Jump to content

SMalik

Experienced Members
  • Posts

    1,747
  • Joined

  • Last visited

Everything posted by SMalik

  1. Revised Entry Added: %LocalAppData%\Packages\Microsoft.MicrosoftOfficeHub_*\AC\Microsoft\ServiceWorkerFiles|*.*|RECURSE Removed: %LocalAppData%\Packages\Microsoft.MicrosoftOfficeHub_*\AC\Packages\Microsoft.MicrosoftOfficeHub_*\AC\INetHistory\History.*\*|*.*|REMOVESELF Replaced some of the |REMOVESELF with |RECURSE [Office *] DetectOS=10.0| LangSecRef=3031 Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.MicrosoftOfficeHub_8wekyb3d8bbwe Default=False FileKey1=%LocalAppData%\Packages\Microsoft.MicrosoftOfficeHub_*\AC\INet*|*.*|RECURSE FileKey2=%LocalAppData%\Packages\Microsoft.MicrosoftOfficeHub_*\AC\Microsoft\CLR_v4.0|*.Log|RECURSE FileKey3=%LocalAppData%\Packages\Microsoft.MicrosoftOfficeHub_*\AC\Microsoft\CryptnetUrlCache\*|*.*|RECURSE FileKey4=%LocalAppData%\Packages\Microsoft.MicrosoftOfficeHub_*\AC\Microsoft\Internet Explorer\DOMStore\*|*.*|RECURSE FileKey5=%LocalAppData%\Packages\Microsoft.MicrosoftOfficeHub_*\AC\Microsoft\ServiceWorkerFiles|*.*|RECURSE FileKey6=%LocalAppData%\Packages\Microsoft.MicrosoftOfficeHub_*\AC\NVIDIA Corporation\NV_Cache|*.*|RECURSE FileKey7=%LocalAppData%\Packages\Microsoft.MicrosoftOfficeHub_*\AC\Temp|*.*|RECURSE FileKey8=%LocalAppData%\Packages\Microsoft.MicrosoftOfficeHub_*\AC\TokenBroker\Cache|*.*|RECURSE FileKey9=%LocalAppData%\Packages\Microsoft.MicrosoftOfficeHub_*\LocalCache|*.*|RECURSE FileKey10=%LocalAppData%\Packages\Microsoft.MicrosoftOfficeHub_*\LocalState\AppData\Local\Office\16.0\WebServiceCache|*.*|RECURSE FileKey11=%LocalAppData%\Packages\Microsoft.MicrosoftOfficeHub_*\LocalState\Cache|*.*|RECURSE ExcludeKey1=FILE|%LocalAppData%\Packages\Microsoft.MicrosoftOfficeHub_*\AC\Microsoft\Internet Explorer\DOMStore\*\|www.office[1].xml
  2. You're right. I just fixed it.
  3. New Entry [InstallService *] DetectOS=10.0| LangSecRef=3025 Detect=HKCU\Software\Microsoft\Windows Default=False FileKey1=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\InstallService|*.*|RECURSE
  4. Revised Entries Removed FileKey22 and added into [LocalSystem *] entry. [Internet Explorer *] LangSecRef=3022 Detect=HKCU\Software\Microsoft\Internet Explorer Default=False FileKey1=%AppData%\Microsoft\Internet Explorer\UserData|*.*|RECURSE FileKey2=%LocalAppData%\Microsoft\Internet Explorer|*.log;*.txt FileKey3=%LocalAppData%\Microsoft\Internet Explorer\CacheStorage|*.*|RECURSE FileKey4=%LocalAppData%\Microsoft\Windows\AppCache|*.*|RECURSE FileKey5=%LocalAppData%\Microsoft\Windows\IECompat*Cache|*.*|RECURSE FileKey6=%LocalAppData%\Microsoft\Windows\WebCache|*.*|RECURSE FileKey7=%LocalAppData%\Microsoft\Windows\WebCache.old|*.*|REMOVESELF FileKey8=%LocalAppData%\Packages\windows_ie_ac_*\AC\AppCache|*.*|RECURSE FileKey9=%LocalAppData%\Packages\windows_ie_ac_*\AC\IECompat*Cache|*.*|RECURSE FileKey10=%LocalAppData%\Packages\windows_ie_ac_*\AC\IEDownloadHistory|*.*|RECURSE FileKey11=%LocalAppData%\Packages\windows_ie_ac_*\AC\INet*|*.*|RECURSE FileKey12=%LocalAppData%\Packages\windows_ie_ac_*\AC\Microsoft\CLR_v4.0\UsageLogs|*.*|RECURSE FileKey13=%LocalAppData%\Packages\windows_ie_ac_*\AC\Microsoft\CryptnetUrlCache\*|*.* FileKey14=%LocalAppData%\Packages\windows_ie_ac_*\AC\Microsoft\Internet Explorer\DOMStore|*.*|RECURSE FileKey15=%LocalAppData%\Packages\windows_ie_ac_*\AC\Microsoft\Internet Explorer\Emie*List|*.*|RECURSE FileKey16=%LocalAppData%\Packages\windows_ie_ac_*\AC\PRICache|*.*|RECURSE FileKey17=%LocalAppData%\Packages\windows_ie_ac_*\AC\Temp|*.*|RECURSE FileKey18=%LocalAppData%\Packages\windows_ie_ac_*\LocalState\Cache|*.*|RECURSE FileKey19=%LocalAppData%\Packages\windows_ie_ac_*\LocalState\navigationHistory|*.*|RECURSE FileKey20=%LocalAppData%\Packages\windows_ie_ac_*\TempState|*.*|RECURSE FileKey21=%LocalLowAppData%\Microsoft\Internet Explorer\DOMStore|*.*|RECURSE RegKey1=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Internet Explorer\DOMStorage RegKey2=HKCU\Software\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore RegKey3=HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage RegKey4=HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl RegKey5=HKCU\Software\Microsoft\Internet Explorer\Recovery\PendingDelete RegKey6=HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats ExcludeKey1=FILE|%LocalAppData%\Microsoft\Windows\INetCache\IE\|container.dat ExcludeKey2=FILE|%LocalAppData%\Packages\windows_ie_ac_*\AC\INetCache\|container.dat Rearranged some FileKeys Added: %WinDir%\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History|*.*|RECURSE %WinDir%\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\INetCache|*.*|RECURSE %WinDir%\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\INetCookies|*.*|RECURSE [LocalService *] LangSecRef=3025 Detect=HKLM\Software\Microsoft\Windows Default=False FileKey1=%SystemDrive%\Documents and Settings\LocalService*\Cookies|*.*|RECURSE FileKey2=%SystemDrive%\Documents and Settings\LocalService*\Local Settings\History|*.*|RECURSE FileKey3=%SystemDrive%\Documents and Settings\LocalService*\Local Settings\Temporary Internet Files|*.*|RECURSE FileKey4=%SystemDrive%\Documents and Settings\LocalService*\Local Settings\Temp|*.*|RECURSE FileKey5=%WinDir%\ServiceProfiles\LocalService\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content|*.*|RECURSE FileKey6=%WinDir%\ServiceProfiles\LocalService\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData|*.*|RECURSE FileKey7=%WinDir%\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History|*.*|RECURSE FileKey8=%WinDir%\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\INetCache|*.*|RECURSE FileKey9=%WinDir%\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\INetCookies|*.*|RECURSE FileKey10=%WinDir%\ServiceProfiles\LocalService\AppData\Local\Temp|*.*|RECURSE Rearranged some FileKeys Removed: %WinDir%\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies|*.*|RECURSE Added: %WinDir%\System32\config\Systemprofile\AppData\Local\Microsoft\Windows\INetCache|*.*|RECURSE %WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Windows\WebCache|*.*|RECURSE [LocalSystem *] LangSecRef=3025 Detect=HKCU\Software\Microsoft\Windows Default=False FileKey1=%WinDir%\System32\config\SystemProfile\Application Data\Microsoft\CryptnetUrlCache\Content|*.*|RECURSE FileKey2=%WinDir%\System32\config\SystemProfile\Application Data\Microsoft\CryptnetUrlCache\MetaData|*.*|RECURSE FileKey3=%WinDir%\System32\config\SystemProfile\Cookies|*.*|RECURSE FileKey4=%WinDir%\System32\config\SystemProfile\History|*.*|RECURSE FileKey5=%WinDir%\System32\config\SystemProfile\Local Settings\Temporary Internet Files|*.*|RECURSE FileKey6=%WinDir%\System32\config\SystemProfile\Local Settings\Temp|*.*|RECURSE FileKey7=%WinDir%\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content|*.*|RECURSE FileKey8=%WinDir%\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData|*.*|RECURSE FileKey9=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History|*.*|RECURSE FileKey10=%WinDir%\System32\config\Systemprofile\AppData\Local\Microsoft\Windows\INetCache|*.*|RECURSE FileKey11=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCookies|*.*|RECURSE FileKey12=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Windows\WebCache|*.*|RECURSE FileKey13=%WinDir%\SysWOW64\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content|*.*|RECURSE FileKey14=%WinDir%\SysWOW64\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData|*.*|RECURSE FileKey15=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History|*.*|RECURSE FileKey16=%WinDir%\SysWOW64\config\Systemprofile\AppData\Local\Microsoft\Windows\INetCache|*.*|RECURSE FileKey17=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCookies|*.*|RECURSE FileKey18=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\WebCache|*.*|RECURSE Rearranged some FileKeys Added: %WinDir%\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\History|*.*|RECURSE %WinDir%\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\INetCache|*.*|RECURSE %WinDir%\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\INetCookies|*.*|RECURSE [NetworkService *] LangSecRef=3025 Detect=HKLM\Software\Microsoft\Windows Default=False FileKey1=%SystemDrive%\Documents and Settings\NetworkService*\Cookies|*.*|RECURSE FileKey2=%SystemDrive%\Documents and Settings\NetworkService*\Local Settings\History|*.*|RECURSE FileKey3=%SystemDrive%\Documents and Settings\NetworkService\*Local Settings\Temporary Internet Files|*.*|RECURSE FileKey4=%SystemDrive%\Documents and Settings\NetworkService*\Local Settings\Temp|*.*|RECURSE FileKey5=%WinDir%\ServiceProfiles\NetworkService\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content|*.*|RECURSE FileKey6=%WinDir%\ServiceProfiles\NetworkService\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData|*.*|RECURSE FileKey7=%WinDir%\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\History|*.*|RECURSE FileKey8=%WinDir%\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\INetCache|*.*|RECURSE FileKey9=%WinDir%\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\INetCookies|*.*|RECURSE FileKey10=%WinDir%\ServiceProfiles\NetworkService\AppData\Local\Temp|*.*|RECURSE Added: %WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Office\OTele|*.*|RECURSE %WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Office\OTele|*.*|RECURSE [MS Office *] LangSecRef=3021 Detect1=HKCU\Software\Microsoft\Office\11.0 Detect2=HKCU\Software\Microsoft\Office\12.0 Detect3=HKCU\Software\Microsoft\Office\14.0 Detect4=HKCU\Software\Microsoft\Office\15.0 Detect5=HKCU\Software\Microsoft\Office\16.0 Default=False FileKey1=%AppData%\Microsoft\Document Building Blocks|*.*|RECURSE FileKey2=%AppData%\Microsoft\Office|*.tmp|RECURSE FileKey3=%AppData%\Microsoft\OIS|Toolbars.dat FileKey4=%AppData%\Microsoft\UProof|*.bin;*.XML FileKey5=%Documents%|~*.ppt;~*.pptx;~*.doc;~*.docx|RECURSE FileKey6=%LocalAppData%\Microsoft Help|*.* FileKey7=%LocalAppData%\Microsoft\Office\*|OneNoteOfflineCache.onecache FileKey8=%LocalAppData%\Microsoft\Office\OTele|*.*|RECURSE FileKey9=%LocalAppData%\Microsoft\OneNote\*|OneNoteOfflineCache.onecache FileKey10=%LocalAppData%\Microsoft\OneNote\*\cache|*.*|RECURSE FileKey11=%LocalAppData%\Microsoft\OneNote\*\OneNoteOfflineCache_Files|*.*|RECURSE FileKey12=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Office\OTele|*.*|RECURSE FileKey13=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Office\OTele|*.*|RECURSE FileKey14=%SystemDrive%|propfix.log RegKey1=HKCU\Software\Microsoft\Office\11.0\MSE|LastLoadedSolution RegKey2=HKCU\Software\Microsoft\Office\11.0\MSE\FileMRUList RegKey3=HKCU\Software\Microsoft\Office\11.0\MSE\ProjectMRUList RegKey4=HKCU\Software\Microsoft\Office\11.0\MSE\SolutionMRUList RegKey5=HKCU\Software\Microsoft\Office\12.0\Common\Internet|UseRWHlinkNavigation RegKey6=HKCU\Software\Microsoft\Office\12.0\Word\Reading Locations RegKey7=HKCU\Software\Microsoft\Office\14.0\Common\Internet|UseRWHlinkNavigation RegKey8=HKCU\Software\Microsoft\Office\14.0\Word\Reading Locations RegKey9=HKCU\Software\Microsoft\Office\15.0\Common\Internet|UseRWHlinkNavigation RegKey10=HKCU\Software\Microsoft\Office\15.0\Word\Reading Locations RegKey11=HKCU\Software\Microsoft\Office\16.0\Common\Internet|UseRWHlinkNavigation RegKey12=HKCU\Software\Microsoft\Office\16.0\Word\Reading Locations RegKey13=HKCU\Software\Microsoft\Office\Common|FontBmpCache RegKey14=HKCU\Software\Microsoft\OfficeCustomizeWizard\12.0\RecentFileList RegKey15=HKCU\Software\Microsoft\OfficeCustomizeWizard\14.0\RecentFileList RegKey16=HKCU\Software\Microsoft\OfficeCustomizeWizard\15.0\RecentFileList RegKey17=HKCU\Software\Microsoft\OfficeCustomizeWizard\16.0\RecentFileList Added: FileKey1, FileKey5, FileKey6, FileKey7 and FileKey8 [MS OneDrive *] LangSecRef=3021 Detect=HKCU\Software\Microsoft\OneDrive Default=False FileKey1=%LocalAppData%\OneDrive\cache|*.*|RECURSE FileKey2=%LocalAppData%\Microsoft\OneDrive\logs|*.*|RECURSE FileKey3=%LocalAppData%\Microsoft\OneDrive\setup\logs|*.*|RECURSE FileKey4=%LocalAppData%\Microsoft\Windows\OneDrive\logs|*.*|RECURSE FileKey5=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\OneDrive\logs|*.*|RECURSE FileKey6=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\OneDrive\setup\logs|*.*|RECURSE FileKey7=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\OneDrive\logs|*.*|RECURSE FileKey8=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\OneDrive\setup\logs|*.*|RECURSE
  5. Revised Entry Added: %LocalAppData%\Adobe\Acrobat\DC|IconCacheRdr65536.dat %LocalAppData%\Adobe\Acrobat\DC\Cache|*.lst %LocalAppData%\Adobe\Acrobat\DC\ToolsSearchCacheAcro|*.*|RECURSE %LocalLowAppData%\Adobe\Acrobat\DC\Search|*.*|RECURSE %LocalLowAppData%\Adobe\Acrobat\DC\ConnectorIcons|*.*|RECURSE %LocalLowAppData%\Adobe\Acrobat\DC|ReaderMessages [Adobe Reader DC *] LangSecRef=3021 Detect=HKLM\Software\Adobe\Acrobat Reader\DC Default=False FileKey1=%AppData%\Adobe\Acrobat\DC\Security\CRLCache|*.*|RECURSE FileKey2=%LocalAppData%\Adobe\Acrobat\DC|IconCacheRdr65536.dat FileKey3=%LocalAppData%\Adobe\Acrobat\DC|*.lst;UserCache.bin FileKey4=%LocalAppData%\Adobe\Acrobat\DC\Cache|*.lst FileKey5=%LocalAppData%\Adobe\Acrobat\DC\ToolsSearchCacheAcro|*.*|RECURSE FileKey6=%LocalLowAppData%\Adobe\Acrobat\DC\Search|*.*|RECURSE FileKey7=%LocalLowAppData%\Adobe\AcroCef\DC\Acrobat\Cache|*.*|RECURSE FileKey8=%LocalLowAppData%\Adobe\Acrobat\DC\ConnectorIcons|*.*|RECURSE FileKey9=%LocalLowAppData%\Adobe\Acrobat\DC|ReaderMessages RegKey1=HKCU\Software\Adobe\Acrobat Reader\DC\AVConversionFromPDF RegKey2=HKCU\Software\Adobe\Acrobat Reader\DC\AVConversionToPDF RegKey3=HKCU\Software\Adobe\Acrobat Reader\DC\AVGeneral\cDockables RegKey4=HKCU\Software\Adobe\Acrobat Reader\DC\AVGeneral\cRecentToolsList RegKey5=HKCU\Software\Adobe\Acrobat Reader\DC\AVGeneral\cToolbars RegKey6=HKCU\Software\Adobe\Acrobat Reader\DC\RememberedViews\cNoCategoryFiles RegKey7=HKCU\Software\Adobe\Acrobat Reader\DC\ShareIdentity RegKey8=HKCU\Software\Adobe\Adobe Synchronizer\DC
  6. Revised Entry Added: %AppData%\Adobe\Acrobat\DC\Security\CRLCache|*.*|RECURSE %LocalLowAppData%\Adobe\Acrobat\DC\ConnectorIcons|*.*|RECURSE [Adobe Acrobat DC *] LangSecRef=3021 Detect=HKLM\Software\Adobe\Adobe Acrobat\DC Default=False FileKey1=%AppData%\Adobe\Acrobat\DC\Security\CRLCache|*.*|RECURSE FileKey2=%LocalAppData%\Adobe\Acrobat\DC|*.lst;UserCache.bin FileKey3=%LocalAppData%\Adobe\Acrobat\DC\Cache|*.lst FileKey4=%LocalAppData%\Adobe\Acrobat\DC\ToolsSearchCacheAcro|*.*|RECURSE FileKey5=%LocalLowAppData%\Adobe\Acrobat\DC\Search|*.*|RECURSE FileKey6=%LocalLowAppData%\Adobe\AcroCef\DC\Acrobat\Cache|*.*|RECURSE FileKey7=%LocalLowAppData%\Adobe\Acrobat\DC\ConnectorIcons|*.*|RECURSE RegKey1=HKCU\Software\Adobe\Adobe Acrobat\DC\AVConversionFromPDF\cSettings RegKey2=HKCU\Software\Adobe\Adobe Acrobat\DC\AVConversionToPDF\cSettings RegKey3=HKCU\Software\Adobe\Adobe Acrobat\DC\AVGeneral\cDockables RegKey4=HKCU\Software\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles RegKey5=HKCU\Software\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFolders RegKey6=HKCU\Software\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentToolsList RegKey7=HKCU\Software\Adobe\Adobe Acrobat\DC\AVGeneral\cToolbars RegKey8=HKCU\Software\Adobe\Adobe Acrobat\DC\RememberedViews\cNoCategoryFiles RegKey9=HKCU\Software\Adobe\Adobe Acrobat\DC\ShareIdentity RegKey10=HKCU\Software\Adobe\Adobe Synchronizer\DC
  7. New Entries [Store Policy Check Cache *] LangSecRef=3025 Detect=HKCU\Software\Microsoft\Windows Default=False RegKey1=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PolicyCache [UWP PRI Files Scan Cache *] LangSecRef=3025 Detect=HKCU\Software\Microsoft\Windows Default=False RegKey1=HKU\.DEFAULT\Software\Classes\Local Settings\MrtCache
  8. Sync data is being saved in SyncData.sqlite3 file.
  9. New Entries [Platform Notifications *] LangSecRef=3029 Detect1=HKCU\Software\7Star\7Star Detect2=HKCU\Software\360Browser\Browser Detect3=HKCU\Software\Amigo Detect4=HKCU\Software\BraveSoftware Detect5=HKCU\Software\CentBrowser Detect6=HKCU\Software\ChromePlus Detect7=HKCU\Software\Chromium\PreferenceMACs Detect8=HKCU\Software\CocCoc\Browser Detect9=HKCU\Software\Comodo\Dragon Detect10=HKCU\Software\Coowon\Coowon Detect11=HKCU\Software\Epic Privacy Browser Detect12=HKCU\Software\Flock Detect13=HKCU\Software\Iridium Detect14=HKCU\Software\RockMelt Detect15=HKCU\Software\Slimjet Detect16=HKCU\Software\Superbird Detect17=HKCU\Software\Torch Detect18=HKCU\Software\Vivaldi Detect19=HKCU\Software\Yandex\YandexBrowser DetectFile1=%AppData%\brave DetectFile2=%LocalAppData%\Google\Chrome* Default=False FileKey1=%AppData%\brave\Platform Notifications|*.*|RECURSE FileKey2=%LocalAppData%\7Star\7Star\User Data\*\Platform Notifications|*.*|RECURSE FileKey3=%LocalAppData%\360Browser\Browser\User Data\*\Platform Notifications|*.*|RECURSE FileKey4=%LocalAppData%\Amigo\User Data\*\Platform Notifications|*.*|RECURSE FileKey5=%LocalAppData%\BraveSoftware\Brave-Browser*\User Data\*\Platform Notifications|*.*|RECURSE FileKey6=%LocalAppData%\CentBrowser\User Data\*\Platform Notifications|*.*|RECURSE FileKey7=%LocalAppData%\Chromium\User Data\*\Platform Notifications|*.*|RECURSE FileKey8=%LocalAppData%\CocCoc\Browser\User Data\*\Platform Notifications|*.*|RECURSE FileKey9=%LocalAppData%\Comodo\Dragon\User Data\*\Platform Notifications|*.*|RECURSE FileKey10=%LocalAppData%\Coowon\Coowon\User Data\*\Platform Notifications|*.*|RECURSE FileKey11=%LocalAppData%\Epic Privacy Browser\User Data\*\Platform Notifications|*.*|RECURSE FileKey12=%LocalAppData%\Flock\User Data\*\Platform Notifications|*.*|RECURSE FileKey13=%LocalAppData%\Google\Chrome*\User Data\*\Platform Notifications|*.*|RECURSE FileKey14=%LocalAppData%\Iridium\User Data\*\Platform Notifications|*.*|RECURSE FileKey15=%LocalAppData%\MapleStudio\ChromePlus\User Data\*\Platform Notifications|*.*|RECURSE FileKey16=%LocalAppData%\RockMelt\User Data\*\Platform Notifications|*.*|RECURSE FileKey17=%LocalAppData%\Slimjet\User Data\*\Platform Notifications|*.*|RECURSE FileKey18=%LocalAppData%\Superbird\User Data\*\Platform Notifications|*.*|RECURSE FileKey19=%LocalAppData%\Torch\User Data\*\Platform Notifications|*.*|RECURSE FileKey20=%LocalAppData%\Vivaldi\User Data\*\Platform Notifications|*.*|RECURSE FileKey21=%LocalAppData%\Yandex\YandexBrowser\User Data\*\Platform Notifications|*.*|RECURSE [Sync Data *] LangSecRef=3029 Detect1=HKCU\Software\7Star\7Star Detect2=HKCU\Software\360Browser\Browser Detect3=HKCU\Software\Amigo Detect4=HKCU\Software\BraveSoftware Detect5=HKCU\Software\CentBrowser Detect6=HKCU\Software\ChromePlus Detect7=HKCU\Software\Chromium\PreferenceMACs Detect8=HKCU\Software\CocCoc\Browser Detect9=HKCU\Software\Comodo\Dragon Detect10=HKCU\Software\Coowon\Coowon Detect11=HKCU\Software\Epic Privacy Browser Detect12=HKCU\Software\Flock Detect13=HKCU\Software\Iridium Detect14=HKCU\Software\RockMelt Detect15=HKCU\Software\Slimjet Detect16=HKCU\Software\Superbird Detect17=HKCU\Software\Torch Detect18=HKCU\Software\Vivaldi Detect19=HKCU\Software\Yandex\YandexBrowser DetectFile1=%AppData%\brave DetectFile2=%LocalAppData%\Google\Chrome* Default=False FileKey1=%AppData%\brave\Sync Data|SyncData.sqlite3 FileKey2=%LocalAppData%\7Star\7Star\User Data\*\Sync Data|SyncData.sqlite3 FileKey3=%LocalAppData%\360Browser\Browser\User Data\*\Sync Data|SyncData.sqlite3 FileKey4=%LocalAppData%\Amigo\User Data\*\Sync Data|SyncData.sqlite3 FileKey5=%LocalAppData%\BraveSoftware\Brave-Browser*\User Data\*\Sync Data|SyncData.sqlite3 FileKey6=%LocalAppData%\CentBrowser\User Data\*\Sync Data|SyncData.sqlite3 FileKey7=%LocalAppData%\Chromium\User Data\*\Sync Data|SyncData.sqlite3 FileKey8=%LocalAppData%\CocCoc\Browser\User Data\*\Sync Data|SyncData.sqlite3 FileKey9=%LocalAppData%\Comodo\Dragon\User Data\*\Sync Data|SyncData.sqlite3 FileKey10=%LocalAppData%\Coowon\Coowon\User Data\*\Sync Data|SyncData.sqlite3 FileKey11=%LocalAppData%\Epic Privacy Browser\User Data\*\Sync Data|SyncData.sqlite3 FileKey12=%LocalAppData%\Flock\User Data\*\Sync Data|SyncData.sqlite3 FileKey13=%LocalAppData%\Google\Chrome*\User Data\*\Sync Data|SyncData.sqlite3 FileKey14=%LocalAppData%\Iridium\User Data\*\Sync Data|SyncData.sqlite3 FileKey15=%LocalAppData%\MapleStudio\ChromePlus\User Data\*\Sync Data|SyncData.sqlite3 FileKey16=%LocalAppData%\RockMelt\User Data\*\Sync Data|SyncData.sqlite3 FileKey17=%LocalAppData%\Slimjet\User Data\*\Sync Data|SyncData.sqlite3 FileKey18=%LocalAppData%\Superbird\User Data\*\Sync Data|SyncData.sqlite3 FileKey19=%LocalAppData%\Torch\User Data\*\Sync Data|SyncData.sqlite3 FileKey20=%LocalAppData%\Vivaldi\User Data\*\Sync Data|SyncData.sqlite3 FileKey21=%LocalAppData%\Yandex\YandexBrowser\User Data\*\Sync Data|SyncData.sqlite3
  10. I suggest removing of the [Downloaded Installations *] entry. Installed programs use these msi installers to modify the installations.
  11. Revised Entry Added support for 2019 versions [ACDSee Photo Studio *] LangSecRef=3023 Detect1=HKCU\Software\ACD Systems\ACDSee\60 Detect2=HKCU\Software\ACD Systems\ACDSee Pro\90 Detect3=HKCU\Software\ACD Systems\ACDSee Professional Detect4=HKCU\Software\ACD Systems\ACDSee Standard Detect5=HKCU\Software\ACD Systems\ACDSee Ultimate Default=False FileKey1=%LocalAppData%\ACD Systems\GeoTag\Cache|*.*|RECURSE FileKey2=%LocalAppData%\ACD Systems\ICMCache|*.*|RECURSE FileKey3=%LocalAppData%\ACD Systems\Logs|*.*|RECURSE FileKey4=%LocalAppData%\ACD Systems\SavedSearches|*.*|RECURSE RegKey1=HKCU\Software\ACD Systems\ACDSee\60|HistMCFDestFolder RegKey2=HKCU\Software\ACD Systems\ACDSee\60|HistPaths RegKey3=HKCU\Software\ACD Systems\ACDSee\60|LastOptionPageName RegKey4=HKCU\Software\ACD Systems\ACDSee\60|OpenFolder RegKey5=HKCU\Software\ACD Systems\ACDSee\60\PrintOptions\OutputContactSheet|ContactSheetFN RegKey6=HKCU\Software\ACD Systems\ACDSee\60\PrintOptions\OutputContactSheet|ImageMapFN RegKey7=HKCU\Software\ACD Systems\EditLib\Presets\Photo Repair 2|Last Used RegKey8=HKCU\Software\ACD Systems\ACDSee Pro\90|HistMCFDestFolder RegKey9=HKCU\Software\ACD Systems\ACDSee Pro\90|HistPaths RegKey10=HKCU\Software\ACD Systems\ACDSee Pro\90|LastOptionPageName RegKey11=HKCU\Software\ACD Systems\ACDSee Pro\90|OpenFolder RegKey12=HKCU\Software\ACD Systems\ACDSee Pro\90\PrintOptions\OutputContactSheet|ContactSheetFN RegKey13=HKCU\Software\ACD Systems\ACDSee Pro\90\PrintOptions\OutputContactSheet|ImageMapFN RegKey14=HKCU\Software\ACD Systems\ACDSee Professional\110|HistMCFDestFolder RegKey15=HKCU\Software\ACD Systems\ACDSee Professional\110|HistPaths RegKey16=HKCU\Software\ACD Systems\ACDSee Professional\110|LastOptionPageName RegKey17=HKCU\Software\ACD Systems\ACDSee Professional\110|OnlineHistPaths RegKey18=HKCU\Software\ACD Systems\ACDSee Professional\110|OpenFolder RegKey19=HKCU\Software\ACD Systems\ACDSee Professional\120|HistMCFDestFolder RegKey20=HKCU\Software\ACD Systems\ACDSee Professional\120|HistPaths RegKey21=HKCU\Software\ACD Systems\ACDSee Professional\120|LastOptionPageName RegKey22=HKCU\Software\ACD Systems\ACDSee Professional\120|OnlineHistPaths RegKey23=HKCU\Software\ACD Systems\ACDSee Professional\120|OpenFolder RegKey24=HKCU\Software\ACD Systems\ACDSee Standard\210|HistMCFDestFolder RegKey25=HKCU\Software\ACD Systems\ACDSee Standard\210|HistPaths RegKey26=HKCU\Software\ACD Systems\ACDSee Standard\210|LastOptionPageName RegKey27=HKCU\Software\ACD Systems\ACDSee Standard\210|OnlineHistPaths RegKey28=HKCU\Software\ACD Systems\ACDSee Standard\210|OpenFolder RegKey29=HKCU\Software\ACD Systems\ACDSee Standard\220|HistMCFDestFolder RegKey30=HKCU\Software\ACD Systems\ACDSee Standard\220|HistPaths RegKey31=HKCU\Software\ACD Systems\ACDSee Standard\220|LastOptionPageName RegKey32=HKCU\Software\ACD Systems\ACDSee Standard\220|OnlineHistPaths RegKey33=HKCU\Software\ACD Systems\ACDSee Standard\220|OpenFolder RegKey34=HKCU\Software\ACD Systems\ACDSee Ultimate\110|HistMCFDestFolder RegKey35=HKCU\Software\ACD Systems\ACDSee Ultimate\110|HistPaths RegKey36=HKCU\Software\ACD Systems\ACDSee Ultimate\110|LastOptionPageName RegKey37=HKCU\Software\ACD Systems\ACDSee Ultimate\110|OnlineHistPaths RegKey38=HKCU\Software\ACD Systems\ACDSee Ultimate\110|OpenFolder RegKey39=HKCU\Software\ACD Systems\ACDSee Ultimate\120|HistMCFDestFolder RegKey40=HKCU\Software\ACD Systems\ACDSee Ultimate\120|HistPaths RegKey41=HKCU\Software\ACD Systems\ACDSee Ultimate\120|LastOptionPageName RegKey42=HKCU\Software\ACD Systems\ACDSee Ultimate\120|OnlineHistPaths RegKey43=HKCU\Software\ACD Systems\ACDSee Ultimate\120|OpenFolder
  12. Revised Entry Added: %CommonAppData%\Wondershare\UniConverter\TempThumbDir|*.*|RECURSE [Wondershare UniConverter *] LangSecRef=3023 Detect=HKLM\Software\Wondershare\Wondershare UniConverter Default=False FileKey1=%CommonAppData%\Wondershare MediaServer|*.txt FileKey2=%CommonAppData%\Wondershare\ProductFeatures\*Logs|*.*|RECURSE FileKey3=%CommonAppData%\Wondershare\UniConverter\DataTrack|tmp;*.bak;*.log FileKey4=%CommonAppData%\Wondershare\UniConverter\TempThumbDir|*.*|RECURSE FileKey5=%CommonAppData%\Wondershare\WAF\ProductFeatures\*Logs|*.*|RECURSE FileKey6=%ProgramFiles%\Wondershare\Video Converter Ultimate(CPC)\Log|*.*|RECURSE FileKey7=%SystemDrive%\UniConverter\Downloaded\temp|*.*|REMOVESELF FileKey8=%UserProfile%\.cache|*.*|REMOVESELF
  13. The Shell Bags are not being wiped successfully from these paths: HKEY_USERS\S-1-5-21-861572763-3495465143-3864767102-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\BagMRU HKEY_USERS\S-1-5-21-861572763-3495465143-3864767102-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags HKEY_USERS\S-1-5-21-861572763-3495465143-3864767102-1001_Classes\Local Settings\Software\Microsoft\Windows\Shell\BagMRU HKEY_USERS\S-1-5-21-861572763-3495465143-3864767102-1001_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags Revised Entry This works fine now. Removed FileKeys HKCR\Local Settings\Software\Microsoft\Windows\Shell\BagMRU HKCR\Local Settings\Software\Microsoft\Windows\Shell\Bags Removed ExcludeKey REG|HKCR\Local Settings\Software\Microsoft\Windows\Shell\Bags\AllFolders [Windows ShellBags *] LangSecRef=3025 Detect=HKCU\Software\Microsoft\Windows Default=False Warning=This will reset folders size, view, icon or position settings to default and remove traces of the folders that do not exist anymore. RegKey1=HKCU\Local Settings\Software\Microsoft\Windows\Shell\BagMRU RegKey2=HKCU\Local Settings\Software\Microsoft\Windows\Shell\Bags RegKey3=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\BagMRU RegKey4=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags RegKey5=HKCU\Software\Classes\Wow6432Node\Local Settings\Software\Microsoft\Windows\Shell\BagMRU RegKey6=HKCU\Software\Classes\Wow6432Node\Local Settings\Software\Microsoft\Windows\Shell\Bags RegKey7=HKCU\Software\Microsoft\Windows\Shell\BagMRU RegKey8=HKCU\Software\Microsoft\Windows\Shell\Bags RegKey9=HKCU\Software\Microsoft\Windows\ShellNoRoam\BagMRU RegKey10=HKCU\Software\Microsoft\Windows\ShellNoRoam\Bags ExcludeKey1=REG|HKCU\Local Settings\Software\Microsoft\Windows\Shell\Bags\AllFolders ExcludeKey2=REG|HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\AllFolders ExcludeKey3=REG|HKCU\Software\Classes\Wow6432Node\Local Settings\Software\Microsoft\Windows\Shell\Bags\AllFolders ExcludeKey4=REG|HKCU\Software\Microsoft\Windows\Shell\Bags\1\Desktop ExcludeKey5=REG|HKCU\Software\Microsoft\Windows\ShellNoRoam\Bags\AllFolders
  14. Revised Entry Changed the name from [PowerShell *] to [Windows PowerShell *] [Windows PowerShell *] LangSecRef=3024 Detect=HKLM\Software\Microsoft\PowerShell Default=False Warning=This will reset the Windows PowerShell ISE to its defaults. FileKey1=%AppData%\Microsoft\Windows\PowerShell\PSReadline|*.*|RECURSE FileKey2=%LocalAppData%\Microsoft\Windows\PowerShell|ModuleAnalysisCache FileKey3=%LocalAppData%\Microsoft\Windows\PowerShell\CommandAnalysis|*.*|RECURSE FileKey4=%LocalAppData%\Microsoft_Corporation\PowerShell_ISE.exe_*\*|user.config FileKey5=%LocalAppData%\Microsoft_Corporation\PowerShell_ISE.exe_*\*\AutoSaveFiles|*.*|RECURSE FileKey6=%LocalAppData%\Microsoft_Corporation\PowerShell_ISE.exe_*\*\AutoSaveInformation|*.*|RECURSE
  15. Revised Entry Added: %UserProfile%\.cache|*.*|REMOVESELF [Wondershare UniConverter *] LangSecRef=3023 Detect=HKLM\Software\Wondershare\Wondershare UniConverter Default=False FileKey1=%CommonAppData%\Wondershare MediaServer|*.txt FileKey2=%CommonAppData%\Wondershare\ProductFeatures\*Logs|*.*|RECURSE FileKey3=%CommonAppData%\Wondershare\UniConverter\DataTrack|tmp;*.bak;*.log FileKey4=%CommonAppData%\Wondershare\WAF\ProductFeatures\*Logs|*.*|RECURSE FileKey5=%ProgramFiles%\Wondershare\Video Converter Ultimate(CPC)\Log|*.*|RECURSE FileKey6=%SystemDrive%\UniConverter\Downloaded\temp|*.*|REMOVESELF FileKey7=%UserProfile%\.cache|*.*|REMOVESELF
  16. I think "Network Passwords" from the "Windows Explorer" section should be removed. It deletes Windows 10 Credentials.
  17. Revised Entry Added: %LocalAppData%\Microsoft\Internet Explorer|*.log;*.txt %LocalAppData%\Microsoft\Internet Explorer\CacheStorage|*.*|RECURSE [Internet Explorer *] LangSecRef=3022 Detect=HKCU\Software\Microsoft\Internet Explorer Default=False FileKey1=%AppData%\Microsoft\Internet Explorer\UserData|*.*|RECURSE FileKey2=%LocalAppData%\Microsoft\Internet Explorer|*.log;*.txt FileKey3=%LocalAppData%\Microsoft\Internet Explorer\CacheStorage|*.*|RECURSE FileKey4=%LocalAppData%\Microsoft\Windows\AppCache|*.*|RECURSE FileKey5=%LocalAppData%\Microsoft\Windows\IECompat*Cache|*.*|RECURSE FileKey6=%LocalAppData%\Microsoft\Windows\WebCache|*.*|RECURSE FileKey7=%LocalAppData%\Microsoft\Windows\WebCache.old|*.*|REMOVESELF FileKey8=%LocalAppData%\Packages\windows_ie_ac_*\AC\AppCache|*.*|RECURSE FileKey9=%LocalAppData%\Packages\windows_ie_ac_*\AC\IECompat*Cache|*.*|RECURSE FileKey10=%LocalAppData%\Packages\windows_ie_ac_*\AC\IEDownloadHistory|*.*|RECURSE FileKey11=%LocalAppData%\Packages\windows_ie_ac_*\AC\INet*|*.*|RECURSE FileKey12=%LocalAppData%\Packages\windows_ie_ac_*\AC\Microsoft\CLR_v4.0\UsageLogs|*.*|RECURSE FileKey13=%LocalAppData%\Packages\windows_ie_ac_*\AC\Microsoft\CryptnetUrlCache\*|*.* FileKey14=%LocalAppData%\Packages\windows_ie_ac_*\AC\Microsoft\Internet Explorer\DOMStore|*.*|RECURSE FileKey15=%LocalAppData%\Packages\windows_ie_ac_*\AC\Microsoft\Internet Explorer\Emie*List|*.*|RECURSE FileKey16=%LocalAppData%\Packages\windows_ie_ac_*\AC\PRICache|*.*|RECURSE FileKey17=%LocalAppData%\Packages\windows_ie_ac_*\AC\Temp|*.*|RECURSE FileKey18=%LocalAppData%\Packages\windows_ie_ac_*\LocalState\Cache|*.*|RECURSE FileKey19=%LocalAppData%\Packages\windows_ie_ac_*\LocalState\navigationHistory|*.*|RECURSE FileKey20=%LocalAppData%\Packages\windows_ie_ac_*\TempState|*.*|RECURSE FileKey21=%LocalLowAppData%\Microsoft\Internet Explorer\DOMStore|*.*|RECURSE FileKey22=%WinDir%\System32\config\Systemprofile\AppData\Local\Microsoft\Windows\INetCache|*.*|RECURSE RegKey1=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Internet Explorer\DOMStorage RegKey2=HKCU\Software\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore RegKey3=HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage RegKey4=HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl RegKey5=HKCU\Software\Microsoft\Internet Explorer\Recovery\PendingDelete RegKey6=HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats ExcludeKey1=FILE|%LocalAppData%\Microsoft\Windows\INetCache\IE\|container.dat ExcludeKey2=FILE|%LocalAppData%\Packages\windows_ie_ac_*\AC\INetCache\|container.dat
  18. The proper way to name programs/apps entries should be as they show in the Start Menu. I suggest changing [Microsoft Photos *] to [Photos *] and [My Office *] to [Office *].
  19. I just updated the entry. I have added a few and removed a few unnecessary FileKeys. Now, it is fine.
  20. I think we should remove the [Mail and Calendar *] entry and just keep the [Windows Communications Apps *]. Some other Microsoft Store apps also use this, other than Mail and Calendar. Changed: DetectOS=6.2|6.3| to DetectOS=10.0| Added: %LocalAppData%\Packages\microsoft.windowscommunicationsapps_*\AC\TokenBroker\Cache|*.*|RECURSE %LocalAppData%\Packages\microsoft.windowscommunicationsapps_*\LocalCache|*.*|RECURSE %LocalAppData%\Packages\microsoft.windowscommunicationsapps_*\LocalState\AppData\Local\Office\*\WebServiceCache\AllUsers\officeclient.microsoft.com|*.*|RECURSE Removed: %LocalAppData%\Packages\microsoft.windowscommunicationsapps_*\AC\AppCache|*.*|RECURSE %LocalAppData%\Packages\microsoft.windowscommunicationsapps_*\AC\PRICache|*.*|RECURSE %LocalAppData%\Packages\microsoft.windowscommunicationsapps_*\LocalState\LiveComm\*\*\DBStore\LogFiles|edbtmp.log [Windows Communications Apps *] DetectOS=10.0| LangSecRef=3031 Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\microsoft.windowscommunicationsapps_8wekyb3d8bbwe DetectFile=%LocalAppData%\Packages\microsoft.windowscommunicationsapps_8wekyb3d8bbwe Default=False FileKey1=%LocalAppData%\Comms\Unistore\data|AggregateCache.uca FileKey2=%LocalAppData%\Packages\microsoft.windowscommunicationsapps_*\AC\AppCache|*.*|RECURSE FileKey3=%LocalAppData%\Packages\microsoft.windowscommunicationsapps_*\AC\INet*|*.*|RECURSE FileKey4=%LocalAppData%\Packages\microsoft.windowscommunicationsapps_*\AC\Microsoft\CLR_v4.0\UsageLogs|*.*|RECURSE FileKey5=%LocalAppData%\Packages\microsoft.windowscommunicationsapps_*\AC\Microsoft\CryptnetUrlCache\*|*.*|RECURSE FileKey6=%LocalAppData%\Packages\microsoft.windowscommunicationsapps_*\AC\Microsoft\Internet Explorer\DOMStore|*.*|RECURSE FileKey7=%LocalAppData%\Packages\microsoft.windowscommunicationsapps_*\AC\Temp|*.*|RECURSE FileKey8=%LocalAppData%\Packages\microsoft.windowscommunicationsapps_*\AC\TokenBroker\Cache|*.*|RECURSE FileKey9=%LocalAppData%\Packages\microsoft.windowscommunicationsapps_*\LocalCache|*.*|RECURSE FileKey10=%LocalAppData%\Packages\microsoft.windowscommunicationsapps_*\LocalState\AppData\Local\Office\*\WebServiceCache\AllUsers\officeclient.microsoft.com|*.*|RECURSE FileKey11=%LocalAppData%\Packages\microsoft.windowscommunicationsapps_*\TempState|*.*|RECURSE RegKey1=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\SearchHistory
  21. Revised Entry Added: %CommonAppData%\Microsoft\MapData\mapscache|*.*|RECURSE %CommonAppData%\Microsoft\MapData|events.log [Maps *] DetectOS=10.0| LangSecRef=3031 Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.WindowsMaps_8wekyb3d8bbwe Default=False FileKey1=%CommonAppData%\Microsoft\MapData\mapscache|*.*|RECURSE FileKey2=%CommonAppData%\Microsoft\MapData|events.log FileKey3=%LocalAppData%\Packages\Microsoft.WindowsMaps_*\AC\AppCache|*.*|RECURSE FileKey4=%LocalAppData%\Packages\Microsoft.WindowsMaps_*\AC\INet*|*.*|RECURSE FileKey5=%LocalAppData%\Packages\Microsoft.WindowsMaps_*\AC\Microsoft\CryptnetUrlCache\*|*.*|RECURSE FileKey6=%LocalAppData%\Packages\Microsoft.WindowsMaps_*\AC\NVIDIA Corporation\NV_Cache|*.* FileKey7=%LocalAppData%\Packages\Microsoft.WindowsMaps_*\AC\Temp|*.*|RECURSE FileKey8=%LocalAppData%\Packages\Microsoft.WindowsMaps_*\AC\TokenBroker\Cache|*.*|RECURSE FileKey9=%LocalAppData%\Packages\Microsoft.WindowsMaps_*\LocalCache|*.*|RECURSE FileKey10=%LocalAppData%\Packages\Microsoft.WindowsMaps_*\LocalState\Cache|*.*|RECURSE FileKey11=%LocalAppData%\Packages\Microsoft.WindowsMaps_*\TempState|*.*|RECURSE
  22. I think the [Backup *] entry should be merged into the [Google Update *] entry because the rest of the rollback files are being wiped in [Google Update *]. Otherwise, we should just remove it.
  23. Revised Entry I think the entry name should be changed from [HTML5 Store *] to [Indexed Databases *]. Excluded 'storage\permanent' directory. It keeps default search engine related files here. When these files are wiped from the 'permanent' directory, Firefox startup becomes slow. The Web Search bar in the middle does not show up for long. Removed ExcludeKeys [Indexed Databases *] LangSecRef=3026 Detect1=HKLM\Software\Mozilla\Pale Moon Detect2=HKLM\Software\Mozilla\SeaMonkey Detect3=HKLM\Software\Mozilla\Waterfox DetectFile=%AppData%\Mozilla\Firefox Default=False FileKey1=%AppData%\Moonchild Productions\Pale Moon\Profiles\*\storage\temporary|*.*|RECURSE FileKey2=%AppData%\Mozilla\Firefox\Profiles\*\storage\temporary|*.*|RECURSE FileKey3=%AppData%\Mozilla\SeaMonkey\Profiles\*\storage\temporary|*.*|RECURSE FileKey4=%AppData%\Waterfox\Profiles\*\storage\temporary|*.*|RECURSE
  24. This entry should be removed. I have Microsoft Office Home and Student 2016. Whenever I wipe files from this location, it breaks Office. [MS Office Click-to-Run Updates *] LangSecRef=3021 Detect1=HKCU\Software\Microsoft\Office\15.0 Detect2=HKCU\Software\Microsoft\Office\16.0 Default=False Warning=This can remove downloaded update files even before they are applied. FileKey1=%CommonAppData%\Microsoft\ClickToRun\ProductReleases|*.*|RECURSE
  25. Revised Entry Changed DetectFile to Detect Removed RegKey1 & RegKey2 [Wondershare Helper Compact *] LangSecRef=3021 Detect=HKLM\SOFTWARE\Wondershare\Wondershare Helper Compact Default=False FileKey1=%CommonProgramFiles%\Wondershare\Wondershare Helper Compact|ProductUpdateLists.xml;WSHelper.exe_temp;WSHelperSetup.exe_temp FileKey2=%CommonProgramFiles%\Wondershare\Wondershare Helper Compact\DATADICT|*.*|RECURSE FileKey3=%CommonProgramFiles%\Wondershare\Wondershare Helper Compact\Log|*.*|RECURSE FileKey4=%CommonProgramFiles%\Wondershare\Wondershare Helper Compact\Temp|*.*|RECURSE
×
×
  • Create New...

Important Information

By using this site, you agree to our Terms of Use.