![](http://content.invisioncic.com/d154966/set_resources_6/84c1e40ea0e759e3f1505eb1788ddf3c_pattern.png)
SMalik
Experienced Members-
Posts
1,756 -
Joined
-
Last visited
Everything posted by SMalik
-
I think 'Applications' LangSecRef name should be changed. Also, Internet Explorer should be moved under the 'Applications' tab or may be a seperate tab for internet browsers.
-
Can we remove 'Chrome', 'Google Chrome', 'Firefox' and 'Mozilla' names from these entry names? [Chrome Backup*] [Chrome GPU Cache*] [Chrome HTML5 Storage*] [Chrome Installer*] [Chrome Logs*] [Google Chrome ART*] [Firefox Corrupt SQLites*] [Firefox HTML5 Storage*] [Firefox Logs*] [Firefox Minidumps*] [Firefox Net Predictions*] [Firefox Session Backups*] [Firefox Startup Cache*] [Firefox Telemetry*] [Firefox TestPilot Error Logs*] [Firefox Update Logs*] [Firefox urlclassifier3.sqlite*] [Firefox webappsstore.sqlite*] [Mozilla Maintenance Service Logs*] [Mozilla Nightly Backups*] [Mozilla Temps*] [Mozilla Updates*]
-
I think we should have seperate Detects for Firefox and Chrome extensions.
-
The .sdf file holds 'Recents' and information about the saved location. All known privacy eraser programs wipe this file.
-
Thanks for the update. Everything looks good except you forgot to change the name of [snagit 11 Local Dumps (.dmp)*] entry. [snagit 11 Local Dumps*] LangSecRef=3024 Detect=HKCU\Software\TechSmith\SnagIt\11 Default=False FileKey1=%LocalAppData%\TechSmith\Snagit\CrashDumps|*.*
-
Revised Entry Changed FileKey1 Added: *.log.lock [AVG 2015*] LangSecRef=3024 Detect=HKLM\Software\AVG\AVG2015 Default=False FileKey1=%CommonAppData%\AVG2015\log|*.log;*.log.lock;history.xml FileKey2=%CommonAppData%\AVG2015\scanlogs|*.log FileKey3=%CommonAppData%\AVG2015\update\backup|*.* FileKey4=%CommonAppData%\AVG2015\Emc\log|*.* FileKey5=%CommonAppData%\AVG2015\IDS\config|List.zip.bak FileKey6=%CommonAppData%\AVG2015\IDS\profile|globalLoadable.bak FileKey7=%CommonAppData%\AVG2015\temp|*.* FileKey8=%CommonAppData%\AVG2015\SetupBackup|*.*|REMOVESELF FileKey9=%CommonAppData%\MFAData\logs|*.* FileKey10=%CommonAppData%\MFAData\pack|*.* FileKey11=%CommonAppData%\MFAData|msistorg.dat.bkp;public_installation_log.xml FileKey12=%LocalAppData%\AVG2015\log|*.log;*.log.* FileKey13=%LocalAppData%\AVG2015\update|*.* FileKey14=%LocalAppData%\AVG2015\temp|*.* FileKey15=%LocalAppData%\MFAData\logs|*.* FileKey16=%ProgramFiles%\AVG\AVG2015|updatecomps.bak;*.old FileKey17=%WinDir%\System32\config\systemprofile\AppData\Local\Avg2015\dumps|*.* FileKey18=%WinDir%\System32\config\systemprofile\Local Settings\Application Data\Avg2015\dumps|*.* FileKey19=%WinDir%\System32\config\systemprofile\AppData\Local\Avg2015\log|*.* FileKey20=%WinDir%\System32\config\systemprofile\Local Settings\Application Data\log|*.* FileKey21=%WinDir%\System32\config\systemprofile\AppData\Local\Avg2015\temp|*.* FileKey22=%WinDir%\System32\config\systemprofile\Local Settings\Application Data\temp|*.* FileKey23=%WinDir%\System32\config\systemprofile\AppData\Local\MFAData\logs|*.* FileKey24=%WinDir%\System32\config\systemprofile\Local Settings\MFAData\logs|*.* FileKey25=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Avg2015\dumps|*.* FileKey26=%WinDir%\SysWOW64\config\systemprofile\Local Settings\Application Data\dumps|*.* FileKey27=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Avg2015\log|*.* FileKey28=%WinDir%\SysWOW64\config\systemprofile\Local Settings\Application Data\log|*.* FileKey29=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Avg2015\temp|*.* FileKey30=%WinDir%\SysWOW64\config\systemprofile\Local Settings\Application Data\temp|*.* FileKey31=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\MFAData\logs|*.* FileKey32=%WinDir%\SysWOW64\config\systemprofile\Local Settings\MFAData\logs|*.*
-
New Entry [system TuneUp*] LangSecRef=3024 Detect=HKCU\Software\Acelogix\System TuneUp Default=False FileKey1=%LocalAppData%\Acelogix\System TuneUp\Backups|*.reg
-
You're right there is an issue.
-
I think there should be an option to erase and restart the system in CCleaner to wipe the locked files.
-
To me, Prefetch is junk! How come it is junk in Windows 7 and not junk in Windows 8? If Prefetch files are not junk then this entry should be removed from CCleaner. The Prefetch/Superfetch service work the same way in both Windows. Most of the known privacy eraser programs wipe .pf files. After removing these files, programs load with a 2 second delay.
-
You also have HKCR\Local Settings\Software\Microsoft\Windows\Shell\MuiCache. I don't know why siliconman01 does not have this path. All we need to wipe is this path and it will automatically wipe the MuiCache of the current logged in user.
-
I don't know why you don't have that path.
-
I just fixed it. It should be FileKey1. Sorry for the typo.
-
New Entry It may be a little aggressive, but safe. It is up to you guys if you like to add it in Winapp2.ini. [McAfee More*] LangSecRef=3024 Detect=HKLM\Software\McAfee Default=False FileKey1=%CommonAppData%\McAfee\VirusScan\Quarantine|*.*|RECURSE RegKey1=HKLM\SOFTWARE\McAfee\MSC\Settings\Stats
-
Here is a universal entry that I use for Windows 8 Store Apps and it works fine. [Store Apps*] Section=3031 Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData Default=False FileKey1=%LocalAppData%\Packages\*\AC\AppCache|*.*|RECURSE FileKey2=%LocalAppData%\Packages\*\AC\INetCache|*.*|RECURSE FileKey3=%LocalAppData%\Packages\*\AC\INetHistory|*.*|RECURSE FileKey4=%LocalAppData%\Packages\*\AC\Microsoft\CLR_v4.0|*.log FileKey5=%LocalAppData%\Packages\*\AC\Microsoft\CLR_v4.0\NativeImages\Temp|*.*|RECURSE FileKey6=%LocalAppData%\Packages\*\AC\Microsoft\CLR_v4.0\UsageLogs|*.*|RECURSE FileKey7=%LocalAppData%\Packages\*\AC\Microsoft\CLR_v4.0_32|*.log FileKey8=%LocalAppData%\Packages\*\AC\Microsoft\CLR_v4.0_32\NativeImages\Temp|*.*|RECURSE FileKey9=%LocalAppData%\Packages\*\AC\Microsoft\CLR_v4.0_32\UsageLogs|*.*|RECURSE FileKey10=%LocalAppData%\Packages\*\AC\Microsoft\CryptnetUrlCache\Content|*.*|RECURSE FileKey11=%LocalAppData%\Packages\*\AC\Microsoft\CryptnetUrlCache\MetaData|*.*|RECURSE FileKey12=%LocalAppData%\Packages\*\AC\Microsoft\Internet Explorer\DOMStore|*.*|RECURSE FileKey13=%LocalAppData%\Packages\*\AC\PRICache|*.*|RECURSE FileKey14=%LocalAppData%\Packages\*\AC\Temp|*.*|RECURSE FileKey15=%LocalAppData%\Packages\*\LocalCache|*.*|RECURSE
-
I don't know why you don't have this location. Let me look into this.
-
I think they can keep it in CCleaner, but it should work for the latest Windows OS also. I have Windows 8.1 and I have made an entry in Winapp2.ini for myself that I always use. I don't see any affects whatsoever. The only thing is that If you remove .pf files from the Prefetch folder, programs will take a little longer to open the next time. http://windows.microsoft.com/en-us/windows-vista/what-is-the-prefetch-folder Here is the entry that I use. [Windows Prefetch*] LangSecRef=3025 DetectFile=%WinDir%\Prefetch Default=False FileKey1=%WinDir%\Prefetch|*.pf
-
You're right I made a mistake. It should be: HKCR\Local Settings\Software\Microsoft\Windows\Shell\MuiCache It is also at HKCR\Local Settings\MuiCache, but I suggest that we should not wipe it. It belongs to system.
-
Do we really need 'Old Prefetch data' entry in CCleaner? I think removing it would be better because then we can provide the entry for all of the Windows in Winapp2.ini.
-
Revised Entries Changed HKCU to HKCR [Windows 7/8 MUICache*] DetectOS=6.1| LangSecRef=3025 Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell Default=False RegKey1=HKCR\Local Settings\Software\Microsoft\Windows\Shell\MuiCache [Windows 7/8 ShellBags*] DetectOS=6.1| LangSecRef=3025 Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell Default=False Warning=This will delete window size, window position and view setting of all folders. RegKey1=HKCR\Local Settings\Software\Microsoft\Windows\Shell\BagMRU RegKey2=HKCR\Local Settings\Software\Microsoft\Windows\Shell\Bags
-
New Entries [Extensions Databases*] LangSecRef=3029 SpecialDetect=DET_CHROME DetectFile=%LocalAppData%\Google\Chrome FileKey1=%LocalAppData%\Google\Chrome\User Data\Default\IndexedDB|*.*|RECURSE [Extensions State*] LangSecRef=3029 SpecialDetect=DET_CHROME DetectFile=%LocalAppData%\Google\Chrome FileKey1=%LocalAppData%\Google\Chrome\User Data\Default\Extension State|*.*|RECURSE [History*] LangSecRef=3029 SpecialDetect=DET_CHROME DetectFile=%LocalAppData%\Google\Chrome FileKey1=%LocalAppData%\Google\Chrome\User Data\Default|History [Quota Manager Data*] LangSecRef=3029 SpecialDetect=DET_CHROME DetectFile=%LocalAppData%\Google\Chrome FileKey1=%LocalAppData%\Google\Chrome\User Data\Default|QuotaManager [search Engines Data*] LangSecRef=3029 SpecialDetect=DET_CHROME DetectFile=%LocalAppData%\Google\Chrome FileKey1=%LocalAppData%\Google\Chrome\User Data\Default|Web Data [session Storage*] LangSecRef=3029 SpecialDetect=DET_CHROME DetectFile=%LocalAppData%\Google\Chrome FileKey1=%LocalAppData%\Google\Chrome\User Data\Default\Session Storage|*.*|RECURSE
-
It took me two hours to find and fix the issue where Winapp2.ini entries were resetting Adblock Plus. I'm happy I did it. http://forum.piriform.com/index.php?showtopic=32310&p=257915
-
Thank you so much for understanding my point. I was not trying to force him to release a new version by saying "should".
-
We all are volunteers here. No one is forcing him to do this. I also don't make any money here, but being an IT professional, I can earn money for the time I spend here.
-
I live in a free society and I am not shy to ask!