If you are enjoying Windows 10 right now without your knowledge something is going on. Some app from the windows 10 will send anything u type or what ever it is. We are blocking it.
I just manage to get some site or server ip that microsoft is sending data to. So we can make a host blocking.
For easier way i have make a patch for you guys. It was same as editing the host file if u know. Some registry patch and remove some task schedule that’s enable that data collection. So we disable all. Don’t try if you worry screw your pc. Just a reminder only. For me i disable all of those and not gonna log in any account with windows anyway. Try on your own risk. If worry back up the OS before doing it incase problem in future. I don’t suggest to delete services in some other people guide. It will be needed somedays in future. So disable will do.
Blocked HOSTS at this moment
0.0.0.0 vortex.data.microsoft.com 0.0.0.0 vortex-win.data.microsoft.com 0.0.0.0 telecommand.telemetry.microsoft.com 0.0.0.0 telecommand.telemetry.microsoft.com.nsatc.net 0.0.0.0 oca.telemetry.microsoft.com 0.0.0.0 oca.telemetry.microsoft.com.nsatc.net 0.0.0.0 sqm.telemetry.microsoft.com 0.0.0.0 sqm.telemetry.microsoft.com.nsatc.net 0.0.0.0 watson.telemetry.microsoft.com 0.0.0.0 watson.telemetry.microsoft.com.nsatc.net 0.0.0.0 redir.metaservices.microsoft.com 0.0.0.0 choice.microsoft.com 0.0.0.0 choice.microsoft.com.nsatc.net 0.0.0.0 df.telemetry.microsoft.com 0.0.0.0 reports.wes.df.telemetry.microsoft.com 0.0.0.0 wes.df.telemetry.microsoft.com 0.0.0.0 services.wes.df.telemetry.microsoft.com 0.0.0.0 sqm.df.telemetry.microsoft.com 0.0.0.0 telemetry.microsoft.com 0.0.0.0 watson.ppe.telemetry.microsoft.com 0.0.0.0 telemetry.appex.bing.net 0.0.0.0 telemetry.urs.microsoft.com 0.0.0.0 telemetry.appex.bing.net:443 0.0.0.0 settings-sandbox.data.microsoft.com 0.0.0.0 vortex-sandbox.data.microsoft.com 0.0.0.0 survey.watson.microsoft.com 0.0.0.0 watson.live.com 0.0.0.0 watson.microsoft.com 0.0.0.0 statsfe2.ws.microsoft.com 0.0.0.0 corpext.msitadfs.glbdns2.microsoft.com 0.0.0.0 compatexchange.cloudapp.net 0.0.0.0 cs1.wpc.v0cdn.net 0.0.0.0 a-0001.a-msedge.net 0.0.0.0 statsfe2.update.microsoft.com.akadns.net 0.0.0.0 sls.update.microsoft.com.akadns.net 0.0.0.0 fe2.update.microsoft.com.akadns.net 0.0.0.0 diagnostics.support.microsoft.com 0.0.0.0 corp.sts.microsoft.com 0.0.0.0 statsfe1.ws.microsoft.com 0.0.0.0 pre.footprintpredict.com 0.0.0.0 i1.services.social.microsoft.com 0.0.0.0 i1.services.social.microsoft.com.nsatc.net 0.0.0.0 feedback.windows.com 0.0.0.0 feedback.microsoft-hohm.com 0.0.0.0 feedback.search.microsoft.com 0.0.0.0 rad.msn.com 0.0.0.0 preview.msn.com 0.0.0.0 ad.doubleclick.net 0.0.0.0 ads.msn.com 0.0.0.0 ads1.msads.net 0.0.0.0 ads1.msn.com 0.0.0.0 a.ads1.msn.com 0.0.0.0 a.ads2.msn.com 0.0.0.0 adnexus.net 0.0.0.0 adnxs.com 0.0.0.0 aidps.atdmt.com 0.0.0.0 apps.skype.com 0.0.0.0 az361816.vo.msecnd.net 0.0.0.0 az512334.vo.msecnd.net 0.0.0.0 a.rad.msn.com 0.0.0.0 a.ads2.msads.net 0.0.0.0 ac3.msn.com 0.0.0.0 aka-cdn-ns.adtech.de 0.0.0.0 b.rad.msn.com 0.0.0.0 b.ads2.msads.net 0.0.0.0 b.ads1.msn.com 0.0.0.0 bs.serving-sys.com 0.0.0.0 c.msn.com 0.0.0.0 cdn.atdmt.com 0.0.0.0 cds26.ams9.msecn.net 0.0.0.0 c.atdmt.com 0.0.0.0 db3aqu.atdmt.com 0.0.0.0 ec.atdmt.com 0.0.0.0 flex.msn.com 0.0.0.0 g.msn.com 0.0.0.0 h1.msn.com 0.0.0.0 live.rads.msn.com 0.0.0.0 msntest.serving-sys.com 0.0.0.0 m.adnxs.com 0.0.0.0 m.hotmail.com 0.0.0.0 preview.msn.com 0.0.0.0 pricelist.skype.com 0.0.0.0 rad.msn.com 0.0.0.0 rad.live.com 0.0.0.0 secure.flashtalking.com 0.0.0.0 static.2mdn.net 0.0.0.0 s.gateway.messenger.live.com 0.0.0.0 secure.adnxs.com 0.0.0.0 sO.2mdn.net 0.0.0.0 ui.skype.com 0.0.0.0 www.msftncsi.com 0.0.0.0 msftncsi.com 0.0.0.0 view.atdmt.com
0.0.0.0 msnbot-65-55-108-23.search.msn.com 0.0.0.0 settings-win.data.microsoft.com 0.0.0.0 schemas.microsoft.akadns.net 0.0.0.0 a-0001.a-msedge.net 0.0.0.0 a-0002.a-msedge.net 0.0.0.0 a-0003.a-msedge.net 0.0.0.0 a-0004.a-msedge.net 0.0.0.0 a-0005.a-msedge.net 0.0.0.0 a-0006.a-msedge.net 0.0.0.0 a-0007.a-msedge.net 0.0.0.0 a-0008.a-msedge.net 0.0.0.0 a-0009.a-msedge.net 0.0.0.0 msedge.net 0.0.0.0 a-msedge.net 0.0.0.0 lb1.www.ms.akadns.net 0.0.0.0 pre.footprintpredict.com
0.0.0.0 a23-218-212-69.deploy.static.akamaitechnologies.com 0.0.0.0 a248.e.akamai.net 0.0.0.0 a1961.g.akamai.net 0.0.0.0 a1856.g2.akamai.net 0.0.0.0 a1621.g.akamai.net 0.0.0.0 e2835.dspb.akamaiedge.net 0.0.0.0 e8218.ce.akamaiedge.net 0.0.0.0 e7341.g.akamaiedge.net 0.0.0.0 e7502.ce.akamaiedge.net
Extra Security
My Registry Code to Disable some of the Windows 10 keylogger
;SECURITY
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\BackgroundAccessApplications\Microsoft.WindowsMaps_4.1506.50715.0_x64__8wekyb3d8bbwe]
“Disabled”=dword:00000001[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\BackgroundAccessApplications\Microsoft.MicrosoftEdge_20.10240.16384.0_neutral__8wekyb3d8bbwe]
“Disabled”=dword:00000001[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\BackgroundAccessApplications\Microsoft.Office.OneNote_17.4229.10061.0_x64__8wekyb3d8bbwe]
“Disabled”=dword:00000001[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\BackgroundAccessApplications\Microsoft.People_1.10241.0.0_x64__8wekyb3d8bbwe]
“Disabled”=dword:00000001[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\BackgroundAccessApplications\Microsoft.Windows.Photos_15.721.12350.0_x64__8wekyb3d8bbwe]
“Disabled”=dword:00000001[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\BackgroundAccessApplications\Microsoft.WindowsAlarms_10.1507.17010.0_x64__8wekyb3d8bbwe]
“Disabled”=dword:00000001[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\BackgroundAccessApplications\microsoft.windowscommunicationsapps_17.6020.42011.0_x64__8wekyb3d8bbwe]
“Disabled”=dword:00000001[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\BackgroundAccessApplications\Microsoft.WindowsPhone_10.1507.17010.0_x64__8wekyb3d8bbwe]
“Disabled”=dword:00000001[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\BackgroundAccessApplications\Microsoft.WindowsStore_2015.7.22.0_x64__8wekyb3d8bbwe]
“Disabled”=dword:00000001[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\BackgroundAccessApplications\Microsoft.XboxApp_7.7.21024.0_x64__8wekyb3d8bbwe]
“Disabled”=dword:00000001[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\BackgroundAccessApplications\Microsoft.ZuneMusic_3.6.11821.0_x64__8wekyb3d8bbwe]
“Disabled”=dword:00000001[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\DeviceAccess\S-1-15-2-1227535392-783678415-19788749-859698564-2515149781-2716591593-3518111838\{6ac27878-a6fa-4155-ba85-f98f491d4f33}]
“Value”=”Deny”[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\DeviceAccess\Global\{D89823BA-7180-4B81-B50C-7E471E6121A3}]
“Value”=”Deny”[HKEY_CURRENT_USER\SOFTWARE\Microsoft\InputPersonalization]
“RestrictImplicitTextCollection”=dword:00000001
“RestrictImplicitInkCollection”=dword:00000001[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Search]
“CortanaMUID”=”MUID=41e5e0ea8eaf499fa795976232910cf4”[HKEY_CURRENT_USER\SOFTWARE\Microsoft\InputMethod\Settings\CHS]
“Enable Cloud Candidate”=dword:00000000[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\StorSvc\Parameters]
“ColdBoot”=dword:00000001[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\StorSvc\Parameters]
“ColdBoot”=dword:00000001[HKEY_CURRENT_USER\Control Panel\International\User Profile]
“HttpAcceptLanguageOptOut”=dword:00000001[HKEY_CURRENT_USER\SOFTWARE\Microsoft\IME\15.0\IMEJP\Dictionaries]
“LearningLevel”=dword:0000003c
“MemoryLearning”=dword:00000000[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Input\TIPC]
“Enabled”=dword:00000000[HKEY_CURRENT_USER\SOFTWARE\Microsoft\InputPersonalization\TrainedDataStore]
“HarvestContacts”=dword:00000000[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Pim\Contacts\Settings]
“Locale”=dword:00000804[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Siuf\Rules]
“NumberOfSIUFInPeriod”=dword:00000000[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Unified Store]
“DataMigration”=dword:00000001[HKEY_CURRENT_USER\SOFTWARE\Microsoft\UserData]
“DataMigration”=dword:00000001
“CallHistoryMigration”=dword:00000001[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\AppHost]
“EnableWebContentEvaluation”=dword:00000000[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
“Start_TrackDocs”=dword:00000000
“Start_TrackProgs”=dword:00000001[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\SettingSync\Groups\Language]
“Enabled”=dword:00000000[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Sensor\Permissions\{BFA794E4-F964-4FDB-90F6-51056BFE4B44}]
“SensorPermissionState”=dword:00000000[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\DataCollection]
“AllowTelemetry”=dword:00000000[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Personalization\Settings]
“AcceptedPrivacyPolicy”=dword:00000000[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\DeviceAccess\Global\LooselyCoupled]
“Value”=”Deny”[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\DeviceAccess\Global\{992AFA70-6F47-4148-B3E9-3003349C1548}]
“Value”=”Deny”[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\DeviceAccess\Global\{BFA794E4-F964-4FDB-90F6-51056BFE4B44}]
“Value”=”Deny”[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\DeviceAccess\Global\{C1D23ACC-752B-43E5-8448-8D0E519CD6D6}]
“Value”=”Deny”[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\DeviceAccess\S-1-15-2-155514346-2573954481-755741238-1654018636-1233331829-3075935687-2861478708\{7D7E8402-7C54-4821-A34E-AEEFD62DED93}]
“Value”=”Deny”[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\DeviceAccess\S-1-15-2-2551677095-2355568638-4209445997-2436930744-3692183382-387691378-1866284433\{7D7E8402-7C54-4821-A34E-AEEFD62DED93}]
“Value”=”Deny”[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\DeviceAccess\S-1-15-2-3232211935-909325347-210818523-1333736584-3758124246-283266685-1557978965\{7D7E8402-7C54-4821-A34E-AEEFD62DED93}]
“Value”=”Deny”;Firewall rules will block cortana and diag careful with this one
;Delete Diagtrack and Cortana Remnants [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{60E6D465-398E-4850-BE86-7EF7620A2377}"="v2.24|Action=Block|Active=TRUE|Dir=Out|App=C:\windows\system32\svchost.exe|Svc=DiagTrack|Name=Windows Telemetry|" "{2765E0F4-2918-4A46-B9C9-43CDD8FCBA2B}"="v2.24|Action=Block|Active=TRUE|Dir=Out|App=C:\windows\systemapps\microsoft.windows.cortana_cw5n1h2txyewy\searchui.exe|Name=Search and Cortana application|AppPkgId=S-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742|"
Or batch
reg add "HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules" /v "{60E6D465-398E-4850-BE86-7EF7620A2377}" /t REG_SZ /d "v2.24|Action=Block|Active=TRUE|Dir=Out|App=C:\windows\system32\svchost.exe|Svc=DiagTrack|Name=Windows Telemetry|" /f reg add "HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules" /v "{2765E0F4-2918-4A46-B9C9-43CDD8FCBA2B}" /t REG_SZ /d "v2.24|Action=Block|Active=TRUE|Dir=Out|App=C:\windows\systemapps\microsoft.windows.cortana_cw5n1h2txyewy\searchui.exe|Name=Search and Cortana application|AppPkgId=S-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742|" /f
Open Admin CMD
REM DISABLE SECURITY SERVICES
sc config diagtrack start= disabled >nul
sc config diagnosticshub.standardcollector.service start= disabled > NUL
sc config dmwappushservice start= disabled > NUL
sc config WMPNetworkSvc start= disabled > NULREM REMOVE START UP SECURITY
schtasks /Change /TN "Microsoft\Windows\Customer Experience Improvement Program\KernelCeipTask" /Disable schtasks /Change /TN "Microsoft\Windows\Customer Experience Improvement Program\UsbCeip" /Disable schtasks /Change /TN "Microsoft\Windows\Customer Experience Improvement Program\Consolidator" /Disable schtasks /Change /TN "Microsoft\Windows\Customer Experience Improvement Program\Uploader" /Disable schtasks /Change /TN "Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem" /Disable schtasks /Change /TN "Microsoft\Windows\Shell\FamilySafetyMonitor" /Disable schtasks /Change /TN "Microsoft\Windows\Shell\FamilySafetyRefresh" /Disable schtasks /Change /TN "Microsoft\Windows\Shell\FamilySafetyUpload" /Disable schtasks /Change /TN "Microsoft\Windows\Application Experience\AitAgent" /Disable schtasks /Change /TN "Microsoft\Windows\Application Experience\ProgramDataUpdater" /Disable schtasks /Change /TN "Microsoft\Windows\Application Experience\StartupAppTask" /Disable schtasks /Change /TN "Microsoft\Windows\Autochk\Proxy" /Disable schtasks /change /TN "Microsoft\Windows\Customer Experience Improvement Program\Consolidator" /Disable schtasks /Change /TN "Microsoft\Windows\AppID\SmartScreenSpecific" /Disable schtasks /Change /TN "Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser" /Disable schtasks /Change /TN "Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector" /Disable schtasks /Change /TN "Microsoft\Windows\NetTrace\GatherNetworkInfo" /Disable schtasks /Change /TN "Microsoft\Windows\PI\Sqm-Tasks" /Disable schtasks /Change /TN "Microsoft\Windows\FileHistory\File History (maintenance mode)" /Disable schtasks /Change /TN "Microsoft\Windows\DiskFootprint\Diagnostics" /Disable schtasks /Change /TN "Microsoft\Windows\CloudExperienceHost\CreateObjectTask" /Disable schtasks /Change /TN "Microsoft\Windows\Windows Error Reporting\QueueReporting" /Disable schtasks /change /TN "Microsoft\Office\OfficeTelemetry\AgentFallBack2016" /Disable schtasks /Change /TN "Microsoft\Office\OfficeTelemetry\OfficeTelemetryAgentLogOn2016" /Disable schtasks /Change /TN "Microsoft\Office\OfficeTelemetryAgentLogOn" /Disable schtasks /Change /TN "Microsoft\Office\OfficeTelemetryAgentFallBack" /Disable schtasks /Change /TN "Microsoft\Office\Office 15 Subscription Heartbeat" /Disable REM END OF SECURITY SETTING
Copy paste into the CMD to disable the spying unwanted services as well.
2 thoughts on “Block Windows 10 sending data from your PC”
Thank you so much for these fixes. The Windows 10 giveaway is more of a ploy for MS and the other software companies to find pirated software than anything else. They didn’t just give an OS away because they’re “nice guys.” You’re the man!
not all of them worked but some of them yes. thank you