Jump to content

SMalik

Experienced Members
  • Posts

    1,757
  • Joined

  • Last visited

Everything posted by SMalik

  1. Revised Entry Added: .txt into FileKey1 & FileKey2 [session Manager*] LangSecRef=3025 Detect=HKLM\Software\Microsoft\Windows Default=False FileKey1=%WinDir%\AppCompat\Programs|*.txt;*.xml FileKey2=%WinDir%\AppCompat\Programs\Install|*.txt;*.xml RegKey1=HKLM\SYSTEM\CurrentControlSet\Control\Session Manager|PendingFileRenameOperations RegKey2=HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\AppCompatCache|AppCompatCache RegKey3=HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\AppCompatCache|CacheMainSdb RegKey4=HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\AppCompatCache|SdbTime
  2. New Entry Background Intelligent Transfer Service (BITS) [bITS Logs*] LangSecRef=3025 Detect=HKCU\Software\Microsoft\Windows Default=False FileKey1=%CommonAppData%\Microsoft\Network\Downloader|*.*|RECURSE
  3. New Entry http://winaero.com/blog/how-the-windows-8-task-manager-calculates-startup-impact-of-apps/ [WDI Logs*] LangSecRef=3025 Detect=HKCU\Software\Microsoft\Windows Default=False FileKey1=%WinDir%\System32\WDI\{*}|*.*|REMOVESELF FileKey2=%WinDir%\System32\WDI\LogFiles\StartupInfo|*.*|RECURSE
  4. LastGood.tmp directory gets created ONLY on XP and Vista whenever there is an issue with HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet. Sometimes, I don't get you logic.
  5. New Entries [Ashampoo Snap 9 (AutoSave)*] LangSecRef=3024 Detect=HKCU\Software\Ashampoo\Ashampoo Snap 9 Default=False FileKey1=%Pictures%\Ashampoo Snap 9\_SNAPDOC|*.* [Ashampoo Snap 9*] LangSecRef=3024 Detect=HKCU\Software\Ashampoo\Ashampoo Snap 9 Default=False FileKey1=%LocalAppData%\CrashRpt\UnsentCrashReports|*.*|RECURSE FileKey2=%AppData%\Ashampoo\Ashampoo Snap 9|*.*|RECURSE FileKey3=%ProgramFiles%\Ashampoo\Ashampoo Snap 9|_NLogMsg.txt
  6. Revised Entry [CyberLink PowerDirector 13*] LangSecRef=3023 Detect=HKCU\Software\CyberLink\PowerDirector13 Default=False FileKey1=%AppData%\CyberLink\PowerDirector\13.0\AutoSave|*.*|RECURSE FileKey2=%AppData%\CyberLink\PowerDirector\13.0\photoTmp|*.*|RECURSE FileKey3=%AppData%\Cyberlink\PowerDirector\13.0\WaveForms|*.*|RECURSE FileKey4=%AppData%\Cyberlink\PowerDirector\13.0|Recentfiles.ini FileKey5=%Documents%\CyberLink\PowerDirector\13.0|Snapshot(*).jpg FileKey6=%Documents%\CyberLink\PowerDirector\13.0\MyTitles|*.*|RECURSE FileKey7=%Documents%\Cyberlink\PowerDirector\13.0\PDRMUSIC.TMP|*.*|REMOVESELF FileKey8=%Documents%\Cyberlink\PowerDirector\13.0\PP.TWOPASS|*.*|REMOVESELF FileKey9=%Documents%\CyberLink\PowerDirector\13.0\Preview Cache Files|*.* FileKey10=%Documents%\CyberLink\PowerDirector\13.0\ShadowEditFiles|*.MPG FileKey11=%Documents%\CyberLink\PowerDirector\13.0\SplitterIndex|*.maidx RegKey1=HKCU\Software\CyberLink\Hanuman RegKey2=HKCU\Software\CyberLink\PowerDirector13\MediaObj\MediaCache5\Data5 RegKey3=HKCU\Software\CyberLink\PowerDirector13\MediaObj\MediaCache5\Thumbnail5 Added: %Documents%\Cyberlink\PowerDirector\13.0\PDRMUSIC.TMP|*.*|REMOVESELF %Documents%\Cyberlink\PowerDirector\13.0\PP.TWOPASS|*.*|REMOVESELF
  7. Revised Entries Changed the Detect's to DetectFile's. [Config.msi Folder*] LangSecRef=3025 DetectFile=%SystemDrive%\Config.msi Default=False FileKey1=%SystemDrive%\Config.msi|*.*|REMOVESELF [LastGood.tmp Folder*] LangSecRef=3025 DetectFile=%WinDir%\LastGood.tmp Default=False FileKey1=%WinDir%\LastGood.tmp|*.*|REMOVESELF
  8. Revised Entry Changed the name from [Temporary Files More*] to [TEMP Folder*]. [TEMP Folder*] LangSecRef=3025 DetectFile=%CommonAppData%\TEMP Default=False FileKey1=%CommonAppData%\TEMP|*.*|RECURSE FileKey2=%LocalAppData%\VirtualStore\ProgramData\TEMP|*.*|RECURSE
  9. New Entry [Temporary ASP.NET Files*] LangSecRef=3025 Detect=HKLM\Software\Microsoft\.NETFramework Default=False FileKey1=%WinDir%\Microsoft.NET\Framework\v4.0.30319\Temporary ASP.NET Files|*.*|REMOVESELF FileKey2=%WinDir%\Microsoft.NET\Framework64\v4.0.30319\Temporary ASP.NET Files|*.*|REMOVESELF
  10. New Entries Please remove [CyberLink PowerToGo9*] [CyberLink Power2Go 9*] LangSecRef=3023 Detect=HKCU\SOFTWARE\CyberLink\Power2Go9\9.0 Default=False FileKey1=%ProgramFiles%\Cyberlink\Power2Go9|*.tmp FileKey2=%ProgramFiles%\Cyberlink\Power2Go9|Thumbs.db|RECURSE FileKey3=%LocalAppData%\Cyberlink\Power2Go9|DLDB.db FileKey4=%Documents%\PDRMUSIC.TMP|*.*|REMOVESELF FileKey5=%Music%|*.tmp FileKey6=%Pictures%|*.tmp RegKey1HKCU\SOFTWARE\CyberLink\LabelPrint\Recent File List RegKey2=HKCU\SOFTWARE\CyberLink\MediaCache\Data4 RegKey3=HKCU\SOFTWARE\CyberLink\MediaCache5\Data5 RegKey4=HKCU\SOFTWARE\CyberLink\MediaCache5\Thumbnail5 RegKey5=HKCU\SOFTWARE\CyberLink\Power2Go9\9.0|CDRippingPath RegKey6=HKCU\SOFTWARE\CyberLink\Power2Go9\9.0|CUEName RegKey7=HKCU\SOFTWARE\CyberLink\Power2Go9\9.0|CUEPath RegKey8=HKCU\SOFTWARE\CyberLink\Power2Go9\9.0|DestFolder RegKey9=HKCU\SOFTWARE\CyberLink\Power2Go9\9.0|DVDFolderPath RegKey9=HKCU\SOFTWARE\CyberLink\Power2Go9\9.0|ImagePath RegKey11=HKCU\SOFTWARE\CyberLink\Power2Go9\9.0|LastBrowsePath RegKey12=HKCU\SOFTWARE\CyberLink\Power2Go9\9.0|LastSaveProjPath RegKey13=HKCU\SOFTWARE\CyberLink\Power2Go9\9.0|MonitorPaths RegKey14=HKCU\SOFTWARE\CyberLink\Power2Go9\9.0|OpenPrjFilePath RegKey15=HKCU\SOFTWARE\CyberLink\Power2Go9\9.0|SelectedFolderPath RegKey16=HKCU\SOFTWARE\CyberLink\Power2Go9\9.0\MediaObj\MediaCache5\Data5 RegKey17=HKCU\SOFTWARE\CyberLink\Power2Go9\9.0\MediaObj\MediaCache5\Thumbnail5 RegKey18=HKCU\SOFTWARE\CyberLink\WaveEditor\2.0|ImportDir RegKey19=HKCU\SOFTWARE\CyberLink\WaveEditor\2.0|TempFileDir RegKey20=HKCU\SOFTWARE\CyberLink\WaveEditor\2.0|WorkDir [CyberLink Power2Go 10*] LangSecRef=3023 Detect=HKCU\SOFTWARE\CyberLink\Power2Go10\10.0 Default=False FileKey1=%ProgramFiles%\Cyberlink\Power2Go10|*.tmp FileKey2=%ProgramFiles%\Cyberlink\Power2Go10|Thumbs.db|RECURSE FileKey3=%LocalAppData%\Cyberlink\Power2Go10|DLDB.db FileKey4=%Documents%\PDRMUSIC.TMP|*.*|REMOVESELF FileKey5=%Music%|*.tmp FileKey6=%Pictures%|*.tmp RegKey1=HKCU\SOFTWARE\CyberLink\LabelPrint\Recent File List RegKey2=HKCU\SOFTWARE\CyberLink\MediaCache\Data4 RegKey3=HKCU\SOFTWARE\CyberLink\MediaCache5\Data5 RegKey4=HKCU\SOFTWARE\CyberLink\MediaCache5\Thumbnail5 RegKey5=HKCU\SOFTWARE\CyberLink\Power2Go10\10.0|CDRippingPath RegKey6=HKCU\SOFTWARE\CyberLink\Power2Go10\10.0|CUEName RegKey7=HKCU\SOFTWARE\CyberLink\Power2Go10\10.0|CUEPath RegKey8=HKCU\SOFTWARE\CyberLink\Power2Go10\10.0|DestFolder RegKey9=HKCU\SOFTWARE\CyberLink\Power2Go10\10.0|DVDFolderPath RegKey10=HKCU\SOFTWARE\CyberLink\Power2Go10\10.0|ImagePath RegKey11=HKCU\SOFTWARE\CyberLink\Power2Go10\10.0|LastBrowsePath RegKey12=HKCU\SOFTWARE\CyberLink\Power2Go10\10.0|LastSaveProjPath RegKey13=HKCU\SOFTWARE\CyberLink\Power2Go10\10.0|MonitorPaths RegKey14=HKCU\SOFTWARE\CyberLink\Power2Go10\10.0|OpenPrjFilePath RegKey15=HKCU\SOFTWARE\CyberLink\Power2Go10\10.0|SelectedFolderPath RegKey16=HKCU\SOFTWARE\CyberLink\Power2Go10\10.0\MediaObj\MediaCache5\Data5 RegKey17=HKCU\SOFTWARE\CyberLink\Power2Go10\10.0\MediaObj\MediaCache5\Thumbnail5 RegKey18=HKCU\SOFTWARE\CyberLink\WaveEditor\2.0|ImportDir RegKey19=HKCU\SOFTWARE\CyberLink\WaveEditor\2.0|TempFileDir RegKey20=HKCU\SOFTWARE\CyberLink\WaveEditor\2.0|WorkDir
  11. Duplicate entries. Please remove [CyberLink Youcam Installation Files*]. [CyberLink Install Temps*] LangSecRef=3023 DetectFile=%CommonAppData%\install_clap Default=False FileKey1=%CommonAppData%\install_clap|*.*|REMOVESELF [CyberLink Youcam Installation Files*] LangSecRef=3023 Detect=HKCU\Software\CyberLink\YouCam Default=False FileKey1=%CommonAppData%\install_clap|*.*|REMOVESELF FileKey2=%LocalAppData%\VirtualStore\ProgramData\install_clap|*.*|REMOVESELF
  12. Please look at these posts: http://forum.piriform.com/index.php?showtopic=32310&p=272016 http://forum.piriform.com/index.php?showtopic=32310&p=272051
  13. New Entry [Adobe Acrobat DC*] LangSecRef=3021 Detect=HKLM\Software\Adobe\Adobe Acrobat\DC Default=False FileKey1=%ProgramFiles%\Adobe\Acrobat DC\Setup Files|*.*|REMOVESELF FileKey2=%LocalAppData%\Adobe\Acrobat\DC\Cache|*.lst FileKey3=%LocalAppData%\Adobe\Acrobat\DC\ToolsSearchCacheAcro|*.*|RECURSE FileKey4=%LocalAppData%\Adobe\Acrobat\DC|*.lst FileKey5=%LocalAppData%\Adobe\Acrobat\DC|UserCache.bin FileKey6=%LocalLowAppData%\Adobe\Acrobat\DC\Search|*.* RegKey1=HKCU\Software\Adobe\Adobe Acrobat\DC\AVConversionFromPDF\cSettings RegKey2=HKCU\Software\Adobe\Adobe Acrobat\DC\AVConversionToPDF\cSettings RegKey3=HKCU\Software\Adobe\Adobe Acrobat\DC\AVGeneral\cDockables RegKey4=HKCU\Software\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles RegKey5=HKCU\Software\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFolders RegKey6=HKCU\Software\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentToolsList RegKey7=HKCU\Software\Adobe\Adobe Acrobat\DC\AVGeneral\cToolbars RegKey8=HKCU\Software\Adobe\Adobe Acrobat\DC\RememberedViews\cNoCategoryFiles RegKey9=HKCU\Software\Adobe\Adobe Acrobat\DC\ShareIdentity RegKey10=HKCU\Software\Adobe\Adobe Synchronizer\DC
  14. New Entry [imTOO Video Converter Ultimate*] LangSecRef=3023 Detect=HKCU\Software\ImTOO\Video Converter Ultimate Default=False RegKey1=HKCU\Software\ImTOO\Video Converter Ultimate\Settings|last_openfile_dir RegKey2=HKCU\Software\ImTOO\Video Converter Ultimate\Settings|last_output_dir RegKey3=HKCU\Software\ImTOO\Video Converter Ultimate\Settings|last_profile_group RegKey4=HKCU\Software\ImTOO\Video Converter Ultimate\Settings|last_profile_url RegKey5=HKCU\Software\ImTOO\Video Converter Ultimate\Settings|recent_profiles RegKey6=HKCU\Software\ImTOO\Video Converter Ultimate\Settings\output FileKey1=%CommonAppData%\ImTOO\Video Converter Ultimate\customdata|settings.old
  15. New Entry [startup Repair Logs*] LangSecRef=3025 Detect=HKLM\Software\Microsoft\Windows Default=False FileKey1=%WinDir%\System32\LogFiles\Srt|*.*|RECURSE
  16. New Entry [Wondershare AllMyTube*] LangSecRef=3022 Detect1=HKLM\SOFTWARE\Wondershare\Wondershare AllMyTube Detect2=HKLM\SOFTWARE\WOW6432Node\Wondershare\Wondershare AllMyTube Default=False FileKey1=%ProgramFiles%\Wondershare\AllMyTube\Log|*.*|RECURSE FileKey2=%CommonAppData%\Wondershare\AllMyTube|*.bak FileKey3=%CommonAppData%\Wondershare AllMyTube\ConvertedLibPic|*.*|RECURSE FileKey4=%CommonAppData%\Wondershare AllMyTube|*.xml FileKey5=%CommonAppData%\Wondershare Application Common Data\Download\MediaLibPic|*.*|RECURSE FileKey6=%CommonAppData%\Wondershare Application Common Data\Download\SiteLogo|*.*|RECURSE FileKey7=%CommonAppData%\Wondershare Application Common Data\Download\TempThumbDir|*.*|RECURSE FileKey8=%CommonAppData%\Wondershare Application Common Data\Download|*.bak;*.xml FileKey9=%AppData%\Wondershare AllMyTube|*.*|RECURSE
  17. Revised Entry Removed ExcludeKey's. Because of the ExcludeKey's, lots of LOG and .old files were not being removed. I have tested it on the latest version of Chrome with several extensions installed, no issue whatsoever. [Logs*] LangSecRef=3029 SpecialDetect=DET_CHROME Detect1=HKCU\Software\Torch Detect2=HKCU\Software\SuperBird Default=False FileKey1=%LocalAppData%\Google\Chrome*\Application|debug.log FileKey2=%LocalAppData%\Google\Chrome*\User Data\*|*LOG.*;Log;*.log;*.old|RECURSE FileKey3=%LocalAppData%\Chrome Plus\Application|debug.log FileKey4=%LocalAppData%\Chrome Plus\User Data\*|*LOG.*;Log;*.log;*.old|RECURSE FileKey5=%LocalAppData%\Chromium\Application|debug.log FileKey6=%LocalAppData%\Chromium\User Data\*|*LOG.*;Log;*.log;*.old|RECURSE FileKey7=%LocalAppData%\Flock\Application|debug.log FileKey8=%LocalAppData%\Flock\User Data\*|*LOG.*;Log;*.log;*.old|RECURSE FileKey9=%LocalAppData%\Rockmelt\Application|debug.log FileKey10=%LocalAppData%\Rockmelt\User Data\*|*LOG.*;Log;*.log;*.old|RECURSE FileKey11=%LocalAppData%\SRWare Iron\Application|debug.log FileKey12=%LocalAppData%\SRWare Iron\User Data\*|*LOG.*;Log;*.log;*.old|RECURSE FileKey13=%LocalAppData%\Torch\Application|debug.log FileKey14=%LocalAppData%\Torch\User Data\*|*LOG.*;Log;*.log;*.old|RECURSE FileKey15=%LocalAppData%\SuperBird\Application|debug.log FileKey16=%LocalAppData%\SuperBird\User Data\*|*LOG.*;Log;*.log;*.old|RECURSE FileKey17=%LocalAppData%\Amigo\Application|debug.log FileKey18=%LocalAppData%\Amigo\User Data\*\*|*LOG.*;Log;*.log;*.old|RECURSE FileKey19=%LocalAppData%\Google\Chrome Cleanup Tool|*.*|REMOVESELF
  18. You're right. I guess my Winapp2.ini file got changed somehow.
  19. I didn't misspell. I corrected FileKey1 but forgot to correct this one. By the way, after correcting the Detect spell, now it is not showing up in CCleaner.
  20. I have the latest version of CCleaner on my system. Any idea why [Clover JumpListIcons*] shows up even though I don't have that program on my system. I checked the Windows registry and there is no HKCU\Software\Clover.
  21. Revised Entry [Clover JumpListIcons*] LangScRef=3024 Detct=HKCU\Software\Clover Deault=False FileKey1=%LocalAppData%\Clover\User Data\Default\JumpListIcons|*tmp FileKey2=%LocalAppData%\Clover\User Data\Default\JumpListIconsOld|*tmp FileKey1 was misspelled.
  22. Revised Entries [Office 2010 More*] LangSecRef=3021 Detect=HKCU\Software\Microsoft\Office\14.0\Common Default=False FileKey1=%LocalAppData%\Microsoft\Office\14.0\OfficeFileCache|*.*|RECURSE FileKey2=%LocalAppData%\Microsoft\Office\14.0|OneNoteOfflineCache.onecache FileKey3=%LocalAppData%\Microsoft\OneNote\14.0\OneNoteOfflineCache_Files|*.*|RECURSE FileKey4=%Documents%|~*.ppt;~*.pptx|RECURSE FileKey5=%Documents%|~*.doc;~*.docx|RECURSE RegKey1=HKCU\Software\Microsoft\Office\14.0\Common\Internet|UseRWHlinkNavigation RegKey2=HKCU\Software\Microsoft\Office\14.0\Word\Reading Locations [Office 2013 More*] LangSecRef=3021 Detect=HKCU\Software\Microsoft\Office\15.0\Common Default=False FileKey1=%LocalAppData%\Microsoft\Office\15.0\OfficeFileCache|*.*|RECURSE FileKey2=%LocalAppData%\Microsoft\Office\15.0|OneNoteOfflineCache.onecache FileKey3=%LocalAppData%\Microsoft\OneNote\15.0\OneNoteOfflineCache_Files|*.*|RECURSE FileKey4=%Documents%|~*.ppt;~*.pptx|RECURSE FileKey5=%Documents%|~*.doc;~*.docx|RECURSE RegKey1=HKCU\Software\Microsoft\Office\15.0\Common\Internet|UseRWHlinkNavigation RegKey2=HKCU\Software\Microsoft\Office\15.0\Word\Reading Locations New Entries [Office 2007 More*] LangSecRef=3021 Detect=HKCU\Software\Microsoft\Office\12.0\Common FileKey1=%Documents%|~*.ppt;~*.pptx|RECURSE FileKey2=%Documents%|~*.doc;~*.docx|RECURSE RegKey1=HKCU\Software\Microsoft\Office\12.0\Common\Internet|UseRWHlinkNavigation RegKey2=HKCU\Software\Microsoft\Office\12.0\Word\Reading Locations [Office 2016 More*] LangSecRef=3021 Detect=HKCU\Software\Microsoft\Office\16.0\Common Default=False FileKey1=%Documents%|~*.ppt;~*.pptx|RECURSE FileKey2=%Documents%|~*.doc;~*.docx|RECURSE RegKey1=HKCU\Software\Microsoft\Office\16.0\Common\Internet|UseRWHlinkNavigation RegKey2=HKCU\Software\Microsoft\Office\16.0\Word\Reading Locations Merged [MS Office PowerPoint More*] and [MS Office Word More*] into these entries. Please remove these entries.
  23. Revised Entry [Windows Defender More*] LangSecRef=3024 Detect=HKLM\Software\Microsoft\Windows Defender Default=False FileKey1=%CommonAppData%\Microsoft\Windows Defender\Definition Updates\Backup|*.*|RECURSE FileKey2=%CommonAppData%\Microsoft\Windows Defender\LocalCopy|*.*|RECURSE FileKey3=%CommonAppData%\Microsoft\Windows Defender\Network Inspection System\Support|*.txt FileKey4=%CommonAppData%\Microsoft\Windows Defender\Scans|*.bin;*.bin* FileKey5=%CommonAppData%\Microsoft\Windows Defender\Scans\History\Service|*.log FileKey6=%CommonAppData%\Microsoft\Windows Defender\Scans\Scans\History\CacheManager|*.*|RECURSE FileKey7=%CommonAppData%\Microsoft\Windows Defender\Support|*.*|RECURSE Added: %CommonAppData%\Microsoft\Windows Defender\LocalCopy|*.*|RECURSE Windows Disk Cleanup removes files from this location.
  24. New Entry Windows Disk Cleanup removes these files. [Delivery Optimization Files*] LangSecRef=3025 Detect=HKLM\Software\Microsoft\Windows Default=False RegKey1=HKLM\Software\Microsoft\Windows\CurrentVersion\DeliveryOptimization\Jobs FileKey1=%WinDir%\Logs\dosvc|*.*|RECURSE FileKey2=%WinDir%\SoftwareDistribution\DeliveryOptimization|*.*|RECURSE
  25. Revised Entry [Plex Media Server*] LangSecRef=3023 Detect=HKCU\Software\Plex, Inc.\Plex Media Server Default=False FileKey1=%ProgramFiles%\Plex\Plex Media Server|*.txt;*.log|RECURSE FileKey2=%LocalAppData%\Plex Media Server\Cache\PhotoTranscoder|*.*|RECURSE FileKey3=%LocalAppData%\Plex Media Server\Crash Reports|*.*|RECURSE FileKey4=%LocalAppData%\Plex Media Server\Logs|*.*|RECURSE FileKey5=%LocalAppData%\Plex Media Server\Updates|*.*|RECURSE FileKey6=%LocalAppData%\VirtualStore\Program Files*\Plex\Plex Media Server|*.txt;*.log|RECURSE FileKey7=%LocalAppData%\VirtualStore\Program Files*\Plex Media Server\Cache\PhotoTranscoder|*.*|RECURSE FileKey8=%LocalAppData%\VirtualStore\Program Files*\Plex Media Server\Crash Reports|*.*|RECURSE FileKey9=%LocalAppData%\VirtualStore\Program Files*\Plex Media Server\Logs|*.*|RECURSE FileKey10=%LocalAppData%\VirtualStore\Program Files*\Plex Media Server\Updates|*.*|RECURSE Added: %LocalAppData%\Plex Media Server\Cache\PhotoTranscoder|*.*|RECURSE %LocalAppData%\Plex Media Server\Updates|*.*|RECURSE %LocalAppData%\VirtualStore\Program Files*\Plex Media Server\Cache\PhotoTranscoder|*.*|RECURSE %LocalAppData%\VirtualStore\Program Files*\Plex Media Server\Updates|*.*|RECURSE
×
×
  • Create New...

Important Information

By using this site, you agree to our Terms of Use.