Eu consegui fazer isso com esse método. Depois de criar o perfil padrão:
1. Go to control panel 》 system 》 advanced system properties 》 user
profiles settings 》
2. Select Default Profile and press copy to, desktop address name it Mandatory.v6
3. Below permitted to use, Press change and type "authenticated users"
,press check names. Also DO NOT tick mandatory profile
4. Right click on Mandatory folder we just created, Security > Edit >
Add > change location to your PC's name > type ALL
APPLICATION PACKAGES and check names, give it full control
5. On Security tab press advance, tick "replace all object permission
entries with inheritable permission entries from this object"
6. Open regedit with administrator privilege, highlight HKEY_USERS, file > load hive > select ntuser.dat on mandatory.v6
folder we created earlier, name it mandatory
7. Right click on that folder > permission > add user > Authenticated Users, check name and give it full control
8. Right click on that folder > permission > add user > type ALL APPLICATION PACKAGES > check name and give it full control
9. Still on regedit Create new key #Mandatory, and new text file mandatoryv6 on mandatory.v6 folder earlier
10. Delete all occurences of Administrator using right click > find, keep pressing del and f3 (next result) careful only delete
occurences under mandatory folder.
11. Right Mandatory folder and export keys, name it mandatory.v6
12. Highlight mandatory folder, file > unload hive
13. Rename ntuser.dat into ntuser.man in mandatory.v6 folder
14. Open regedit with administrator privilege, highlight HKEY_USERS, file > load hive > select ntuser.man on mandatory.v6
folder we created earlier, name it mandatory
15. Run mandatory.reg that we exported in step#22
16. Unload mandatory hive!
17. Repeat from step #1 according to how many profile you plan to make
18. Win+ Run > lusrmgr.msc, then on profile tab give each user the address of mandatory profile folder (without v6!)
19. Your Mandatory profile is now ready, test it by adding something on the desktop, logoff and logon, the changes should not
persist anymore
Modificando o perfil obrigatório:
1. Login as admin
2. Rename ntuser.man in mandatory folder with ntuser.dat
3. login as any of the mandatory profile
4. Make changes, enter admin pass when required
5. Logout mandatory profile, login admin, rename ntuser.dat to ntuser.man again
Mas depois de um par de reboot ou então eu notei que às vezes ele não consegue entrar ..
Eu ainda não testei na versão mais recente do Windows ..