Jump to content

SMalik

Experienced Members
  • Posts

    1,757
  • Joined

  • Last visited

Everything posted by SMalik

  1. Revised Entry Added: %AppData%\HMYGSetting|*.*|REMOVESELF %AppData%\Wondershare\SafeEraser\Logs\iOSTemp|*.*|RECURSE %AppData%\Wondershare\SafeEraser\Logs\DeviceConnection|*.*|RECURSE [Wondershare SafeEraser*] LangSecRef=3021 Detect=HKLM\Software\Wondershare\SafeEraser Default=False FileKey1=%SystemDrive%\se_tmp|*.*|REMOVESELF FileKey2=%ProgramFiles%\Wondershare\SafeEraser\se_tmp_win|*.*|REMOVESELF FileKey3=%AppData%\HMYGSetting|*.*|REMOVESELF FileKey4=%AppData%\HYXDevPsnList|*.*|REMOVESELF FileKey5=%AppData%\se_tmp|*.*|REMOVESELF FileKey6=%AppData%\se_tmp_win|*.*|REMOVESELF FileKey7=%AppData%\Wondershare\SafeEraser|*.log FileKey8=%AppData%\Wondershare\SafeEraser\Logs\iOSTemp|*.*|RECURSE FileKey9=%AppData%\Wondershare\SafeEraser\Logs\DeviceConnection|*.*|RECURSE
  2. Revised Entry Included history.xml into %CommonAppData%\Avg\log\AV16|history.xml;*.log;*.log.*;*.log.lock [AVG Protection*] LangSecRef=3024 Detect=HKLM\SOFTWARE\AVG\AV Default=False FileKey1=%ProgramFiles%\AVG\Av|updatecomps.bak;*.old FileKey2=%CommonAppData%\Avg\AV\Antispam|*.tmp;*.tmp1;*.tmp2;*.gz FileKey3=%CommonAppData%\Avg\AV\SetupBackup|*.*|REMOVESELF FileKey4=%CommonAppData%\Avg\log\AV16|history.xml;*.log;*.log.*;*.log.lock FileKey5=%CommonAppData%\Avg\log\fmw1|*.log;*.log.*;*.log.lock FileKey6=%CommonAppData%\MFAData\logs|*.* FileKey7=%CommonAppData%\MFAData\pack|*.* FileKey8=%CommonAppData%\MFAData|msistorg.dat.bkp;public_installation_log.xml FileKey9=%LocalAppData%\Avg\log\av16|*.log;*.log.*;*.log.lock FileKey10=%LocalAppData%\Avg\log\fmw1|*.log;*.log.*;*.log.lock FileKey11=%LocalAppData%\AvgSetupLog|*.*|REMOVESELF FileKey12=%LocalAppData%\MFAData\logs|*.* FileKey13=%WinDir%\System32\config\systemprofile\AppData\Local\Avg\av16\temp|*.* FileKey14=%WinDir%\System32\config\systemprofile\AppData\Local\Avg\log\av16|*.log;*.log.*;*.log.lock FileKey15=%WinDir%\System32\config\systemprofile\AppData\Local\Avg\log\fmw1|*.log;*.log.*;*.log.lock FileKey16=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Avg\av16\temp|*.* FileKey17=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Avg\log\av16|*.log;*.log.*;*.log.lock FileKey18=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Avg\log\fmw1|*.log;*.log.*;*.log.lock
  3. Ashampoo Burning Studio 2016 is not version 16. I have version 15 and they have plans to release version 16 soon. We should have separate entries for version 15 and 2016.
  4. Revised Entry Changed the last portion of the package name with an asterisk. [Microsoft Edge More*] LangSecRef=3022 Detect=HKCU\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.MicrosoftEdge_8wekyb3d8bbwe DetectFile=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe Default=False FileKey1=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\#!001\Microsoft\CryptnetUrlCache|*.*|RECURSE FileKey2=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\#!002\Microsoft\CryptnetUrlCache|*.*|RECURSE FileKey3=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\Microsoft\CryptnetUrlCache|*.*|RECURSE FileKey4=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\MicrosoftEdge\User\Default\DataStore\Data|*.*|RECURSE FileKey5=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\MicrosoftEdge\User\Default\DataStore\Indexed\Data|*.*|RECURSE
  5. This entry is completely safe. This does not wipe Favorites/Bookmarks. Favorites/Bookmarks are saved in a location that is not included into this entry.
  6. Revised Entry Added: %CommonAppData%\Wondershare\DrFoneAndroid\Logs\DeviceConnection|*.*|RECURSE [Wondershare Dr.Fone for Android*] LangSecRef=3021 Detect=HKLM\SOFTWARE\Wondershare\Dr.Fone for Android Default=False FileKey1=%SystemDrive%\DrFoneForAndroid|*.*|REMOVESELF FileKey2=%ProgramFiles%\Wondershare\Dr.Fone for Android\log|*.*|RECURSE FileKey3=%CommonAppData%\Wondershare\DrFoneAndroid\Log|*.*|RECURSE FileKey4=%CommonAppData%\Wondershare\DrFoneAndroid\Logs\DeviceConnection|*.*|RECURSE FileKey5=%CommonAppData%\Wondershare\ProductFeatures\LocalLogs|*.*|RECURSE FileKey6=%CommonAppData%\Wondershare\ProductFeatures\RemoteLogs|*.*|RECURSE FileKey7=%LocalAppData%\VirtualStore\Program Files*\Wondershare\Dr.Fone for Android\log|*.*|RECURSE
  7. I don't think this belongs to Metro Apps. I have this location on a Windows 7 system also. If they still want to add this, they should change the name to [Apps CrashDumps*]. I don't understand why we have to add the file extension in the entry name.
  8. Revised Entries Changed the Detect=HKLM\Software\Apple Computer, Inc.\ to Detect=HKLM\Software\Apple Computer, Inc. [Apple iDevices Software Updates*] LangSecRef=3023 Detect=HKLM\Software\Apple Computer, Inc. Default=False FileKey1=%AppData%\Apple Computer\iTunes|*.ipsw|RECURSE [Apple iDevices Updater Logs*] LangSecRef=3023 Detect=HKLM\Software\Apple Computer, Inc. Default=False FileKey1=%AppData%\Apple Computer\iTunes|*.log|RECURSE
  9. Revised Entry Changed: DetectFile to Detect [Apple MobileSync Backup*] LangSecRef=3023 Detect=HKLM\Software\Apple Computer, Inc. Warning=This will delete all your iPhone backups. Default=False FileKey1=%AppData%\Apple Computer\MobileSync\Backup|*.*|RECURSE
  10. New Entry [MS Office Recent Templates*] LangSecRef=3021 Detect1=HKCU\Software\Microsoft\Office\12.0 Detect2=HKCU\Software\Microsoft\Office\14.0 Detect3=HKCU\Software\Microsoft\Office\15.0 Detect4=HKCU\Software\Microsoft\Office\16.0 Default=False FileKey1=%AppData%\Microsoft\Templates|*.xlt;*.xltx;*.pot;*.potx;*.dot;*.dotx RegKey1=HKCU\SOFTWARE\Microsoft\Office\12.0\Common\OfficeStart\Web\Templates RegKey2=HKCU\SOFTWARE\Microsoft\Office\12.0\Excel\Recent Templates RegKey3=HKCU\SOFTWARE\Microsoft\Office\12.0\PowerPoint\Recent Templates RegKey4=HKCU\SOFTWARE\Microsoft\Office\12.0\Word\Recent Templates RegKey5=HKCU\SOFTWARE\Microsoft\Office\14.0\Common\OfficeStart\Web\Templates RegKey6=HKCU\SOFTWARE\Microsoft\Office\14.0\Excel\Recent Templates RegKey7=HKCU\SOFTWARE\Microsoft\Office\14.0\PowerPoint\Recent Templates RegKey8=HKCU\SOFTWARE\Microsoft\Office\14.0\Word\Recent Templates RegKey9=HKCU\SOFTWARE\Microsoft\Office\15.0\Common\OfficeStart\Web\Templates RegKey10=HKCU\SOFTWARE\Microsoft\Office\15.0\Excel\Recent Templates RegKey11=HKCU\SOFTWARE\Microsoft\Office\15.0\PowerPoint\Recent Templates RegKey12=HKCU\SOFTWARE\Microsoft\Office\15.0\Word\Recent Templates RegKey13=HKCU\SOFTWARE\Microsoft\Office\16.0\Common\OfficeStart\Web\Templates RegKey14=HKCU\SOFTWARE\Microsoft\Office\16.0\Excel\Recent Templates RegKey15=HKCU\SOFTWARE\Microsoft\Office\16.0\PowerPoint\Recent Templates RegKey16=HKCU\SOFTWARE\Microsoft\Office\16.0\Word\Recent Templates
  11. Revised Entries [MS Office Unsaved Files*] LangSecRef=3021 Detect1=HKCU\Software\Microsoft\Office\12.0 Detect2=HKCU\Software\Microsoft\Office\14.0 Detect3=HKCU\Software\Microsoft\Office\15.0 Detect4=HKCU\Software\Microsoft\Office\16.0 Default=False FileKey1=%LocalAppData%\Microsoft\Office\UnsavedFiles|*.*|RECURSE FileKey2=%AppData%\Microsoft\Excel|*.*|RECURSE FileKey3=%AppData%\Microsoft\PowerPoint|*.*|RECURSE FileKey4=%AppData%\Microsoft\Word|*.*|RECURSE Added: FileKey2, FileKey3 & FileKey4 [MS Office Word More*] LangSecRef=3021 Detect1=HKCU\Software\Microsoft\Office\12.0 Detect2=HKCU\Software\Microsoft\Office\14.0 Detect3=HKCU\Software\Microsoft\Office\15.0 Detect4=HKCU\Software\Microsoft\Office\16.0 Default=False RegKey1=HKCU\Software\Microsoft\Office\15.0\Word\Reading Locations RegKey2=HKCU\Software\Microsoft\Office\16.0\Word\Reading Locations FileKey1=%Documents%|~*.doc|RECURSE ExcludeKey1=FILE|%AppData%\Microsoft\Word\listgal.dat ExcludeKey2=PATH|%AppData%\Microsoft\Word\STARTUP Removed %AppData%\Microsoft\Word|*.*|RECURSE from this entry and added into [MS Office Unsaved Files*].
  12. It has been almost three days since someone uploaded the wrong Winapp2.ini file. It is still not corrected.
  13. What about Word More and PowerPoint More? By the way, "unsaved files" belongs to Microsoft Word only. "Building blocks" also belongs to Word. Other known privacy cleaning programs have just one entry for all of the Office products.
  14. I think all of the Office related entries should be included into the Office entrIies (Office 2010 More, Office 2013 More, & Office 2016 More). If you guys agree, I can modify the entires.
  15. New Entry It works on the latest versions of AVG AntiVirus and AVG Internet Security. Both of the programs' names are now AVG Protection. [AVG Protection*] LangSecRef=3024 Detect=HKLM\SOFTWARE\AVG\AV Default=False FileKey1=%ProgramFiles%\AVG\Av|updatecomps.bak;*.old FileKey2=%CommonAppData%\Avg\AV\Antispam|*.tmp;*.tmp1;*.tmp2;*.gz FileKey3=%CommonAppData%\Avg\AV\SetupBackup|*.*|REMOVESELF FileKey4=%CommonAppData%\Avg\log\AV16|*.log;*.log.*;*.log.lock FileKey5=%CommonAppData%\Avg\log\fmw1|*.log;*.log.*;*.log.lock FileKey6=%CommonAppData%\MFAData\logs|*.* FileKey7=%CommonAppData%\MFAData\pack|*.* FileKey8=%CommonAppData%\MFAData|msistorg.dat.bkp;public_installation_log.xml FileKey9=%LocalAppData%\Avg\log\av16|*.log;*.log.*;*.log.lock FileKey10=%LocalAppData%\Avg\log\fmw1|*.log;*.log.*;*.log.lock FileKey11=%LocalAppData%\AvgSetupLog|*.*|REMOVESELF FileKey12=%LocalAppData%\MFAData\logs|*.* FileKey13=%WinDir%\System32\config\systemprofile\AppData\Local\Avg\av16\temp|*.* FileKey14=%WinDir%\System32\config\systemprofile\AppData\Local\Avg\log\av16|*.log;*.log.*;*.log.lock FileKey15=%WinDir%\System32\config\systemprofile\AppData\Local\Avg\log\fmw1|*.log;*.log.*;*.log.lock FileKey16=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Avg\av16\temp|*.* FileKey17=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Avg\log\av16|*.log;*.log.*;*.log.lock FileKey18=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Avg\log\fmw1|*.log;*.log.*;*.log.lock
  16. After using the /EXPORT switch, I see that they have HKCU\Software\Adobe\Adobe Acrobat\DC in Detect. I think they should use this one instead: HKLM\Software\Adobe\Acrobat Reader\DC [Adobe Reader DC] ID=2407 LangSecRef=3021 Detect=HKCU\Software\Adobe\Adobe Acrobat\DC Default=True RegKey1=HKCU\Software\Adobe\Acrobat Reader\DC\AVGeneral\cRecentFiles RegKey2=HKCU\Software\Adobe\Acrobat Reader\DC\AVGeneral\cRecentFolders FileKey1=%LocalAppData%\Adobe\Acrobat\DC\Cache|*.lst FileKey2=%LocalAppData%\Adobe\Acrobat\DC|*.lst FileKey3=%LocalLowAppData%\Adobe\Acrobat\DC\Search|*.*
  17. I don't have this program, but it still shows up in CCleaner. I think the Detect path needs to be fixed. Also, the program name is Acrobat Reader DC, not Adobe Reader DC.
  18. Revised Entry [Adobe Acrobat DC*] LangSecRef=3021 Detect=HKLM\SOFTWARE\Adobe\Adobe Acrobat\DC Default=False FileKey1=%ProgramFiles%\Adobe\Acrobat DC\Setup Files|*.*|REMOVESELF FileKey2=%CommonAppData%\Adobe\Setup|*.*|REMOVESELF FileKey3=%LocalAppData%\Adobe\Acrobat|*.idx|RECURSE FileKey4=%LocalAppData%\Adobe\Acrobat\DC\Cache|*.* FileKey5=%LocalAppData%\Adobe\Acrobat\DC|UserCache.bin RegKey1=HKCU\Software\Adobe\Adobe Acrobat\DC\AVConversionFromPDF RegKey2=HKCU\Software\Adobe\Adobe Acrobat\DC\AVConversionToPDF RegKey3=HKCU\Software\Adobe\Adobe Acrobat\DC\AVGeneral\cDockables RegKey4=HKCU\Software\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles RegKey5=HKCU\Software\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFolders RegKey6=HKCU\Software\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentToolsList RegKey7=HKCU\Software\Adobe\Adobe Acrobat\DC\AVGeneral\cToolbars RegKey8=HKCU\Software\Adobe\Adobe Acrobat\DC\RememberedViews\cNoCategoryFiles RegKey9=HKCU\Software\Adobe\Adobe Acrobat\DC\ShareIdentity RegKey10=HKCU\Software\Adobe\Adobe Synchronizer\DC Removed: Detect2=HKCU\Software\Adobe\Adobe Acrobat\DC Added: RegKey4, RegKey5 and RegKey6 For some reason, Acrobat Reader DC creates HKCU\Software\Adobe\Adobe Acrobat\DC and even if someone does not have Adobe Acrobat DC, it still shows up in CCleaner. After removing Detect2, the issue is resolved.
  19. Revised Entry [Acrobat Reader DC*] LangSecRef=3021 Detect=HKLM\Software\Adobe\Acrobat Reader\DC Default=False FileKey1=%ProgramFiles%\Adobe\Acrobat Reader DC\Setup Files|*.*|REMOVESELF FileKey2=%CommonAppData%\Adobe\Setup|*.*|REMOVESELF FileKey3=%LocalAppData%\Adobe\Acrobat\DC\Cache|*.*|RECURSE FileKey4=%LocalAppData%\Adobe\Acrobat\DC|UserCache.bin RegKey1=HKCU\Software\Adobe\Acrobat Reader\DC\AVConversionFromPDF RegKey2=HKCU\Software\Adobe\Acrobat Reader\DC\AVConversionToPDF RegKey3=HKCU\Software\Adobe\Acrobat Reader\DC\AVGeneral\cDockables RegKey4=HKCU\Software\Adobe\Acrobat Reader\DC\AVGeneral\cRecentFiles RegKey5=HKCU\Software\Adobe\Acrobat Reader\DC\AVGeneral\cRecentFolders RegKey6=HKCU\Software\Adobe\Acrobat Reader\DC\AVGeneral\cRecentToolsList RegKey7=HKCU\Software\Adobe\Acrobat Reader\DC\AVGeneral\cToolbars RegKey8=HKCU\Software\Adobe\Acrobat Reader\DC\RememberedViews\cNoCategoryFiles RegKey9=HKCU\Software\Adobe\Acrobat Reader\DC\ShareIdentity RegKey10=HKCU\Software\Adobe\Adobe Synchronizer\DC Added: FileKey4=%LocalAppData%\Adobe\Acrobat\DC|UserCache.bin Added: RegKey4, RegKey5 and RegKey6
  20. Revised Entry [Adobe Acrobat Distiller XI*] LangSecRef=3021 Detect=HKLM\Software\Adobe\Acrobat Distiller\11.0 Default=False FileKey1=%AppData%\Adobe\Acrobat\Distiller 11|*.log FileKey2=%AppData%\Adobe\Acrobat\Distiller 11\Cache|*.* RegKey1=HKCU\Software\Adobe\Acrobat Distiller\PrinterJobControl Corrected the entry name from [Adobe Acrobat Distiller*] to [Adobe Acrobat Distiller XI*] Removed: Detect1=HKCU\Software\Adobe\Acrobat Distiller
  21. Revised Entry [Windows Defender More*] LangSecRef=3025 Detect=HKLM\Software\Microsoft\Windows Defender Default=False FileKey1=%CommonAppData%\Microsoft\Windows Defender\Definition Updates\Backup|*.*|RECURSE FileKey2=%CommonAppData%\Microsoft\Windows Defender\Network Inspection System\Support|*.txt FileKey3=%CommonAppData%\Microsoft\Windows Defender\Scans|*.bin;*.bin* FileKey4=%CommonAppData%\Microsoft\Windows Defender\Scans\History\Service|*.log FileKey5=%CommonAppData%\Microsoft\Windows Defender\Scans\Scans\History\CacheManager|*.*|RECURSE FileKey6=%CommonAppData%\Microsoft\Windows Defender\Support|*.*|RECURSE Added: FileKey2=%CommonAppData%\Microsoft\Windows Defender\Network Inspection System\Support|*.txt
  22. Revised Entries [Registry First Aid (Backups)*] LangSecRef=3024 Detect=HKCU\Software\KsL Software\RFA Default=False FileKey1=%CommonAppData%\RFA_Backups|*.*|RECURSE FileKey2=%UserProfile%\|NTUSER.tmp;UsrClass.tmp FileKey3=%LocalAppData%\Microsoft\Windows|NTUSER.tmp;UsrClass.tmp FileKey4=%LocalAppData%\VirtualStore\ProgramData\RFA_Backups|*.*|RECURSE FileKey5=%WinDir%\ServiceProfiles\LocalService|*.tmp;*.tmp.LOG1;*.tmp.LOG2 FileKey6=%WinDir%\ServiceProfiles\NetworkService|*.tmp;*.tmp.LOG1;*.tmp.LOG2 FileKey7=%WinDir%\System32\config\systemprofile|*.tmp;*.tmp.LOG1;*.tmp.LOG2 FileKey8=%WinDir%\SysWOW64\config\systemprofile|*.tmp;*.tmp.LOG1;*.tmp.LOG2 FileKey9=%WinDir%\System32\config|*.tmp;*.tmp.LOG1;*.tmp.LOG2 Removed: Detect2=HKCU\Software\KsL Software\RFA\10.1 [Registry First Aid 10*] LangSecRef=3024 Detect1=HKCU\Software\KsL Software\RFA\10.0 Detect2=HKCU\Software\KsL Software\RFA\10.1 Default=False FileKey1=%ProgramFiles%\RFA 10|*.diz;*.url FileKey2=%LocalAppData%\VirtualStore\Program Files*\RFA 10|*.diz;*.url Added: Detect2=HKCU\Software\KsL Software\RFA\10.1
×
×
  • Create New...

Important Information

By using this site, you agree to our Terms of Use.