@echo off

rem Ãö³¬Hypervisor
bcdedit /set hypervisorlaunchtype off > nul 2>&1
if %errorlevel% equ 0 (
    echo Ãö³¬Hypervisor [92m¦¨¥\[0m
) else (
    echo Ãö³¬Hypervisor [91m¥¢±Ñ[0m
)

rem Ãö³¬Windows DefenderªºDeviceGuard¬ÛÃö³]©w
reg add "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows Defender\DeviceGuard\Scenarios\HypervisorEnforcedCodeIntegrity" /v Enabled /t REG_DWORD /d 0 /f > nul 2>&1
reg add "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows Defender\DeviceGuard\Scenarios\VulnerableDriverBlockList" /v Enabled /t REG_DWORD /d 0 /f > nul 2>&1
reg add "HKLM\SYSTEM\CurrentControlSet\Control\CI\Config" /v VulnerableDriverBlocklistEnable /t REG_DWORD /d 0 /f > nul 2>&1
if %errorlevel% equ 0 (
    echo Ãö³¬Windows DefenderªºDeviceGuard¬ÛÃö³]©w [92m¦¨¥\[0m
) else (
    echo Ãö³¬Windows DefenderªºDeviceGuard¬ÛÃö³]©w [91m¥¢±Ñ[0m
)

rem Ãö³¬DeviceGuardªºHypervisorEnforcedCodeIntegrity
reg add "HKLM\SYSTEM\CurrentControlSet\Control\DeviceGuard\Scenarios\HypervisorEnforcedCodeIntegrity" /v "Enabled" /t REG_DWORD /d 0 /f > nul 2>&1
if %errorlevel% equ 0 (
    echo Ãö³¬DeviceGuardªºHypervisorEnforcedCodeIntegrity [92m¦¨¥\[0m
) else (
    echo Ãö³¬DeviceGuardªºHypervisorEnforcedCodeIntegrity [91m¥¢±Ñ[0m
)

rem ·s¼WWindows DefenderªºDisableAntiSpyware³]©w
reg add "HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender" /v "DisableAntiSpyware" /d 1 /t REG_DWORD /f > nul 2>&1
if %errorlevel% equ 0 (
    echo ·s¼WWindows DefenderªºDisableAntiSpyware³]©w [92m¦¨¥\[0m
) else (
    echo ·s¼WWindows DefenderªºDisableAntiSpyware³]©w [91m¥¢±Ñ[0m
)

pause
