevel=pktPrivacy}!\\" & $sComputer & $sNamespace)
        If @error Then Return SetError(2, @error, 0)
    
        $objWMIQuery = $objWMIService.ExecQuery("SELECT * FROM " & $sClass & $sFilter, "WQL", 0x30)
        If Not IsObj($objWMIQuery) Then Return SetError(3, 0, 0)
    
        For $objItem In $objWMIQuery
            For $Property In $objItem.Properties_
                If $Property.Name = $sProperty Then
                    Return $Property.Value
                EndIf
            Next
        Next
    
        Return SetError(4, 0, 0)
    EndFunc   ;==>_WMIPropertyValue
    
     
    Stop hovering to collapse... Click to collapse... Hover to expand... Click to expand...