SMalik
-
Posts
1,747 -
Joined
-
Last visited
Posts posted by SMalik
-
-
Revised Entry
Added: %LocalAppData%\Packages\4DF9E0F8.Netflix_*\LocalCache|*.*|RECURSE
[Netflix *]
LangSecRef=3031
Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\4DF9E0F8.Netflix_mcm4njqhnhss8
Default=False
FileKey1=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\AC\AppCache|*.*|RECURSE
FileKey2=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\AC\BackgroundTransferApi|*.*|RECURSE
FileKey3=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\AC\INet*|*.*|RECURSE
FileKey4=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\AC\Microsoft\CLR_v4.0\UsageLogs|*.*|RECURSE
FileKey5=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\AC\Microsoft\CryptnetUrlCache\*|*.*|RECURSE
FileKey6=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\AC\Microsoft\Internet Explorer\DOMStore\*|*.*|REMOVESELF
FileKey7=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\AC\NVIDIA Corporation\NV_Cache|*.*|RECURSE
FileKey8=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\AC\PRICache|*.*|RECURSE
FileKey9=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\AC\Temp|*.*|RECURSE
FileKey10=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\AppData\Indexed DB|*.log
FileKey11=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\LocalCache|*.*|RECURSE
FileKey12=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\LocalState|*.tmp
FileKey13=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\LocalState\LiveTile|*.*|RECURSE
FileKey14=%LocalAppData%\Packages\4DF9E0F8.Netflix_*\TempState|*.*|RECURSE
RegKey1=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\4DF9E0F8.Netflix_mcm4njqhnhss8\SearchHistory
ExcludeKey1=FILE|%LocalAppData%\Packages\4DF9E0F8.Netflix_*\AC\Microsoft\Internet Explorer\DOMStore\*\|www.netflix[1].xml -
Revised Entry
Removed: %SystemDrive%\UniConverter\Downloaded\temp|*.*|REMOVESELF
Added: %SystemDrive%\Wondershare UniConverter\Downloaded\temp|*.*|REMOVESELF[Wondershare UniConverter *]
LangSecRef=3023
Detect=HKLM\Software\Wondershare\Wondershare UniConverter
Default=False
FileKey1=%CommonAppData%\Wondershare MediaServer|*.txt
FileKey2=%CommonAppData%\Wondershare\ProductFeatures\*Logs|*.*|RECURSE
FileKey3=%CommonAppData%\Wondershare\UniConverter\DataTrack|tmp;*.bak;*.log
FileKey4=%CommonAppData%\Wondershare\UniConverter\TempThumbDir|*.*|RECURSE
FileKey5=%CommonAppData%\Wondershare\WAF\ProductFeatures\*Logs|*.*|RECURSE
FileKey6=%ProgramFiles%\Wondershare\UniConverter\Log|*.*|RECURSE
FileKey7=%SystemDrive%\Wondershare UniConverter\Downloaded\temp|*.*|REMOVESELF
FileKey8=%UserProfile%\.cache|*.*|REMOVESELF -
Revised Entry
Built-in entry does not wipe all the files.
Added:
%LocalAppData%\Microsoft\Windows\INetCache|*.*|RECURSE
%LocalAppData%\Microsoft\Windows\INetCookies|*.*|RECURSERemoved:
ExcludeKey1=FILE|%LocalAppData%\Microsoft\Windows\INetCache\IE\|container.dat
ExcludeKey2=FILE|%LocalAppData%\Packages\windows_ie_ac_*\AC\INetCache\|container.dat[Internet Explorer *]
LangSecRef=3022
Detect=HKCU\Software\Microsoft\Internet Explorer
Default=False
FileKey1=%AppData%\Microsoft\Internet Explorer\UserData|*.*|RECURSE
FileKey2=%LocalAppData%\Microsoft\Internet Explorer|*.log;*.txt
FileKey3=%LocalAppData%\Microsoft\Internet Explorer\CacheStorage|*.*|RECURSE
FileKey4=%LocalAppData%\Microsoft\Windows\AppCache|*.*|RECURSE
FileKey5=%LocalAppData%\Microsoft\Windows\IECompat*Cache|*.*|RECURSE
FileKey6=%LocalAppData%\Microsoft\Windows\INetCache|*.*|RECURSE
FileKey7=%LocalAppData%\Microsoft\Windows\INetCookies|*.*|RECURSE
FileKey8=%LocalAppData%\Microsoft\Windows\WebCache|*.*|RECURSE
FileKey9=%LocalAppData%\Microsoft\Windows\WebCache.old|*.*|REMOVESELF
FileKey10=%LocalAppData%\Packages\windows_ie_ac_*\AC\AppCache|*.*|RECURSE
FileKey11=%LocalAppData%\Packages\windows_ie_ac_*\AC\IECompat*Cache|*.*|RECURSE
FileKey12=%LocalAppData%\Packages\windows_ie_ac_*\AC\IEDownloadHistory|*.*|RECURSE
FileKey13=%LocalAppData%\Packages\windows_ie_ac_*\AC\INet*|*.*|RECURSE
FileKey14=%LocalAppData%\Packages\windows_ie_ac_*\AC\Microsoft\CLR_v4.0\UsageLogs|*.*|RECURSE
FileKey15=%LocalAppData%\Packages\windows_ie_ac_*\AC\Microsoft\CryptnetUrlCache\*|*.*
FileKey16=%LocalAppData%\Packages\windows_ie_ac_*\AC\Microsoft\Internet Explorer\DOMStore|*.*|RECURSE
FileKey17=%LocalAppData%\Packages\windows_ie_ac_*\AC\Microsoft\Internet Explorer\Emie*List|*.*|RECURSE
FileKey18=%LocalAppData%\Packages\windows_ie_ac_*\AC\PRICache|*.*|RECURSE
FileKey19=%LocalAppData%\Packages\windows_ie_ac_*\AC\Temp|*.*|RECURSE
FileKey20=%LocalAppData%\Packages\windows_ie_ac_*\LocalState\Cache|*.*|RECURSE
FileKey21=%LocalAppData%\Packages\windows_ie_ac_*\LocalState\navigationHistory|*.*|RECURSE
FileKey22=%LocalAppData%\Packages\windows_ie_ac_*\TempState|*.*|RECURSE
FileKey23=%SystemDrive%\Documents and Settings\LocalService*\Cookies|*.*|RECURSE
FileKey24=%SystemDrive%\Documents and Settings\LocalService*\Local Settings\History|*.*|RECURSE
FileKey25=%SystemDrive%\Documents and Settings\LocalService*\Local Settings\Temporary Internet Files|*.*|RECURSE
FileKey26=%SystemDrive%\Documents and Settings\NetworkService*\Cookies|*.*|RECURSE
FileKey27=%SystemDrive%\Documents and Settings\NetworkService*\Local Settings\History|*.*|RECURSE
FileKey28=%SystemDrive%\Documents and Settings\NetworkService*\Local Settings\Temporary Internet Files|*.*|RECURSE
FileKey29=%WinDir%\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History|*.*|RECURSE
FileKey30=%WinDir%\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\INetCache|*.*|RECURSE
FileKey31=%WinDir%\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\INetCookies|*.*|RECURSE
FileKey32=%WinDir%\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\History|*.*|RECURSE
FileKey33=%WinDir%\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\INetCache|*.*|RECURSE
FileKey34=%WinDir%\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\INetCookies|*.*|RECURSE
FileKey35=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History|*.*|RECURSE
FileKey36=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache|*.*|RECURSE
FileKey37=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCookies|*.*|RECURSE
FileKey38=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Windows\WebCache|*.*|RECURSE
FileKey39=%WinDir%\System32\config\systemprofile\Cookies|*.*|RECURSE
FileKey40=%WinDir%\System32\config\systemprofile\History|*.*|RECURSE
FileKey41=%WinDir%\System32\config\systemprofile\Local Settings\Temporary Internet Files|*.*|RECURSE
FileKey42=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History|*.*|RECURSE
FileKey43=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache|*.*|RECURSE
FileKey44=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCookies|*.*|RECURSE
FileKey45=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\WebCache|*.*|RECURSE
RegKey1=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Internet Explorer\DOMStorage
RegKey2=HKCU\Software\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore
RegKey3=HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage
RegKey4=HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl
RegKey5=HKCU\Software\Microsoft\Internet Explorer\Recovery\PendingDelete
RegKey6=HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats -
Other privacy cleaner programs remove container.dat files from IE. I think exclude keys with container.dat files should be removed from [Internet Explorer *] entry.
-
New Entry
[Tracking Protection Statistics *]
LangSecRef=3026
Detect1=HKLM\Software\FlashPeak\SlimBrowser
Detect2=HKLM\Software\Mozilla\Pale Moon
Detect3=HKLM\Software\Mozilla\SeaMonkey
Detect4=HKLM\Software\Mozilla\Waterfox
DetectFile=%AppData%\Mozilla\Firefox
Default=False
FileKey1=%AppData%\FlashPeak\SlimBrowser\Profiles\*|protections.sqlite
FileKey2=%AppData%\Moonchild Productions\Pale Moon\Profiles\*|protections.sqlite
FileKey3=%AppData%\Mozilla\Firefox\Profiles\*|protections.sqlite
FileKey4=%AppData%\Mozilla\SeaMonkey\Profiles\*|protections.sqlite
FileKey5=%AppData%\Waterfox\Profiles\*|protections.sqlite -
New Entry
[Extension Cookies *]
LangSecRef=3029
Detect1=HKCU\Software\7Star\7Star
Detect2=HKCU\Software\360Browser\Browser
Detect3=HKCU\Software\Amigo
Detect4=HKCU\Software\BraveSoftware
Detect5=HKCU\Software\CentBrowser
Detect6=HKCU\Software\ChromePlus
Detect7=HKCU\Software\Chromium\PreferenceMACs
Detect8=HKCU\Software\CocCoc\Browser
Detect9=HKCU\Software\Comodo\Dragon
Detect10=HKCU\Software\Coowon\Coowon
Detect11=HKCU\Software\Epic Privacy Browser
Detect12=HKCU\Software\Flock
Detect13=HKCU\Software\Iridium
Detect14=HKCU\Software\RockMelt
Detect15=HKCU\Software\Slimjet
Detect16=HKCU\Software\Superbird
Detect17=HKCU\Software\Torch
Detect18=HKCU\Software\Vivaldi
Detect19=HKCU\Software\Yandex\YandexBrowser
DetectFile1=%AppData%\brave
DetectFile2=%LocalAppData%\Google\Chrome*
Default=False
FileKey1=%AppData%\brave|Extension Cookies
FileKey2=%LocalAppData%\7Star\7Star\User Data\Default|Extension Cookies
FileKey3=%LocalAppData%\360Browser\Browser\User Data\Default|Extension Cookies
FileKey4=%LocalAppData%\Amigo\User Data\Default|Extension Cookies
FileKey5=%LocalAppData%\BraveSoftware\Brave-Browser*\User Data\Default|Extension Cookies
FileKey6=%LocalAppData%\CentBrowser\User Data\Default|Extension Cookies
FileKey7=%LocalAppData%\Chromium\User Data\Default|Extension Cookies
FileKey8=%LocalAppData%\CocCoc\Browser\User Data\Default|Extension Cookies
FileKey9=%LocalAppData%\Comodo\Dragon\User Data\Default|Extension Cookies
FileKey10=%LocalAppData%\Coowon\Coowon\User Data\Default|Extension Cookies
FileKey11=%LocalAppData%\Epic Privacy Browser\User Data\Default|Extension Cookies
FileKey12=%LocalAppData%\Flock\User Data\Default|Extension Cookies
FileKey13=%LocalAppData%\Google\Chrome*\User Data\Default|Extension Cookies
FileKey14=%LocalAppData%\Iridium\User Data\Default|Extension Cookies
FileKey15=%LocalAppData%\MapleStudio\ChromePlus\User Data\Default|Extension Cookies
FileKey16=%LocalAppData%\RockMelt\User Data\Default|Extension Cookies
FileKey17=%LocalAppData%\Slimjet\User Data\Default|Extension Cookies
FileKey18=%LocalAppData%\Superbird\User Data\Default|Extension Cookies
FileKey19=%LocalAppData%\Torch\User Data\Default|Extension Cookies
FileKey20=%LocalAppData%\Vivaldi\User Data\Default|Extension Cookies
FileKey21=%LocalAppData%\Yandex\YandexBrowser\User Data\Default|Extension Cookies -
Revised Entry
Added: %LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\TempState|*.*|RECURSE
[Microsoft Edge *]
LangSecRef=3022
Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.MicrosoftEdge_8wekyb3d8bbwe
Default=False
FileKey1=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\#!00*\INetCookies|*.*|RECURSE
FileKey2=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\#!00*\Microsoft\Cryptnet*Cache|*.*|RECURSE
FileKey3=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\#!00*\MicrosoftEdge\Cookies|*.*|RECURSE
FileKey4=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\#!00*\MicrosoftEdge\User\Default\DOMStore|*.*|RECURSE
FileKey5=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\Microsoft\Cryptnet*Cache|*.*|RECURSE
FileKey6=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\MicrosoftEdge\Cookies|*.*|RECURSE
FileKey7=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\MicrosoftEdge\UrlBlock|*.tmp
FileKey8=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\MicrosoftEdge\User\Default\DataStore\Data\nouser1\*\DBStore|V01*.log;V01*.jrs
FileKey9=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\MicrosoftEdge\User\Default\DataStore\Indexed\Data\nouser1\*|*.*|RECURSE
FileKey10=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\MicrosoftEdge\User\Default\ImageStore|*.*|RECURSE
FileKey11=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\MicrosoftEdge\User\Default\Recovery\Active|*.dat
FileKey12=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\Temp|*.*|RECURSE
FileKey13=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AppData\User\Default\Indexed DB|*.*|RECURSE
FileKey14=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\LocalState\Favicons\PushNotificationGrouping|*.*|RECURSE
FileKey15=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\TempState|*.*|RECURSE
RegKey1=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\Recovery\PendingDelete
RegKey2=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\PersistedPickerData\Microsoft.MicrosoftEdge_8wekyb3d8bbwe!MicrosoftEdge\DefaultOpenFileMultiple
RegKey3=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\PersistedPickerData\Microsoft.MicrosoftEdge_8wekyb3d8bbwe!MicrosoftEdge\DefaultOpenFileSingle
RegKey4=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\PersistedPickerData\Microsoft.MicrosoftEdge_8wekyb3d8bbwe!MicrosoftEdge\DefaultSaveFileSingle -
On 12/10/2019 at 01:32, Andavari said:
I couldn't find those folders or paths in old WinXP SP3.
----------
Using Win10 Home v1903 fully patched/updated:
I found files here but can't examine or even copy them because they're locked (so maybe non-cleanable?). Also when I opened Microsoft Edge (the original one) more logs, etc., were created in the folder:
%LocalAppData%\Microsoft\Windows\WebCacheThe WebCache folder doesn't exist in either of these paths on my system:
%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Windows\WebCache
%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\WebCacheI have these paths on my system (Windows 10 Pro v1903).
-
15 hours ago, APMichael said:
What I know is that the folder "WebCache" already exists much longer than the "Microsoft Store". The folder was already cleaned in the Winapp2.ini entry from the pre-Windows-8/8.1 time.
However, the Internet Explorer engine is strongly interlocked with the operating system. Many functions and programs that require Internet access use parts of this engine and thus also the "WebCache".
I would leave it as it is.
I opened some of the log files there and they belong to IE and Edge.
-
I think these locations belong to Microsoft Store. We need some more research.
LocalAppData%\Microsoft\Windows\AppCache
LocalAppData%\Microsoft\Windows\WebCache
%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Windows\WebCache
%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\WebCache
-
Revised Entry
Removed: %LocalLowAppData%\Microsoft\Internet Explorer\DOMStore|*.*|RECURSE
This is already in the built-in Internet Explorer - Cookies entry.[Internet Explorer *]
LangSecRef=3022
Detect=HKCU\Software\Microsoft\Internet Explorer
Default=False
FileKey1=%AppData%\Microsoft\Internet Explorer\UserData|*.*|RECURSE
FileKey2=%LocalAppData%\Microsoft\Internet Explorer|*.log;*.txt
FileKey3=%LocalAppData%\Microsoft\Internet Explorer\CacheStorage|*.*|RECURSE
FileKey4=%LocalAppData%\Microsoft\Windows\AppCache|*.*|RECURSE
FileKey5=%LocalAppData%\Microsoft\Windows\IECompat*Cache|*.*|RECURSE
FileKey6=%LocalAppData%\Microsoft\Windows\WebCache|*.*|RECURSE
FileKey7=%LocalAppData%\Microsoft\Windows\WebCache.old|*.*|REMOVESELF
FileKey8=%LocalAppData%\Packages\windows_ie_ac_*\AC\AppCache|*.*|RECURSE
FileKey9=%LocalAppData%\Packages\windows_ie_ac_*\AC\IECompat*Cache|*.*|RECURSE
FileKey10=%LocalAppData%\Packages\windows_ie_ac_*\AC\IEDownloadHistory|*.*|RECURSE
FileKey11=%LocalAppData%\Packages\windows_ie_ac_*\AC\INet*|*.*|RECURSE
FileKey12=%LocalAppData%\Packages\windows_ie_ac_*\AC\Microsoft\CLR_v4.0\UsageLogs|*.*|RECURSE
FileKey13=%LocalAppData%\Packages\windows_ie_ac_*\AC\Microsoft\CryptnetUrlCache\*|*.*
FileKey14=%LocalAppData%\Packages\windows_ie_ac_*\AC\Microsoft\Internet Explorer\DOMStore|*.*|RECURSE
FileKey15=%LocalAppData%\Packages\windows_ie_ac_*\AC\Microsoft\Internet Explorer\Emie*List|*.*|RECURSE
FileKey16=%LocalAppData%\Packages\windows_ie_ac_*\AC\PRICache|*.*|RECURSE
FileKey17=%LocalAppData%\Packages\windows_ie_ac_*\AC\Temp|*.*|RECURSE
FileKey18=%LocalAppData%\Packages\windows_ie_ac_*\LocalState\Cache|*.*|RECURSE
FileKey19=%LocalAppData%\Packages\windows_ie_ac_*\LocalState\navigationHistory|*.*|RECURSE
FileKey20=%LocalAppData%\Packages\windows_ie_ac_*\TempState|*.*|RECURSE
FileKey21=%SystemDrive%\Documents and Settings\LocalService*\Cookies|*.*|RECURSE
FileKey22=%SystemDrive%\Documents and Settings\LocalService*\Local Settings\History|*.*|RECURSE
FileKey23=%SystemDrive%\Documents and Settings\LocalService*\Local Settings\Temporary Internet Files|*.*|RECURSE
FileKey24=%SystemDrive%\Documents and Settings\NetworkService*\Cookies|*.*|RECURSE
FileKey25=%SystemDrive%\Documents and Settings\NetworkService*\Local Settings\History|*.*|RECURSE
FileKey26=%SystemDrive%\Documents and Settings\NetworkService*\Local Settings\Temporary Internet Files|*.*|RECURSE
FileKey27=%WinDir%\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History|*.*|RECURSE
FileKey28=%WinDir%\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\INetCache|*.*|RECURSE
FileKey29=%WinDir%\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\INetCookies|*.*|RECURSE
FileKey30=%WinDir%\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\History|*.*|RECURSE
FileKey31=%WinDir%\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\INetCache|*.*|RECURSE
FileKey32=%WinDir%\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\INetCookies|*.*|RECURSE
FileKey33=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History|*.*|RECURSE
FileKey34=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache|*.*|RECURSE
FileKey35=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCookies|*.*|RECURSE
FileKey36=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Windows\WebCache|*.*|RECURSE
FileKey37=%WinDir%\System32\config\systemprofile\Cookies|*.*|RECURSE
FileKey38=%WinDir%\System32\config\systemprofile\History|*.*|RECURSE
FileKey39=%WinDir%\System32\config\systemprofile\Local Settings\Temporary Internet Files|*.*|RECURSE
FileKey40=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History|*.*|RECURSE
FileKey41=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache|*.*|RECURSE
FileKey42=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCookies|*.*|RECURSE
FileKey43=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\WebCache|*.*|RECURSE
RegKey1=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Internet Explorer\DOMStorage
RegKey2=HKCU\Software\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore
RegKey3=HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage
RegKey4=HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl
RegKey5=HKCU\Software\Microsoft\Internet Explorer\Recovery\PendingDelete
RegKey6=HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats
ExcludeKey1=FILE|%LocalAppData%\Microsoft\Windows\INetCache\IE\|container.dat
ExcludeKey2=FILE|%LocalAppData%\Packages\windows_ie_ac_*\AC\INetCache\|container.dat -
-
15 hours ago, APMichael said:
Thanks for your quick reply. Are these entries ok?
They look fine to me.
-
Revised Entry
Removed: %UserProfile%\MicrosoftEdgeBackups\backups\*|*.*|REMOVESELF
Added into [Microsoft Edge Favorites Backup *] entry.[Microsoft Edge *]
LangSecRef=3022
Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.MicrosoftEdge_8wekyb3d8bbwe
Default=False
FileKey1=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\#!00*\INetCookies|*.*|RECURSE
FileKey2=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\#!00*\Microsoft\Cryptnet*Cache|*.*|RECURSE
FileKey3=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\#!00*\MicrosoftEdge\Cookies|*.*|RECURSE
FileKey4=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\#!00*\MicrosoftEdge\User\Default\DOMStore|*.*|RECURSE
FileKey5=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\Microsoft\Cryptnet*Cache|*.*|RECURSE
FileKey6=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\MicrosoftEdge\Cookies|*.*|RECURSE
FileKey7=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\MicrosoftEdge\UrlBlock|*.tmp
FileKey8=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\MicrosoftEdge\User\Default\DataStore\Data\nouser1\*\DBStore|V01*.log;V01*.jrs
FileKey9=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\MicrosoftEdge\User\Default\DataStore\Indexed\Data\nouser1\*|*.*|RECURSE
FileKey10=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\MicrosoftEdge\User\Default\ImageStore|*.*|RECURSE
FileKey11=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\MicrosoftEdge\User\Default\Recovery\Active|*.dat
FileKey12=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AC\Temp|*.*|RECURSE
FileKey13=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\AppData\User\Default\Indexed DB|*.*|RECURSE
FileKey14=%LocalAppData%\Packages\Microsoft.MicrosoftEdge_*\LocalState\Favicons\PushNotificationGrouping|*.*|RECURSE
RegKey1=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\Recovery\PendingDelete
RegKey2=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\PersistedPickerData\Microsoft.MicrosoftEdge_8wekyb3d8bbwe!MicrosoftEdge\DefaultOpenFileMultiple
RegKey3=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\PersistedPickerData\Microsoft.MicrosoftEdge_8wekyb3d8bbwe!MicrosoftEdge\DefaultOpenFileSingle
RegKey4=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\PersistedPickerData\Microsoft.MicrosoftEdge_8wekyb3d8bbwe!MicrosoftEdge\DefaultSaveFileSingle
New Entry[Microsoft Edge Favorites Backup *]
LangSecRef=3022
Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.MicrosoftEdge_8wekyb3d8bbwe
Default=False
FileKey1=%UserProfile%\MicrosoftEdgeBackups|*.*|RECURSE -
1 hour ago, APMichael said:
Where to move the keys with "\Temp|*.*|RECURSE"? Also to [Internet Explorer *]?
How about a new entry?
[Temporary Files *]
-
1 hour ago, APMichael said:
An entry like this?
[Updates *]
LangSecRef=3026
Detect1=HKLM\Software\Mozilla\Pale Moon
Detect2=HKLM\Software\Mozilla\SeaMonkey
Detect3=HKLM\Software\Mozilla\Waterfox
DetectFile=%AppData%\Mozilla\Firefox
Default=False
FileKey1=%CommonAppData%\Mozilla\updates|*.*|RECURSE
FileKey2=%LocalAppData%\Moonchild Productions\Pale Moon\Pale Moon|*.*|RECURSE
FileKey3=%LocalAppData%\Mozilla\updates|*.*|RECURSE
ExcludeKey1=FILE|%CommonAppData%\Mozilla\updates\*\|update-config.jsonI think this is better.
-
Please remove the entries listed below. Now, CCleaner remove stored favicons.
[Bookmarks Icons *]
LangSecRef=3029
Detect1=HKCU\Software\7Star\7Star
Detect2=HKCU\Software\360Browser\Browser
Detect3=HKCU\Software\Amigo
Detect4=HKCU\Software\BraveSoftware
Detect5=HKCU\Software\CentBrowser
Detect6=HKCU\Software\ChromePlus
Detect7=HKCU\Software\Chromium\PreferenceMACs
Detect8=HKCU\Software\CocCoc\Browser
Detect9=HKCU\Software\Comodo\Dragon
Detect10=HKCU\Software\Coowon\Coowon
Detect11=HKCU\Software\Epic Privacy Browser
Detect12=HKCU\Software\Flock
Detect13=HKCU\Software\Iridium
Detect14=HKCU\Software\RockMelt
Detect15=HKCU\Software\Slimjet
Detect16=HKCU\Software\Superbird
Detect17=HKCU\Software\Torch
Detect18=HKCU\Software\Vivaldi
Detect19=HKCU\Software\Yandex\YandexBrowser
DetectFile1=%AppData%\brave
DetectFile2=%LocalAppData%\Google\Chrome*
Default=False
Warning=This will delete all the icons of your bookmarks. The icons will be rebuilt as websites are manually re-visited.
FileKey1=%AppData%\brave|Favicons
FileKey2=%LocalAppData%\7Star\7Star\User Data\*|Favicons
FileKey3=%LocalAppData%\360Browser\Browser\User Data\*|Favicons
FileKey4=%LocalAppData%\Amigo\User Data\*|Favicons
FileKey5=%LocalAppData%\BraveSoftware\Brave-Browser*\User Data\*|Favicons
FileKey6=%LocalAppData%\CentBrowser\User Data\*|Favicons
FileKey7=%LocalAppData%\Chromium\User Data\*|Favicons
FileKey8=%LocalAppData%\CocCoc\Browser\User Data\*|Favicons
FileKey9=%LocalAppData%\Comodo\Dragon\User Data\*|Favicons
FileKey10=%LocalAppData%\Coowon\Coowon\User Data\*|Favicons
FileKey11=%LocalAppData%\Epic Privacy Browser\User Data\*|Favicons
FileKey12=%LocalAppData%\Flock\User Data\*|Favicons
FileKey13=%LocalAppData%\Google\Chrome*\User Data\*|Favicons
FileKey14=%LocalAppData%\Iridium\User Data\*|Favicons
FileKey15=%LocalAppData%\MapleStudio\ChromePlus\User Data\*|Favicons
FileKey16=%LocalAppData%\RockMelt\User Data\*|Favicons
FileKey17=%LocalAppData%\Slimjet\User Data\*|Favicons
FileKey18=%LocalAppData%\Superbird\User Data\*|Favicons
FileKey19=%LocalAppData%\Torch\User Data\*|Favicons
FileKey20=%LocalAppData%\Vivaldi\User Data\*|Favicons
FileKey21=%LocalAppData%\Yandex\YandexBrowser\User Data\*|Favicons[Bookmark Icons *]
LangSecRef=3026
Detect1=HKLM\Software\Mozilla\Pale Moon
Detect2=HKLM\Software\Mozilla\SeaMonkey
Detect3=HKLM\Software\Mozilla\Waterfox
DetectFile=%AppData%\Mozilla\Firefox
Default=False
Warning=This will delete all the icons of your bookmarks. The icons will be rebuilt as websites are manually re-visited.
FileKey1=%AppData%\Moonchild Productions\Pale Moon\Profiles\*|favicons.sqlite
FileKey2=%AppData%\Mozilla\Firefox\Profiles\*|favicons.sqlite
FileKey3=%AppData%\Mozilla\SeaMonkey\Profiles\*|favicons.sqlite
FileKey4=%AppData%\Waterfox\Profiles\*|favicons.sqlite -
I think Internet Explorer related locations should be moved to the [Inter Explorer *] entry, CryptnetUrlCache locations should be moved to the [Cached Certification Files *] entry from the entries listed below, eliminating these three entries.
[NetworkService *]
LangSecRef=3025
Detect=HKLM\Software\Microsoft\Windows
Default=False
FileKey1=%SystemDrive%\Documents and Settings\NetworkService*\Cookies|*.*|RECURSE
FileKey2=%SystemDrive%\Documents and Settings\NetworkService*\Local Settings\History|*.*|RECURSE
FileKey3=%SystemDrive%\Documents and Settings\NetworkService*\Local Settings\Temp|*.*|RECURSE
FileKey4=%SystemDrive%\Documents and Settings\NetworkService*\Local Settings\Temporary Internet Files|*.*|RECURSE
FileKey5=%WinDir%\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\History|*.*|RECURSE
FileKey6=%WinDir%\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\INetCache|*.*|RECURSE
FileKey7=%WinDir%\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\INetCookies|*.*|RECURSE
FileKey8=%WinDir%\ServiceProfiles\NetworkService\AppData\Local\Temp|*.*|RECURSE
FileKey9=%WinDir%\ServiceProfiles\NetworkService\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content|*.*|RECURSE
FileKey10=%WinDir%\ServiceProfiles\NetworkService\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData|*.*|RECURSE[LocalService *]
LangSecRef=3025
Detect=HKLM\Software\Microsoft\Windows
Default=False
FileKey1=%SystemDrive%\Documents and Settings\LocalService*\Cookies|*.*|RECURSE
FileKey2=%SystemDrive%\Documents and Settings\LocalService*\Local Settings\History|*.*|RECURSE
FileKey3=%SystemDrive%\Documents and Settings\LocalService*\Local Settings\Temp|*.*|RECURSE
FileKey4=%SystemDrive%\Documents and Settings\LocalService*\Local Settings\Temporary Internet Files|*.*|RECURSE
FileKey5=%WinDir%\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History|*.*|RECURSE
FileKey6=%WinDir%\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\INetCache|*.*|RECURSE
FileKey7=%WinDir%\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\INetCookies|*.*|RECURSE
FileKey8=%WinDir%\ServiceProfiles\LocalService\AppData\Local\Temp|*.*|RECURSE
FileKey9=%WinDir%\ServiceProfiles\LocalService\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content|*.*|RECURSE
FileKey10=%WinDir%\ServiceProfiles\LocalService\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData|*.*|RECURSE[LocalSystem *]
LangSecRef=3025
Detect=HKCU\Software\Microsoft\Windows
Default=False
FileKey1=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History|*.*|RECURSE
FileKey2=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache|*.*|RECURSE
FileKey3=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCookies|*.*|RECURSE
FileKey4=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Windows\WebCache|*.*|RECURSE
FileKey5=%WinDir%\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content|*.*|RECURSE
FileKey6=%WinDir%\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData|*.*|RECURSE
FileKey7=%WinDir%\System32\config\systemprofile\Application Data\Microsoft\CryptnetUrlCache\Content|*.*|RECURSE
FileKey8=%WinDir%\System32\config\systemprofile\Application Data\Microsoft\CryptnetUrlCache\MetaData|*.*|RECURSE
FileKey9=%WinDir%\System32\config\systemprofile\Cookies|*.*|RECURSE
FileKey10=%WinDir%\System32\config\systemprofile\History|*.*|RECURSE
FileKey11=%WinDir%\System32\config\systemprofile\Local Settings\Temp|*.*|RECURSE
FileKey12=%WinDir%\System32\config\systemprofile\Local Settings\Temporary Internet Files|*.*|RECURSE
FileKey13=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History|*.*|RECURSE
FileKey14=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache|*.*|RECURSE
FileKey15=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCookies|*.*|RECURSE
FileKey16=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\WebCache|*.*|RECURSE
FileKey17=%WinDir%\SysWOW64\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content|*.*|RECURSE
FileKey18=%WinDir%\SysWOW64\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData|*.*|RECURSE -
I think the Firefox update logs should have a separate entry.
[Log Files *]
LangSecRef=3026
Detect1=HKLM\Software\Mozilla\Pale Moon
Detect2=HKLM\Software\Mozilla\SeaMonkey
Detect3=HKLM\Software\Mozilla\Waterfox
DetectFile=%AppData%\Mozilla\Firefox
Default=False
FileKey1=%AppData%\Moonchild Productions\Pale Moon|*.log|RECURSE
FileKey2=%AppData%\Moonchild Productions\Pale Moon\Profiles\*|TestPilotErrorLog.*
FileKey3=%AppData%\Moonchild Productions\Pale Moon\Profiles\*\weave\logs|*.*
FileKey4=%AppData%\Mozilla\Firefox|*.log|RECURSE
FileKey5=%AppData%\Mozilla\Firefox\Profiles\*|TestPilotErrorLog.*
FileKey6=%AppData%\Mozilla\Firefox\Profiles\*\weave\logs|*.*
FileKey7=%AppData%\Mozilla\SeaMonkey|*.log|RECURSE
FileKey8=%AppData%\Mozilla\SeaMonkey\Profiles\*|TestPilotErrorLog.*
FileKey9=%AppData%\Mozilla\SeaMonkey\Profiles\*\weave\logs|*.*
FileKey10=%AppData%\Waterfox|*.log|RECURSE
FileKey11=%AppData%\Waterfox\Profiles\*|TestPilotErrorLog.*
FileKey12=%AppData%\Waterfox\Profiles\*\weave\logs|*.*
FileKey13=%CommonAppData%\Mozilla*\logs|*.*
FileKey14=%CommonAppData%\Mozilla\updates|*.*|RECURSE
FileKey15=%LocalAppData%\Moonchild Productions\Pale Moon\Pale Moon|*.*|RECURSE
FileKey16=%LocalAppData%\Mozilla\updates|*.*|RECURSE
FileKey17=%ProgramFiles%\Firefox*|*.log
FileKey18=%ProgramFiles%\Mozilla Firefox|*.log
FileKey19=%ProgramFiles%\Mozilla Maintenance Service\logs|*.log
FileKey20=%ProgramFiles%\Pale Moon|*.log
FileKey21=%ProgramFiles%\SeaMonkey|*.log
FileKey22=%ProgramFiles%\Waterfox|*.log
ExcludeKey1=FILE|%CommonAppData%\Mozilla\updates\*\|update-config.json -
-
Please remove the [Feeds Cache *] entry. Feeds are already included in the built-in entry for Internet Explorer.
-
Revised Entry
Changed the name from [HP Printer Control *] to [HP Smart *]
Removed:
%LocalAppData%\Packages\*.HPPrinterControl_*\LocalState|*.*|RECURSEAdded:
%LocalAppData%\Packages\*.HPPrinterControl_*\LocalCache|*.*|RECURSE
%LocalAppData%\Packages\*.HPPrinterControl_*\TempState|*.*|RECURSE
[HP Smart *]
LangSecRef=3031
Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\AD2F1837.HPPrinterControl_v10z8vjag6ke6
Default=False
FileKey1=%LocalAppData%\Packages\*.HPPrinterControl_*\AC\AppCache|*.*|RECURSE
FileKey2=%LocalAppData%\Packages\*.HPPrinterControl_*\AC\INet*|*.*|RECURSE
FileKey3=%LocalAppData%\Packages\*.HPPrinterControl_*\AC\Microsoft\CLR_v4.0*|*.log|RECURSE
FileKey4=%LocalAppData%\Packages\*.HPPrinterControl_*\AC\Microsoft\CryptnetUrlCache\*|*.*|RECURSE
FileKey5=%LocalAppData%\Packages\*.HPPrinterControl_*\AC\Temp|*.*|RECURSE
FileKey6=%LocalAppData%\Packages\*.HPPrinterControl_*\LocalCache|*.*|RECURSE
FileKey7=%LocalAppData%\Packages\*.HPPrinterControl_*\TempState|*.*|RECURSE -
Revised Entry
Removed *.lst from FileKey2 and FileKey3 completely because they are in the built-in entry.
[Adobe Reader DC *]
LangSecRef=3021
Detect=HKLM\Software\Adobe\Acrobat Reader\DC
Default=False
FileKey1=%AppData%\Adobe\Acrobat\DC\Security\CRLCache|*.*|RECURSE
FileKey2=%LocalAppData%\Adobe\Acrobat\DC|IconCacheRdr*.dat;UserCache.bin
FileKey3=%LocalAppData%\Adobe\Acrobat\DC\ToolsSearchCacheRdr|*.*|RECURSE
FileKey4=%LocalLowAppData%\Adobe\Acrobat\DC|ReaderMessages
FileKey5=%LocalLowAppData%\Adobe\Acrobat\DC\ConnectorIcons|*.*|RECURSE
FileKey6=%LocalLowAppData%\Adobe\Acrobat\DC\Search|*.*|RECURSE
FileKey7=%LocalLowAppData%\Adobe\AcroCef\DC\Acrobat\Cache|*.*|RECURSE
RegKey1=HKCU\Software\Adobe\Acrobat Reader\DC\AVConversionFromPDF
RegKey2=HKCU\Software\Adobe\Acrobat Reader\DC\AVConversionToPDF
RegKey3=HKCU\Software\Adobe\Acrobat Reader\DC\AVGeneral\cDockables
RegKey4=HKCU\Software\Adobe\Acrobat Reader\DC\AVGeneral\cRecentToolsList
RegKey5=HKCU\Software\Adobe\Acrobat Reader\DC\AVGeneral\cToolbars
RegKey6=HKCU\Software\Adobe\Acrobat Reader\DC\RememberedViews\cNoCategoryFiles
RegKey7=HKCU\Software\Adobe\Acrobat Reader\DC\ShareIdentity
RegKey8=HKCU\Software\Adobe\Adobe Synchronizer\DC -
Revised Entry
Changed FileKey6
[Wondershare UniConverter *]
LangSecRef=3023
Detect=HKLM\Software\Wondershare\Wondershare UniConverter
Default=False
FileKey1=%CommonAppData%\Wondershare MediaServer|*.txt
FileKey2=%CommonAppData%\Wondershare\ProductFeatures\*Logs|*.*|RECURSE
FileKey3=%CommonAppData%\Wondershare\UniConverter\DataTrack|tmp;*.bak;*.log
FileKey4=%CommonAppData%\Wondershare\UniConverter\TempThumbDir|*.*|RECURSE
FileKey5=%CommonAppData%\Wondershare\WAF\ProductFeatures\*Logs|*.*|RECURSE
FileKey6=%ProgramFiles%\Wondershare\UniConverter\Log|*.*|RECURSE
FileKey7=%SystemDrive%\UniConverter\Downloaded\temp|*.*|REMOVESELF
FileKey8=%UserProfile%\.cache|*.*|REMOVESELF
Winapp2.ini additions
in CCleaner
Posted
Revised Entry
Added support for Ashampoo Snap 11
Merged [CrashRpt Error Reports *] entry into this.
[Ashampoo Snap *]
LangSecRef=3024
Detect1=HKCU\Software\Ashampoo\Ashampoo Snap 7
Detect2=HKCU\Software\Ashampoo\Ashampoo Snap 8
Detect3=HKCU\Software\Ashampoo\Ashampoo Snap 9
Detect4=HKCU\Software\Ashampoo\Ashampoo Snap 10
Detect5=HKCU\Software\Ashampoo\Ashampoo Snap 11
Detect6=HKCU\Software\Ashampoo\Ashampoo Snap 2017
Detect7=HKCU\Software\Ashampoo\Ashampoo Snap 2018
Default=False
FileKey1=%AppData%\Ashampoo|*.log;*.txt;*.xml|RECURSE
FileKey2=%LocalAppData%\Ashampoo\BaNT|*.*|RECURSE
FileKey3=%LocalAppData%\CrashRpt|*.*|RECURSE
FileKey4=%ProgramFiles%\Ashampoo\Ashampoo Snap *|_NLogMsg.txt