3s-gtech Posted February 27, 2017 Posted February 27, 2017 Pah, none of that modern MS stuff for me, I'll be making individual images for each PC type and rolling them out with FOG. Progress is slow round y'ere.
Arthur Posted February 27, 2017 Author Posted February 27, 2017 I'm guessing I now extract the July 16 ISO, put the modified .wim file that was created into it, then turn it back into a disc image? If you want to quickly test it in a Hyper-V VM you could use Convert-WindowsImage.ps1 to convert the .wim to a .vhdx. . .\Convert-WindowsImage.ps1 Convert-WindowsImage -SourcePath "D:\W10x64\Windows 10 Education - 2017.02.27.wim" -Edition Education -VHDFormat VHDX -VHDType Dynamic -VHDPartitionStyle GPT To create an ISO see this thread... www.edugeek.net/forums/windows-10/170474-windows-10-start-menu-after-removing-apps.html#post1460225
3s-gtech Posted February 27, 2017 Posted February 27, 2017 (edited) I just tried oscdimg as you suggested in the other thread (initially tried with my copy of Ashampoo but wasn't bootable) - that succeeded in making a (huge) bootable ISO. Just trying it now on Hyper-V. {Inserts wizard reference to your powers} Edit: yup, it works. No apps, updates rolled up into it, English UK. You rock. Edited February 27, 2017 by 3s-gtech 1
3s-gtech Posted March 2, 2017 Posted March 2, 2017 That works - but has to be done at first logon for every user on every PC so can add a fair chunk of time. The app versions also change, which means updating the script regularly.
UNCL3LARRY Posted March 2, 2017 Posted March 2, 2017 (edited) Not sure if anyone is still looking, but we use this as a login script at my school. if exist "c:\appsremoved.bat" goto :end dism.exe /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.BingWeather_2016.629.703.0_neutral_~_8wekyb3d8bbwe dism.exe /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.Getstarted_4.0.9.0_neutral_~_8wekyb3d8bbwe dism.exe /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.Messaging_2.7.1001.0_neutral_~_8wekyb3d8bbwe dism.exe /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.MicrosoftOfficeHub_2015.7031.23501.0_neutral_~_8wekyb3d8bbwe dism.exe /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.MicrosoftSolitaireCollection_3.11.7293.0_neutral_~_8wekyb3d8bbwe dism.exe /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.People_2016.709.155.0_neutral_~_8wekyb3d8bbwe dism.exe /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.SkypeApp_11.7.102.0_neutral_~_kzf8qxf38zg5c dism.exe /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.WindowsAlarms_2016.717.1015.0_neutral_~_8wekyb3d8bbwe dism.exe /online /Remove-ProvisionedAppxPackage /PackageName:microsoft.windowscommunicationsapps_2015.6965.41051.0_neutral_~_8wekyb3d8bbwe dism.exe /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.WindowsFeedbackHub_1.3.1741.0_neutral_~_8wekyb3d8bbwe dism.exe /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.XboxApp_2016.728.453.0_neutral_~_8wekyb3d8bbwe dism.exe /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.XboxIdentityProvider_2016.719.1035.0_neutral_~_8wekyb3d8bbwe dism.exe /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.ZuneMusic_2019.6.23041.0_neutral_~_8wekyb3d8bbwe dism.exe /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.ZuneVideo_2019.6.22511.0_neutral_~_8wekyb3d8bbwe dism.exe /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.3DBuilder_11.1.9.0_neutral_~_8wekyb3d8bbwe dism.exe /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.Windows.Photos_2016.722.10060.0_neutral_~_8wekyb3d8bbwe dism.exe /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.WindowsCamera_2016.404.190.0_neutral_~_8wekyb3d8bbwe dism.exe /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.WindowsMaps_2016.615.1802.0_neutral_~_8wekyb3d8bbwe dism.exe /online /Remove-ProvisionedAppxPackage /PackageName:Microsoft.WindowsSoundRecorder_2016.707.1114.0_neutral_~_8wekyb3d8bbwe copy "\\[sERVERNAME]\NETLOGON\killapps.bat" "c:\appsremoved.bat"end Edited March 2, 2017 by UNCL3LARRY 1
Arthur Posted March 14, 2017 Author Posted March 14, 2017 @3s-gtech, @jmak. Here are the download links to the March 2107 updates should you (or anyone else) want to integrate the latest Patch Tuesday updates in Step 4 of Post #96. The Cumulative Update contains a lot of fixes. [b]Cumulative Update[/b] (March 2017, 14393.953) x64: http://download.windowsupdate.com/d/msdownload/update/software/secu/2017/03/windows10.0-kb4013429-x64_ddc8596f88577ab739cade1d365956a74598e710.msu x86: http://download.windowsupdate.com/c/msdownload/update/software/secu/2017/03/windows10.0-kb4013429-x86_8b376e3d0bff862d803404902c4191587afbf065.msu [b]Servicing Stack[/b] (March 2017) x64: http://download.windowsupdate.com/d/msdownload/update/software/crup/2017/03/windows10.0-kb4013418-x64_b7165b95be791aeb025135efe60e00db2800c5c6.msu x86: http://download.windowsupdate.com/d/msdownload/update/software/crup/2017/03/windows10.0-kb4013418-x86_174a3fedb4c65de876724f791b7414438a8897f1.msu [b]Flash Player[/b] (MS17-023) x64: http://download.windowsupdate.com/d/msdownload/update/software/secu/2017/03/windows10.0-kb4014329-x64_9fa7935658c5be1c0fabbe4b0d64278067ce43bf.msu x86: http://download.windowsupdate.com/d/msdownload/update/software/secu/2017/03/windows10.0-kb4014329-x86_6607e4525307726ca6f261abbe42a3d599c05f37.msu 2
3s-gtech Posted March 15, 2017 Posted March 15, 2017 (edited) I noticed it was big - did it on my home Windows 10 PC last night (which is modded to not auto-update) and it took an age. I'll try rolling it up today. Re-integrated into my custom ISO and tested as a fresh VM again, seems to be working fine once more. Cheers! Edited March 15, 2017 by 3s-gtech
eddyc Posted March 21, 2017 Posted March 21, 2017 @3s-gtech, @jmak. Here's the new script... Download: CandyCrusher.zip This works slightly differently to the old script so I have written some instructions. Save the script into the root of a new folder. e.g. D:\W10x64. Copy your Windows 10 v1607 July '16 ISO into this folder (same location). Create an Updates subfolder (e.g. D:\W10x64\Updates) containing three subfolders (CU, Servicing Stack and Flash Player). Download the updates linked below that match the architecture of your Windows ISO and save each .msu into its relevant subfolder within the Updates folder. [b]Cumulative Update[/b] (Janaury 2017, 14393.726) x64: http://download.windowsupdate.com/c/msdownload/update/software/crup/2017/01/windows10.0-kb3216755-x64_eba0675fd22087449c80b4d26df6b7035e9fb91f.msu x86: http://download.windowsupdate.com/d/msdownload/update/software/crup/2017/01/windows10.0-kb3216755-x86_0706d23dba493b295a32b9b56604aa0b08971ac7.msu [b]Servicing Stack[/b] (Janaury 2017) x64: http://download.windowsupdate.com/d/msdownload/update/software/crup/2017/01/windows10.0-kb3211320-x64_2abc94fceb4d1cdd908b3bdba473e28e0c061a3d.msu x86: http://download.windowsupdate.com/c/msdownload/update/software/crup/2017/01/windows10.0-kb3211320-x86_b450a744674c27bf2871f8db28f0e2e13e874582.msu [b]Flash Player[/b] (MS17-005) x64: http://download.windowsupdate.com/d/msdownload/update/software/secu/2017/02/windows10.0-kb4010250-x64_fa7ad44be8dd1c65b51f07efbee478b0fbf82f5c.msu x86: http://download.windowsupdate.com/d/msdownload/update/software/secu/2017/02/windows10.0-kb4010250-x86_8e6459131457bd164eee5160d316d223ba599c2f.msu Amend the $AppsToKeep and $ISO variables on lines 17 & 18 of the script. Run the script from an elevated PowerShell or PowerShell ISE prompt on a Windows 10 PC. When it finishes you should end up with an image that contains the latest updates and no unwanted apps. Hi Arthur, Is there any chance I can grab a copy of the script please? The dropbox link appears to be broken. Kind regards, eddyc
Arthur Posted March 21, 2017 Author Posted March 21, 2017 Is there any chance I can grab a copy of the script please? Try this link... https://www.dropbox.com/s/73kkir8u8w36s9n/CandyCrusher.zip 4
DCUK6 Posted April 19, 2017 Posted April 19, 2017 Have enabled the GPO on the new domain. Logged in as a test user and can still see skype an solitaire. Looks like I may have to run a startup script on all the machines to try and remove.
DCUK6 Posted April 19, 2017 Posted April 19, 2017 Cant edit my post. Do we need to leave the store in? Noticed in every script it has been.
jmak Posted April 19, 2017 Posted April 19, 2017 Cant edit my post. Do we need to leave the store in? Noticed in every script it has been. I didn't in my first build and regretted it.... It makes it difficult to deploy apps. I think the consensus is to leave it in but control access with app locker. 1
DCUK6 Posted April 19, 2017 Posted April 19, 2017 Ta. Will do this tomorrow. Had just over a week to reinstall the whole school. So many policies and not tested a single one yet. Gotta login on friday and make sure all the security is working.
snagrat Posted April 19, 2017 Posted April 19, 2017 I didn't in my first build and regretted it.... It makes it difficult to deploy apps. I think the consensus is to leave it in but control access with app locker. You can block Store through GPO
jmak Posted April 19, 2017 Posted April 19, 2017 You can block Store through GPO Yep. That's what I do now.
mullet_man Posted April 19, 2017 Posted April 19, 2017 Yep. That's what I do now. Is that via a specific GPO or via AppLocker? I used a script which removed all removable apps and think that's I how might have ran into issues with modern apps failing, so for the new creators update am going to leave the store in on my future builds. (this is just for student devices)
jmak Posted April 20, 2017 Posted April 20, 2017 Is that via a specific GPO or via AppLocker? I used a script which removed all removable apps and think that's I how might have ran into issues with modern apps failing, so for the new creators update am going to leave the store in on my future builds. (this is just for student devices) With AppLocker. There were quite a few posts on here about the specific GPO to block store not working properly: https://www.edugeek.net/showthread.php?t=176581
sted Posted April 20, 2017 Posted April 20, 2017 You can block Store through GPO or force it to go to the windows store for business which you can set up in a short time in case you ever need to get apps to pcs that way
3s-gtech Posted May 2, 2017 Posted May 2, 2017 (edited) Testing Candycrusher with the new 1703 English International ISO, it appears to work removing the apps again. I'll continue testing to see how it works out on a VM. Edit: nice new 1703 image, minus the apps and junk, up and running! Blank/broken shortcuts to the apps appear on the Start screen on first boot, gone after a reboot. Not a clue if this works beyond that at this stage, but looking good. Edited May 2, 2017 by 3s-gtech
Arthur Posted May 2, 2017 Author Posted May 2, 2017 (edited) Testing Candycrusher with the new 1703 English International ISO, it appears to work removing the apps again. I'll continue testing to see how it works out on a VM. It might be worth downloading the latest version of my script since I have made a few improvements. It will now remove the "Contact Support" app (among other things). Edited May 2, 2017 by Arthur 1
3s-gtech Posted May 2, 2017 Posted May 2, 2017 (edited) 'Contact Support' has gone, but 'Get Help' is there - is that the new name for it? If so, damn - I've just spent the last hour making this May just leave it, as I've already Applocker'd Get Help as it turns out Edited May 2, 2017 by 3s-gtech
Arthur Posted May 2, 2017 Author Posted May 2, 2017 'Contact Support' has gone, but 'Get Help' is there - is that the new name for it? It is. 1
Chuckster Posted May 3, 2017 Posted May 3, 2017 I have created a PowerShell script you might find useful. It's based on the script I linked to above, but I have modified it to work with an offline Windows image (i.e. the install.wim from a Windows 10 ISO). All you need to do is to save it in the same folder as an install.wim, add or remove any apps you want to keep from the section highlighted in red (use the DisplayName, not the PackageName) and then run the script from an elevated PowerShell prompt. What you should end up with is a Windows image that only contains the apps you want. I have tested it with several of the Anniversary Update builds and it works perfectly with those too. #Requires –Version 5.0 #Requires -RunAsAdministrator #Requires –Modules Dism # Get script directory if ($myInvocation.MyCommand.CommandType -ne [system.Management.Automation.CommandTypes]::Script) { $ScriptDir = [system.IO.Path]::GetDirectoryName($myInvocation.MyCommand.Definition) } else { $ScriptDir = [system.IO.Path]::GetDirectoryName($psISE.CurrentFile.FullPath) } Set-Location "$ScriptDir" # Create mount folder if it doesn't exist if (!(Test-Path -path "$ScriptDir\Mount")) { New-Item "$ScriptDir\Mount" -Type Directory -Force | Out-Null } Get-WindowsImage -ImagePath "$ScriptDir\install.wim" -ErrorAction Stop | ForEach-Object { # Mount image(s) "{0} {1} {2}" -f "Mounting image", $($_.ImageIndex), "`n" Mount-WindowsImage -Path "$ScriptDir\Mount" -ErrorAction Stop -Index $_.ImageIndex -ImagePath $_.ImagePath | Out-Null # Get a list of all apps $AppArrayList = Get-AppxProvisionedPackage -Path "$ScriptDir\Mount" | Select-Object -Property DisplayName,PackageName | Sort-Object -Property DisplayName # Loop through the list of apps ForEach ($App in $AppArrayList) { # Exclude essential Windows apps if (($App.DisplayName -in "[color="#FF0000"]Microsoft.WindowsCalculator[/color]","[color="#FF0000"]Microsoft.WindowsStore[/color]","[color="#FF0000"]Microsoft.Appconnector[/color]","[color="#FF0000"]Microsoft.WindowsSoundRecorder[/color]")) { Write-Output -InputObject "Skipping: $($App.DisplayName)" } # Remove everything else else { $AppProvisioningPackageName = Get-AppxProvisionedPackage -Path "$ScriptDir\Mount" | Where-Object { $_.DisplayName -like $App.DisplayName } | Select-Object -ExpandProperty PackageName # Attempt to remove AppxProvisioningPackage try { Write-Output -InputObject "Removing: $AppProvisioningPackageName" Remove-AppxProvisionedPackage -PackageName $AppProvisioningPackageName -Path "$ScriptDir\Mount" -ErrorAction Stop | Out-Null } catch [system.Exception] { Write-Warning -Message $_.Exception.Message } } # Else } # ForEach [color="#4B0082"] #region Customise Default User Profile Write-Output -InputObject "`nCustomising the default user profile" REG LOAD "HKLM\_USER" "$ScriptDir\Mount\Users\Default\NTUSER.DAT" | Out-Null REG LOAD "HKLM\_SOFTWARE" "$ScriptDir\Mount\Windows\System32\config\SOFTWARE" | Out-Null & REG ADD "HKLM\_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced" /v LaunchTo /d 1 /t REG_DWORD /f & REG ADD "HKLM\_USER\Software\Microsoft\Windows\CurrentVersion\Search" /v BingSearchEnabled /d 0 /t REG_DWORD /f & REG ADD "HKLM\_USER\Software\Microsoft\Windows\CurrentVersion\Search" /v SearchboxTaskbarMode /d 1 /t REG_DWORD /f & REG ADD "HKLM\_SOFTWARE\Policies\Microsoft\Windows\CloudContent" /v DisableWindowsConsumerFeatures /d 1 /t REG_DWORD /f REG UNLOAD "HKLM\_USER" | Out-Null REG UNLOAD "HKLM\_SOFTWARE" | Out-Null #endregion[/color] "{0} {1}" -f "`nUnmounting image", $($_.ImageIndex) Get-WindowsImage -Mounted | Dismount-WindowsImage -Save -ErrorAction Stop | Out-Null } # Get-WindowsImage The section highlighted in purple is optional, although it's probably worth keeping so that the "DisableWindowsConsumerFeatures" registry value mentioned in the very first post is added and to avoid the issue described in post #11. The other three registry values above it can be deleted if they aren't required. Removing the apps offline has several advantages... @Arthur, this script worked brilliantly with the Anniversary edition. What I've come to find, however, is that it doesn't work with the Creators edition. Is there a revised script?
Arthur Posted May 3, 2017 Author Posted May 3, 2017 this script worked brilliantly with the Anniversary edition. What I've come to find, however, is that it doesn't work with the Creators edition. Is there a revised script? There's a newer version of the script mine was based on which should work with 1703... https://www.scconfigmgr.com/2017/03/23/enhanced-script-for-removing-built-in-apps-when-creating-a-reference-image-for-windows-10/ I'll try to update my script later today. 2
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now