Jump to content

CSGalloway

Experienced Members
  • Posts

    414
  • Joined

  • Last visited

Posts posted by CSGalloway

  1. I maintain my own personal winapp2.ini file.

     

    Are there any entries in your personal winapp2.ini that are others might like - ?  It might be nice to post it and make sure it doesn't conflict with the main winapp2.ini for this thread...

  2. New Entry:

    [NT Registry Optimizer*]
    LangSecRef=3024
    DetectFile=%ProgramFiles%\NT Registry Optimizer\NTREGOPT.EXE
    Default=False
    FileKey1=%LocalAppData%\Microsoft\Windows\UsrClass.bak
    FileKey2=%WinDir%\ServiceProfiles\LocalService\NTUSER.bak
    FileKey3=%WinDir%\ServiceProfiles\NetworkService\NTUSER.bak
    FileKey4=%WinDir%\System32\config\COMPONENTS.bak
    FileKey5=%WinDir%\System32\config\DEFAULT.bak
    FileKey6=%WinDir%\System32\config\SAM.bak
    FileKey7=%WinDir%\System32\config\SECURITY.bak
    FileKey8=%WinDir%\System32\config\SOFTWARE.bak
    FileKey9=%WinDir%\System32\config\SYSTEM.bak
    
    
  3. Did you check on xp (or does localappdata translate correctly on XP? It's been a while since I was around an "ancient one" :) )

     

    From the first post on this thread....

     

    %LocalAppData%

    Windows XP: C:\Documents and Settings\{username}\Local Settings\Application Data

    Windows Vista/7: C:\Users\{username}\AppData\Local\

  4. @RocknRoll: It is for downloading updates from FileHippo.com but since the updates would have bene already installed - didn't see the need for a warning.  Other similar applications, e.g.  "Download App" do not have a warning..... as shown below

    [Download App Downloads*]
    LangSecRef=3024
    Detect=HKCU\Software\CBS Interactive\Download App
    Default=False
    FileKey1=%Documents%\Downloads\Download App|*.*
    
    
  5. @CSGalloway are those common files? Are they created by a particular program? Sounds like their something that you, in particular, do manually but maybe I am wrong

     

    I had moved files files from an external drive to my c: drive and along came some BAK and TMP files - so I hought it might be nice to add the option for other winapp2.ini users to check their 4 user folders to see if they have any. 

     

    I think Amazon Music program places a TMP file in %Music% folder - not sure when but maybe whe4n it checks for upgrades top the software...

  6. * New Entry

    [Custom TMP and BAK files*]
    LangSecRef=3025
    Detect=HKCR\Applications\explorer.exe
    Default=False
    FileKey1=%Documents%|*.bak;*.tmp|RECURSE
    FileKey2=%Music%|*.bak;*.tmp|RECURSE
    FileKey3=%Pictures%|*.bak;*.tmp|RECURSE
    FileKey4=%Video%|*.bak;*.tmp|RECURSE
    
    
  7. *new entry - not figured out how to test for existance in a non-x64 environment but works for me and my system

    [ultraDefrag Logs*]
    LangSecRef=3024
    Default=False
    Detect=HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\UltraDefrag
    FileKey1=%ProgramFiles%\UltraDefrag\logs|*.*
     

  8. This is the list of all temp and tmp folders on my OS drive.  Format is:

     

    number of sub-folders, number of files in sub-folders, total size of all files in sub-folders, and the root folder

    [C:\]global /h /i /n /q if "%@name[%_CWD]" eq "temp" .or. "%@name[%_CWD]" eq "tmp" echo %@format[5,%@files[/s *,d]] %@format[5,%@files[/s *,-d]] %@format[12,%@filesize[/s *,bc]]  %_cwd
        0     1        2,403  C:\My Programs\Express Archiver\Temp
        0     2          300  C:\My Programs\JDownloader v2.0\.install4j\user\tmp
        0     0            0  C:\My Programs\JDownloader v2.0\tmp
        1     0            0  C:\Program Files\UltraDefrag\tmp
        0     0            0  C:\Program Files (x86)\Hp\Temp
        0     0            0  C:\Program Files (x86)\Temp
        0     0            0  C:\ProgramData\HP\Installer\Temp
        0     0            0  C:\ProgramData\Microsoft\IdentityCRL\production\temp
        0     0            0  C:\ProgramData\Microsoft\RAC\Temp
        0     1            0  C:\Users\Administrator\AppData\Local\Temp
        0     0            0  C:\Users\Default\AppData\Local\Temp
        0     0            0  C:\Users\Galloway\AppData\Local\Amazon Music\Data\Artwork Cache\tmp
        5    20      894,147  C:\Users\Galloway\AppData\Local\Temp
        0     0            0  C:\Users\Galloway\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp
      178   195      567,464  C:\Users\Galloway\AppData\LocalLow\Sun\huksfmgzyj\Temp
        1     0            0  C:\Users\Galloway\AppData\LocalLow\Sun\Java\Deployment\tmp
        1     1       24,040  C:\Users\Galloway\AppData\LocalLow\Sun\Yguwhql\Temp
        0     0            0  C:\Users\Galloway\AppData\Roaming\aignes\AM-DeadLink\temp
        0     0            0  C:\Users\Galloway\AppData\Roaming\Microsoft\IdentityCRL\temp
        0     0            0  C:\Users\Galloway\AppData\Roaming\Multi Edit Software\Multi-Edit\11\Config.04\Tmp
        0     0            0  C:\Users\Galloway\AppData\Roaming\Skype\csgalloway27609\media_messaging\emo_cache\asyncdb\tmp
        0     0            0  C:\Users\Galloway\AppData\Roaming\Skype\csgalloway27609\media_messaging\media_cache_v2\asyncdb\tmp
        0     0            0  C:\Users\Galloway\AppData\Roaming\Skype\csgalloway27609\media_messaging\storage_db\asyncdb\tmp
        0     0            0  C:\Users\Galloway\AppData\Roaming\Skype\csgalloway27609\qikdb\tmp
        0     0            0  C:\Users\Galloway\AppData\Roaming\Skype\live#3acharlessgalloway\media_messaging\emo_cache\asyncdb\tmp
        0     0            0  C:\Users\Galloway\AppData\Roaming\Skype\live#3acharlessgalloway\media_messaging\media_cache\asyncdb\tmp
        0     0            0  C:\Users\Galloway\AppData\Roaming\Skype\live#3acharlessgalloway\media_messaging\storage_db\asyncdb\tmp
        0     0            0  C:\Users\Galloway\AppData\Roaming\Skype\live#3acharlessgalloway\qikdb\tmp
        0     0            0  C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp
        0     0            0  C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp
        0     0            0  C:\Windows\assembly\NativeImages_v4.0.30319_32\Temp
        0     0            0  C:\Windows\assembly\NativeImages_v4.0.30319_64\Temp
        0     0            0  C:\Windows\assembly\temp
        0     0            0  C:\Windows\assembly\tmp
        1     1        8,493  C:\Windows\System32\DriverStore\Temp
        1   152   30,716,215  C:\Windows\Temp
        2     4      774,144  C:\Windows\winsxs\Temp
    
    [C:\]temp\
    

    It's after running Disk Cleanup (also including Windows Update files) running CCleaner with latest Winapp2.ini, restarting the comptuer, then letting Windows updates do a lot of processing before I selected what Windows user account I wanted to use...

     

    Not sure why so many in Windows Temp, or in these:

     

    C:\Users\Galloway\AppData\LocalLow\Sun\huksfmgzyj\Temp

  9. @Nergal

     

    Maybe it would help if I knew if Coffee4Joe used a mac or PC when posting the message I copied and pasted from my gmail inbox.  Maybe there is a problem there..... with the translation of line breaks?

  10. I posted the email notification exactly as I received it - sicne it didn't match the spacing that it had earlier on this thread.  Seems like it should be the same - or at least the email notification should be easier to read....

  11. Hi.  I have email notification for new replies.  This is how the message above appeared.  I am on Windows 7 x64 and email is gmail (website)

    ============== Begin paste

    CSGalloway,

    Coffee4Joe (http://forum.piriform.com/index.php?showuser=57395) has just posted a reply to a topic that you have subscribed to titled "Winapp2.ini additions".

    ------------------------------

    ----------------------------------------
    Added ExcludeKey= to prevent container.dat from being deleted. It seems to fix the issues with app auto closing on launch.
    [bing Weather*]LangSecRef=3031Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.BingWeather_8wekyb3d8bbweDetectFile=%LocalAppData%\Packages\Microsoft.BingWeather_8wekyb3d8bbweDefault=FalseFileKey1=%LocalAppData%\Packages\Microsoft.BingWeather_*\AC\AppCache|*.*|RECURSEFileKey2=%LocalAppData%\Packages\Microsoft.BingWeather_*\AC\INetCache|*.*|RECURSEFileKey3=%LocalAppData%\Packages\Microsoft.BingWeather_*\AC\INetCookies|*.*|RECURSEFileKey4=%LocalAppData%\Packages\Microsoft.BingWeather_*\AC\INetHistory|*.*|RECURSEFileKey5=%LocalAppData%\Packages\Microsoft.BingWeather_*\AC\Microsoft\CLR_v4.0|*.log|RECURSEFileKey6=%LocalAppData%\Packages\Microsoft.BingWeather_*\AC\Microsoft\CryptnetUrlCache\Content|*.*FileKey7=%LocalAppData%\Packages\Microsoft.BingWeather_*\AC\Microsoft\CryptnetUrlCache\MetaData|*.*FileKey8=%LocalAppData%\Packages\Microsoft.BingWeather_*\AC\Microsoft\Internet Explorer\DOMStore|*.*|RECURSEFileKey9=%LocalAppData%\Packages\Microsoft.BingWeather_*\AC\PRICache|*.*FileKey10=%LocalAppData%\Packages\Microsoft.BingWeather_*\AC\Temp|*.*FileKey11=%LocalAppData%\Packages\Microsoft.BingWeather_*\LocalState|*.tmpFileKey12=%LocalAppData%\Packages\Microsoft.BingWeather_*\LocalState\Cache|*.*|RECURSEFileKey13=%LocalAppData%\Packages\Microsoft.BingWeather_*\LocalState\navigationHistory|*.*|RECURSEFileKey14=%LocalAppData%\Packages\Microsoft.BingWeather_*\TempState|*.*|RECURSERegKey1=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.BingWeather_8wekyb3d8bbwe\SearchHistoryExcludeKey1=FILE|%LocalAppData%\Packages\Microsoft.BingWeather_*\AC\*\|container.datModified ExcludeKey1 with a wildcard to cover more container.dat's from being deleted.
    [internet Explorer More*]LangSecRef=3022Detect=HKCU\Software\Microsoft\Internet ExplorerDefault=FalseFileKey1=%SystemDrive%\Documents and Settings\Default User\Application Data\Microsoft\Internet Explorer|brndlog.bak;brndlog.txtFileKey2=%SystemDrive%\Documents and Settings\LocalService\IETldCache|*.*|RECURSEFileKey3=%SystemDrive%\Documents and Settings\NetworkService\IETldCache|*.*|RECURSEFileKey4=%LocalAppData%\Microsoft\Internet Explorer|frameiconcache.dat;tabiconcache.datFileKey5=%LocalAppData%\Microsoft\Internet Explorer|brndlog.txt;brndlog.bakFileKey6=%LocalAppData%\Microsoft\Internet Explorer\Recovery\Last Active|*.*|RECURSEFileKey7=%LocalAppData%\Microsoft\SmartScreen|*.tmpFileKey8=%LocalAppData%\Microsoft\Windows\AppCache|*.*|RECURSEFileKey9=%LocalAppData%\Microsoft\Windows\IECompatCache|*.*|RECURSEFileKey10=%LocalAppData%\Microsoft\Windows\IECompatUACache|*.*|RECURSEFileKey11=%LocalAppData%\Microsoft\Windows\INetCache|*.*|RECURSEFileKey12=%LocalAppData%\Microsoft\Windows\WebCache|*.*|RECURSEFileKey13=%LocalAppData%\Microsoft\Windows\WebCache.old|*.*|REMOVESELFFileKey14=%LocalLowAppData%\Microsoft\Internet Explorer\iconcache|*.*|RECURSEFileKey15=%LocalLowAppData%\Microsoft\Windows\AppCache|*.*|RECURSEFileKey16=%AppData%\Microsoft\Internet Explorer|brndlog.bak;brndlog.txtFileKey17=%AppData%\Microsoft\Internet Explorer\UserData|*.*|RECURSEFileKey18=%WinDir%\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\IETldCache|*.*|RECURSEFileKey19=%WinDir%\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\IETldCache|*.*|RECURSEFileKey20=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache|*.*|RECURSEFileKey21=%WinDir%\System32\config\SystemProfile\AppData\LocalLow\Microsoft\Internet Explorer|brndlog.bak;brndlog.txtFileKey22=%WinDir%\System32\config\SystemProfile\Application Data\Microsoft\Internet Explorer|brndlog.bak;brndlog.txtRegKey1=HKCU\Software\Microsoft\Internet Explorer\International|CNum_CpCacheRegKey2=HKCU\Software\Microsoft\Internet Explorer\International|CpCacheRegKey3=HKCU\Software\Microsoft\Internet Explorer\International\CpMRURegKey4=HKCU\Software\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStoreRegKey5=HKCU\Software\Microsoft\Internet Explorer\PageSetupRegKey6=HKCU\Software\Microsoft\Internet Explorer\Recovery\PendingDeleteRegKey7=HKCU\Software\Microsoft\Internet Explorer\TypedURLSTimeRegKey8=HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\StatsExcludeKey1=FILE|%LocalAppData%\Microsoft\Windows\*\|container.dat
    ----------------------------------------------------------------------

    The topic can be found here: http://forum.piriform.com/index.php?showtopic=32310&view=getnewpost

    If you have configured in your control panel to receive immediate topic reply notifications, you may receive an
    email for each reply made to this topic.  Otherwise, only 1 email is sent per board visit for each subscribed topic.
    This is to limit the amount of mail that is sent to your inbox.

    You can unsubscribe at any time here: http://forum.piriform.com/index.php?app=core&module=global&section=like&do=unsubscribe&key=Zm9ydW1zO3RvcGljczszMjMxMDszNzUwOzM3NTA7Y3NnYWxsb3dheUBnbWFpbC5jb20,

    ============== end paste

  12. I searched my HDD for both *.BAK and *.TMP and came up with:

              8,192 2011-02-11 13:00:42 C:\BOOTSECT.BAK
         33,554,625 2015-10-14 13:04:16 C:\ProgramData\Microsoft\Microsoft Antimalware\Network Inspection System\Support\NisLog.txt.bak
              8,200 2002-10-17 21:23:16 C:\ProgramData\Microsoft\OFFICE\DATA\OPA11.BAK
          1,048,576 2015-06-23 20:47:47 C:\Users\Administrator\AppData\Local\Microsoft\Windows\Explorer\ThumbCacheToDelete\thmEF9C.tmp
          1,048,576 2015-06-23 20:47:47 C:\Users\Administrator\AppData\Local\Microsoft\Windows\Explorer\ThumbCacheToDelete\thmEF9D.tmp
          1,048,576 2015-06-23 20:47:47 C:\Users\Administrator\AppData\Local\Microsoft\Windows\Explorer\ThumbCacheToDelete\thmEF9E.tmp
                 24 2015-06-23 20:47:47 C:\Users\Administrator\AppData\Local\Microsoft\Windows\Explorer\ThumbCacheToDelete\thmEF9F.tmp
                 24 2015-06-23 20:47:47 C:\Users\Administrator\AppData\Local\Microsoft\Windows\Explorer\ThumbCacheToDelete\thmEFA0.tmp
              3,256 2015-06-23 20:47:47 C:\Users\Administrator\AppData\Local\Microsoft\Windows\Explorer\ThumbCacheToDelete\thmEFA1.tmp
             59,285 2015-04-16 20:45:44 C:\Users\Galloway\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences.bak
            524,288 2015-10-22 22:36:30 C:\Users\Galloway\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.tmp
                 58 2015-10-23 16:11:08 C:\Users\Galloway\AppData\Local\Mozilla\Firefox\Profiles\y73yivh7.default-1408590376909\ShutdownDuration.json.tmp
             47,416 2015-10-22 22:36:15 C:\Users\Galloway\AppData\Local\Temp\DIO9E14.tmp
             47,416 2015-10-21 20:43:45 C:\Users\Galloway\AppData\Local\Temp\DIOA6D.tmp
              1,313 2015-10-22 22:36:09 C:\Users\Galloway\AppData\Local\Temp\MAR848A.tmp
              1,285 2015-10-22 22:36:09 C:\Users\Galloway\AppData\Local\Temp\MAR87C6.tmp
              1,313 2015-10-21 20:43:39 C:\Users\Galloway\AppData\Local\Temp\MARF343.tmp
              1,285 2015-10-21 20:43:39 C:\Users\Galloway\AppData\Local\Temp\MARF3D1.tmp
             45,128 2015-10-21 19:15:07 C:\Users\Galloway\AppData\Local\Temp\acrord32_sbx\Z@R9A27.tmp
             44,268 2015-10-21 19:15:07 C:\Users\Galloway\AppData\Local\Temp\acrord32_sbx\Z@R9A87.tmp
             42,592 2015-10-21 19:15:07 C:\Users\Galloway\AppData\Local\Temp\acrord32_sbx\Z@R9AF6.tmp
             44,268 2015-10-21 19:13:16 C:\Users\Galloway\AppData\Local\Temp\acrord32_sbx\Z@RE95F.tmp
             42,592 2015-10-21 19:13:16 C:\Users\Galloway\AppData\Local\Temp\acrord32_sbx\Z@REA1D.tmp
             45,128 2015-10-21 19:13:16 C:\Users\Galloway\AppData\Local\Temp\acrord32_sbx\Z@REA4D.tmp
             16,384 2015-10-23 16:42:21 C:\Users\Galloway\AppData\Local\Temp\~DF0E658E1C49D51764.TMP
                512 2015-10-23 16:42:21 C:\Users\Galloway\AppData\Local\Temp\~DF57E44A66E904D226.TMP
                  0 2015-10-22 22:37:06 C:\Users\Galloway\AppData\Local\VirtualStore\Program Files (x86)\Yahoo!\Messenger\Cache\9G0IMTf7KSnOtr1pRkveNQ--.ProfileMap.dat.tmp
             24,327 2015-09-18 12:29:41 C:\Users\Galloway\AppData\Roaming\Mozilla\Firefox\Profiles\y73yivh7.default-1408590376909\extensions.json.bak
             57,344 2015-10-02 15:32:31 C:\Users\Galloway\Tracing\WPPMedia\Skype_MediaStack-6.0.8943.312-lcsmedia_vnext_release3(rtbldlab)-x86fre-U.etl.bak
             65,536 2015-10-22 22:22:12 C:\Users\Galloway\Tracing\WPPMedia\Skype_MediaStack-6.0.8943.314-lcsmedia_vnext_release3(rtbldlab)-x86fre-U.etl.bak
             16,384 2015-10-02 15:32:31 C:\Users\Galloway\Tracing\WPPMedia\Skype_MediaStackETW-6.0.8943.312-lcsmedia_vnext_release3(rtbldlab)-x86fre-U.etl.bak
             16,384 2015-10-22 22:22:12 C:\Users\Galloway\Tracing\WPPMedia\Skype_MediaStackETW-6.0.8943.314-lcsmedia_vnext_release3(rtbldlab)-x86fre-U.etl.bak
         27,194,449 2015-10-04 12:27:05 C:\Windows\Logs\DISM\dism.log.bak
            576,683 2014-11-22 14:49:47 C:\Windows\System32\drivers\etc\hosts_PTBackup.bak
                837 2015-01-09 01:00:21 C:\Windows\System32\drivers\etc\hosts_PTbackup2.bak
              4,204 2005-07-02 18:57:28 C:\Z_UserFiles\Unknown\BAK_001\settings.bak
         65,640,728 / 36
    
    

    Does anyone know if ALL files are safe to delete ?  I guess the C:\BOOTSECT.BAK is not?

  13. New entry

     

    [jv16 PowerTools-X StartupOptimiser Logs**]
    LangSecRef=3024
    DetectFile=%ProgramFiles%\jv16 PowerTools X\jv16PT.exe
    Default=False
    FileKey1=%LocalAppData%\VirtualStore\Program Files (x86)\jv16 PowerTools X|StartupOptimizer??-??-????_*.log
     

  14. Why do we need to mix two different programs (Acrobat DC & Acrobat Reader DC) together?

     

    Detect1=HKLM\SOFTWARE\Adobe\Adobe Acrobat\DC

    Detect2=HKCU\Software\Adobe\Acrobat Reader\DC

     

    It should have been:

    [Adobe Acrobat DC*]
     LangSecRef=3021
     Detect1=HKLM\SOFTWARE\Adobe\Adobe Acrobat\DC
     Detect2=HKCU\Software\Adobe\Adobe Acrobat\DC
     Default=False
     FileKey1=%ProgramFiles%\Adobe\Acrobat DC\Setup Files|*.*|REMOVESELF
     FileKey2=%CommonAppData%\Adobe\Setup|*.*|REMOVESELF
     FileKey3=%LocalAppData%\Adobe\Acrobat|*.idx|RECURSE
     FileKey4=%LocalAppData%\Adobe\Acrobat\DC\Cache|*.*
     FileKey5=%LocalAppData%\Adobe\Acrobat\DC|UserCache.bin
     RegKey1=HKCU\Software\Adobe\Adobe Acrobat\DC\AVConversionFromPDF
     RegKey2=HKCU\Software\Adobe\Adobe Acrobat\DC\AVConversionToPDF
     RegKey3=HKCU\Software\Adobe\Adobe Acrobat\DC\AVGeneral\cDockables
     RegKey4=HKCU\Software\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles
     RegKey5=HKCU\Software\Adobe\Adobe Acrobat\DC\AVGeneral\cToolbars
     RegKey6=HKCU\Software\Adobe\Adobe Acrobat\DC\RememberedViews\cNoCategoryFiles
     RegKey7=HKCU\Software\Adobe\Adobe Acrobat\DC\ShareIdentity
     RegKey8=HKCU\Software\Adobe\Adobe Synchronizer\DC
    
    
    

    Changed Detect= to Detect1 and added Detect2=

     

    I do not have the HKLM key but do have the HKCU one - hence the modification.

×
×
  • Create New...

Important Information

By using this site, you agree to our Terms of Use.