Jump to content

SMalik

Experienced Members
  • Posts

    1,747
  • Joined

  • Last visited

Everything posted by SMalik

  1. Revised Entry Added support for Ashampoo Snap 11 Merged [CrashRpt Error Reports *] entry into this. [Ashampoo Snap *] LangSecRef=3024 Detect1=HKCU\Software\Ashampoo\Ashampoo Snap 7 Detect2=HKCU\Software\Ashampoo\Ashampoo Snap 8 Detect3=HKCU\Software\Ashampoo\Ashampoo Snap 9 Detect4=HKCU\Software\Ashampoo\Ashampoo Snap 10 Detect5=HKCU\Software\Ashampoo\Ashampoo Snap 11 Detect6=HKCU\Software\Ashampoo\Ashampoo Snap 2017 Detect7=HKCU\Software\Ashampoo\Ashampoo Snap 2018 Default=False FileKey1=%AppData%\Ashampoo|*.log;*.txt;*.xml|RECURSE FileKey2=%LocalAppData%\Ashampoo\BaNT|*.*|RECURSE FileKey3=%LocalAppData%\CrashRpt|*.*|RECURSE FileKey4=%ProgramFiles%\Ashampoo\Ashampoo Snap *|_NLogMsg.txt
  2. Revised Entry Added: %LocalAppData%\Packages\4DF9E0F8.Netflix_*\LocalCache|*.*|RECURSE [Netflix *] LangSecRef=3031 Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\4DF9E0F8.Netflix_mcm4njqhnhss8 Default=False FileKey1=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\AC\AppCache|*.*|RECURSE FileKey2=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\AC\BackgroundTransferApi|*.*|RECURSE FileKey3=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\AC\INet*|*.*|RECURSE FileKey4=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\AC\Microsoft\CLR_v4.0\UsageLogs|*.*|RECURSE FileKey5=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\AC\Microsoft\CryptnetUrlCache\*|*.*|RECURSE FileKey6=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\AC\Microsoft\Internet Explorer\DOMStore\*|*.*|REMOVESELF FileKey7=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\AC\NVIDIA Corporation\NV_Cache|*.*|RECURSE FileKey8=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\AC\PRICache|*.*|RECURSE FileKey9=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\AC\Temp|*.*|RECURSE FileKey10=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\AppData\Indexed DB|*.log FileKey11=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\LocalCache|*.*|RECURSE FileKey12=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\LocalState|*.tmp FileKey13=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\LocalState\LiveTile|*.*|RECURSE FileKey14=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\TempState|*.*|RECURSE RegKey1=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\4DF9E0F8.Netflix_mcm4njqhnhss8\SearchHistory ExcludeKey1=FILE|%LocalAppData%\Packages\4DF9E0F8.Netflix_*\AC\Microsoft\Internet Explorer\DOMStore\*\|www.netflix[1].xml
  3. Revised Entry Removed: %SystemDrive%\UniConverter\Downloaded\temp|*.*|REMOVESELF Added: %SystemDrive%\Wondershare UniConverter\Downloaded\temp|*.*|REMOVESELF [Wondershare UniConverter *] LangSecRef=3023 Detect=HKLM\Software\Wondershare\Wondershare UniConverter Default=False FileKey1=%CommonAppData%\Wondershare MediaServer|*.txt FileKey2=%CommonAppData%\Wondershare\ProductFeatures\*Logs|*.*|RECURSE FileKey3=%CommonAppData%\Wondershare\UniConverter\DataTrack|tmp;*.bak;*.log FileKey4=%CommonAppData%\Wondershare\UniConverter\TempThumbDir|*.*|RECURSE FileKey5=%CommonAppData%\Wondershare\WAF\ProductFeatures\*Logs|*.*|RECURSE FileKey6=%ProgramFiles%\Wondershare\UniConverter\Log|*.*|RECURSE FileKey7=%SystemDrive%\Wondershare UniConverter\Downloaded\temp|*.*|REMOVESELF FileKey8=%UserProfile%\.cache|*.*|REMOVESELF
  4. Revised Entry Built-in entry does not wipe all the files. Added: %LocalAppData%\Microsoft\Windows\INetCache|*.*|RECURSE %LocalAppData%\Microsoft\Windows\INetCookies|*.*|RECURSE Removed: ExcludeKey1=FILE|%LocalAppData%\Microsoft\Windows\INetCache\IE\|container.dat ExcludeKey2=FILE|%LocalAppData%\Packages\windows_ie_ac_*\AC\INetCache\|container.dat [Internet Explorer *] LangSecRef=3022 Detect=HKCU\Software\Microsoft\Internet Explorer Default=False FileKey1=%AppData%\Microsoft\Internet Explorer\UserData|*.*|RECURSE FileKey2=%LocalAppData%\Microsoft\Internet Explorer|*.log;*.txt FileKey3=%LocalAppData%\Microsoft\Internet Explorer\CacheStorage|*.*|RECURSE FileKey4=%LocalAppData%\Microsoft\Windows\AppCache|*.*|RECURSE FileKey5=%LocalAppData%\Microsoft\Windows\IECompat*Cache|*.*|RECURSE FileKey6=%LocalAppData%\Microsoft\Windows\INetCache|*.*|RECURSE FileKey7=%LocalAppData%\Microsoft\Windows\INetCookies|*.*|RECURSE FileKey8=%LocalAppData%\Microsoft\Windows\WebCache|*.*|RECURSE FileKey9=%LocalAppData%\Microsoft\Windows\WebCache.old|*.*|REMOVESELF FileKey10=%LocalAppData%\Packages\windows_ie_ac_*\AC\AppCache|*.*|RECURSE FileKey11=%LocalAppData%\Packages\windows_ie_ac_*\AC\IECompat*Cache|*.*|RECURSE FileKey12=%LocalAppData%\Packages\windows_ie_ac_*\AC\IEDownloadHistory|*.*|RECURSE FileKey13=%LocalAppData%\Packages\windows_ie_ac_*\AC\INet*|*.*|RECURSE FileKey14=%LocalAppData%\Packages\windows_ie_ac_*\AC\Microsoft\CLR_v4.0\UsageLogs|*.*|RECURSE FileKey15=%LocalAppData%\Packages\windows_ie_ac_*\AC\Microsoft\CryptnetUrlCache\*|*.* FileKey16=%LocalAppData%\Packages\windows_ie_ac_*\AC\Microsoft\Internet Explorer\DOMStore|*.*|RECURSE FileKey17=%LocalAppData%\Packages\windows_ie_ac_*\AC\Microsoft\Internet Explorer\Emie*List|*.*|RECURSE FileKey18=%LocalAppData%\Packages\windows_ie_ac_*\AC\PRICache|*.*|RECURSE FileKey19=%LocalAppData%\Packages\windows_ie_ac_*\AC\Temp|*.*|RECURSE FileKey20=%LocalAppData%\Packages\windows_ie_ac_*\LocalState\Cache|*.*|RECURSE FileKey21=%LocalAppData%\Packages\windows_ie_ac_*\LocalState\navigationHistory|*.*|RECURSE FileKey22=%LocalAppData%\Packages\windows_ie_ac_*\TempState|*.*|RECURSE FileKey23=%SystemDrive%\Documents and Settings\LocalService*\Cookies|*.*|RECURSE FileKey24=%SystemDrive%\Documents and Settings\LocalService*\Local Settings\History|*.*|RECURSE FileKey25=%SystemDrive%\Documents and Settings\LocalService*\Local Settings\Temporary Internet Files|*.*|RECURSE FileKey26=%SystemDrive%\Documents and Settings\NetworkService*\Cookies|*.*|RECURSE FileKey27=%SystemDrive%\Documents and Settings\NetworkService*\Local Settings\History|*.*|RECURSE FileKey28=%SystemDrive%\Documents and Settings\NetworkService*\Local Settings\Temporary Internet Files|*.*|RECURSE FileKey29=%WinDir%\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History|*.*|RECURSE FileKey30=%WinDir%\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\INetCache|*.*|RECURSE FileKey31=%WinDir%\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\INetCookies|*.*|RECURSE FileKey32=%WinDir%\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\History|*.*|RECURSE FileKey33=%WinDir%\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\INetCache|*.*|RECURSE FileKey34=%WinDir%\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\INetCookies|*.*|RECURSE FileKey35=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History|*.*|RECURSE FileKey36=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache|*.*|RECURSE FileKey37=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCookies|*.*|RECURSE FileKey38=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Windows\WebCache|*.*|RECURSE FileKey39=%WinDir%\System32\config\systemprofile\Cookies|*.*|RECURSE FileKey40=%WinDir%\System32\config\systemprofile\History|*.*|RECURSE FileKey41=%WinDir%\System32\config\systemprofile\Local Settings\Temporary Internet Files|*.*|RECURSE FileKey42=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History|*.*|RECURSE FileKey43=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache|*.*|RECURSE FileKey44=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCookies|*.*|RECURSE FileKey45=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\WebCache|*.*|RECURSE RegKey1=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Internet Explorer\DOMStorage RegKey2=HKCU\Software\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore RegKey3=HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage RegKey4=HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl RegKey5=HKCU\Software\Microsoft\Internet Explorer\Recovery\PendingDelete RegKey6=HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats
  5. Other privacy cleaner programs remove container.dat files from IE. I think exclude keys with container.dat files should be removed from [Internet Explorer *] entry.
  6. New Entry [Tracking Protection Statistics *] LangSecRef=3026 Detect1=HKLM\Software\FlashPeak\SlimBrowser Detect2=HKLM\Software\Mozilla\Pale Moon Detect3=HKLM\Software\Mozilla\SeaMonkey Detect4=HKLM\Software\Mozilla\Waterfox DetectFile=%AppData%\Mozilla\Firefox Default=False FileKey1=%AppData%\FlashPeak\SlimBrowser\Profiles\*|protections.sqlite FileKey2=%AppData%\Moonchild Productions\Pale Moon\Profiles\*|protections.sqlite FileKey3=%AppData%\Mozilla\Firefox\Profiles\*|protections.sqlite FileKey4=%AppData%\Mozilla\SeaMonkey\Profiles\*|protections.sqlite FileKey5=%AppData%\Waterfox\Profiles\*|protections.sqlite
  7. New Entry [Extension Cookies *] LangSecRef=3029 Detect1=HKCU\Software\7Star\7Star Detect2=HKCU\Software\360Browser\Browser Detect3=HKCU\Software\Amigo Detect4=HKCU\Software\BraveSoftware Detect5=HKCU\Software\CentBrowser Detect6=HKCU\Software\ChromePlus Detect7=HKCU\Software\Chromium\PreferenceMACs Detect8=HKCU\Software\CocCoc\Browser Detect9=HKCU\Software\Comodo\Dragon Detect10=HKCU\Software\Coowon\Coowon Detect11=HKCU\Software\Epic Privacy Browser Detect12=HKCU\Software\Flock Detect13=HKCU\Software\Iridium Detect14=HKCU\Software\RockMelt Detect15=HKCU\Software\Slimjet Detect16=HKCU\Software\Superbird Detect17=HKCU\Software\Torch Detect18=HKCU\Software\Vivaldi Detect19=HKCU\Software\Yandex\YandexBrowser DetectFile1=%AppData%\brave DetectFile2=%LocalAppData%\Google\Chrome* Default=False FileKey1=%AppData%\brave|Extension Cookies FileKey2=%LocalAppData%\7Star\7Star\User Data\Default|Extension Cookies FileKey3=%LocalAppData%\360Browser\Browser\User Data\Default|Extension Cookies FileKey4=%LocalAppData%\Amigo\User Data\Default|Extension Cookies FileKey5=%LocalAppData%\BraveSoftware\Brave-Browser*\User Data\Default|Extension Cookies FileKey6=%LocalAppData%\CentBrowser\User Data\Default|Extension Cookies FileKey7=%LocalAppData%\Chromium\User Data\Default|Extension Cookies FileKey8=%LocalAppData%\CocCoc\Browser\User Data\Default|Extension Cookies FileKey9=%LocalAppData%\Comodo\Dragon\User Data\Default|Extension Cookies FileKey10=%LocalAppData%\Coowon\Coowon\User Data\Default|Extension Cookies FileKey11=%LocalAppData%\Epic Privacy Browser\User Data\Default|Extension Cookies FileKey12=%LocalAppData%\Flock\User Data\Default|Extension Cookies FileKey13=%LocalAppData%\Google\Chrome*\User Data\Default|Extension Cookies FileKey14=%LocalAppData%\Iridium\User Data\Default|Extension Cookies FileKey15=%LocalAppData%\MapleStudio\ChromePlus\User Data\Default|Extension Cookies FileKey16=%LocalAppData%\RockMelt\User Data\Default|Extension Cookies FileKey17=%LocalAppData%\Slimjet\User Data\Default|Extension Cookies FileKey18=%LocalAppData%\Superbird\User Data\Default|Extension Cookies FileKey19=%LocalAppData%\Torch\User Data\Default|Extension Cookies FileKey20=%LocalAppData%\Vivaldi\User Data\Default|Extension Cookies FileKey21=%LocalAppData%\Yandex\YandexBrowser\User Data\Default|Extension Cookies
  8. Revised Entry Added: %LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\TempState|*.*|RECURSE [Microsoft Edge *] LangSecRef=3022 Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.MicrosoftEdge_8wekyb3d8bbwe Default=False FileKey1=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\#!00*\INetCookies|*.*|RECURSE FileKey2=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\#!00*\Microsoft\Cryptnet*Cache|*.*|RECURSE FileKey3=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\#!00*\MicrosoftEdge\Cookies|*.*|RECURSE FileKey4=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\#!00*\MicrosoftEdge\User\Default\DOMStore|*.*|RECURSE FileKey5=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\Microsoft\Cryptnet*Cache|*.*|RECURSE FileKey6=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\MicrosoftEdge\Cookies|*.*|RECURSE FileKey7=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\MicrosoftEdge\UrlBlock|*.tmp FileKey8=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\MicrosoftEdge\User\Default\DataStore\Data\nouser1\*\DBStore|V01*.log;V01*.jrs FileKey9=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\MicrosoftEdge\User\Default\DataStore\Indexed\Data\nouser1\*|*.*|RECURSE FileKey10=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\MicrosoftEdge\User\Default\ImageStore|*.*|RECURSE FileKey11=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\MicrosoftEdge\User\Default\Recovery\Active|*.dat FileKey12=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\Temp|*.*|RECURSE FileKey13=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AppData\User\Default\Indexed DB|*.*|RECURSE FileKey14=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\LocalState\Favicons\PushNotificationGrouping|*.*|RECURSE FileKey15=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\TempState|*.*|RECURSE RegKey1=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\Recovery\PendingDelete RegKey2=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\PersistedPickerData\Microsoft.MicrosoftEdge_8wekyb3d8bbwe!MicrosoftEdge\DefaultOpenFileMultiple RegKey3=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\PersistedPickerData\Microsoft.MicrosoftEdge_8wekyb3d8bbwe!MicrosoftEdge\DefaultOpenFileSingle RegKey4=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\PersistedPickerData\Microsoft.MicrosoftEdge_8wekyb3d8bbwe!MicrosoftEdge\DefaultSaveFileSingle
  9. I have these paths on my system (Windows 10 Pro v1903).
  10. I opened some of the log files there and they belong to IE and Edge.
  11. I think these locations belong to Microsoft Store. We need some more research. LocalAppData%\Microsoft\Windows\AppCache LocalAppData%\Microsoft\Windows\WebCache %WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Windows\WebCache %WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\WebCache
  12. Revised Entry Removed: %LocalLowAppData%\Microsoft\Internet Explorer\DOMStore|*.*|RECURSE This is already in the built-in Internet Explorer - Cookies entry. [Internet Explorer *] LangSecRef=3022 Detect=HKCU\Software\Microsoft\Internet Explorer Default=False FileKey1=%AppData%\Microsoft\Internet Explorer\UserData|*.*|RECURSE FileKey2=%LocalAppData%\Microsoft\Internet Explorer|*.log;*.txt FileKey3=%LocalAppData%\Microsoft\Internet Explorer\CacheStorage|*.*|RECURSE FileKey4=%LocalAppData%\Microsoft\Windows\AppCache|*.*|RECURSE FileKey5=%LocalAppData%\Microsoft\Windows\IECompat*Cache|*.*|RECURSE FileKey6=%LocalAppData%\Microsoft\Windows\WebCache|*.*|RECURSE FileKey7=%LocalAppData%\Microsoft\Windows\WebCache.old|*.*|REMOVESELF FileKey8=%LocalAppData%\Packages\windows_ie_ac_*\AC\AppCache|*.*|RECURSE FileKey9=%LocalAppData%\Packages\windows_ie_ac_*\AC\IECompat*Cache|*.*|RECURSE FileKey10=%LocalAppData%\Packages\windows_ie_ac_*\AC\IEDownloadHistory|*.*|RECURSE FileKey11=%LocalAppData%\Packages\windows_ie_ac_*\AC\INet*|*.*|RECURSE FileKey12=%LocalAppData%\Packages\windows_ie_ac_*\AC\Microsoft\CLR_v4.0\UsageLogs|*.*|RECURSE FileKey13=%LocalAppData%\Packages\windows_ie_ac_*\AC\Microsoft\CryptnetUrlCache\*|*.* FileKey14=%LocalAppData%\Packages\windows_ie_ac_*\AC\Microsoft\Internet Explorer\DOMStore|*.*|RECURSE FileKey15=%LocalAppData%\Packages\windows_ie_ac_*\AC\Microsoft\Internet Explorer\Emie*List|*.*|RECURSE FileKey16=%LocalAppData%\Packages\windows_ie_ac_*\AC\PRICache|*.*|RECURSE FileKey17=%LocalAppData%\Packages\windows_ie_ac_*\AC\Temp|*.*|RECURSE FileKey18=%LocalAppData%\Packages\windows_ie_ac_*\LocalState\Cache|*.*|RECURSE FileKey19=%LocalAppData%\Packages\windows_ie_ac_*\LocalState\navigationHistory|*.*|RECURSE FileKey20=%LocalAppData%\Packages\windows_ie_ac_*\TempState|*.*|RECURSE FileKey21=%SystemDrive%\Documents and Settings\LocalService*\Cookies|*.*|RECURSE FileKey22=%SystemDrive%\Documents and Settings\LocalService*\Local Settings\History|*.*|RECURSE FileKey23=%SystemDrive%\Documents and Settings\LocalService*\Local Settings\Temporary Internet Files|*.*|RECURSE FileKey24=%SystemDrive%\Documents and Settings\NetworkService*\Cookies|*.*|RECURSE FileKey25=%SystemDrive%\Documents and Settings\NetworkService*\Local Settings\History|*.*|RECURSE FileKey26=%SystemDrive%\Documents and Settings\NetworkService*\Local Settings\Temporary Internet Files|*.*|RECURSE FileKey27=%WinDir%\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History|*.*|RECURSE FileKey28=%WinDir%\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\INetCache|*.*|RECURSE FileKey29=%WinDir%\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\INetCookies|*.*|RECURSE FileKey30=%WinDir%\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\History|*.*|RECURSE FileKey31=%WinDir%\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\INetCache|*.*|RECURSE FileKey32=%WinDir%\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\INetCookies|*.*|RECURSE FileKey33=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History|*.*|RECURSE FileKey34=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache|*.*|RECURSE FileKey35=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCookies|*.*|RECURSE FileKey36=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Windows\WebCache|*.*|RECURSE FileKey37=%WinDir%\System32\config\systemprofile\Cookies|*.*|RECURSE FileKey38=%WinDir%\System32\config\systemprofile\History|*.*|RECURSE FileKey39=%WinDir%\System32\config\systemprofile\Local Settings\Temporary Internet Files|*.*|RECURSE FileKey40=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History|*.*|RECURSE FileKey41=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache|*.*|RECURSE FileKey42=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCookies|*.*|RECURSE FileKey43=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\WebCache|*.*|RECURSE RegKey1=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Internet Explorer\DOMStorage RegKey2=HKCU\Software\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore RegKey3=HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage RegKey4=HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl RegKey5=HKCU\Software\Microsoft\Internet Explorer\Recovery\PendingDelete RegKey6=HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats ExcludeKey1=FILE|%LocalAppData%\Microsoft\Windows\INetCache\IE\|container.dat ExcludeKey2=FILE|%LocalAppData%\Packages\windows_ie_ac_*\AC\INetCache\|container.dat
  13. These should be the default settings.
  14. Revised Entry Removed: %UserProfile%\MicrosoftEdgeBackups\backups\*|*.*|REMOVESELF Added into [Microsoft Edge Favorites Backup *] entry. [Microsoft Edge *] LangSecRef=3022 Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.MicrosoftEdge_8wekyb3d8bbwe Default=False FileKey1=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\#!00*\INetCookies|*.*|RECURSE FileKey2=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\#!00*\Microsoft\Cryptnet*Cache|*.*|RECURSE FileKey3=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\#!00*\MicrosoftEdge\Cookies|*.*|RECURSE FileKey4=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\#!00*\MicrosoftEdge\User\Default\DOMStore|*.*|RECURSE FileKey5=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\Microsoft\Cryptnet*Cache|*.*|RECURSE FileKey6=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\MicrosoftEdge\Cookies|*.*|RECURSE FileKey7=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\MicrosoftEdge\UrlBlock|*.tmp FileKey8=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\MicrosoftEdge\User\Default\DataStore\Data\nouser1\*\DBStore|V01*.log;V01*.jrs FileKey9=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\MicrosoftEdge\User\Default\DataStore\Indexed\Data\nouser1\*|*.*|RECURSE FileKey10=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\MicrosoftEdge\User\Default\ImageStore|*.*|RECURSE FileKey11=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\MicrosoftEdge\User\Default\Recovery\Active|*.dat FileKey12=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\Temp|*.*|RECURSE FileKey13=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AppData\User\Default\Indexed DB|*.*|RECURSE FileKey14=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\LocalState\Favicons\PushNotificationGrouping|*.*|RECURSE RegKey1=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\Recovery\PendingDelete RegKey2=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\PersistedPickerData\Microsoft.MicrosoftEdge_8wekyb3d8bbwe!MicrosoftEdge\DefaultOpenFileMultiple RegKey3=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\PersistedPickerData\Microsoft.MicrosoftEdge_8wekyb3d8bbwe!MicrosoftEdge\DefaultOpenFileSingle RegKey4=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\PersistedPickerData\Microsoft.MicrosoftEdge_8wekyb3d8bbwe!MicrosoftEdge\DefaultSaveFileSingle New Entry [Microsoft Edge Favorites Backup *] LangSecRef=3022 Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.MicrosoftEdge_8wekyb3d8bbwe Default=False FileKey1=%UserProfile%\MicrosoftEdgeBackups|*.*|RECURSE
  15. How about a new entry? [Temporary Files *]
  16. Please remove the entries listed below. Now, CCleaner remove stored favicons. [Bookmarks Icons *] LangSecRef=3029 Detect1=HKCU\Software\7Star\7Star Detect2=HKCU\Software\360Browser\Browser Detect3=HKCU\Software\Amigo Detect4=HKCU\Software\BraveSoftware Detect5=HKCU\Software\CentBrowser Detect6=HKCU\Software\ChromePlus Detect7=HKCU\Software\Chromium\PreferenceMACs Detect8=HKCU\Software\CocCoc\Browser Detect9=HKCU\Software\Comodo\Dragon Detect10=HKCU\Software\Coowon\Coowon Detect11=HKCU\Software\Epic Privacy Browser Detect12=HKCU\Software\Flock Detect13=HKCU\Software\Iridium Detect14=HKCU\Software\RockMelt Detect15=HKCU\Software\Slimjet Detect16=HKCU\Software\Superbird Detect17=HKCU\Software\Torch Detect18=HKCU\Software\Vivaldi Detect19=HKCU\Software\Yandex\YandexBrowser DetectFile1=%AppData%\brave DetectFile2=%LocalAppData%\Google\Chrome* Default=False Warning=This will delete all the icons of your bookmarks. The icons will be rebuilt as websites are manually re-visited. FileKey1=%AppData%\brave|Favicons FileKey2=%LocalAppData%\7Star\7Star\User Data\*|Favicons FileKey3=%LocalAppData%\360Browser\Browser\User Data\*|Favicons FileKey4=%LocalAppData%\Amigo\User Data\*|Favicons FileKey5=%LocalAppData%\BraveSoftware\Brave-Browser*\User Data\*|Favicons FileKey6=%LocalAppData%\CentBrowser\User Data\*|Favicons FileKey7=%LocalAppData%\Chromium\User Data\*|Favicons FileKey8=%LocalAppData%\CocCoc\Browser\User Data\*|Favicons FileKey9=%LocalAppData%\Comodo\Dragon\User Data\*|Favicons FileKey10=%LocalAppData%\Coowon\Coowon\User Data\*|Favicons FileKey11=%LocalAppData%\Epic Privacy Browser\User Data\*|Favicons FileKey12=%LocalAppData%\Flock\User Data\*|Favicons FileKey13=%LocalAppData%\Google\Chrome*\User Data\*|Favicons FileKey14=%LocalAppData%\Iridium\User Data\*|Favicons FileKey15=%LocalAppData%\MapleStudio\ChromePlus\User Data\*|Favicons FileKey16=%LocalAppData%\RockMelt\User Data\*|Favicons FileKey17=%LocalAppData%\Slimjet\User Data\*|Favicons FileKey18=%LocalAppData%\Superbird\User Data\*|Favicons FileKey19=%LocalAppData%\Torch\User Data\*|Favicons FileKey20=%LocalAppData%\Vivaldi\User Data\*|Favicons FileKey21=%LocalAppData%\Yandex\YandexBrowser\User Data\*|Favicons [Bookmark Icons *] LangSecRef=3026 Detect1=HKLM\Software\Mozilla\Pale Moon Detect2=HKLM\Software\Mozilla\SeaMonkey Detect3=HKLM\Software\Mozilla\Waterfox DetectFile=%AppData%\Mozilla\Firefox Default=False Warning=This will delete all the icons of your bookmarks. The icons will be rebuilt as websites are manually re-visited. FileKey1=%AppData%\Moonchild Productions\Pale Moon\Profiles\*|favicons.sqlite FileKey2=%AppData%\Mozilla\Firefox\Profiles\*|favicons.sqlite FileKey3=%AppData%\Mozilla\SeaMonkey\Profiles\*|favicons.sqlite FileKey4=%AppData%\Waterfox\Profiles\*|favicons.sqlite
  17. I think Internet Explorer related locations should be moved to the [Inter Explorer *] entry, CryptnetUrlCache locations should be moved to the [Cached Certification Files *] entry from the entries listed below, eliminating these three entries. [NetworkService *] LangSecRef=3025 Detect=HKLM\Software\Microsoft\Windows Default=False FileKey1=%SystemDrive%\Documents and Settings\NetworkService*\Cookies|*.*|RECURSE FileKey2=%SystemDrive%\Documents and Settings\NetworkService*\Local Settings\History|*.*|RECURSE FileKey3=%SystemDrive%\Documents and Settings\NetworkService*\Local Settings\Temp|*.*|RECURSE FileKey4=%SystemDrive%\Documents and Settings\NetworkService*\Local Settings\Temporary Internet Files|*.*|RECURSE FileKey5=%WinDir%\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\History|*.*|RECURSE FileKey6=%WinDir%\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\INetCache|*.*|RECURSE FileKey7=%WinDir%\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\INetCookies|*.*|RECURSE FileKey8=%WinDir%\ServiceProfiles\NetworkService\AppData\Local\Temp|*.*|RECURSE FileKey9=%WinDir%\ServiceProfiles\NetworkService\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content|*.*|RECURSE FileKey10=%WinDir%\ServiceProfiles\NetworkService\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData|*.*|RECURSE [LocalService *] LangSecRef=3025 Detect=HKLM\Software\Microsoft\Windows Default=False FileKey1=%SystemDrive%\Documents and Settings\LocalService*\Cookies|*.*|RECURSE FileKey2=%SystemDrive%\Documents and Settings\LocalService*\Local Settings\History|*.*|RECURSE FileKey3=%SystemDrive%\Documents and Settings\LocalService*\Local Settings\Temp|*.*|RECURSE FileKey4=%SystemDrive%\Documents and Settings\LocalService*\Local Settings\Temporary Internet Files|*.*|RECURSE FileKey5=%WinDir%\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History|*.*|RECURSE FileKey6=%WinDir%\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\INetCache|*.*|RECURSE FileKey7=%WinDir%\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\INetCookies|*.*|RECURSE FileKey8=%WinDir%\ServiceProfiles\LocalService\AppData\Local\Temp|*.*|RECURSE FileKey9=%WinDir%\ServiceProfiles\LocalService\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content|*.*|RECURSE FileKey10=%WinDir%\ServiceProfiles\LocalService\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData|*.*|RECURSE [LocalSystem *] LangSecRef=3025 Detect=HKCU\Software\Microsoft\Windows Default=False FileKey1=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History|*.*|RECURSE FileKey2=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache|*.*|RECURSE FileKey3=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCookies|*.*|RECURSE FileKey4=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Windows\WebCache|*.*|RECURSE FileKey5=%WinDir%\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content|*.*|RECURSE FileKey6=%WinDir%\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData|*.*|RECURSE FileKey7=%WinDir%\System32\config\systemprofile\Application Data\Microsoft\CryptnetUrlCache\Content|*.*|RECURSE FileKey8=%WinDir%\System32\config\systemprofile\Application Data\Microsoft\CryptnetUrlCache\MetaData|*.*|RECURSE FileKey9=%WinDir%\System32\config\systemprofile\Cookies|*.*|RECURSE FileKey10=%WinDir%\System32\config\systemprofile\History|*.*|RECURSE FileKey11=%WinDir%\System32\config\systemprofile\Local Settings\Temp|*.*|RECURSE FileKey12=%WinDir%\System32\config\systemprofile\Local Settings\Temporary Internet Files|*.*|RECURSE FileKey13=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History|*.*|RECURSE FileKey14=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache|*.*|RECURSE FileKey15=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCookies|*.*|RECURSE FileKey16=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\WebCache|*.*|RECURSE FileKey17=%WinDir%\SysWOW64\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content|*.*|RECURSE FileKey18=%WinDir%\SysWOW64\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData|*.*|RECURSE
  18. I think the Firefox update logs should have a separate entry. [Log Files *] LangSecRef=3026 Detect1=HKLM\Software\Mozilla\Pale Moon Detect2=HKLM\Software\Mozilla\SeaMonkey Detect3=HKLM\Software\Mozilla\Waterfox DetectFile=%AppData%\Mozilla\Firefox Default=False FileKey1=%AppData%\Moonchild Productions\Pale Moon|*.log|RECURSE FileKey2=%AppData%\Moonchild Productions\Pale Moon\Profiles\*|TestPilotErrorLog.* FileKey3=%AppData%\Moonchild Productions\Pale Moon\Profiles\*\weave\logs|*.* FileKey4=%AppData%\Mozilla\Firefox|*.log|RECURSE FileKey5=%AppData%\Mozilla\Firefox\Profiles\*|TestPilotErrorLog.* FileKey6=%AppData%\Mozilla\Firefox\Profiles\*\weave\logs|*.* FileKey7=%AppData%\Mozilla\SeaMonkey|*.log|RECURSE FileKey8=%AppData%\Mozilla\SeaMonkey\Profiles\*|TestPilotErrorLog.* FileKey9=%AppData%\Mozilla\SeaMonkey\Profiles\*\weave\logs|*.* FileKey10=%AppData%\Waterfox|*.log|RECURSE FileKey11=%AppData%\Waterfox\Profiles\*|TestPilotErrorLog.* FileKey12=%AppData%\Waterfox\Profiles\*\weave\logs|*.* FileKey13=%CommonAppData%\Mozilla*\logs|*.* FileKey14=%CommonAppData%\Mozilla\updates|*.*|RECURSE FileKey15=%LocalAppData%\Moonchild Productions\Pale Moon\Pale Moon|*.*|RECURSE FileKey16=%LocalAppData%\Mozilla\updates|*.*|RECURSE FileKey17=%ProgramFiles%\Firefox*|*.log FileKey18=%ProgramFiles%\Mozilla Firefox|*.log FileKey19=%ProgramFiles%\Mozilla Maintenance Service\logs|*.log FileKey20=%ProgramFiles%\Pale Moon|*.log FileKey21=%ProgramFiles%\SeaMonkey|*.log FileKey22=%ProgramFiles%\Waterfox|*.log ExcludeKey1=FILE|%CommonAppData%\Mozilla\updates\*\|update-config.json
  19. You have some of the Cortana cache files and cookies under Microsoft Edge - Internet Cache and Microsoft Edge - Cookies. These files and cookies should be under the Cortana entry.
  20. Please remove the [Feeds Cache *] entry. Feeds are already included in the built-in entry for Internet Explorer.
  21. Revised Entry Changed the name from [HP Printer Control *] to [HP Smart *] Removed: %LocalAppData%\Packages\*.HPPrinterControl_*\LocalState|*.*|RECURSE Added: %LocalAppData%\Packages\*.HPPrinterControl_*\LocalCache|*.*|RECURSE %LocalAppData%\Packages\*.HPPrinterControl_*\TempState|*.*|RECURSE [HP Smart *] LangSecRef=3031 Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\AD2F1837.HPPrinterControl_v10z8vjag6ke6 Default=False FileKey1=%LocalAppData%\Packages\*.HPPrinterControl_*\AC\AppCache|*.*|RECURSE FileKey2=%LocalAppData%\Packages\*.HPPrinterControl_*\AC\INet*|*.*|RECURSE FileKey3=%LocalAppData%\Packages\*.HPPrinterControl_*\AC\Microsoft\CLR_v4.0*|*.log|RECURSE FileKey4=%LocalAppData%\Packages\*.HPPrinterControl_*\AC\Microsoft\CryptnetUrlCache\*|*.*|RECURSE FileKey5=%LocalAppData%\Packages\*.HPPrinterControl_*\AC\Temp|*.*|RECURSE FileKey6=%LocalAppData%\Packages\*.HPPrinterControl_*\LocalCache|*.*|RECURSE FileKey7=%LocalAppData%\Packages\*.HPPrinterControl_*\TempState|*.*|RECURSE
  22. Revised Entry Removed *.lst from FileKey2 and FileKey3 completely because they are in the built-in entry. [Adobe Reader DC *] LangSecRef=3021 Detect=HKLM\Software\Adobe\Acrobat Reader\DC Default=False FileKey1=%AppData%\Adobe\Acrobat\DC\Security\CRLCache|*.*|RECURSE FileKey2=%LocalAppData%\Adobe\Acrobat\DC|IconCacheRdr*.dat;UserCache.bin FileKey3=%LocalAppData%\Adobe\Acrobat\DC\ToolsSearchCacheRdr|*.*|RECURSE FileKey4=%LocalLowAppData%\Adobe\Acrobat\DC|ReaderMessages FileKey5=%LocalLowAppData%\Adobe\Acrobat\DC\ConnectorIcons|*.*|RECURSE FileKey6=%LocalLowAppData%\Adobe\Acrobat\DC\Search|*.*|RECURSE FileKey7=%LocalLowAppData%\Adobe\AcroCef\DC\Acrobat\Cache|*.*|RECURSE RegKey1=HKCU\Software\Adobe\Acrobat Reader\DC\AVConversionFromPDF RegKey2=HKCU\Software\Adobe\Acrobat Reader\DC\AVConversionToPDF RegKey3=HKCU\Software\Adobe\Acrobat Reader\DC\AVGeneral\cDockables RegKey4=HKCU\Software\Adobe\Acrobat Reader\DC\AVGeneral\cRecentToolsList RegKey5=HKCU\Software\Adobe\Acrobat Reader\DC\AVGeneral\cToolbars RegKey6=HKCU\Software\Adobe\Acrobat Reader\DC\RememberedViews\cNoCategoryFiles RegKey7=HKCU\Software\Adobe\Acrobat Reader\DC\ShareIdentity RegKey8=HKCU\Software\Adobe\Adobe Synchronizer\DC
  23. Revised Entry Changed FileKey6 [Wondershare UniConverter *] LangSecRef=3023 Detect=HKLM\Software\Wondershare\Wondershare UniConverter Default=False FileKey1=%CommonAppData%\Wondershare MediaServer|*.txt FileKey2=%CommonAppData%\Wondershare\ProductFeatures\*Logs|*.*|RECURSE FileKey3=%CommonAppData%\Wondershare\UniConverter\DataTrack|tmp;*.bak;*.log FileKey4=%CommonAppData%\Wondershare\UniConverter\TempThumbDir|*.*|RECURSE FileKey5=%CommonAppData%\Wondershare\WAF\ProductFeatures\*Logs|*.*|RECURSE FileKey6=%ProgramFiles%\Wondershare\UniConverter\Log|*.*|RECURSE FileKey7=%SystemDrive%\UniConverter\Downloaded\temp|*.*|REMOVESELF FileKey8=%UserProfile%\.cache|*.*|REMOVESELF
×
×
  • Create New...

Important Information

By using this site, you agree to our Terms of Use.