Jump to content

siliconman01

Experienced Members
  • Posts

    1,114
  • Joined

  • Last visited

Posts posted by siliconman01

  1. Modified entry:  [PDF-XChange Editor *]

    Changed FileKey1; Added FileKey2

    [PDF-XChange Editor *]
    LangSecRef=3021
    Detect=HKCU\Software\Tracker Software\PDFXEditor
    Default=False
    FileKey1=%CommonAppData%\Tracker Software\TrackerUpdate|TrackerUpdate.exe.del
    FileKey2=%CommonAppData%\Tracker Software\TrackerUpdate\Download|*.*

     

  2. Modified entry:  [CyberLink PowerDVD *]

    Added Detect5 & RegKey13/14/15 for newly released Cyberlink PowerDVD 19

    [CyberLink PowerDVD *]
    LangSecRef=3023
    Detect1=HKCU\Software\CyberLink\PowerDVD15
    Detect2=HKCU\Software\CyberLink\PowerDVD16
    Detect3=HKCU\Software\CyberLink\PowerDVD17
    Detect4=HKCU\Software\CyberLink\PowerDVD18
    Detect5=HKCU\Software\CyberLink\PowerDVD19
    Default=False
    FileKey1=%CommonAppData%\Cyberlink\Evoparser|*.xml
    FileKey2=%LocalAppData%\Cyberlink\DigitalHome|*.log|RECURSE
    FileKey3=%LocalAppData%\Cyberlink\PowerDVD*|*.log|RECURSE
    FileKey4=%LocalAppData%\Cyberlink\PowerDVD*\cache*|*.*|RECURSE
    FileKey5=%LocalAppData%\Cyberlink\PowerDVD*\CL_DMP_Browser|*.*|RECURSE
    RegKey1=HKCU\Software\CyberLink\PowerDVD15\CLMPSvc\MediaObj\MediaCache5\Data5
    RegKey2=HKCU\Software\CyberLink\PowerDVD15\CLMPSvc\MediaObj\MediaCache5\ProgramInfo
    RegKey3=HKCU\Software\CyberLink\PowerDVD15\CLMPSvc\MediaObj\MediaCache5\Thumbnail5
    RegKey4=HKCU\Software\CyberLink\PowerDVD16\CLMPSvc\MediaObj\MediaCache5\Data5
    RegKey5=HKCU\Software\CyberLink\PowerDVD16\CLMPSvc\MediaObj\MediaCache5\ProgramInfo
    RegKey6=HKCU\Software\CyberLink\PowerDVD16\CLMPSvc\MediaObj\MediaCache5\Thumbnail5
    RegKey7=HKCU\Software\CyberLink\PowerDVD17\CLMPSvc\MediaObj\MediaCache5\Data5
    RegKey8=HKCU\Software\CyberLink\PowerDVD17\CLMPSvc\MediaObj\MediaCache5\ProgramInfo
    RegKey9=HKCU\Software\CyberLink\PowerDVD17\CLMPSvc\MediaObj\MediaCache5\Thumbnail5
    RegKey10=HKCU\Software\CyberLink\PowerDVD18\CLMPSvc\MediaObj\MediaCache5\Data5
    RegKey11=HKCU\Software\CyberLink\PowerDVD18\CLMPSvc\MediaObj\MediaCache5\ProgramInfo
    RegKey12=HKCU\Software\CyberLink\PowerDVD18\CLMPSvc\MediaObj\MediaCache5\Thumbnail5
    RegKey13=HKCU\Software\CyberLink\PowerDVD19\CLMPSvc\MediaObj\MediaCache5\Data5
    RegKey14=HKCU\Software\CyberLink\PowerDVD19\CLMPSvc\MediaObj\MediaCache5\ProgramInfo
    RegKey15=HKCU\Software\CyberLink\PowerDVD19\CLMPSvc\MediaObj\MediaCache5\Thumbnail5

     

  3. Modified entry: [Xbox/ Xbox Game Overlay/Xbox Identity Provider *]

    Changed name from [Xbox *] to [Xbox/ Xbox Game Overlay/Xbox Identity Provider *] because this code covers three Xbox Apps

    Added Detect2=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.XboxIdentityProvider_8wekyb3d8bbwe

    Added FileKey23=%LocalAppData%\Packages\Microsoft.XboxIdentityProvider_*\AC\Nvidia Corporation\NV_Cache|*.*

    [Xbox/Xbox Game Overlay/Xbox Identity Provider *]
    DetectOS=10.0|
    LangSecRef=3031
    Detect1=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.XboxApp_8wekyb3d8bbwe
    Detect2=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.XboxIdentityProvider_8wekyb3d8bbwe
    Default=False
    FileKey1=%LocalAppData%\Packages\Microsoft.XboxApp_*\AC\INet*|*.*|RECURSE
    FileKey2=%LocalAppData%\Packages\Microsoft.XboxApp_*\AC\Microsoft\CryptnetUrlCache\*|*.*|RECURSE
    FileKey3=%LocalAppData%\Packages\Microsoft.XboxApp_*\AC\Temp|*.*|RECURSE
    FileKey4=%LocalAppData%\Packages\Microsoft.XboxApp_*\AC\TokenBroker\Cache|*.*|RECURSE
    FileKey5=%LocalAppData%\Packages\Microsoft.XboxApp_*\LocalCache|*.*|RECURSE
    FileKey6=%LocalAppData%\Packages\Microsoft.XboxApp_*\LocalState|*.log*|RECURSE
    FileKey7=%LocalAppData%\Packages\Microsoft.XboxApp_*\LocalState\*Cache|*.*|RECURSE
    FileKey8=%LocalAppData%\Packages\Microsoft.XboxApp_*\LocalState\DiagOutputDir|*.txt
    FileKey9=%LocalAppData%\Packages\Microsoft.XboxApp_*\LocalState\SmartGlass|*.log
    FileKey10=%LocalAppData%\Packages\Microsoft.XboxApp_*\TempState|*.*|RECURSE
    FileKey11=%LocalAppData%\Packages\Microsoft.XboxGameOverlay_*\AC\INet*|*.*|RECURSE
    FileKey12=%LocalAppData%\Packages\Microsoft.XboxGameOverlay_*\AC\Microsoft\CryptnetUrlCache\*|*.*|RECURSE
    FileKey13=%LocalAppData%\Packages\Microsoft.XboxGameOverlay_*\AC\Temp|*.*|RECURSE
    FileKey14=%LocalAppData%\Packages\Microsoft.XboxGameOverlay_*\LocalCache|*.*|RECURSE
    FileKey15=%LocalAppData%\Packages\Microsoft.XboxGameOverlay_*\LocalState\Cache|*.*|RECURSE
    FileKey16=%LocalAppData%\Packages\Microsoft.XboxGameOverlay_*\LocalState\DiagOutputDir|*.txt
    FileKey17=%LocalAppData%\Packages\Microsoft.XboxGameOverlay_*\TempState|*.*|RECURSE
    FileKey18=%LocalAppData%\Packages\Microsoft.XboxIdentityProvider_*\AC\INet*|*.*|RECURSE
    FileKey19=%LocalAppData%\Packages\Microsoft.XboxIdentityProvider_*\AC\Microsoft\CLR_v4.0*|*.log
    FileKey20=%LocalAppData%\Packages\Microsoft.XboxIdentityProvider_*\AC\Microsoft\CLR_v4.0*\NativeImages\Temp|*.*|RECURSE
    FileKey21=%LocalAppData%\Packages\Microsoft.XboxIdentityProvider_*\AC\Microsoft\CLR_v4.0*\UsageLogs|*.*|RECURSE
    FileKey22=%LocalAppData%\Packages\Microsoft.XboxIdentityProvider_*\AC\Microsoft\CryptnetUrlCache\*|*.*|RECURSE
    FileKey23=%LocalAppData%\Packages\Microsoft.XboxIdentityProvider_*\AC\Nvidia Corporation\NV_Cache|*.*
    FileKey24=%LocalAppData%\Packages\Microsoft.XboxIdentityProvider_*\AC\Temp|*.*|RECURSE
    FileKey25=%LocalAppData%\Packages\Microsoft.XboxIdentityProvider_*\AC\TokenBroker\Cache|*.*|RECURSE
    FileKey26=%LocalAppData%\Packages\Microsoft.XboxIdentityProvider_*\LocalCache|*.*|RECURSE
    FileKey27=%LocalAppData%\Packages\Microsoft.XboxIdentityProvider_*\LocalState\Cache|*.*|RECURSE
    FileKey28=%LocalAppData%\Packages\Microsoft.XboxIdentityProvider_*\TempState|*.*|RECURSE

     

  4. 34 minutes ago, APMichael said:

    Would "DetectFile=%CommonAppData%\CanonBJ\IJPrinter\CNMWindows" possibly work or does this path/folder also exist on your system?

    The CNMWindows folder exists, yes, so that would not resolve the issue from my viewpoint. 

    Canon.png

  5. I recommend that the cleaning module [Canon Printer *] be removed from Winapp2.ini because the DetectFile entry is far too broad.  These logs do not apply to several models of Canon printers and their associated drivers and software.  For example, I just installed a Canon TS9520 printer and all of its approved software.  These logs do not exist; however the folder %CommonAppData%\CanonBJ is present.  IMO, the Detect needs to referenced to HKCU or HKLM registry entries based on the Canon printer model number. 

    [Canon Printer *]
    LangSecRef=3021
    DetectFile=%CommonAppData%\CanonBJ
    Default=False
    FileKey1=%CommonAppData%\CanonBJ\IJPrinter\CNMWindows|drvlog*;drvlog*.*;plmlog*.*|RECURSE

     

     

  6. Modified Entry:  [AMD/ATI *]

    Added ;*.txt to FileKey7

    Added:  FileKey8=%ProgramFiles%\AMD\CIM\Reports|*.xml;*.xsl

    [AMD/ATI *]
    LangSecRef=3024
    Detect1=HKLM\Software\AMD
    Detect2=HKLM\Software\ATI
    Detect3=HKLM\Software\ATI Technologies
    DetectFile=%ProgramFiles%\ATI Technologies\ATI.ACE
    Default=False
    FileKey1=%CommonAppData%\AMD\Fuel|*.txt
    FileKey2=%CommonAppData%\AMD\KDB|*.log
    FileKey3=%LocalAppData%\AMD\Fuel|ClientProxyLog*.*
    FileKey4=%LocalAppData%\AMD\GLCache|*.*|RECURSE
    FileKey5=%LocalAppData%\ATI\ACE|*.txt
    FileKey6=%ProgramFiles%\AMD\amdkmpfd|*.*|REMOVESELF
    FileKey7=%ProgramFiles%\AMD\CIM\Log|*.log;*.txt
    FileKey8=%ProgramFiles%\AMD\CIM\Reports|*.xml;*.xsl
    FileKey9=%ProgramFiles%\AMD\OverDrive|*.log
    FileKey10=%ProgramFiles%\ATI Technologies|*.log|RECURSE
    FileKey11=%ProgramFiles%\ATI Technologies|cccutil64.txt
    FileKey12=%ProgramFiles%\ATI\CIM\Reports|*.*
    FileKey13=%SystemDrive%\AMD|*.*|REMOVESELF
    FileKey14=%SystemDrive%\ATI|*.*|REMOVESELF
    FileKey15=%WinDir%\System32|CCCInstall*.log
    FileKey16=%WinDir%\SysWOW64|CCCInstall*.log

    Modified entry:  [My Office *]

    Added:

    FileKey3=%LocalAppData%\Packages\Microsoft.MicrosoftOfficeHub_*\AC\Microsoft\Internet Explorer\DOMStore\*|*.*|RECURSE
    FileKey4=%LocalAppData%\Packages\Microsoft.MicrosoftOfficeHub_*\AC\NVIDIA Corporation\NV_Cache|*.*|RECURSE

    ExcludeKey1=FILE|%LocalAppData%\Packages\Microsoft.MicrosoftOfficeHub_*\AC\Microsoft\Internet Explorer\DOMStore\*\|www.office[1].xml

    [My Office *]
    DetectOS=10.0|
    LangSecRef=3031
    Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.MicrosoftOfficeHub_8wekyb3d8bbwe
    Default=False
    FileKey1=%LocalAppData%\Packages\Microsoft.MicrosoftOfficeHub_*\AC\INet*|*.*|RECURSE
    FileKey2=%LocalAppData%\Packages\Microsoft.MicrosoftOfficeHub_*\AC\Microsoft\CryptnetUrlCache\*|*.*|RECURSE
    FileKey3=%LocalAppData%\Packages\Microsoft.MicrosoftOfficeHub_*\AC\Microsoft\Internet Explorer\DOMStore\*|*.*|RECURSE
    FileKey4=%LocalAppData%\Packages\Microsoft.MicrosoftOfficeHub_*\AC\NVIDIA Corporation\NV_Cache|*.*|RECURSE
    FileKey5=%LocalAppData%\Packages\Microsoft.MicrosoftOfficeHub_*\AC\Packages\Microsoft.MicrosoftOfficeHub_*\AC\INetHistory\History.*\*|*.*|REMOVESELF
    FileKey6=%LocalAppData%\Packages\Microsoft.MicrosoftOfficeHub_*\AC\Temp|*.*|RECURSE
    FileKey7=%LocalAppData%\Packages\Microsoft.MicrosoftOfficeHub_*\AC\TokenBroker\Cache|*.*|RECURSE
    FileKey8=%LocalAppData%\Packages\Microsoft.MicrosoftOfficeHub_*\LocalCache|*.*|RECURSE
    FileKey9=%LocalAppData%\Packages\Microsoft.MicrosoftOfficeHub_*\LocalState\AppData\Local\Office\16.0\WebServiceCache|*.*|RECURSE
    FileKey10=%LocalAppData%\Packages\Microsoft.MicrosoftOfficeHub_*\LocalState\Cache|*.*|RECURSE
    ExcludeKey1=FILE|%LocalAppData%\Packages\Microsoft.MicrosoftOfficeHub_*\AC\Microsoft\Internet Explorer\DOMStore\*\|www.office[1].xml

     

  7. 7 hours ago, APMichael said:

    Question:

    I noticed that some entries use the same path for error reports: "%LocalAppData%\CrashRpt".

    Shouldn't we add a separate entry for this path and remove the duplicate FileKeys from the other entries?

    
    [CrashRpt Error Reports *]
    LangSecRef=3024
    DetectFile=%LocalAppData%\CrashRpt
    Default=False
    FileKey1=%LocalAppData%\CrashRpt|*.*|RECURSE

    (CrashRpt is an open-source program library for sending error reports.)

    Your recommendation sounds like a more global/practical method of handling CrashRpt....let's go your way.  

  8. Modified entry:  [Movavi Video Converter *]

    Added:  FileKey1=%LocalAppData%\CrashRpt|*.*|RECURSE

    [Movavi Video Converter *]
    LangSecRef=3023
    Detect=HKCU\Software\MOVAVI
    Default=False
    FileKey1=%LocalAppData%\CrashRpt|*.*|RECURSE
    FileKey2=%LocalAppData%\Movavi\Logs\VideoConverter*|*.*
    FileKey3=%LocalAppData%\Movavi\Video Converter|Log.txt

     

  9. On my systems, if I use the cleaning code below for Netflix, it does not seem to break the Netflix app and cleans out a lot of empty folders in DOMStore.  Does this hold true for your systems?   Unfortunately, the Netflix app generates multiple folders containing www.netflix(1).xml :angry:

    [Netflix *]
    LangSecRef=3031
    Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\4DF9E0F8.Netflix_mcm4njqhnhss8
    DetectFile=%LocalAppData%\Packages\4DF9E0F8.Netflix_mcm4njqhnhss8
    Default=False
    FileKey1=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\AC\AppCache|*.*|RECURSE
    FileKey2=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\AC\BackgroundTransferApi|*.*|RECURSE
    FileKey3=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\AC\INet*|*.*|RECURSE
    FileKey4=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\AC\Microsoft\CLR_v4.0\UsageLogs|*.*|RECURSE
    FileKey5=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\AC\Microsoft\CryptnetUrlCache\*|*.*
    FileKey6=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\AC\Microsoft\Internet Explorer\DOMStore\*|*.*|REMOVESELF
    FileKey7=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\AC\NVIDIA Corporation\NV_Cache|*.*
    FileKey8=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\AC\PRICache|*.*
    FileKey9=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\AC\Temp|*.*
    FileKey10=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\AppData\Indexed DB|*.log
    FileKey11=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\LocalState|*.tmp|RECURSE
    FileKey12=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\LocalState\LiveTile|*.*
    FileKey13=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\TempState|*.*|RECURSE
    RegKey1=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\4DF9E0F8.Netflix_mcm4njqhnhss8\SearchHistory
    ;ExcludeKey1=FILE|%LocalAppData%\Packages\4DF9E0F8.Netflix_*\AC\Microsoft\Internet Explorer\DOMStore\|container.dat
    ;ExcludeKey2=FILE|%LocalAppData%\Packages\4DF9E0F8.Netflix_*\AC\Microsoft\Internet Explorer\DOMStore\*\|4df9e0f8[1].xml
    ExcludeKey1=FILE|%LocalAppData%\Packages\4DF9E0F8.Netflix_*\AC\Microsoft\Internet Explorer\DOMStore\*\|www.netflix[1].xml

     

  10. 1 hour ago, APMichael said:

    Some time ago I asked on GitHub which category should be used for Microsoft Store Games. The answer was that we should also use Section=Games. I hope that's okay with you, too.

    That's fine by me. :)

    Thanks for all the work you have done to keep Winapp2.ini rolling.  ;)

  11. If you are like me, you prefer to keep your software updated.  This includes the Windows Store Apps that are installed on your system.  As you know, you can go to Windows Store, click on the ... in the upper right corner, select Downloads and Updates>Get Updates, and Microsoft will update all the Apps installed on your system with the latest and greatest versions.

    To remove Windows Apps that you do not use, you can go to Settings>Apps and uninstall the undesired Store Apps.  However you might/will find that some of the Apps will not let you uninstall them via Settings>Apps.  Okay, then go to the link below and it will provide you an alternate procedure to remove those stubborn Apps via PowerShell

    https://www.laptopmag.com/articles/uninstall-restore-windows-10-builtin-apps

    Below is a list of Apps that you can remove via the PowerShell method.  This list applies to Windows 10 (although it may also work on Windows 8/8.1).  

    Viewer 3D:                         Get-AppxPackage *3dviewer* | Remove-AppxPackage
    Alarms and Clocks:         Get-AppxPackage *windowsalarms* | Remove-AppxPackage
    Calculator:                        Get-AppxPackage *windowscalculator* | Remove-AppxPackage
    Mail and Calendar:          Get-AppxPackage *windowscommunicationsapps* | Remove-AppxPackage
    Messaging:                      Get-AppxPackage *messaging* | Remove-AppxPackage
    Paint 3D:                           Get-AppxPackage *mspaint* | Remove-AppxPackage
    People:                             Get-AppxPackage *people* | Remove-AppxPackage
    Sticky Notes:                   Get-AppxPackage *stickynotes* | Remove-AppxPackage
    Voice Recorder:              Get-AppxPackage *soundrecorder* | Remove-AppxPackage
    Xbox:                                Get-AppxPackage *xboxapp* | Remove-AppxPackage
    Xbox Game Speech:     Get-AppxPackage *xboxspeech* | Remove-AppxPackage
    Get Help:                        Get-AppxPackage *gethelp* | Remove-AppxPackage
    App Installer:                 Get-AppxPackage *desktopappinstaller* | Remove-AppxPackage
    Movies & TV:                 Get-AppxPackage *zunevideo* | Remove-AppxPackage
    Your Phone:                   Get-AppxPackage Microsoft.YourPhone -AllUsers | Remove-AppxPackage
    Camera:                          Get-AppxPackage *windowscamera* | Remove-AppxPackage
    Maps:                             Get-AppxPackage *windowsmaps* | Remove-AppxPackage
    Groove Music:               Get-appxpackage *Microsoft.ZuneMusic* | remove-appxpackage   
    Microsoft Photos:        Get-appxpackage *photos* | remove-appxpackage 

  12. Modified entry:  [Network Speed Test *]

    Added:

    FileKey3=%LocalAppData%\Packages\Microsoft.NetworkSpeedTest_*\AC\Microsoft\CryptnetUrlCache\*|*.*|RECURSE
    FileKey4=%LocalAppData%\Packages\Microsoft.NetworkSpeedTest_*\AC\NVIDIA Corporation\NV_Cache|*.

    [Network Speed Test *]
    LangSecRef=3031
    Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.NetworkSpeedTest_8wekyb3d8bbwe
    DetectFile=%LocalAppData%\Packages\Microsoft.NetworkSpeedTest_8wekyb3d8bbwe
    Default=False
    FileKey1=%LocalAppData%\Packages\Microsoft.NetworkSpeedTest_*\AC\INet*|*.*|RECURSE
    FileKey2=%LocalAppData%\Packages\Microsoft.NetworkSpeedTest_*\AC\Microsoft\CLR_v4.0*\UsageLogs|*.*|RECURSE
    FileKey3=%LocalAppData%\Packages\Microsoft.NetworkSpeedTest_*\AC\Microsoft\CryptnetUrlCache\*|*.*|RECURSE
    FileKey4=%LocalAppData%\Packages\Microsoft.NetworkSpeedTest_*\AC\NVIDIA Corporation\NV_Cache|*.*
    FileKey5=%LocalAppData%\Packages\Microsoft.NetworkSpeedTest_*\AC\PRICache|*.*
    FileKey6=%LocalAppData%\Packages\Microsoft.NetworkSpeedTest_*\AC\Temp|*.*
    FileKey7=%LocalAppData%\Packages\Microsoft.NetworkSpeedTest_*\TempState|*.*|RECURSE

    Modified entry:  [Shuffle Party *]

    Changed Section=Games to LangSecRef=3031

    Added:

    FileKey2=%LocalAppData%\Packages\Microsoft.ShuffleParty_*\AC\Microsoft\CLR_v4.0_32\UsageLogs|*.*

    FileKey4=%LocalAppData%\Packages\Microsoft.ShuffleParty_*\AC\NVIDIA Corporation\NV_Cache|*.*
    FileKey5=%LocalAppData%\Packages\Microsoft.ShuffleParty_*\AC\Temp|*.*|RECURSE
    FileKey6=%LocalAppData%\Packages\Microsoft.ShuffleParty_*\TempState|*.*|RECURSE

    Changed:

    FileKey3=%LocalAppData%\Packages\Microsoft.ShuffleParty_*\AC\Microsoft\CryptnetUrlCache\*|*.*|RECURSE

    [Shuffle Party *]
    LangSecRef=3031
    Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.ShuffleParty_8wekyb3d8bbwe
    DetectFile=%LocalAppData%\Packages\Microsoft.ShuffleParty_8wekyb3d8bbwe
    Default=False
    FileKey1=%LocalAppData%\Packages\Microsoft.ShuffleParty_*\AC\INet*|*.*|RECURSE
    FileKey2=%LocalAppData%\Packages\Microsoft.ShuffleParty_*\AC\Microsoft\CLR_v4.0_32\UsageLogs|*.*
    FileKey3=%LocalAppData%\Packages\Microsoft.ShuffleParty_*\AC\Microsoft\CryptnetUrlCache\*|*.*|RECURSE
    FileKey4=%LocalAppData%\Packages\Microsoft.ShuffleParty_*\AC\NVIDIA Corporation\NV_Cache|*.*
    FileKey5=%LocalAppData%\Packages\Microsoft.ShuffleParty_*\AC\Temp|*.*|RECURSE
    FileKey6=%LocalAppData%\Packages\Microsoft.ShuffleParty_*\TempState|*.*|RECURSE

    Modified Entry: [Skype App *]

    Changed name from [Skype Metro *] to {Skype App *]

    Added:

    FileKey1=%LocalAppData%\Packages\Microsoft.SkypeApp_*\AC\AppCache|*.*|RECURSE

    FileKey4=%LocalAppData%\Packages\Microsoft.SkypeApp_*\AC\Microsoft\Internet Explorer\DOMStore|*.*|RECURSE
    FileKey5=%LocalAppData%\Packages\Microsoft.SkypeApp_*\AC\NVIDIA Corporation\NV_Cache|*.*

    Changed:

    FileKey3=%LocalAppData%\Packages\Microsoft.SkypeApp_*\AC\Microsoft\CryptnetUrlCache\*|*.*

    [Skype App *]
    LangSecRef=3031
    Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.SkypeApp_kzf8qxf38zg5c
    DetectFile=%LocalAppData%\Packages\Microsoft.SkypeApp_kzf8qxf38zg5c
    Default=False
    FileKey1=%LocalAppData%\Packages\Microsoft.SkypeApp_*\AC\AppCache|*.*|RECURSE
    FileKey2=%LocalAppData%\Packages\Microsoft.SkypeApp_*\AC\INet*|*.*|RECURSE
    FileKey3=%LocalAppData%\Packages\Microsoft.SkypeApp_*\AC\Microsoft\CryptnetUrlCache\*|*.*
    FileKey4=%LocalAppData%\Packages\Microsoft.SkypeApp_*\AC\Microsoft\Internet Explorer\DOMStore|*.*|RECURSE
    FileKey5=%LocalAppData%\Packages\Microsoft.SkypeApp_*\AC\NVIDIA Corporation\NV_Cache|*.*
    FileKey6=%LocalAppData%\Packages\Microsoft.SkypeApp_*\AC\PRICache|*.*
    FileKey7=%LocalAppData%\Packages\Microsoft.SkypeApp_*\LocalState|*.*|RECURSE
    FileKey8=%LocalAppData%\Packages\Microsoft.SkypeApp_*\TempState|*.*|RECURSE

    Modified entry:  [Quran *]

    Changed the name from [The Quran *] to [Quran *]

    Changed:

    FileKey4=%LocalAppData%\Packages\*Goheer.TheQuran_*\AC\Microsoft\CryptnetUrlCache\*|*.*|RECURSE

    Added:

    FileKey5=%LocalAppData%\Packages\*Goheer.TheQuran_*\AC\NVIDIA Corporation\NV_Cache|*.*

    [Quran *]
    LangSecRef=3031
    Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\57100Goheer.TheQuran_s6gg0ptmhrgye
    DetectFile=%LocalAppData%\Packages\57100Goheer.TheQuran_s6gg0ptmhrgye
    Default=False
    FileKey1=%LocalAppData%\Packages\*Goheer.TheQuran_*\AC\AppCache|*.*|RECURSE
    FileKey2=%LocalAppData%\Packages\*Goheer.TheQuran_*\AC\INet*|*.*|RECURSE
    FileKey3=%LocalAppData%\Packages\*Goheer.TheQuran_*\AC\Microsoft\CLR_v4.0|*.log|RECURSE
    FileKey4=%LocalAppData%\Packages\*Goheer.TheQuran_*\AC\Microsoft\CryptnetUrlCache\*|*.*|RECURSE
    FileKey5=%LocalAppData%\Packages\*Goheer.TheQuran_*\AC\NVIDIA Corporation\NV_Cache|*.*
    FileKey6=%LocalAppData%\Packages\*Goheer.TheQuran_*\AC\PRICache|*.*
    FileKey7=%LocalAppData%\Packages\*Goheer.TheQuran_*\AC\Temp|*.*
    FileKey8=%LocalAppData%\Packages\*Goheer.TheQuran_*\LocalState|*.*|RECURSE

    Modified entry: [Windows Photos *]

    Added DetectOS=6.2|6.3

    [Windows Photos *]
    DetectOS=6.2|6.3
    LangSecRef=3031
    Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\microsoft.windowsphotos_8wekyb3d8bbwe
    DetectFile=%LocalAppData%\Packages\microsoft.windowsphotos_8wekyb3d8bbwe
    Default=False
    FileKey1=%LocalAppData%\Packages\microsoft.windowsphotos_*\AC\AppCache|*.*|RECURSE
    FileKey2=%LocalAppData%\Packages\microsoft.windowsphotos_*\AC\BackgroundTransferApi|*.down_data;*.up_meta
    FileKey3=%LocalAppData%\Packages\microsoft.windowsphotos_*\AC\INet*|*.*|RECURSE
    FileKey4=%LocalAppData%\Packages\microsoft.windowsphotos_*\AC\Microsoft\CLR_v4.0\UsageLogs|*.*|RECURSE
    FileKey5=%LocalAppData%\Packages\microsoft.windowsphotos_*\AC\Microsoft\CryptnetUrlCache\*|*.*
    FileKey6=%LocalAppData%\Packages\microsoft.windowsphotos_*\AC\Microsoft\Internet Explorer\DOMStore|*.*|RECURSE
    FileKey7=%LocalAppData%\Packages\microsoft.windowsphotos_*\AC\PRICache|*.*
    FileKey8=%LocalAppData%\Packages\microsoft.windowsphotos_*\AC\Temp|*.*
    FileKey9=%LocalAppData%\Packages\microsoft.windowsphotos_*\LocalState|*.log;*.jpg
    FileKey10=%LocalAppData%\Packages\microsoft.windowsphotos_*\LocalState\bici|*.sqm
    FileKey11=%LocalAppData%\Packages\microsoft.windowsphotos_*\TempState|*.*|RECURSE
    RegKey1=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\microsoft.windowsphotos_8wekyb3d8bbwe\SearchHisto

    In Winapp2.ini, the Windows 10 version of Microsoft Photos is named [Photos *].  In Windows Store, it is named Microsoft Photos.  In Settings>Apps it is named Microsoft Photos.  It would be more consistent if we put a DetectOS=10| in [Photos *] and then rename it [Microsoft Photos *].  JMO :unsure:

    MSPhotos.png

  13. Modified entry:  [Mixed Reality Portal *]

    Added:

    FileKey4=%LocalAppData%\Packages\Microsoft.MixedReality.Portal_*\AC\NVIDIA Corporation\NV_Cache|*.*

    [Mixed Reality Portal *]
    DetectOS=10.0|
    LangSecRef=3031
    Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.MixedReality.Portal_8wekyb3d8bbwe
    Default=False
    FileKey1=%LocalAppData%\Packages\Microsoft.MixedReality.Portal_*\AC\AppCache|*.*|RECURSE
    FileKey2=%LocalAppData%\Packages\Microsoft.MixedReality.Portal_*\AC\INet*|*.*|RECURSE
    FileKey3=%LocalAppData%\Packages\Microsoft.MixedReality.Portal_*\AC\Microsoft\CryptnetUrlCache\*|*.*|RECURSE
    FileKey4=%LocalAppData%\Packages\Microsoft.MixedReality.Portal_*\AC\NVIDIA Corporation\NV_Cache|*.*
    FileKey5=%LocalAppData%\Packages\Microsoft.MixedReality.Portal_*\AC\Temp|*.*|RECURSE
    FileKey6=%LocalAppData%\Packages\Microsoft.MixedReality.Portal_*\AC\TokenBroker\Cache|*.*|RECURSE
    FileKey7=%LocalAppData%\Packages\Microsoft.MixedReality.Portal_*\LocalCache|*.*|RECURSE
    FileKey8=%LocalAppData%\Packages\Microsoft.MixedReality.Portal_*\LocalState\Cache|*.*|RECURSE
    FileKey9=%LocalAppData%\Packages\Microsoft.MixedReality.Portal_*\TempState|*.*|RECURSE

     

  14. 7 minutes ago, APMichael said:

    Thanks, but unfortunately, there's still an inconsistency:

    The original Detect used "FilmOnLiveTVFree.FilmOnLiveTVFree_zx03kxexxb716" like the RegKey1. On your image it is now "FilmOnLiveTVFree.FilmOn_zx03kxexxb716". Do we then need a Detect3?

    Doggone it!~ Sure am glad you are checking my entries.. Here is Detect3 included which I suppose is a Windows 8/8.1 file.  Actually the DetectFile would have picked it up anyhow.

    [FilmOn TV and/or FilmOn Live TV *]
    LangSecRef=3031
    Detect1=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\FilmOnLiveTVFree.FilmOn_zx03kxexxb716
    Detect2=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\FilmOnLiveTVFree.OmniverseTV_zx03kxexxb716
    Detect3=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\FilmOnLiveTVFree.FilmOnLiveTVFree_zx03kxexxb716
    DetectFile=%LocalAppData%\Packages\FilmOnLiveTVFree.*_zx03kxexxb716
    Default=False
    FileKey1=%LocalAppData%\Packages\FilmOnLiveTVFree.*_*\AC\INet*|*.*|RECURSE
    FileKey2=%LocalAppData%\Packages\FilmOnLiveTVFree.*_*\AC\Microsoft\CLR_v4.0\UsageLogs|*.*|RECURSE
    FileKey3=%LocalAppData%\Packages\FilmOnLiveTVFree.*_*\AC\Microsoft\CryptnetUrlCache\*|*.*
    FileKey4=%LocalAppData%\Packages\FilmOnLiveTVFree.*_*\AC\Microsoft\Internet Explorer\DOMStore|*.*|RECURSE
    FileKey5=%LocalAppData%\Packages\FilmOnLiveTVFree.*_*\AC\NVIDIA Corporation\NV_Cache|*.*
    RegKey1=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\FilmOnLiveTVFree.FilmOnLiveTVFree_zx03kxexxb716\SearchHistory

     

  15. 1 hour ago, APMichael said:

    oops, sorry :(

    Actually I have discovered that there is a FilmOn TV app and a FilmOn Live TV app, both with the same file structure in Packages.  

    So I suggest one entry named:  
    [FilmOn TV and/or FilmOn Live TV *]

    [FilmOn TV and/or FilmOn Live TV *]
    LangSecRef=3031
    Detect1=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\FilmOnLiveTVFree.FilmOn_zx03kxexxb716
    Detect2=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\FilmOnLiveTVFree.OmniverseTV_zx03kxexxb716
    DetectFile=%LocalAppData%\Packages\FilmOnLiveTVFree.*_zx03kxexxb716
    Default=False
    FileKey1=%LocalAppData%\Packages\FilmOnLiveTVFree.*_*\AC\INet*|*.*|RECURSE
    FileKey2=%LocalAppData%\Packages\FilmOnLiveTVFree.*_*\AC\Microsoft\CLR_v4.0\UsageLogs|*.*|RECURSE
    FileKey3=%LocalAppData%\Packages\FilmOnLiveTVFree.*_*\AC\Microsoft\CryptnetUrlCache\*|*.*
    FileKey4=%LocalAppData%\Packages\FilmOnLiveTVFree.*_*\AC\Microsoft\Internet Explorer\DOMStore|*.*|RECURSE
    FileKey5=%LocalAppData%\Packages\FilmOnLiveTVFree.*_*\AC\NVIDIA Corporation\NV_Cache|*.*
    RegKey1=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\FilmOnLiveTVFree.FilmOnLiveTVFree_zx03kxexxb716\SearchHistory

    If that is not acceptable, then I agree to split it into two separate entries...most assuredly. ;)

    FilmOn.png

    FilmOn1.png

  16. Modified entry:   [Groove Music *]

    Added:

    FileKey6=%LocalAppData%\Packages\Microsoft.ZuneMusic_*\AC\NVIDIA Corporation\NV_Cache|*.*

    [Groove Music *]
    LangSecRef=3031
    Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.ZuneMusic_8wekyb3d8bbwe
    DetectFile=%LocalAppData%\Packages\Microsoft.ZuneMusic_8wekyb3d8bbwe
    Default=False
    FileKey1=%LocalAppData%\Packages\Microsoft.ZuneMusic_*\AC\AppCache|*.*|RECURSE
    FileKey2=%LocalAppData%\Packages\Microsoft.ZuneMusic_*\AC\INet*|*.*|RECURSE
    FileKey3=%LocalAppData%\Packages\Microsoft.ZuneMusic_*\AC\Microsoft\CLR_v4.0\UsageLogs|*.*|RECURSE
    FileKey4=%LocalAppData%\Packages\Microsoft.ZuneMusic_*\AC\Microsoft\CryptnetUrlCache\*|*.*|RECURSE
    FileKey5=%LocalAppData%\Packages\Microsoft.ZuneMusic_*\AC\Microsoft\Internet Explorer\DOMStore|*.*|RECURSE
    FileKey6=%LocalAppData%\Packages\Microsoft.ZuneMusic_*\AC\NVIDIA Corporation\NV_Cache|*.*
    FileKey7=%LocalAppData%\Packages\Microsoft.ZuneMusic_*\AC\PRICache|*.*|RECURSE
    FileKey8=%LocalAppData%\Packages\Microsoft.ZuneMusic_*\AC\Temp|*.*|RECURSE
    FileKey9=%LocalAppData%\Packages\Microsoft.ZuneMusic_*\AC\TokenBroker\Cache|*.*|RECURSE
    FileKey10=%LocalAppData%\Packages\Microsoft.ZuneMusic_*\LocalCache\PlayReady|*.*|RECURSE
    FileKey11=%LocalAppData%\Packages\Microsoft.ZuneMusic_*\LocalState\Database\*|*.log
    FileKey12=%LocalAppData%\Packages\Microsoft.ZuneMusic_*\LocalState\ImageCache|*.*|RECURSE
    FileKey13=%LocalAppData%\Packages\Microsoft.ZuneMusic_*\LocalState\ImageRetrievalFailure|*.*|RECURSE
    FileKey14=%LocalAppData%\Packages\Microsoft.ZuneMusic_*\LocalState\ImageStore|*.*|RECURSE
    FileKey15=%LocalAppData%\Packages\Microsoft.ZuneMusic_*\LocalState\navigationHistory|*.*|RECURSE
    FileKey16=%LocalAppData%\Packages\Microsoft.ZuneMusic_*\LocalState\PlayReady|*.*|RECURSE
    FileKey17=%LocalAppData%\Packages\Microsoft.ZuneMusic_*\TempState|*.*|RECURSE
    RegKey1=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.ZuneMusic_8wekyb3d8bbwe\SearchHistory

    Modified entries:  [HP Printer Control *]  [HP Scan and Capture *]

    Added:

    FileKey5=%LocalAppData%\Packages\*.HPPrinterControl_*\AC\NVIDIA Corporation\NV_Cache|*.*

    [HP Printer Control *]
    LangSecRef=3031
    Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\AD2F1837.HPPrinterControl_v10z8vjag6ke6
    DetectFile=%LocalAppData%\Packages\AD2F1837.HPPrinterControl_v10z8vjag6ke6
    Default=False
    FileKey1=%LocalAppData%\Packages\*.HPPrinterControl_*\AC\AppCache|*.*|RECURSE
    FileKey2=%LocalAppData%\Packages\*.HPPrinterControl_*\AC\INet*|*.*|RECURSE
    FileKey3=%LocalAppData%\Packages\*.HPPrinterControl_*\AC\Microsoft\CLR_v4.0*|*.log|RECURSE
    FileKey4=%LocalAppData%\Packages\*.HPPrinterControl_*\AC\Microsoft\CryptnetUrlCache\*|*.*
    FileKey5=%LocalAppData%\Packages\*.HPPrinterControl_*\AC\NVIDIA Corporation\NV_Cache|*.*
    FileKey6=%LocalAppData%\Packages\*.HPPrinterControl_*\AC\PRICache|*.*
    FileKey7=%LocalAppData%\Packages\*.HPPrinterControl_*\AC\Temp|*.*
    FileKey8=%LocalAppData%\Packages\*.HPPrinterControl_*\LocalState|*.*|RECURSE
    
    [HP Scan and Capture *]
    LangSecRef=3031
    Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\AD2F1837.HPScanandCapture_v10z8vjag6ke6
    DetectFile=%LocalAppData%\Packages\AD2F1837.HPScanandCapture_v10z8vjag6ke6
    Default=False
    FileKey1=%LocalAppData%\Packages\*.HPScanandCapture_*\AC\AppCache|*.*|RECURSE
    FileKey2=%LocalAppData%\Packages\*.HPScanandCapture_*\AC\INet*|*.*|RECURSE
    FileKey3=%LocalAppData%\Packages\*.HPScanandCapture_*\AC\Microsoft\CLR_v4.0*|*.log|RECURSE
    FileKey4=%LocalAppData%\Packages\*.HPScanandCapture_*\AC\Microsoft\CryptnetUrlCache\*|*.*
    FileKey5=%LocalAppData%\Packages\*.HPScanandCapture_*\AC\NVIDIA Corporation\NV_Cache|*.*
    FileKey6=%LocalAppData%\Packages\*.HPScanandCapture_*\AC\PRICache|*.*
    FileKey7=%LocalAppData%\Packages\*.HPScanandCapture_*\AC\Temp|*.*
    FileKey8=%LocalAppData%\Packages\*.HPScanandCapture_*\LocalState|*.*|RECURSE

    Modified entry:  [Hulu *]

    Changed name from [HuluPlus *] to [Hulu *]

    Added: 

    FileKey1=%LocalAppData%\Packages\HuluLLC.HuluPlus_*\AC\AppCache|*.*|RECURSE

    FileKey4=%LocalAppData%\Packages\HuluLLC.HuluPlus_*\AC\Microsoft\Internet Explorer\DOMStore|*.*|RECURSE
    FileKey5=%LocalAppData%\Packages\HuluLLC.HuluPlus_*\AC\NVIDIA Corporation\NV_Cache|*.*

    [Hulu *]
    LangSecRef=3031
    Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\HuluLLC.HuluPlus_fphbd361v8tya
    Default=False
    FileKey1=%LocalAppData%\Packages\HuluLLC.HuluPlus_*\AC\AppCache|*.*|RECURSE
    FileKey2=%LocalAppData%\Packages\HuluLLC.HuluPlus_*\AC\INet*|*.*|RECURSE
    FileKey3=%LocalAppData%\Packages\HuluLLC.HuluPlus_*\AC\Microsoft\CryptnetUrlCache\*|*.*|RECURSE
    FileKey4=%LocalAppData%\Packages\HuluLLC.HuluPlus_*\AC\Microsoft\Internet Explorer\DOMStore|*.*|RECURSE
    FileKey5=%LocalAppData%\Packages\HuluLLC.HuluPlus_*\AC\NVIDIA Corporation\NV_Cache|*.*
    FileKey6=%LocalAppData%\Packages\HuluLLC.HuluPlus_*\AC\Temp|*.*
    FileKey7=%LocalAppData%\Packages\HuluLLC.HuluPlus_*\LocalState|*.tmp|RECURSE
    FileKey8=%LocalAppData%\Packages\HuluLLC.HuluPlus_*\TempState|*.*|RECURSE

    Modified entry:  [Kaspersky Now *]

    Added:

    FileKey4=%LocalAppData%\Packages\KasperskyLab.KasperskyNow_*\AC\Microsoft\CryptnetUrlCache\*|*.*|RECURSE
    FileKey5=%LocalAppData%\Packages\KasperskyLab.KasperskyNow_*\AC\NVIDIA Corporation\NV_Cache|*.*

    [Kaspersky Now *]
    LangSecRef=3031
    Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\KasperskyLab.KasperskyNow_8jx5e25qw3tdc
    Default=False
    FileKey1=%LocalAppData%\Packages\KasperskyLab.KasperskyNow_*\AC\INet*|*.*|RECURSE
    FileKey2=%LocalAppData%\Packages\KasperskyLab.KasperskyNow_*\AC\Microsoft\CLR_v4.0_32|*.log
    FileKey3=%LocalAppData%\Packages\KasperskyLab.KasperskyNow_*\AC\Microsoft\CLR_v4.0_32\UsageLogs|*.*|RECURSE
    FileKey4=%LocalAppData%\Packages\KasperskyLab.KasperskyNow_*\AC\Microsoft\CryptnetUrlCache\*|*.*|RECURSE
    FileKey5=%LocalAppData%\Packages\KasperskyLab.KasperskyNow_*\AC\NVIDIA Corporation\NV_Cache|*.*
    FileKey6=%LocalAppData%\Packages\KasperskyLab.KasperskyNow_*\AC\Temp|*.*|RECURSE
    FileKey7=%LocalAppData%\Packages\KasperskyLab.KasperskyNow_*\LocalCache|*.*|RECURSE

     

  17. Modified entry:  [FilmOn Live TV *]

    Changed name from [FilmOn *] to [FilmOn Live TV *]

    Added:  

    FileKey5=%LocalAppData%\Packages\FilmOnLiveTVFree.*_*\AC\NVIDIA Corporation\NV_Cache|*.*

    All other Detect, DetectFile, and FileKey entries modified to incorporate the latest structure and names.  The latest Package entry name is slightly different than the Windows 8/8.1 version.  That's the reason for the FilmOnLiveTVFree. *_* modifications.

    [FilmOn Live TV *]
    LangSecRef=3031
    Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\FilmOnLiveTVFree.*_zx03kxexxb716
    DetectFile=%LocalAppData%\Packages\FilmOnLiveTVFree.*_zx03kxexxb716
    Default=False
    FileKey1=%LocalAppData%\Packages\FilmOnLiveTVFree.*_*\AC\INet*|*.*|RECURSE
    FileKey2=%LocalAppData%\Packages\FilmOnLiveTVFree.*_*\AC\Microsoft\CLR_v4.0\UsageLogs|*.*|RECURSE
    FileKey3=%LocalAppData%\Packages\FilmOnLiveTVFree.*_*\AC\Microsoft\CryptnetUrlCache\*|*.*
    FileKey4=%LocalAppData%\Packages\FilmOnLiveTVFree.*_*\AC\Microsoft\Internet Explorer\DOMStore|*.*|RECURSE
    FileKey5=%LocalAppData%\Packages\FilmOnLiveTVFree.*_*\AC\NVIDIA Corporation\NV_Cache|*.*
    RegKey1=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\FilmOnLiveTVFree.FilmOnLiveTVFree_zx03kxexxb716\SearchHistory

    Modified entry:  [GasBuddy *]

    Added:

    FileKey3=%LocalAppData%\Packages\45351D82.GasBuddy-FindCheapGasPrices_*\AC\Microsoft\CryptnetUrlCache\*|*.*|RECURSE
    FileKey4=%LocalAppData%\Packages\45351D82.GasBuddy-FindCheapGasPrices_*\AC\NVIDIA Corporation\NV_Cache|*.*

    [GasBuddy *]
    LangSecRef=3031
    Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\45351D82.GasBuddy-FindCheapGasPrices_932xwky9axss4
    DetectFile=%LocalAppData%\Packages\45351D82.GasBuddy-FindCheapGasPrices_932xwky9axss4
    Default=False
    FileKey1=%LocalAppData%\Packages\45351D82.GasBuddy-FindCheapGasPrices_*\AC\INet*|*.*|RECURSE
    FileKey2=%LocalAppData%\Packages\45351D82.GasBuddy-FindCheapGasPrices_*\AC\Microsoft\CLR_v4.0\UsageLogs|*.*|RECURSE
    FileKey3=%LocalAppData%\Packages\45351D82.GasBuddy-FindCheapGasPrices_*\AC\Microsoft\CryptnetUrlCache\*|*.*|RECURSE
    FileKey4=%LocalAppData%\Packages\45351D82.GasBuddy-FindCheapGasPrices_*\AC\NVIDIA Corporation\NV_Cache|*.*
    FileKey5=%LocalAppData%\Packages\45351D82.GasBuddy-FindCheapGasPrices_*\AC\PRICache|*.*
    FileKey6=%LocalAppData%\Packages\45351D82.GasBuddy-FindCheapGasPrices_*\AC\Temp|*.*
    FileKey7=%LocalAppData%\Packages\45351D82.GasBuddy-FindCheapGasPrices_*\TempState|*.*|RECURSE

     

  18. Modified entry:  [Camera *]

    Added:  FileKey5=%LocalAppData%\Packages\Microsoft.*Camera_*\AC\NVIDIA Corporation\NV_Cache|*.*

    [Camera *]
    LangSecRef=3031
    Detect1=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.Camera_8wekyb3d8bbwe
    Detect2=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.WindowsCamera_8wekyb3d8bbwe
    Default=False
    FileKey1=%LocalAppData%\Packages\Microsoft.*Camera_*\AC\AppCache|*.*|RECURSE
    FileKey2=%LocalAppData%\Packages\Microsoft.*Camera_*\AC\INet*|*.*|RECURSE
    FileKey3=%LocalAppData%\Packages\Microsoft.*Camera_*\AC\Microsoft\CLR_v4.0\UsageLogs|*.*|RECURSE
    FileKey4=%LocalAppData%\Packages\Microsoft.*Camera_*\AC\Microsoft\CryptnetUrlCache\*|*.*|RECURSE
    FileKey5=%LocalAppData%\Packages\Microsoft.*Camera_*\AC\NVIDIA Corporation\NV_Cache|*.*
    FileKey6=%LocalAppData%\Packages\Microsoft.*Camera_*\AC\PRICache|*.*|RECURSE
    FileKey7=%LocalAppData%\Packages\Microsoft.*Camera_*\AC\Temp|*.*|RECURSE
    FileKey8=%LocalAppData%\Packages\Microsoft.*Camera_*\TempState|*.*|RECURSE
    FileKey9=%LocalAppData%\Packages\Microsoft.WindowsCamera_*\AC\TokenBroker\Cache|*.*|RECURSE
    FileKey10=%LocalAppData%\Packages\Microsoft.WindowsCamera_*\LocalCache|*.*|RECURSE
    FileKey11=%LocalAppData%\Packages\Microsoft.WindowsCamera_*\LocalState\AppData|*.*|RECURSE
    FileKey12=%LocalAppData%\Packages\Microsoft.WindowsCamera_*\LocalState\Cache|*.*|RECURSE
    RegKey1=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.Camera_8wekyb3d8bbwe\SearchHistory

    New entry:   [News for CNN *]

    [News for CNN *]
    LangSecRef=3031
    Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\65465Fetisenko.NewsReaderforCNN_806cg6g6fmyng
    DetectFile=%LocalAppData%\Packages\65465Fetisenko.NewsReaderforCNN_806cg6g6fmyng
    Default=False
    FileKey1=%LocalAppData%\Packages\65465Fetisenko.NewsReaderforCNN_*\AC\AppCache\*|*.*|REMOVESELF
    FileKey2=%LocalAppData%\Packages\65465Fetisenko.NewsReaderforCNN_*\AC\INet*\*|*.*|REMOVESELF
    FileKey3=%LocalAppData%\Packages\65465Fetisenko.NewsReaderforCNN_*\AC\Microsoft\CryptnetUrlCache\*|*.*|RECURSE
    FileKey4=%LocalAppData%\Packages\65465Fetisenko.NewsReaderforCNN_*\AC\Microsoft\Internet Explorer\DOMStore\*|*.*|REMOVESELF
    FileKey5=%LocalAppData%\Packages\65465Fetisenko.NewsReaderforCNN_*\AC\NVIDIA Corporation\NV_Cache|*.*
    FileKey6=%LocalAppData%\Packages\65465Fetisenko.NewsReaderforCNN_*\AC\Temp|*.*
    FileKey7=%LocalAppData%\Packages\65465Fetisenko.NewsReaderforCNN_*\AC\TokenBroker\Cache|*.*|REMOVESELF
    FileKey8=%LocalAppData%\Packages\65465Fetisenko.NewsReaderforCNN_*\TempState|*.*|RECURSE

      

×
×
  • Create New...

Important Information

By using this site, you agree to our Terms of Use.