dvdbane
Experienced Members-
Posts
421 -
Joined
-
Last visited
Everything posted by dvdbane
-
try this
-
@iSandman in my test for Waterfox, Intelligent Cookie Scan work as expected after adding both CustomLocation
-
%AppData%\Microsoft\CryptnetUrlCache = C:\Users\{username}\AppData\Roaming\Microsoft\CryptnetUrlCache not C:\Users\{username}\AppData\LocalLow\Microsoft\CryptnetUrlCache i hope you can confirm whether you have that folder in Roaming directory, not LocalLow
-
you should untick the option to install avast when notified by the installer and avast disable mbam to avoid conflict during installation and real time protection
-
Registry Cleaner cannot save deleted registry files in 5.38
dvdbane replied to coover's topic in CCleaner Bug Reporting
try check whether windows defender controlled folder access is enable or not if it is enable, try disable it then clean the registry again Do not clean all detected registry problem unless you know what you're doing https://support.microsoft.com/en-us/help/4046851/windows-10-controlled-folder-access-windows-defender-security-center -
CCleaner v5.38 installing Avast Free Antivirus
dvdbane replied to SMalik's topic in CCleaner Bug Reporting
it should appear before you click Customize as for me, when doing upgrade to v5.38, no notice to install avast or google toolbar and no installer being downloaded like using slim version win 8.1 x64 -
Please, don't combine [MS Office Unsaved Files*] into [Office More*] [HP Installation Files*] is another entry that i think better on its own combining [HP Install Logs*] and [HP Install Temps*] into one entry is ok
-
i prefer [.NET Framework Cache] to be separated instead of combine with other cause SetupCache folder needed for repair/uninstall maybe add warning to the entry removing will cause repair/uninstall to failed without downloading installer i never thought i need to repair .net but that what happen and i can't repair it cause SetupCache folder removed
-
according to ff add-on page, yes ,nothing past 1.13.8 because they want to list only webext not to gorhill github page, legacy still supported till latest beta you need to manually download latest xpi from github page then install i just found out about this for automatic update from github, see here https://github.com/gorhill/uBlock/wiki/Firefox-WebExtensions#future-of-ubolegacy restart first after install ublock0-updater or you will get the webext from ff add-on page better create a backup before install update
-
auto-start (auto-run) when shutting down the computer
dvdbane replied to TomLee's topic in CCleaner Suggestions
have you try "CCleaner.exe /AUTO /SHUTDOWN" ? this is not fully automatic like you want but shutdown will be automatically after cleaning https://www.piriform.com/docs/ccleaner/advanced-usage/command-line-parameters -
After checking the log myself, i do agree that this log should not be include in "Windows Log Files" cleaning
-
[Java More*] LangSecRef=3022 Detect1=HKLM\SOFTWARE\JavaSoft\Java Plug-in Detect2=HKLM\SOFTWARE\JavaSoft\Java Runtime Environment Detect3=HKLM\SOFTWARE\JavaSoft\Java Web Start Default=False FileKey1=%AppData%\Sun\Java\Deployment\SystemCache|*.*|RECURSE FileKey2=%LocalAppData%\Sun\Java\Deployment\cache|*.*|RECURSE FileKey3=%LocalAppData%\Sun\Java\Deployment\SystemCache|*.*|RECURSE FileKey4=%LocalAppData%\VirtualStore\Program Files*\Java\jre*|*PATCH.ERR FileKey5=%LocalAppData%\VirtualStore\Program Files*\Java\jre*\lib\security|*.bak FileKey6=%LocalLowAppData%\Sun\Java\Deployment\SystemCache|*.*|RECURSE FileKey7=%ProgramFiles%\Java\jre*|*PATCH.ERR FileKey8=%ProgramFiles%\Java\jre*\lib\security|*.bak FileKey9=%SystemDrive%\Users\*\.oracle_jre_usage|*.*|REMOVESELF FileKey10=%WinDir%\System32\config\systemprofile\AppData\LocalLow\Sun\Java\Deployment\Cache|*.*|RECURSE FileKey11=%WinDir%\SysWOW64\config\systemprofile\AppData\LocalLow\Sun\Java\Deployment\Cache|*.*|RECURSE FileKey12=%CommonAppData%\Oracle\Java\.oracle_jre_usage|*.* - fix filekey12 position
-
problem with "Malware Domains" list if you prefer to use the list, just exclude login.yahoo.com already inside removed-domain so just wait for new update https://mirror.cedia.org.ec/malwaredomains/removed-domains-20170620.txt
-
currently in winapp2.ini [Recent Items More*] LangSecRef=3025 DetectFile=%AppData%\Microsoft\windows\recent\customdestinations Default=False FileKey1=%AppData%\Microsoft\windows\recent\customdestinations|*.*|RECURSE
-
[Zoner Photo Studio*] LangSecRef=3022 DetectFile=%LocalAppData%\Zoner\ZPS 14 Detect1=HKCU\Software\ZONER\Zoner Photo Studio 15 Detect2=HKCU\Software\ZONER\Zoner Photo Studio 16 Detect3=HKCU\Software\ZONER\Zoner Photo Studio 18 Default=False FileKey1=%LocalAppData%\Zoner\ZPS *\Cache|*.*|RECURSE FileKey2=%LocalAppData%\Zoner\ZPS *\CEF|*.log FileKey3=%LocalAppData%\Zoner\ZPS *\ZPSCache.dat|*.* FileKey4=%Pictures%|*.uid-zps -fix filekey1
-
[Zoner Photo Studio*] LangSecRef=3022 DetectFile=%LocalAppData%\Zoner\ZPS 14 Detect1=HKCU\Software\ZONER\Zoner Photo Studio 15 Detect2=HKCU\Software\ZONER\Zoner Photo Studio 16 Detect3=HKCU\Software\ZONER\Zoner Photo Studio 18 Default=False FileKey1=%LocalAppData%\Zoner\ZPS *\Cache|RECURSE|REMOVESELF FileKey2=%LocalAppData%\Zoner\ZPS *\CEF|*.log FileKey3=%LocalAppData%\Zoner\ZPS *\ZPSCache.dat|*.* FileKey4=%Pictures%|*.uid-zps can someone fix filekey1?
-
sorry, too many regkey for this entry so i just list the fixed filekey i think filekey1,filekey2 and filekey3 can be remove and combine with filekey5, just change \Log to \Log* or combine into %AppData%\Ashampoo\Ashampoo Burning Studio *\Logs|*.xml;*.txt [Ashampoo Burning Studio*] FileKey1=%AppData%\Ashampoo\Ashampoo Burning Studio 6 Free\Logs|*.* FileKey2=%AppData%\Ashampoo\Ashampoo Burning Studio 2007\Logs|*.* FileKey3=%AppData%\Ashampoo\Ashampoo Burning Studio 2009\Logs|*.xml FileKey4=%AppData%\Ashampoo\Ashampoo Burning Studio *|backupmetainfo.xml FileKey5=%AppData%\Ashampoo\Ashampoo Burning Studio *\Log|*.xml;*.txt FileKey6=%AppData%\Ashampoo\Logs|*.txt FileKey7=%AppData%\Ashampoo\Log|*.txt -filekey5 and filekey6 duplicate -add filekey7=%AppData%\Ashampoo\Log|*.txt [StepMania 4 Logs*] Section=Games DetectFile1=%AppData%\StepMania DetectFile2=%AppData%\StepMania 4 Default=False FileKey1=%AppData%\Stepmania*\Logs|*.* -fix filekey1 [Trine*] Section=Games Detect=HKCU\Software\Valve\Steam\Apps\35700 Detect=HKCU\Software\Valve\Steam\Apps\35720 Default=False FileKey1=%LocalAppData%\VirtualStore\Program Files*\Steam\SteamApps\common\Trine\_enchanted_edition_\log|*.* FileKey2=%LocalAppData%\VirtualStore\Program Files*\Steam\SteamApps\Common\Trine\logs|*.* FileKey1=%LocalAppData%\VirtualStore\Program Files*\Steam\SteamApps\Common\Trine 2\log|*.* FileKey3=%ProgramFiles%\Steam\SteamApps\common\Trine\_enchanted_edition_\log|*.* FileKey4=%ProgramFiles%\Steam\SteamApps\Common\Trine\logs|*.* FileKey5=%ProgramFiles%\Steam\SteamApps\Common\Trine 2\log|*.* - fix filekey4 for Trine and add filekey5 for Trine 2 @ROCKNROLL you need to be careful when combining several entries together there might be other entry that i missed so you need to double check before combine [Ashampoo Burning Studio 09*] -FileKey=%AppData%\Ashampoo\Logs|*.txt [Ashampoo Burning Studio 12*] [Ashampoo Burning Studio 14 More*] [Ashampoo Burning Studio 15*] -FileKey=%AppData%\Ashampoo\Log|*.txt [Trine*] -FileKey4=%ProgramFiles%\Steam\SteamApps\Common\Trine\logs|*.* [Trine 2*] -FileKey2=%ProgramFiles%\Steam\SteamApps\Common\Trine 2\log|*.* [StepMania Logs*] FileKey1=%AppData%\Stepmania\Logs|*.* [StepMania 4 Logs*] FileKey1=%AppData%\Stepmania 4\Logs|*.* after combine [Ashampoo Burning Studio*] -FileKey7=%AppData%\Ashampoo\Logs|*.txt [Trine*] -FileKey4=%ProgramFiles%\Steam\SteamApps\Common\Trine *\logs|*.* [StepMania 4 Logs*] -FileKey1=%AppData%\Stepmania *\Logs|*.* [stepMania 4 Logs*] FileKey1=%AppData%\Stepmania *\Logs|*.* won't detect path for [stepMania Logs*] FileKey1=%AppData%\Stepmania\Logs|*.* as there is a space before the wildcard same thing happen to [Trine*] entry i'm really bad at explaining things so i hope you understand
-
change [ARO 2013*] to [ARO 2011/2013*] [Yandex Browser - Internet Cache*] LangSecRef=3029 Detect=HKCU\Software\Yandex\YandexBrowser Default=False FileKey1=%LocalAppData%\Yandex\YandexBrowser\User Data\*|Favicons* FileKey2=%LocalAppData%\Yandex\YandexBrowser\User Data\*\Cache|*.*|RECURSE -remove Section=Yandex Browser [Nikon Capture NX2*] Section=3023 Detect=HKLM\Software\Nikon\Capture NX 2 Default=False FileKey1=%LocalAppData%\Nikon\Capture NX\ThumbnailCache|*.*|RECURSE -change section=photo to 3023
-
[Chrome Application Cache*] - change back to [Application Cache*] [Cloud Messaging*] - change back to [Google Cloud Messaging*]
-
for software that use driver/restart to complete operation, better use install version not all portable developer create good launcher, mostly quantity over quality
-
for [Device Manager Cache XP*], somehow the | changed location during this "Major update" so the correct entry should be [Device Manager Cache XP*] DetectOS=|5.1 LangSecRef=3025 Default=False Warning=This clears cached drivers of connected devices. As soon as you connect a new device, this file regenerates. FileKey1=%WinDir%\inf|INFCACHE.1
-
Host.Hjack = false +ve i think it will classified non-default hosts file as Host.Hjack you can try restore backup/default hosts file and redownload hosts update check and verify hosts download link to ensure that your Hostsman not hjacked
-
did you test your entry with ccleaner or bleachbit? i don't think cc support wildcard for detect and regkey why not just keep the winapp2.ini development here because i prefer to do it here plus more participant here than github
-
sorry for the confusion actually i missed two query which to ask for anyone to confirm that the entry working similarly for other ESET software that use the same location as those 3 software mentioned - eset internet security(EIS),ESET Smart Security(ESS),ESET NOD32 Antivirus(EAV) another one regarding the warning related to ERA - does using ERA generate big size log files which the Filekey1 needed?
-
now i know why i found similar problem with other site https://blog.mozilla.org/security/2016/10/24/distrusting-new-wosign-and-startcom-certificates/