Disable Startup Programs

%3CLINGO-SUB%20id%3D%22lingo-sub-3008498%22%20slang%3D%22en-US%22%3EDisable%20Startup%20Programs%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-3008498%22%20slang%3D%22en-US%22%3E%3CP%3EHi%20Guys%2C%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EI'm%20trying%20to%20create%20a%20powershell%20script%20to%20disable%20the%20startup%20programs.%20I%20was%20able%20to%20disable%20the%20programs%20in%20HKLM%26nbsp%3B%20but%20it%20doesn't%20disable%20the%20remaining%20programs%20from%20HKCU.%20If%20anyone%20has%20worked%20on%20the%20script%2C%20then%20plz%20share.%20Thank%20you%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3ERegards%2C%3C%2FP%3E%3CP%3EBen%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-LABS%20id%3D%22lingo-labs-3008498%22%20slang%3D%22en-US%22%3E%3CLINGO-LABEL%3EIntune%3C%2FLINGO-LABEL%3E%3CLINGO-LABEL%3EMobile%20Application%20Management%20(MAM)%3C%2FLINGO-LABEL%3E%3CLINGO-LABEL%3EMobile%20Device%20Management%20(MDM)%3C%2FLINGO-LABEL%3E%3CLINGO-LABEL%3ESoftware%20Management%3C%2FLINGO-LABEL%3E%3C%2FLINGO-LABS%3E%3CLINGO-SUB%20id%3D%22lingo-sub-3008581%22%20slang%3D%22en-US%22%3ERe%3A%20Disable%20Startup%20Programs%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-3008581%22%20slang%3D%22en-US%22%3EHi%3CBR%20%2F%3E%3CBR%20%2F%3EWhen%20targetting%20the%20HKCU%20you%20need%20to%20apply%20the%20powershell%20script%20to%20the%20logged%20in%20user%20instead%20of%20the%20system%20account..%20If%20you%20are%20blocking%20powershell%20you%20will%20need%20to%20first%20catch%20the%20logged%20in%20user%20sid%20id%2C%20so%20you%20can%20target%20the%20key%20from%20hkey_users%5Csidid%3C%2FLINGO-BODY%3E
Frequent Visitor

Hi Guys,

 

I'm trying to create a powershell script to disable the startup programs. I was able to disable the programs in HKLM  but it doesn't disable the remaining programs from HKCU. If anyone has worked on the script, then plz share. Thank you

 

Regards,

Ben

1 Reply
Hi

When targetting the HKCU you need to apply the powershell script to the logged in user instead of the system account.. If you are blocking powershell you will need to first catch the logged in user sid id, so you can target the key from hkey_users\sidid