Jump to content

dvdbane

Experienced Members
  • Posts

    421
  • Joined

  • Last visited

Posts posted by dvdbane

  1. [Revo Uninstaller Pro*]

    this entry should be remove, somehow survived the purge :P 

    https://forum.piriform.com/index.php?showtopic=32310&page=183&do=findComment&comment=243084

     

     

     

    i think we should combine [ESET NOD32 Antivirus*] and [ESET Smart Security*]

    use wildcard to support other eset product like eset internet security but i can only confirm for these 3

    and FK1 should be remove

    unless you're enabling HIPS log, no entries can go to MB

    currenly my HIPS log at 18.3MB with 58k entries

     

    [ESET*]
    LangSecRef=3021
    Detect=HKLM\Software\ESET\ESET Security
    Default=False
    Warning=You may need to run this in safe mode. You should also disable the ERA service to properly clean the ERA files.
    FileKey1=%CommonAppData%\ESET\ESET*\Logs|*.*|RECURSE
    FileKey2=%CommonAppData%\ESET\ESET*\Oldfiles|*.*|RECURSE
    FileKey3=%CommonAppData%\ESET\ESET*\Updfiles|*.*|REMOVESELF
    FileKey4=%LocalAppData%\VirtualStore\ProgramData\ESET\ESET*\Logs|*.*|RECURSE
    FileKey5=%LocalAppData%\VirtualStore\ProgramData\ESET\ESET*\Oldfiles|*.*|RECURSE
    FileKey6=%LocalAppData%\VirtualStore\ProgramData\ESET\ESET*\Updfiles|*.*|REMOVESELF

  2. Also, I agree with siliconman01. No need to keep those kind of entries in here.

    ignore my previous request

    no need to re-add [Favicons*] and [Adobe Flash Player Settings*] into non-ccleaner file

    i just add these two to my own custom ini

  3. [Kaspersky*]
    LangSecRef=3024
    Detect=HKCU\Software\KasperskyLab
    Default=False
    Warning=Make sure to disable "Self Defense" before cleaning.
    FileKey1=%CommonAppData%\Kaspersky Lab\*\Bases\Cache|*.*|RECURSE
    FileKey2=%CommonAppData%\Kaspersky Lab\*\Data\Updater\Temporary Files|*.*|RECURSE
    FileKey3=%CommonAppData%\Kaspersky Lab\*\Temp|*.*
    FileKey4=%LocalAppData%\VirtualStore\ProgramData\Kaspersky Lab\*\Bases\Cache|*.*|RECURSE
    FileKey5=%LocalAppData%\VirtualStore\ProgramData\Kaspersky Lab\*\Data\Updater\Temporary Files|*.*|RECURSE
    FileKey6=%LocalAppData%\VirtualStore\ProgramData\Kaspersky Lab\*\Temp|*.*
    FileKey7=%ProgramFiles%\Kaspersky Lab\NetworkAgent\~dumps|*.*
    -fix warning

    [MS Windows Game Statistics*]
    LangSecRef=3025
    DetectFile=%LocalAppData%\Microsoft Games
    Default=False
    FileKey1=%LocalAppData%\Microsoft Games\Chess Titans|ChessTitans.xml;ChessTitans.xml.bak
    FileKey2=%LocalAppData%\Microsoft Games\FreeCell|FreeCellSettings.xml;FreeCellSettings.xml.bak
    FileKey3=%LocalAppData%\Microsoft Games\Hearts|HeartsSettings.xml;HearsSettings.xml
    FileKey4=%LocalAppData%\Microsoft Games\Mahjong Titans|MahjongTitans.xml;MahJongTitansStats.xml;MahjongTitansStats.xml.bak
    FileKey5=%LocalAppData%\Microsoft Games\Minesweeper|MinesweeperSettings.xml;MinesweeperSettings.xml.bak
    FileKey6=%LocalAppData%\Microsoft Games\Purble Place|ComfyCakesScoresAndSettings.xml;ComfyCakesScoresAndSettings.xml.bak;ConcentrationScoresAndSettings.xml;ConcentrationScoresAndSettings.xml.bak;PurblePlaceSettings.xml;PurblePlaceSettings.xml.bak;PurbleShopScoresAndSettings.xml;PurbleShopScoresAndSettings.xml.bak
    FileKey7=%LocalAppData%\Microsoft Games\Solitaire|SolitaireSettings.xml;SolitaireSettings.xml.bak
    FileKey8=%LocalAppData%\Microsoft Games\Spider Solitaire|SpiderSolitaireSettings.xml;SpiderSolitaireSettings.xml.bak
    -change detect to detectfile=%LocalAppData%\Microsoft Games so it won't appear on windows 8 and above

  4. If we really want to help many end users (and potential users) of Winapp2.ini, we should come up with a user friendly, easy-to-install/use tool that:

     

    1.  Downloads the latest winapp2.ini

    2.  Merges in the user's custom.ini

    3.  Organizes the entries in alphabetical order.

    4.  Runs a TRIM to match the user's system (no user interaction required)

    5.  Stores the newly trimmed winapp2.ini in the CCleaner folder

     

    ---- all steps performed automatically....from start to finish.

     

    Such a tool would most likely significantly increase the usage of winapp2.ini, particularly if it worked on XP, 7/8/10.   :)  IF I had the expertize to do it, I would, but I don't.

     

    That would negate any need to worry about "obsolete" entries in winapp2.ini. 

     

    Again, JMO

    1,2,4,5 = voldermort

    dunno about 3, maybe it will sort at 4

     

    but

    seem like no longer in development

    TRIM incomplete@remove more that it should

    got bug when you working with Portable Locations, winapp2.ini in ccleaner folder will get replaced too

    if i'm not mistaken, voldermort download winapp2.ini from its own server so no custom url option

     

    try it and report any bug/suggestion to him

    he might be interested in releasing major update for voldermort

  5. Revised Entry

    Removed: HKLM\SYSTEM\CurrentControlSet\Control\Session Manager|PendingFileRenameOperations

     

    [session Manager*]

    LangSecRef=3025

    Detect=HKLM\Software\Microsoft\Windows

    Default=False

    FileKey1=%WinDir%\AppCompat\Programs|*.txt;*.xml

    FileKey2=%WinDir%\AppCompat\Programs\Install|*.txt;*.xml

    RegKey1=HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\AppCompatCache|AppCompatCache

    RegKey2=HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\AppCompatCache|CacheMainSdb

    RegKey3=HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\AppCompatCache|SdbTime

    why not change the name to AppCompactCache* ?

    i think it is better to use that name rather than Session Manager

  6. This could contain information about programs that were once on the system and now are not. There are two other known privacy eraser programs that have included this into their programs. My suggestion is, open some portable apps then remove it from the system completely, and purge from the Recycle bin. Then, uninstall a few programs from the system and then view the "AppCompatCache" value and you will see for yourself.

    AppCompatCache work like Perfetch, i know that after i google-d it but what about RegKeg1?

    deleting PendingFileRenameOperations will create problem like i've mentioned above

  7.  [AIMP 4*]
    LangSecRef=3023
    DetectFile=%ProgramFiles%\AIMP\AIMP.exe
    Default=False
    Warning=This will delete AIMP's auto profile and program backup. Make sure your AIMP running properly before using this entry
    FileKey1=%AppData%\AIMP|*.bak
    Filekey2=%ProgramFiles%\AIMP\!Backup|*.*|REMOVESELF
    - add FK2 - delete auto backup of profile and program

    [PnaclTranslation Cache*]
    LangSecRef=3029
    SpecialDetect=DET_CHROME
    Default=False
    FileKey1=%LocalAppData%\Google\Chrome\User Data\PnaclTranslationCache|*.*

    [Auslogics Disk Defrag Professional*]
    LangSecRef=3024
    Detect1=HKLM\SOFTWARE\Auslogics\Disk Defrag Professional
    Detect2=HKLM\SOFTWARE\WOW6432Node\Auslogics\Disk Defrag Professional
    Default=False
    FileKey1=%CommonAppData%\Auslogics\Disk Defrag Professional\*\Logs|*.*|RECURSE
    FileKey2=%CommonAppData%\Auslogics\Disk Defrag Professional\*\Reports|*.*|RECURSE
    FileKey3=%ProgramFiles%\Auslogics\Disk Defrag Professional|ndefrg.log
    - fix filekey3



    is there any reason why we should delete PendingFileRenameOperations@RK1? https://technet.microsoft.com/en-us/library/cc960241.aspx
    i noticed the problem with this entry using WhyReboot software after updating 7-zip where older context menu dll file doesn't get replaced with the newer dll
    i think we need to remove RK1 and rename to [AppCompactCache*]

    [session Manager*]
    LangSecRef=3025
    Detect=HKLM\Software\Microsoft\Windows
    Default=False
    FileKey1=%WinDir%\AppCompat\Programs|*.txt;*.xml
    FileKey2=%WinDir%\AppCompat\Programs\Install|*.txt;*.xml
    RegKey1=HKLM\SYSTEM\CurrentControlSet\Control\Session Manager|PendingFileRenameOperations
    RegKey2=HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\AppCompatCache|AppCompatCache
    RegKey3=HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\AppCompatCache|CacheMainSdb
    RegKey4=HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\AppCompatCache|SdbTime

  8. I agree, but there are some entries that have "Windows" in it. There is no CCleaner default rule for this. They have an entry with the name "Memory Dump".

    under system, Windows Error Reporting

    the dump location are used by WER

     

    as for entries that have "Windows" in it, some entries should have "Windows" to avoid confusion and it's up to the @ROCKNROLL whether to follow that naming scheme or not

  9. Thank you for that, I think we're getting somewhere, as this is what I see ...

     

    download.jpg

     

    ... which activates the download dialogue box after a few seconds pause. One button, no choices.

     

    What do others see?

     

     

    Edit: I'm thinking this could be a location thing.

     

    Country specific software/download agreements maybe.

    i get the same one Download button when opening download page using kproxy

    so i think you're right about the location

     

    4sbxYZE.png

     

  10. I think we should change the name of [Error Reporting More*] to [Windows Error Reporting*].

    Added RegKey4, RegKey5 and RegKey6.

     

    [Windows Error Reporting*]

    previous name for this entry were using "Windows" but based on suggestion, the "Windows" were removed so that the result page will show [Windows - Error Reporting More*] instead of [Windows - Windows Error Reporting More*]

    and usually entries that complement default cc's cleaning rule will have "more" so i think we don't need to change the name

  11. removing \Installer2 folder will cause nvidia driver cannot be uninstall without reinstalling first

    even in winapp2.ini, the entry for cleaning \Installer2 folder removed

     

    the old entry still valid cause the installer will first extract all file to %SystemDrive%\NVIDIA before launching the installer

  12. Reason?

    seem like i misunderstood rupilogs.rupldb's function

    i thought they stored cleaning rule inside that db, it's just list of available removal log

    but rupilogs.rupldb should be remove from that entry and place in [Revo Uninstaller Pro*]

     

    [Revo Uninstaller Pro*]

    LangSecRef=3024

    Detect=HKCU\Software\VS Revo Group\Revo Uninstaller Pro

    Warning=You need to manually download rupilogs.rupldb via Log Database in Option if you disable "Check for update on startup"

    Default=False

    FileKey1=%AppData%\ruplp\log|*.log

    FileKey2=%ProgramFiles%\VS Revo Group\Revo Uninstaller Pro|rupilogs.rupldb

    FileKey3=%LocalAppData%\VS Revo Group\Revo Uninstaller Pro|RUPLogsData.ini

    FileKey4=%LocalAppData%\VS Revo Group\Revo Uninstaller Pro\Logs\*|*.*|REMOVESELF

    RegKey1=HKCU\Software\VS Revo Group\Revo Uninstaller Pro\Uninstaller\Traced\LogsUSs

     - fk2 for log downloaded

     - fk3 for list of log downloaded, doesn't change when fk2 cleaned

     - regkey same as fk3

     - change detect to HKCU\Software\VS Revo Group

     - add warning

  13. [Revo Uninstaller Backups*]
    LangSecRef=3024
    DetectFile=%LocalAppData%\VS Revo group
    Default=False
    FileKey1=%LocalAppData%\VirtualStore\Program Files*\VS Revo Group\Revo Uninstaller Pro|*.bak
    FileKey2=%LocalAppData%\VS Revo Group\Revo Uninstaller Free\BackupsData|*.*|RECURSE
    FileKey3=%LocalAppData%\VS Revo Group\Revo Uninstaller Pro\BackupsData|*.*|RECURSE
    FileKey4=%ProgramFiles%\VS Revo Group\Revo Uninstaller Pro|*.bak
    - remove rupilogs.rupldb from fk1 and fk4

  14. i know there is no Revert button

    use the changelog and replace the + entries with - entries

    [Argus Monitor*]
    LangSecRef=3024
    Detect=HKCU\Software\Argotronic\Argus Monitor
    Default=False
    FileKey1=%Documents%\|ArgusMonitor_EventLog.txt;ArgusMonitor_CSVLog.csv
    FileKey2=%LocalAppData%\VirtualStore\Program Files*|ArgusMonitor_EventLog.txt;ArgusMonitor_CSVLog.csv
    FileKey3=%ProgramFiles%\|ArgusMonitor_EventLog.txt;ArgusMonitor_CSVLog.csv
    - siliconman01 fix #5747
    
    [Foxit Reader 8.0*]
    LangSecRef=3021
    Detect=HKCU\Software\Foxit Software\Foxit Reader 8.0
    Default=False
    RegKey1=HKCU\Software\Foxit Software\Foxit Reader 8.0\Preferences\History\LastOpen
    RegKey2=HKCU\Software\Foxit Software\Foxit Reader 8.0\Preferences\History\LastSession
    RegKey3=HKCU\Software\Foxit Software\Foxit Reader 8.0\Preferences\Others|csInitialOpenDir
    RegKey4=HKCU\Software\Foxit Software\Foxit Reader 8.0\MRU\File MRU
    RegKey5=HKCU\Software\Foxit Software\Foxit Reader 8.0\MRU\Place MRU
    FileKey1=%LocalAppData%\Foxit Reader\|*_old.DMP
    FileKey2=%AppData%\Foxit Software\Foxit Reader\Foxit Cloud\DownloadCache|*.cache
    FileKey3=%AppData%\Foxit Software\Foxit Reader\Foxit Cloud\FileIDCache|*.fcd
    FileKey4=%AppData%\Foxit Software\Foxit Reader\Foxit Cloud|foxitcloud.log
    FileKey5=%CommonAppData%\Foxit Software|*.log|RECURSE
    - my entry #5736
    
    [Installer*]
    LangSecRef=3029
    SpecialDetect=DET_CHROME
    Default=False
    Warning=Running this may remove Chrome's ability to automatically update to future versions on some computers.
    FileKey1=%LocalAppData%\Google\Chrome*\Application\*\Installer|*.7z|RECURSE
    FileKey2=%LocalAppData%\Google\Update\*\*\Installer|*.7z|RECURSE
    FileKey3=%ProgramFiles%\|GUT*tmp
    FileKey4=%ProgramFiles%\Google\Chrome*\Application\*\Installer|*.7z|RECURSE
    FileKey5=%ProgramFiles%\Google\Update\*\*\Installer|*.7z|RECURSE
    - siliconman01 fix #5747
    
    [InstallShield*]
    LangSecRef=3024
    Detect=HKCU\Software\InstallShield
    Default=False
    FileKey1=%ProgramFiles%\|_ISTMP1.DIR
    FileKey2=%SystemDrive%\|_ISTMP*.DIR
    - siliconman01 fix #5747
    

    btw, you should really double check before you update to prevent something like this happened again

     

    fix missing trailing backlash

    https://forum.piriform.com/index.php?showtopic=32310&page=288&do=findComment&comment=276329

     

    update on Ghost entries that undo the fix

    https://forum.piriform.com/index.php?showtopic=32310&page=288&do=findComment&comment=276386

     

    i know we need to help you to maintain this project but if this problem happened again, we might missed some of it

    no pressure, just a reminder

     

     

     

    @all

    do we really need this entry?
    cc Memory Dumps already support both location
    or change fk1 to FileKey1=%WinDir%\LiveKernelReports|*.dmp|RECURSE ???

    incase if the entry stay inside winapp2.ini or transfer to non-ccleaner winapp2.ini, i've fix the entry

     

    [Live Kernel Watchdog*]
    LangSecRef=3025
    Detect=HKCU\SOFTWARE\Microsoft
    Default=False
    FileKey1=%WinDir%\LiveKernelReports\WATCHDOG|*.dmp
    FileKey2=%WinDir%\LiveKernelReports|*.dmp|RECURSE
    - fix fk2 based on Ghost's update

  15. @dvdbane: Temp Files* and SyncBackFree* are from the removed entries section (just saying cause it took me awhile to find these, lol), but thanks I corrected them, too.

     

    https://github.com/MoscaDotTo/Winapp2/commit/efcfedc542d1b19e77f195efe4596588978ce43f

    the keyword here "non-ccleaner winapp2.ini" :P

     

    you need to be careful with Ghost's entries...he already posted the same entries here over and over again

    now, he do it there

    sorry Ghost, too risky but i like this one [useless File Extension 2.2*] :P

    https://forum.piriform.com/index.php?showtopic=32310&page=257&do=findComment&comment=266881

     

    did you test his entries before you update in winapp2.ini?

    take [installer*] as an example from https://github.com/MoscaDotTo/Winapp2/commit/5fd04a149f1e764d9ccf72677095515ccfe0aef5

    he remove the asterisk * from the filekey and from my test here with my computer, cc couldn't detect the file

    and the reason why the original entry for [installer*] got asterisk like this Google\Chrome*\ because it is needed to support Chrome Sxs

    if you don't understand what i mean, read here https://forum.piriform.com/index.php?showtopic=32310&page=259&do=findComment&comment=267339

     

    FileKey4=%ProgramFiles%\Google\Chrome\Application\\Installer|.7z|RECURSE

     

    you need to revert the entries back to before the update and please double check before update :)


  16. [Samsung Kies More*]
    LangSecRef=3023
    Detect1=HKCU\Software\Samsung\Kies2.0
    Detect2=HKCU\Software\Samsung\Kies3.0
    Detect3=HKLM\SOFTWARE\SAMSUNG\USB_DRIVER
    Default=False
    FileKey1=%AppData%\Samsung\Kies|*.mlca;*.mlme;*.mlpb;*.mlpgb;|RECURSE
    FileKey2=%CommonAppData%\Samsung\Device Error Recovery|*.*
    FileKey3=%Documents%\samsung\Kies3\backup|*.dmp|RECURSE
    FileKey4=%Documents%\SelfMV|*.log
    FileKey5=%LocalAppData%\VirtualStore\ProgramData\Samsung\Device Error Recovery|*.log
     ;- add detect3 when install usb driver only

    [Intel Installation Logs*]
    LangSecRef=3024
    Detect1=HKCU\Software\Intel
    Detect2=HKLM\Software\Intel
    Default=False
    FileKey1=%CommonAppData%\intel|*.log|REMOVESELF
    FileKey2=%LocalAppData%\VirtualStore\Program Files*\Intel\InfInst|*.*|REMOVESELF
    FileKey3=%ProgramFiles%\Intel\InfInst|*.*|REMOVESELF
    FileKey4=%UserProfile%\Intel\Logs|*.log
    FileKey5=%WinDir%\debug\intel\logs|*.*|REMOVESELF
    FileKey6=%WinDir%\SysWOW64\config\systemprofile\Intel\Logs|*.*|REMOVESELF
    FileKey7=%WinDir%\System32\config\systemprofile\Intel\Logs|*.*|REMOVESELF
    FileKey8=%SystemDrive%\Intel\Logs|*.log
     ;- fix filekey4 *log to *.log
     ;- add filekey8

    [Auslogics Disk Defrag*]
    LangSecRef=3024
    Detect1=HKLM\SOFTWARE\Auslogics\DiskDefrag
    Detect2=HKLM\SOFTWARE\WOW6432Node\Auslogics\DiskDefrag
    Default=False
    FileKey1=%CommonAppData%\Auslogics\DiskDefrag\*\Logs|*.*|RECURSE
    FileKey2=%CommonAppData%\Auslogics\DiskDefrag\*\Reports|*.*|RECURSE
     ;-remove extra *.* from filekey1 and filekey2

    [Auslogics Registry Defrag*]
    LangSecRef=3024
    Detect=HKCU\Software\Auslogics\Registry Defrag
    Default=False
    FileKey1=%AppData%\Auslogics\Registry Defrag\Logs|*.*
    FileKey2=%AppData%\Auslogics\Registry Defrag\Reports|*.*
     ;-remove filekey3 and filekey4
     ;FileKey3=%LocalAppData%\VirtualStore\Program Files*\Auslogics\Auslogics BoostSpeed|rdboot.log
     ;FileKey4=%ProgramFiles%\Auslogics\Auslogics BoostSpeed|rdboot.log

    [Auslogics Disk Defrag Professional*]
    LangSecRef=3024
    Detect1=HKLM\SOFTWARE\Auslogics\Disk Defrag Professional
    Detect2=HKLM\SOFTWARE\WOW6432Node\Auslogics\Disk Defrag Professional
    Default=False
    FileKey1=%CommonAppData%\Auslogics\Disk Defrag Professional\*\Logs|*.*|RECURSE
    FileKey2=%CommonAppData%\Auslogics\Disk Defrag Professional\*\Reports|*.*|RECURSE
    FileKey3=%ProgramFiles%\Auslogics\Disk Defrag Professional\ndefrg.log
     ;-add filekey3 for Auslogics Offline Disk Defrag log

    [IObit Uninstaller Logs*]
    LangSecRef=3024
    DetectFile=%AppData%\IObit\IObit Uninstaller
    Default=False
    FileKey1=%AppData%\IObit\IObit Uninstaller\Log|*.log
    FileKey2=%LocalAppData%\VirtualStore\Program Files*\IObit\iObit Uninstaller|*.log|RECURSE
    FileKey3=%ProgramFiles%\IObit\iObit Uninstaller|*.log|RECURSE
    FileKey4=%AppData%\IObit\IObit Uninstaller\UMLog|*.log
     ;- ADD FILEKEY4

    [IObit Advanced SystemCare V8 Logs*]
    LangSecRef=3024
    DetectFile=%CommonAppData%\IObit\Advanced SystemCare V8
    Default=False
    FileKey1=%AppData%\IObit\Advanced SystemCare V8|*.log
    FileKey2=%AppData%\IObit\Advanced SystemCare V8\Boottime|*.log
    FileKey3=%LocalAppData%\VirtualStore\Program Files*\IObit\Advanced SystemCare 8|*.log;*.txt
    FileKey4=%LocalAppData%\VirtualStore\Program Files*\IObit\LiveUpdate|*.log
    FileKey5=%ProgramFiles%\IObit\Advanced SystemCare 8|*.log;*.txt
    FileKey6=%SystemDrive%\Users\Default\AppData\Roaming\IObit\Advanced SystemCare V8|*.log
    FileKey7=%WinDir%\System32\config\systemprofile\AppData\Roaming\IObit\Advanced SystemCare V8|*.log
    FileKey8=%WinDir%\SysWOW64\config\systemprofile\AppData\Roaming\IObit\Advanced SystemCare V8|*.log
    FileKey9=%ProgramFiles%\IObit\Advanced SystemCare 8\BoottimeLog|*.log
     ;- add filekey8 and filekey9
     ;- remove FileKey6=%ProgramFiles%\IObit\LiveUpdate|*.log|RECURSE

    [IObit LiveUpdate Logs*]
    LangSecRef=3024
    DetectFile=%ProgramFiles%\IObit\LiveUpdate
    Default=False
    FileKey1=%ProgramFiles%\IObit\LiveUpdate|*.log|RECURSE
     ;- new entry

    [IObit Driver Booster Logs*]
    LangSecRef=3024
    DetectFile=%AppData%\IObit\Driver Booster
    Default=False
    FileKey1=%AppData%\IObit\Driver Booster|*.log|RECURSE
    FileKey2=%ProgramFiles%\IObit\Driver Booster|*.log
     ;-new entry

    [IObit Advanced SystemCare V6 Logs*]
    LangSecRef=3024
    DetectFile=%CommonAppData%\IObit\Advanced SystemCare V6
    Default=False
    FileKey1=%AppData%\IObit\Advanced SystemCare V6|*.log
    FileKey2=%AppData%\IObit\Advanced SystemCare V6\Boottime|*.log
    FileKey3=%CommonAppData%\IObit\Advanced SystemCare V6\Log|*.*|RECURSE
    FileKey4=%LocalAppData%\VirtualStore\Program Files*\IObit\Advanced SystemCare 6|*.log;*.txt
    FileKey5=%LocalAppData%\VirtualStore\Program Files*\IObit\Advanced SystemCare 6\BootTimeLog|*.log
    FileKey6=%LocalAppData%\VirtualStore\Program Files*\IObit\LiveUpdate|*.log
    FileKey7=%LocalAppData%\VirtualStore\ProgramData\IObit\Advanced SystemCare V6\Log|*.*|RECURSE
    FileKey8=%ProgramFiles%\IObit\Advanced SystemCare 6|*.log;*.txt
    FileKey9=%ProgramFiles%\IObit\Advanced SystemCare 6\BootTimeLog|*.log
    FileKey10=%WinDir%\System32\config\systemprofile\AppData\Roaming\IObit\Advanced SystemCare V6|*.log
     ;- remove FileKey10=%ProgramFiles%\IObit\LiveUpdate|*.log

    [IObit Advanced SystemCare V7 Logs*]
    LangSecRef=3024
    DetectFile=%CommonAppData%\IObit\Advanced SystemCare V7
    Default=False
    FileKey1=%AppData%\IObit\Advanced SystemCare V7|*.log
    FileKey2=%AppData%\IObit\Advanced SystemCare V7\Boottime|*.log
    FileKey3=%LocalAppData%\VirtualStore\Program Files*\IObit\Advanced SystemCare 7|*.log;*.txt
    FileKey4=%LocalAppData%\VirtualStore\Program Files*\IObit\LiveUpdate|*.log
    FileKey5=%ProgramFiles%\IObit\Advanced SystemCare 7|*.log;*.txt
    FileKey6=%SystemDrive%\Users\Default\AppData\Roaming\IObit\Advanced SystemCare V7|*.log
    FileKey7=%WinDir%\System32\config\systemprofile\AppData\Roaming\IObit\Advanced SystemCare V7|*.log
     ;- remove FileKey6=%ProgramFiles%\IObit\LiveUpdate|*.log

    [Windows Defender More*]
    LangSecRef=3024
    Detect=HKLM\Software\Microsoft\Windows Defender
    Default=False
    FileKey1=%CommonAppData%\Microsoft\Windows Defender\Definition Updates\Backup|*.*|RECURSE
    FileKey2=%CommonAppData%\Microsoft\Windows Defender\LocalCopy|*.*|RECURSE
    FileKey3=%CommonAppData%\Microsoft\Windows Defender\Network Inspection System\Support|*.txt
    FileKey4=%CommonAppData%\Microsoft\Windows Defender\Scans|*.bin;*.bin*
    FileKey5=%CommonAppData%\Microsoft\Windows Defender\Scans\History\Service|*.log
    FileKey6=%CommonAppData%\Microsoft\Windows Defender\Scans\Scans\History\CacheManager|*.*|RECURSE
     ;- remove filekey7 as already included in cc winapp.ini FileKey3=%CommonAppData%\Microsoft\Windows Defender\Support|*.log
     ;  is it necessary to have |RECURSE?i only find 1 log file and no folder
     ;FileKey7=%CommonAppData%\Microsoft\Windows Defender\Support|*.*|RECURSE

    [IObit Game Booster 3 GameBox*]
    LangSecRef=3024
    DetectFile=%ProgramFiles%\IObit\Game Booster 3\
    Default=False
    Warning=This will delete your GameBox applications.
    FileKey1=%CommonAppData%\IObit\Game Booster 3|Defrags.ini
    FileKey2=%LocalAppData%\VirtualStore\ProgramData\IObit\Game Booster 3|Defrags.ini
     ;- add IObit to entry name

    maybe combine with this entry cause same warning??
    [IObit Game Booster Backup*]
    LangSecRef=3024
    DetectFile=%ProgramFiles%\IObit\Game Booster 3\
    Default=False
    Warning=This will delete your GameBox applications.
    FileKey1=%CommonAppData%\IObit\Game Booster 3|TweaksBackup.reg
    FileKey2=%LocalAppData%\VirtualStore\ProgramData\IObit\Game Booster 3|TweaksBackup.reg

    [Foxit Reader 8.0*]
    LangSecRef=3021
    Detect=HKCU\Software\Foxit Software\Foxit Reader 8.0
    Default=False
    RegKey1=HKCU\Software\Foxit Software\Foxit Reader 8.0\Preferences\History\LastOpen
    RegKey2=HKCU\Software\Foxit Software\Foxit Reader 8.0\Preferences\History\LastSession
    RegKey3=HKCU\Software\Foxit Software\Foxit Reader 8.0\Preferences\Others|csInitialOpenDir
    RegKey4=HKCU\Software\Foxit Software\Foxit Reader 8.0\MRU\File MRU
    RegKey5=HKCU\Software\Foxit Software\Foxit Reader 8.0\MRU\Place MRU
    FileKey1=%LocalAppData%\Foxit Reader\|*_old.DMP
    FileKey2=%AppData%\Foxit Software\Foxit Reader\Foxit Cloud\DownloadCache|*.cache
    FileKey3=%AppData%\Foxit Software\Foxit Reader\Foxit Cloud\FileIDCache|*.fcd
    FileKey4=%AppData%\Foxit Software\Foxit Reader\Foxit Cloud|foxitcloud.log
    FileKey5=%CommonAppData%\Foxit Software|*.log|RECURSE
     ;- add regkey7 and regkey8
     ;- add filekey5 to clean ConnectPDF pdf
     ; this extra 3 regkey i can't find in my registry
     ;RegKey1=HKCU\Software\Foxit Software\Foxit Reader 8.0\Recent File List
     ;RegKey2=HKCU\Software\Foxit Software\Foxit Reader 8.0\RecentFiles
     ;RegKey6=HKCU\Software\Foxit Software\Foxit Reader 8.0\ImageTool|ImageDefPath
     ;might get remove in cc v5.22

     

×
×
  • Create New...

Important Information

By using this site, you agree to our Terms of Use.