Jump to content

SMalik

Experienced Members
  • Posts

    1,757
  • Joined

  • Last visited

Everything posted by SMalik

  1. New Entry Please remove [Jing DataStore*] & [Jing Temp*] entries. [Jing*] LangSecRef=3024 Detect=HKLM\SOFTWARE\TechSmith\Jing Default=False FileKey1=%LocalAppData%\TechSmith\Jing\DataStore|*.*|RECURSE FileKey2=%LocalAppData%\TechSmith\Jing\Temp|*.*|RECURSE
  2. New Entries [Google Cloud Messaging*] LangSecRef=3029 SpecialDetect=DET_CHROME Default=False FileKey1=%LocalAppData%\Google\Chrome\User Data\*\GCM Store|*.*|RECURSE [Web Applications*] LangSecRef=3029 SpecialDetect=DET_CHROME Default=False FileKey1=%LocalAppData%\Google\Chrome\User Data\*\File System\000\p\Paths|CURRENT;LOCK FileKey2=%LocalAppData%\Google\Chrome\User Data\*\File System\Origins|CURRENT;LOCK
  3. Revised Entries Merged [Windows XP System Profile*] into the entries listed below. So please remove [Windows XP System Profile*]. [LocalSystem Cached Certification Files*] LangSecRef=3025 Detect=HKLM\Software\Microsoft\Windows Default=False FileKey1=%WinDir%\System32\config\SystemProfile\Application Data\Microsoft\CryptnetUrlCache\Content|*.*|RECURSE FileKey2=%WinDir%\System32\config\SystemProfile\Application Data\Microsoft\CryptnetUrlCache\MetaData|*.*|RECURSE FileKey3=%WinDir%\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content|*.*|RECURSE FileKey4=%WinDir%\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData|*.*|RECURSE FileKey5=%WinDir%\SysWOW64\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content|*.*|RECURSE FileKey6=%WinDir%\SysWOW64\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData|*.*|RECURSE [Windows System Profile*] LangSecRef=3025 Detect=HKCU\Software\Microsoft\Windows Default=False FileKey1=%WinDir%\System32\config\SystemProfile\Cookies|*.*|RECURSE FileKey2=%WinDir%\System32\config\SystemProfile\IETldCache|*.*|RECURSE FileKey3=%WinDir%\System32\config\SystemProfile\Local Settings\History|*.*|RECURSE FileKey4=%WinDir%\System32\config\SystemProfile\Local Settings\Temp|*.*|RECURSE FileKey5=%WinDir%\System32\config\SystemProfile\Local Settings\Temporary Internet Files|*.*|RECURSE FileKey6=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files|*.*|RECURSE FileKey7=%WinDir%\System32\config\systemprofile\AppData\Local\Temp|*.*|RECURSE FileKey8=%WinDir%\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies|*.*|RECURSE FileKey9=%WinDir%\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\IETldCache|*.*|RECURSE FileKey10=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files|*.*|RECURSE FileKey11=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Temp|*.*|RECURSE FileKey12=%WinDir%\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies|*.*|RECURSE FileKey13=%WinDir%\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\IETldCache|*.*|RECURSE
  4. New Entry [Microsoft Edge More*] LangSecRef=3022 Detect=HKCU\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.MicrosoftEdge_8wekyb3d8bbwe DetectFile=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe Default=False FileKey1=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\Microsoft\CryptnetUrlCache|*.*|RECURSE FileKey2=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!002\Microsoft\CryptnetUrlCache|*.*|RECURSE FileKey3=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\Microsoft\CryptnetUrlCache|*.*|RECURSE FileKey4=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\User\Default\DataStore\Data|*.*|RECURSE FileKey5=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\User\Default\DataStore\Indexed\Data|*.*|RECURSE
  5. Revised Entry Added FileKey1 & FileKey2 [FastStone Capture More*] LangSecRef=3024 DetectFile=%AppData%\FastStone\FSC Default=False FileKey1=%LocalAppData%\FastStone\FSC|fsc.db FileKey2=%AppData%\FastStone\FSC|fsc.db RegKey1=HKCU\Software\FastStone|_GrbId RegKey2=HKCU\Software\FastStone|_LastClipPlayed RegKey3=HKCU\Software\FastStone|_LastRecordingFileName
  6. Revised Entry Added RegKey1 [Notification Cache*] DetectOS=6.2| LangSecRef=3025 Default=False FileKey1=%LocalAppData%\Microsoft\Windows\Notifications|*.*|RECURSE RegKey1=HKCU\Software\Microsoft\Windows\CurrentVersion\PushNotifications
  7. I think we shouldn't even include [internet Explorer 10/11 Vault Cache*] since it is causing issues. .vcrd is not a cache, it is actually a password file. If we really want to remove it, then let's do it the way listed below. [internet Explorer Vault*] LangSecRef=3022 Detect=HKCU\Software\Microsoft\Internet Explorer Default=False Warning=This will clear the saved passwords in the Windows Mail App FileKey1=%LocalAppData%\Microsoft\Vault\*|*.vcrd
  8. Revised Entry Merged [iETldCache*], [internet Explorer 10/11*] and [internet Explorer Icon Cache*] into [internet Explorer More*]. [internet Explorer More*] LangSecRef=3022 Detect=HKCU\Software\Microsoft\Internet Explorer Default=False FileKey1=%SystemDrive%\Documents and Settings\Default User\Application Data\Microsoft\Internet Explorer|brndlog.bak;brndlog.txt FileKey2=%SystemDrive%\Documents and Settings\LocalService\IETldCache|*.*|RECURSE FileKey3=%SystemDrive%\Documents and Settings\NetworkService\IETldCache|*.*|RECURSE FileKey4=%LocalAppData%\Microsoft\Internet Explorer|frameiconcache.dat;tabiconcache.dat FileKey5=%LocalAppData%\Microsoft\Internet Explorer|brndlog.txt;brndlog.bak FileKey6=%LocalAppData%\Microsoft\Internet Explorer\Recovery\Last Active|*.*|RECURSE FileKey7=%LocalAppData%\Microsoft\SmartScreen|*.tmp FileKey8=%LocalAppData%\Microsoft\Windows\AppCache|*.*|RECURSE FileKey9=%LocalAppData%\Microsoft\Windows\IECompatCache|*.*|RECURSE FileKey10=%LocalAppData%\Microsoft\Windows\IECompatUACache|*.*|RECURSE FileKey11=%LocalAppData%\Microsoft\Windows\INetCache|*.*|RECURSE FileKey12=%LocalAppData%\Microsoft\Windows\WebCache|*.*|RECURSE FileKey13=%LocalAppData%\Microsoft\Windows\WebCache.old|*.*|REMOVESELF FileKey14=%LocalLowAppData%\Microsoft\Internet Explorer\iconcache|*.*|RECURSE FileKey15=%LocalLowAppData%\Microsoft\Windows\AppCache|*.*|RECURSE FileKey16=%AppData%\Microsoft\Internet Explorer|brndlog.bak;brndlog.txt FileKey17=%AppData%\Microsoft\Internet Explorer\UserData|*.*|RECURSE FileKey18=%WinDir%\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\IETldCache|*.*|RECURSE FileKey19=%WinDir%\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\IETldCache|*.*|RECURSE FileKey20=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache|*.*|RECURSE FileKey21=%WinDir%\System32\config\SystemProfile\AppData\LocalLow\Microsoft\Internet Explorer|brndlog.bak;brndlog.txt FileKey22=%WinDir%\System32\config\SystemProfile\Application Data\Microsoft\Internet Explorer|brndlog.bak;brndlog.txt RegKey1=HKCU\Software\Microsoft\Internet Explorer\International|CNum_CpCache RegKey2=HKCU\Software\Microsoft\Internet Explorer\International|CpCache RegKey3=HKCU\Software\Microsoft\Internet Explorer\International\CpMRU RegKey4=HKCU\Software\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore RegKey5=HKCU\Software\Microsoft\Internet Explorer\PageSetup RegKey6=HKCU\Software\Microsoft\Internet Explorer\Recovery\PendingDelete RegKey7=HKCU\Software\Microsoft\Internet Explorer\TypedURLSTime RegKey8=HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats
  9. Revised Entries Changed the names from [Facebook Metro More*] & [internet Explorer Metro*] as these entries are already under Windows Metro Apps [Facebook More*] LangSecRef=3031 Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Facebook.Facebook_8xx8rvfyw5nnt DetectFile=%LocalAppData%\Packages\Facebook.Facebook_8xx8rvfyw5nnt Default=False FileKey1=%LocalAppData%\Packages\*Facebook_*\LocalState|*.*|RECURSE [internet Explorer*] LangSecRef=3031 Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\windows_ie_ac_001 DetectFile=%LocalAppData%\Packages\windows_ie_ac_001 Default=False FileKey1=%LocalAppData%\Packages\windows_ie_ac_*\AC\AppCache|*.*|RECURSE FileKey2=%LocalAppData%\Packages\windows_ie_ac_*\AC\INetCache|*.*|RECURSE FileKey3=%LocalAppData%\Packages\windows_ie_ac_*\AC\INetCookies|*.*|RECURSE FileKey4=%LocalAppData%\Packages\windows_ie_ac_*\AC\INetHistory|*.*|RECURSE FileKey5=%LocalAppData%\Packages\windows_ie_ac_*\AC\Microsoft\CLR_v4.0\UsageLogs|*.*|RECURSE FileKey6=%LocalAppData%\Packages\windows_ie_ac_*\AC\Microsoft\CryptnetUrlCache\Content|*.* FileKey7=%LocalAppData%\Packages\windows_ie_ac_*\AC\Microsoft\CryptnetUrlCache\MetaData|*.* FileKey8=%LocalAppData%\Packages\windows_ie_ac_*\AC\Microsoft\Internet Explorer\DOMStore|*.*|RECURSE FileKey9=%LocalAppData%\Packages\windows_ie_ac_*\AC\PRICache|*.* FileKey10=%LocalAppData%\Packages\windows_ie_ac_*\AC\Temp|*.* FileKey11=%LocalAppData%\Packages\windows_ie_ac_*\LocalState\Cache|*.*|RECURSE FileKey12=%LocalAppData%\Packages\windows_ie_ac_*\LocalState\navigationHistory|*.*|RECURSE FileKey13=%LocalAppData%\Packages\windows_ie_ac_*\TempState|*.*|RECURSE RegKey1=HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Internet Explorer\DOMStorage
  10. Revised Entry Added: HKCU\Software\Microsoft\Office\15.0\Word\Recent Templates [MS Office Word More*] LangSecRef=3021 Detect1=HKCU\Software\Microsoft\Office\12.0 Detect2=HKCU\Software\Microsoft\Office\14.0 Detect3=HKCU\Software\Microsoft\Office\15.0 Default=False RegKey1=HKCU\Software\Microsoft\Office\15.0\Word\Reading Locations RegKey2=HKCU\Software\Microsoft\Office\15.0\Word\Recent Templates FileKey1=%AppData%\Microsoft\Word|*.*|RECURSE FileKey2=%Documents%|~*.doc|RECURSE ExcludeKey1=FILE|%AppData%\Microsoft\Word\listgal.dat ExcludeKey2=PATH|%AppData%\Microsoft\Word\STARTUP
  11. I have Windows 10 64-bit. I did a clean install. CCleaner gets stuck when wiping Internet Explorer history.
  12. Revised Entry Changed Detect to DetectFile. Added fsc.db and fsrec.db. http://forum.piriform.com/index.php?showtopic=32310&p=264709 [FastStone Capture More*] LangSecRef=3024 DetectFile=%AppData%\FastStone\FSC Default=False FileKey1=%LocalAppData%\FastStone\FSC|fsc.db;fsrec.db FileKey2=%AppData%\FastStone\FSC|fsc.db;fsrec.db RegKey1=HKCU\Software\FastStone|_GrbId RegKey2=HKCU\Software\FastStone|_LastClipPlayed RegKey3=HKCU\Software\FastStone|_LastRecordingFileName
  13. How should we seperate the Windows 8.1 and Windows 10 Metro Apps. Most of the Windows 10 App paths are different.
  14. I think it's FileKey2=%LocalAppData%\Microsoft\Vault\*|*.vcrd
  15. Here is a universal entry that I use for Windows 10 Metro Apps and it works fine. [Metro Apps *] DetectOS=10.0 Section=3031 Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData Default=False FileKey1=%LocalAppData%\Packages\*\AC\AppCache|*.*|RECURSE FileKey2=%LocalAppData%\Packages\*\AC\INetCache|*.*|RECURSE FileKey3=%LocalAppData%\Packages\*\AC\INetHistory|*.*|RECURSE FileKey4=%LocalAppData%\Packages\*\AC\Microsoft\CLR_v4.0|*.log FileKey5=%LocalAppData%\Packages\*\AC\Microsoft\CLR_v4.0\NativeImages\Temp|*.*|RECURSE FileKey6=%LocalAppData%\Packages\*\AC\Microsoft\CLR_v4.0\UsageLogs|*.*|RECURSE FileKey7=%LocalAppData%\Packages\*\AC\Microsoft\CLR_v4.0_32|*.log FileKey8=%LocalAppData%\Packages\*\AC\Microsoft\CLR_v4.0_32\NativeImages\Temp|*.*|RECURSE FileKey9=%LocalAppData%\Packages\*\AC\Microsoft\CLR_v4.0_32\UsageLogs|*.*|RECURSE FileKey10=%LocalAppData%\Packages\*\AC\Microsoft\CryptnetUrlCache\Content|*.*|RECURSE FileKey11=%LocalAppData%\Packages\*\AC\Microsoft\CryptnetUrlCache\MetaData|*.*|RECURSE FileKey12=%LocalAppData%\Packages\*\AC\Microsoft\Internet Explorer\DOMStore|*.*|RECURSE FileKey13=%LocalAppData%\Packages\*\AC\PRICache|*.*|RECURSE FileKey14=%LocalAppData%\Packages\*\AC\Temp|*.*|RECURSE FileKey15=%LocalAppData%\Packages\*\LocalCache|*.*|RECURSE
  16. How should we use "DetectOS" for Windows 10 Metro Apps?
  17. [service Control Manager Logs*] LangSecRef=3025 Detect=HKCU\Software\Microsoft\Windows Default=False FileKey1=%WinDir%\system32\LogFiles\Scm\|SCM.EVM*|RECURSE The entry listed above is useless. It should be removed or replaced with the one listed below. Previously, one user here, siliconman01, had some issues with the one listed below. Almost all of the known privacy eraser programs include it the way that is listed below. I never had any issue with this entry on Windows 7, Windows 8.1 and now on Windows 10. [service Control Manager Logs*] LangSecRef=3025 Detect=HKCU\Software\Microsoft\Windows Default=False FileKey1=%WinDir%\System32\LogFiles\Scm|*.*|RECURSE
  18. You might think of this as a coincidence, but this happened to me recently. I installed Windows 10 and I ran one of the most known registry cleaners out there. It deleted some of the essential files that belong to the Windows Store. Unintentionally, I ran CCleaner and the backup was gone. It was not possible to fix the Store so I had to reinstall the OS all over again. Now, I strongly believe that we should not have any registry cleaner entries in Winapp2.ini.
  19. Revised Entry Added Detect1 because there is a newer version 10.1 and current Detect was not working. [Registry First Aid 10*] LangSecRef=3024 Detect=HKCU\Software\KsL Software\RFA\10.0 Detect1=HKCU\Software\KsL Software\RFA\10.1 Default=False FileKey1=%ProgramFiles%\RFA 10|*.diz;*.url FileKey2=%LocalAppData%\VirtualStore\Program Files*\RFA 10|*.diz;*.url Please check the post listed below. I have added Detect1 into the [Registry First Aid 10*] entry. http://forum.piriform.com/index.php?showtopic=32310&p=264573
  20. http://forum.piriform.com/index.php?showtopic=32310&p=264484 I agree with JDPower.
  21. Revised Entries Changed the Detect HKLM\Software\Microsoft\Windows\CurrentVersion\App Paths\FSCapture.exe HKLM\Software\Microsoft\Windows\CurrentVersion\App Paths\FSViewer.exe [FastStone Capture More*] LangSecRef=3024 Detect=HKLM\SOFTWARE\FastStone Capture Default=False FileKey1=%AppData%\FastStone\FSC|*.bak RegKey1=HKCU\Software\FastStone\APP.FSRecorder\Global|_GrbId RegKey2=HKCU\Software\FastStone\APP.FSRecorder\Global|_LastClipPlayed RegKey3=HKCU\Software\FastStone\APP.FSRecorder\Global|_LastRecordingFileName [FastStone Image Viewer More*] LangSecRef=3023 Detect=HKLM\SOFTWARE\FastStone Image Viewer Default=False FileKey1=%AppData%\FastStone\FSIV|FSViewer.db
  22. Revised Entries since you're removing the Registry First Aid (Backups) entry. [Registry First Aid 10*] LangSecRef=3024 Detect=HKCU\Software\KsL Software\RFA\10.0 Detect1=HKCU\Software\KsL Software\RFA\10.1 Default=False FileKey1=%ProgramFiles%\RFA 10|*.diz;*.url FileKey2=%LocalAppData%\VirtualStore\Program Files*\RFA 10|*.diz;*.url FileKey3=%UserProfile%\|NTUSER.tmp;UsrClass.tmp FileKey4=%LocalAppData%\Microsoft\Windows|NTUSER.tmp;UsrClass.tmp FileKey5=%WinDir%\ServiceProfiles\LocalService|*.tmp;*.tmp.LOG1;*.tmp.LOG2 FileKey6=%WinDir%\ServiceProfiles\NetworkService|*.tmp;*.tmp.LOG1;*.tmp.LOG2 FileKey7=%WinDir%\System32\config|*.tmp;*.tmp.LOG1;*.tmp.LOG2 FileKey8=%WinDir%\System32\config\systemprofile|*.tmp;*.tmp.LOG1;*.tmp.LOG2 FileKey9=%WinDir%\SysWOW64\config\systemprofile|*.tmp;*.tmp.LOG1;*.tmp.LOG2 [Registry First Aid 9*] LangSecRef=3024 Detect=HKCU\Software\KsL Software\RFA\9.0 Default=False FileKey1=%ProgramFiles%\RFA 9|*.diz;*.url FileKey2=%LocalAppData%\VirtualStore\Program Files*\RFA 9|*.diz;*.url FileKey3=%UserProfile%\|NTUSER.tmp;UsrClass.tmp FileKey4=%LocalAppData%\Microsoft\Windows|NTUSER.tmp;UsrClass.tmp FileKey5=%WinDir%\ServiceProfiles\LocalService|*.tmp;*.tmp.LOG1;*.tmp.LOG2 FileKey6=%WinDir%\ServiceProfiles\NetworkService|*.tmp;*.tmp.LOG1;*.tmp.LOG2 FileKey7=%WinDir%\System32\config|*.tmp;*.tmp.LOG1;*.tmp.LOG2 FileKey8=%WinDir%\System32\config\systemprofile|*.tmp;*.tmp.LOG1;*.tmp.LOG2 FileKey9=%WinDir%\SysWOW64\config\systemprofile|*.tmp;*.tmp.LOG1;*.tmp.LOG2
  23. Here are some entries that remove registry cleaner/uninstall backups. In fact, all of the entries that remove backups should be removed. The entries that have a warning should also be removed. Acebytes Ace Utilities AMUST Registry Cleaner Undo Data Auslogics (All programs) AVG PC TuneUp & TuneUp Utilities (Backups) CleanMyPC Registry Cleaner Eusing Free Registry Cleaner Backups Glary Utilities (Backups) IObit Advanced SystemCare (All) jv16 PowerTools (All) jv16 PowerTools Reg Compact Backups NirSoft RegScanner Backups Perfect Registry RegClean Pro RegCleaner 4.3 Registry Clean Expert Registry First Aid (Backups) Registry Mechanic Reg Organizer (Backups) Revo Uninstaller Backups System Mechanic SystemTuneUp Total Uninstall Backups Total Uninstall Free Backups TweakNow PowerPack 2005 Uniblue Registry Booster 2(Backups) Uniblue Registry Booster(Backups) WinASO Registry Optimizer (Backups)
  24. I agree, but how about the many similar entries that are already there?
  25. Revised Entry Removed the following. These logs are needed to update/uninstall the program. %CommonAppData%\Hauppauge|*.log %Public%\WinTV\Installation Log|*.txt Changed the name and the Detect path to make it universal for all WinTV versions (6, 7 & 8). [Hauppauge WinTV*] LangSecRef=3024 Detect=HKLM\SOFTWARE\Hauppauge Default=False FileKey1=%SystemDrive%\|hcwDriverInstall.txt FileKey2=%Public%\Videos\Pause Buffer|*.*|RECURSE FileKey3=%Public%\WinTV\Logs\minidump|*.*|RECURSE
×
×
  • Create New...

Important Information

By using this site, you agree to our Terms of Use.