Jump to content

Winapp2.ini additions


Winapp2.ini

Recommended Posts

Has www.winapp2.com been hijacked?

 

When you open the site a full screen adversitment pops up asking to join a mail list for congress?

 

All I want to do is get updates to my file, not joining random mail lists....

 

a1j0us.png

Link to comment
Share on other sites

  • Moderators

Has www.winapp2.com been hijacked?

 

Don't know, probably something Winapp2.ini (person) added to his site. It's not an ad.

 

Norton Safe Web, SiteAdvisor, and WOT say the 3rd party is ok:

http://safeweb.norton.com/report/show?url=internetdefenseleague.org

http://www.siteadvisor.com/sites/internetdefenseleague.org

https://www.mywot.com/en/scorecard/internetdefenseleague.org

Edited by Andavari
Link to comment
Share on other sites

  • Moderators

Yeah it's a keep the internet free and equal thing

 

ADVICE FOR USING CCleaner'S REGISTRY INTEGRITY SECTION

DON'T JUST CLEAN EVERYTHING THAT'S CHECKED OFF.

Do your Registry Cleaning in small bits (at the very least Check-mark by Check-mark)

ALWAYS BACKUP THE ENTRY, YOU NEVER KNOW WHAT YOU'LL BREAK IF YOU DON'T.

Support at https://support.ccleaner.com/s/?language=en_US

Pro users file a PRIORITY SUPPORT via email support@ccleaner.com

Link to comment
Share on other sites

Revised Entry

Added: %CommonAppData%\Oracle\Java\installcache|*.*|RECURSE

 

[Java Setup Files*]
LangSecRef=3022
Detect=HKLM\Software\JavaSoft\Java Runtime Environment
Default=False
FileKey1=%CommonAppData%\Oracle\Java\installcache|*.*|RECURSE
FileKey2=%AppData%\Sun\Java\jre*|*.*|REMOVESELF
FileKey3=%LocalLowAppData%\Sun\Java\jre*|*.*|REMOVESELF
FileKey4=%LocalLowAppData%\Sun\Java\jdk*|*.*|REMOVESELF

Link to comment
Share on other sites

Revised Entry

Added: %CommonAppData%\Norton|*.log;*.txt

 

[Norton Installer Logs*]
LangSecRef=3024
DetectFile=%CommonAppData%\NortonInstaller\Logs
Default=False
FileKey1=%CommonAppData%\Norton|*.log;*.txt
FileKey2=%CommonAppData%\NortonInstaller\Logs|*.*|RECURSE
FileKey3=%LocalAppData%\VirtualStore\ProgramData\NortonInstaller\Logs|*.*|RECURSE

Link to comment
Share on other sites

Has www.winapp2.com been hijacked?

 

When you open the site a full screen adversitment pops up asking to join a mail list for congress?

 

All I want to do is get updates to my file, not joining random mail lists....

 

a1j0us.png

 

 

Don't know, probably something Winapp2.ini (person) added to his site. It's not an ad.

 

Norton Safe Web, SiteAdvisor, and WOT say the 3rd party is ok:

http://safeweb.norton.com/report/show?url=internetdefenseleague.org

http://www.siteadvisor.com/sites/internetdefenseleague.org

https://www.mywot.com/en/scorecard/internetdefenseleague.org

 

No hijacking, it's a script provided by the Internet Defense League

        <script type="text/javascript">
    window._idl = {};
    _idl.variant = "banner";
    (function() {
        var idl = document.createElement('script');
        idl.type = 'text/javascript';
        idl.async = true;
        idl.src = ('https:' == document.location.protocol ? 'https://' : 'http://') + 'members.internetdefenseleague.org/include/?url=' + (_idl.url || '') + '&campaign=' + (_idl.campaign || '') + '&variant=' + (_idl.variant || 'banner');
        document.getElementsByTagName('body')[0].appendChild(idl);
    })();
        </script>

https://www.internetdefenseleague.org/

 

It's only on the index page, so none of the other pages should present the box or banner they provide.

 

The script has actually been there for at least a year :)

Link to comment
Share on other sites

  • Moderators
I think the ExcludeKeys should be removed from the [Logs*] entry because they are not letting it remove *.old files from those locations.

 

To clarify, his request is for chrome logs (I had to look at the picture to know)

 

ADVICE FOR USING CCleaner'S REGISTRY INTEGRITY SECTION

DON'T JUST CLEAN EVERYTHING THAT'S CHECKED OFF.

Do your Registry Cleaning in small bits (at the very least Check-mark by Check-mark)

ALWAYS BACKUP THE ENTRY, YOU NEVER KNOW WHAT YOU'LL BREAK IF YOU DON'T.

Support at https://support.ccleaner.com/s/?language=en_US

Pro users file a PRIORITY SUPPORT via email support@ccleaner.com

Link to comment
Share on other sites

Modified Entry:  [Dropbox*] Added FileKey5

[Dropbox*]
LangSecRef=3024
Detect=HKCU\Software\Dropbox
Default=False
FileKey1=%AppData%\DropBox|Filecache.db;SigStore.db
FileKey2=%AppData%\DropBox\Bin|*.log
FileKey3=%AppData%\Dropbox\logs|*.*|RECURSE
FileKey4=%AppData%\Dropbox\Cache|*.*|RECURSE
FileKey5=%ProgramData%\Dropbox\Update\Log\|*.*

Windows 10 x64 Pro on ASUS Maximus VIII Extreme motherboard, i7-6700k CPU,H220 X2 Liquid Cooler, 64 gbyte RipJaws DDR4 3200 RAM, Samsung 970 Pro NVMe M.2 500 gbyte SSD + Samsung 850 Pro 512 gbyte SSD, EVGA RTX 3060 Titan graphics card (Home Built System);  Windows 11x64 Pro on 512 gigabyte Dell XPS 15 2-in-1 Laptop/tablet and Dell XPS 8940 PC.  ASUS RT-AC88U router, 14 tbyte WD My Cloud PR2100 NAS Server, 200 Mbps cable Internet, MS Edge Chromium, MS Office 2021 (Local), Casper 11, DisplayFusion (3 Flat Panel Displays per system):   Latest Bitdefender Internet Security, Quicken, Weather Watcher Live, ThumbsPlus 10, Sticky Password 8, WD Smartware, CyberLink PowerDVD23, MSI AfterBurner, Rainmeter, 8GadgetPack, and many more.

Link to comment
Share on other sites

New Entries

'HSTS' stands for 'HTTP Strict Transport Security' policy

 

[stored HSTS Cookies*]
LangSecRef=3026
SpecialDetect=DET_MOZILLA
Default=False
FileKey1=%AppData%\Mozilla\Firefox\Profiles\*|SiteSecurityServiceState.txt

[stored Timestamps*]
LangSecRef=3026
SpecialDetect=DET_MOZILLA
Default=False
FileKey1=%AppData%\Mozilla\Firefox\Profiles\*|prefs.js

Link to comment
Share on other sites

Revised Entry

Added: %AppData%\se_tmp_win|*.*|REMOVESELF

 

[Wondershare SafeEraser*]
LangSecRef=3021
Detect=HKLM\Software\Wondershare\SafeEraser
Default=False
FileKey1=%SystemDrive%\se_tmp|*.*|REMOVESELF
FileKey2=%AppData%\HYXDevPsnList|*.*|REMOVESELF
FileKey3=%AppData%\se_tmp|*.*|REMOVESELF
FileKey4=%AppData%\se_tmp_win|*.*|REMOVESELF
FileKey5=%AppData%\Wondershare\SafeEraser|*.log

Link to comment
Share on other sites

New Entries

'HSTS' stands for 'HTTP Strict Transport Security' policy

 

[stored HSTS Cookies*]

LangSecRef=3026

SpecialDetect=DET_MOZILLA

Default=False

FileKey1=%AppData%\Mozilla\Firefox\Profiles\*|SiteSecurityServiceState.txt

 

[stored Timestamps*]

LangSecRef=3026

SpecialDetect=DET_MOZILLA

Default=False

FileKey1=%AppData%\Mozilla\Firefox\Profiles\*|prefs.js

That latter one is definitely a no go unless you want to wipe all your FF settings, which I doubt many want to, so should not be added.

Link to comment
Share on other sites

That latter one is definitely a no go unless you want to wipe all your FF settings, which I doubt many want to, so should not be added.

Yeah I just noticed this. I agree with you. There is no other way around to wipe the stored timestamps except to wipe that file. So I think it should not be added. The first entry is a very sensitive area. I think that should be added.

Link to comment
Share on other sites

New Entry

 

[AstroGrep*]
LangSecRef=3024
Detect=HKCU\Software\AstroGrep
Default=False
FileKey1=%AppData%\AstroGrep\Log|*.log
FileKey2=%AppData%\AstroGrep|AstroGrep.general.config

Link to comment
Share on other sites

New Entry

 

[Performance Logs*]
LangSecRef=3025
Detect=HKCU\Software\Microsoft\Windows
Default=False
FileKey1=%SystemDrive%\PerfLogs\System\Diagnostics|*.*|RECURSE
FileKey2=%SystemDrive%\PerfLogs\System\Performance|*.*|RECURSE

Link to comment
Share on other sites

updated

 

 

 

What's new in winapp2.ini 5.06.150526

General:

12 New Entries
08 Modified Entries
00 Removed Entries

Note:

 Change log excludes minor changes (mild pathing changes, key reordering, non-major key tweaks, etc)

Verbose:

------------------------------------------------------------------------------

New Entries:

[Adobe Acrobat DC*]
LangSecRef=3021
Detect=HKLM\SOFTWARE\Adobe\Adobe Acrobat\DC
Default=False
FileKey1=%ProgramFiles%\Adobe\Acrobat DC\Setup Files|*.*|REMOVESELF
FileKey2=%CommonAppData%\Adobe\Setup|*.*|REMOVESELF
FileKey3=%LocalAppData%\Adobe\Acrobat|*.idx|RECURSE
FileKey4=%LocalAppData%\Adobe\Acrobat\DC\Cache|*.*
FileKey5=%LocalAppData%\Adobe\Acrobat\DC|UserCache.bin
RegKey1=HKCU\Software\Adobe\Adobe Acrobat\DC\AVConversionFromPDF
RegKey2=HKCU\Software\Adobe\Adobe Acrobat\DC\AVConversionToPDF
RegKey3=HKCU\Software\Adobe\Adobe Acrobat\DC\AVGeneral\cDockables
RegKey4=HKCU\Software\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles
RegKey5=HKCU\Software\Adobe\Adobe Acrobat\DC\AVGeneral\cToolbars
RegKey6=HKCU\Software\Adobe\Adobe Acrobat\DC\RememberedViews\cNoCategoryFiles
RegKey7=HKCU\Software\Adobe\Adobe Acrobat\DC\ShareIdentity
RegKey8=HKCU\Software\Adobe\Adobe Synchronizer\DC

[Adobe Acrobat Distiller DC*]
LangSecRef=3021
Detect=HKLM\SOFTWARE\Adobe\Acrobat Distiller\DC
Default=False
FileKey1=%LocalAppData%\Adobe\Acrobat\Distiller DC|*.log
FileKey2=%LocalAppData%\Adobe\Acrobat\Distiller DC\Cache|*.*
RegKey1=HKCU\Software\Adobe\Acrobat Distiller\PrinterJobControl

[Ashampoo Snap 8 (AutoSave)*]
LangSecRef=3024
Detect=HKCU\Software\Ashampoo\Ashampoo Snap 8
Default=False
FileKey1=%Pictures%\Ashampoo Snap 8\_SNAPDOC|*.*

[Ashampoo Snap 8*]
LangSecRef=3024
Detect=HKCU\Software\Ashampoo\Ashampoo Snap 8
Default=False
FileKey1=%LocalAppData%\CrashRpt\UnsentCrashReports|*.*|RECURSE
FileKey2=%AppData%\Ashampoo\Ashampoo Snap 8|*.*|RECURSE
FileKey3=%ProgramFiles%\Ashampoo\Ashampoo Snap 8|_NLogMsg.txt

[AstroGrep*]
LangSecRef=3024
Detect=HKCU\Software\AstroGrep
Default=False
FileKey1=%AppData%\AstroGrep\Log|*.log
FileKey2=%AppData%\AstroGrep|AstroGrep.general.config

[Auslogics BoostSpeed 7*]
LangSecRef=3024
Detect=HKLM\Software\Auslogics\BoostSpeed\7.x
Default=False
FileKey1=%CommonAppData%\Auslogics\BoostSpeed\7.x|*.err;*.htm;*.html;*.log;*.rsc;*.sta;*.xml|RECURSE
FileKey2=%ProgramFiles%\Auslogics\Auslogics BoostSpeed|rdboot.log
RegKey1=HKLM\Software\Auslogics\BoostSpeed\7.x\Settings|DiskDefrag.DisksList.SelectedDrives
RegKey2=HKLM\Software\Auslogics\BoostSpeed\7.x\Settings|DiskDefrag.LastDefragment.DateTime
RegKey3=HKLM\Software\Auslogics\BoostSpeed\7.x\Settings|DiskDefrag.LastDefragment.DisksList
RegKey4=HKLM\Software\Auslogics\BoostSpeed\7.x\Settings|DiskDefrag.LastDefragment.FilesCount
RegKey5=HKLM\Software\Auslogics\BoostSpeed\7.x\Settings|RegCleaner.AppLogic.ErrorsFailed
RegKey6=HKLM\Software\Auslogics\BoostSpeed\7.x\Settings|RegCleaner.AppLogic.ErrorsFound
RegKey7=HKLM\Software\Auslogics\BoostSpeed\7.x\Settings|RegCleaner.AppLogic.ErrorsRemoved
RegKey8=HKLM\Software\Auslogics\BoostSpeed\7.x\Settings|RegCleaner.AppLogic.ErrorsRemovedTotal
RegKey9=HKLM\Software\Auslogics\BoostSpeed\7.x\Settings|RegCleaner.AppLogic.LastScan
RegKey10=HKLM\SOFTWARE\Wow6432Node\Auslogics\BoostSpeed\7.x\Settings|DiskDefrag.DisksList.SelectedDrives
RegKey11=HKLM\SOFTWARE\Wow6432Node\Auslogics\BoostSpeed\7.x\Settings|DiskDefrag.LastDefragment.DateTime
RegKey12=HKLM\SOFTWARE\Wow6432Node\Auslogics\BoostSpeed\7.x\Settings|DiskDefrag.LastDefragment.DisksList
RegKey13=HKLM\SOFTWARE\Wow6432Node\Auslogics\BoostSpeed\7.x\Settings|DiskDefrag.LastDefragment.FilesCount
RegKey14=HKLM\SOFTWARE\Wow6432Node\Auslogics\BoostSpeed\7.x\Settings|RegCleaner.AppLogic.ErrorsFailed
RegKey15=HKLM\SOFTWARE\Wow6432Node\Auslogics\BoostSpeed\7.x\Settings|RegCleaner.AppLogic.ErrorsFound
RegKey16=HKLM\SOFTWARE\Wow6432Node\Auslogics\BoostSpeed\7.x\Settings|RegCleaner.AppLogic.ErrorsRemoved
RegKey17=HKLM\SOFTWARE\Wow6432Node\Auslogics\BoostSpeed\7.x\Settings|RegCleaner.AppLogic.ErrorsRemovedTotal
RegKey18=HKLM\SOFTWARE\Wow6432Node\Auslogics\BoostSpeed\7.x\Settings|RegCleaner.AppLogic.LastScan

[MySQL Workbench*]
LangSecRef=3021
DetectFile=%AppData%\MySQL\Workbench
Default=False
FileKey1=%AppData%\MySQL\Workbench\log|*.log
FileKey2=%AppData%\MySQL\Workbench\sql_history|*.*
FileKey3=%AppData%\MySQL\Workbench\cache|*.*

[Performance Logs*]
LangSecRef=3025
Detect=HKCU\Software\Microsoft\Windows
Default=False
FileKey1=%SystemDrive%\PerfLogs\System\Diagnostics|*.*|RECURSE
FileKey2=%SystemDrive%\PerfLogs\System\Performance|*.*|RECURSE

[Realtek Install Files*]
LangSecRef=3021
Detect=HKLM\Software\Realtek
Default=False
FileKey1=%ProgramFiles%\Realtek\Audio|*.InstallLog

[sprint Hero RUU Installer Log*]
LangSecRef=3023
DetectFile=%SystemDrive%\ruu_log
Default=False
FileKey1=%SystemDrive%\ruu_log|*.*|REMOVESELF

[stored HSTS Cookies*]
LangSecRef=3026
SpecialDetect=DET_MOZILLA
Default=False
FileKey1=%AppData%\Mozilla\Firefox\Profiles\*|SiteSecurityServiceState.txt

[Windows Defender More*]
LangSecRef=3025
Detect=HKLM\Software\Microsoft\Windows Defender
Default=False
FileKey1=%CommonAppData%\Microsoft\Windows Defender\Definition Updates\Backup|*.*|RECURSE
FileKey2=%CommonAppData%\Microsoft\Windows Defender\Scans|*.bin;*.bin*
FileKey3=%CommonAppData%\Microsoft\Windows Defender\Scans\History\Service|*.log
FileKey4=%CommonAppData%\Microsoft\Windows Defender\Scans\Scans\History\CacheManager|*.*|RECURSE
FileKey5=%CommonAppData%\Microsoft\Windows Defender\Support|*.*|RECURSE



------------------------------------------------------------------------------

Modified Entries:


[Adobe Acrobat Distiller*]
LangSecRef=3021
Detect1=HKCU\Software\Adobe\Acrobat Distiller
Detect2=HKLM\Software\Adobe\Acrobat Distiller\11.0
Default=False
FileKey1=%AppData%\Adobe\Acrobat\Distiller 11|*.log
FileKey2=%AppData%\Adobe\Acrobat\Distiller 11\Cache|*.*
RegKey1=HKCU\Software\Adobe\Acrobat Distiller\PrinterJobControl

    - Added Detect2

    
[bitDefender Total Security 2014/15 (Logs)*]
LangSecRef=3024
Detect1=HKLM\Software\BitDefender\Bitdefender Total Security
Detect2=HKLM\Software\BitDefender\Bitdefender Total Security 2015
Warning=This removes only logs created while scanning external drives and other special unneeded scan logs generated by Bitdefender scanner.
Default=False
FileKey1=%AppData%\Bitdefender\Desktop\profiles\Logs\*|*.xml    
    
-  Changed Name from [bitDefender Total Security 2014 (Logs)*] to [bitDefender Total Security 2014/15 (Logs)*]
-  Added Detect2

[Dropbox*]
LangSecRef=3024
Detect=HKCU\Software\Dropbox
Default=False
FileKey1=%AppData%\DropBox|Filecache.db;SigStore.db
FileKey2=%AppData%\DropBox\Bin|*.log
FileKey3=%AppData%\Dropbox\logs|*.*|RECURSE
FileKey4=%AppData%\Dropbox\Cache|*.*|RECURSE
FileKey5=%CommonAppData%\Dropbox\Update\Log\|*.*

    - Added FileKey5

[Java Setup Files*]
LangSecRef=3022
Detect=HKLM\Software\JavaSoft\Java Runtime Environment
Default=False
FileKey1=%CommonAppData%\Oracle\Java\installcache|*.*|RECURSE
FileKey2=%AppData%\Sun\Java\jre*|*.*|REMOVESELF
FileKey3=%LocalLowAppData%\Sun\Java\jre*|*.*|REMOVESELF
FileKey4=%LocalLowAppData%\Sun\Java\jdk*|*.*|REMOVESELF

    - Added FileKey1
    
[Norton Installer Logs*]
LangSecRef=3024
DetectFile=%CommonAppData%\NortonInstaller\Logs
Default=False
FileKey1=%CommonAppData%\Norton|*.log;*.txt
FileKey2=%CommonAppData%\NortonInstaller\Logs|*.*|RECURSE
FileKey3=%LocalAppData%\VirtualStore\ProgramData\NortonInstaller\Logs|*.*|RECURSE

    - Added FileKey1
    
[Wondershare SafeEraser*]
LangSecRef=3021
Detect=HKLM\Software\Wondershare\SafeEraser
Default=False
FileKey1=%SystemDrive%\se_tmp|*.*|REMOVESELF
FileKey2=%AppData%\HYXDevPsnList|*.*|REMOVESELF
FileKey3=%AppData%\se_tmp|*.*|REMOVESELF
FileKey4=%AppData%\se_tmp_win|*.*|REMOVESELF
FileKey5=%AppData%\Wondershare\SafeEraser|*.log

    - Added fileKey3

------------------------------------------------------------------------------
Removed Entries:


------------------------------------------------------------------------------
 

 

 

Link to comment
Share on other sites

updated

 

 

 

What's new in winapp2.ini 5.06.150526

 

General:

 

12 New Entries

08 Modified Entries

00 Removed Entries

 

Note:

 

 Change log excludes minor changes (mild pathing changes, key reordering, non-major key tweaks, etc)

 

Verbose:

 

------------------------------------------------------------------------------

 

New Entries:

 

[Adobe Acrobat DC*]

LangSecRef=3021

Detect=HKLM\SOFTWARE\Adobe\Adobe Acrobat\DC

Default=False

FileKey1=%ProgramFiles%\Adobe\Acrobat DC\Setup Files|*.*|REMOVESELF

FileKey2=%CommonAppData%\Adobe\Setup|*.*|REMOVESELF

FileKey3=%LocalAppData%\Adobe\Acrobat|*.idx|RECURSE

FileKey4=%LocalAppData%\Adobe\Acrobat\DC\Cache|*.*

FileKey5=%LocalAppData%\Adobe\Acrobat\DC|UserCache.bin

RegKey1=HKCU\Software\Adobe\Adobe Acrobat\DC\AVConversionFromPDF

RegKey2=HKCU\Software\Adobe\Adobe Acrobat\DC\AVConversionToPDF

RegKey3=HKCU\Software\Adobe\Adobe Acrobat\DC\AVGeneral\cDockables

RegKey4=HKCU\Software\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles

RegKey5=HKCU\Software\Adobe\Adobe Acrobat\DC\AVGeneral\cToolbars

RegKey6=HKCU\Software\Adobe\Adobe Acrobat\DC\RememberedViews\cNoCategoryFiles

RegKey7=HKCU\Software\Adobe\Adobe Acrobat\DC\ShareIdentity

RegKey8=HKCU\Software\Adobe\Adobe Synchronizer\DC

 

[Adobe Acrobat Distiller DC*]

LangSecRef=3021

Detect=HKLM\SOFTWARE\Adobe\Acrobat Distiller\DC

Default=False

FileKey1=%LocalAppData%\Adobe\Acrobat\Distiller DC|*.log

FileKey2=%LocalAppData%\Adobe\Acrobat\Distiller DC\Cache|*.*

RegKey1=HKCU\Software\Adobe\Acrobat Distiller\PrinterJobControl

 

[Ashampoo Snap 8 (AutoSave)*]

LangSecRef=3024

Detect=HKCU\Software\Ashampoo\Ashampoo Snap 8

Default=False

FileKey1=%Pictures%\Ashampoo Snap 8\_SNAPDOC|*.*

 

[Ashampoo Snap 8*]

LangSecRef=3024

Detect=HKCU\Software\Ashampoo\Ashampoo Snap 8

Default=False

FileKey1=%LocalAppData%\CrashRpt\UnsentCrashReports|*.*|RECURSE

FileKey2=%AppData%\Ashampoo\Ashampoo Snap 8|*.*|RECURSE

FileKey3=%ProgramFiles%\Ashampoo\Ashampoo Snap 8|_NLogMsg.txt

 

[AstroGrep*]

LangSecRef=3024

Detect=HKCU\Software\AstroGrep

Default=False

FileKey1=%AppData%\AstroGrep\Log|*.log

FileKey2=%AppData%\AstroGrep|AstroGrep.general.config

 

[Auslogics BoostSpeed 7*]

LangSecRef=3024

Detect=HKLM\Software\Auslogics\BoostSpeed\7.x

Default=False

FileKey1=%CommonAppData%\Auslogics\BoostSpeed\7.x|*.err;*.htm;*.html;*.log;*.rsc;*.sta;*.xml|RECURSE

FileKey2=%ProgramFiles%\Auslogics\Auslogics BoostSpeed|rdboot.log

RegKey1=HKLM\Software\Auslogics\BoostSpeed\7.x\Settings|DiskDefrag.DisksList.SelectedDrives

RegKey2=HKLM\Software\Auslogics\BoostSpeed\7.x\Settings|DiskDefrag.LastDefragment.DateTime

RegKey3=HKLM\Software\Auslogics\BoostSpeed\7.x\Settings|DiskDefrag.LastDefragment.DisksList

RegKey4=HKLM\Software\Auslogics\BoostSpeed\7.x\Settings|DiskDefrag.LastDefragment.FilesCount

RegKey5=HKLM\Software\Auslogics\BoostSpeed\7.x\Settings|RegCleaner.AppLogic.ErrorsFailed

RegKey6=HKLM\Software\Auslogics\BoostSpeed\7.x\Settings|RegCleaner.AppLogic.ErrorsFound

RegKey7=HKLM\Software\Auslogics\BoostSpeed\7.x\Settings|RegCleaner.AppLogic.ErrorsRemoved

RegKey8=HKLM\Software\Auslogics\BoostSpeed\7.x\Settings|RegCleaner.AppLogic.ErrorsRemovedTotal

RegKey9=HKLM\Software\Auslogics\BoostSpeed\7.x\Settings|RegCleaner.AppLogic.LastScan

RegKey10=HKLM\SOFTWARE\Wow6432Node\Auslogics\BoostSpeed\7.x\Settings|DiskDefrag.DisksList.SelectedDrives

RegKey11=HKLM\SOFTWARE\Wow6432Node\Auslogics\BoostSpeed\7.x\Settings|DiskDefrag.LastDefragment.DateTime

RegKey12=HKLM\SOFTWARE\Wow6432Node\Auslogics\BoostSpeed\7.x\Settings|DiskDefrag.LastDefragment.DisksList

RegKey13=HKLM\SOFTWARE\Wow6432Node\Auslogics\BoostSpeed\7.x\Settings|DiskDefrag.LastDefragment.FilesCount

RegKey14=HKLM\SOFTWARE\Wow6432Node\Auslogics\BoostSpeed\7.x\Settings|RegCleaner.AppLogic.ErrorsFailed

RegKey15=HKLM\SOFTWARE\Wow6432Node\Auslogics\BoostSpeed\7.x\Settings|RegCleaner.AppLogic.ErrorsFound

RegKey16=HKLM\SOFTWARE\Wow6432Node\Auslogics\BoostSpeed\7.x\Settings|RegCleaner.AppLogic.ErrorsRemoved

RegKey17=HKLM\SOFTWARE\Wow6432Node\Auslogics\BoostSpeed\7.x\Settings|RegCleaner.AppLogic.ErrorsRemovedTotal

RegKey18=HKLM\SOFTWARE\Wow6432Node\Auslogics\BoostSpeed\7.x\Settings|RegCleaner.AppLogic.LastScan

 

[MySQL Workbench*]

LangSecRef=3021

DetectFile=%AppData%\MySQL\Workbench

Default=False

FileKey1=%AppData%\MySQL\Workbench\log|*.log

FileKey2=%AppData%\MySQL\Workbench\sql_history|*.*

FileKey3=%AppData%\MySQL\Workbench\cache|*.*

 

[Performance Logs*]

LangSecRef=3025

Detect=HKCU\Software\Microsoft\Windows

Default=False

FileKey1=%SystemDrive%\PerfLogs\System\Diagnostics|*.*|RECURSE

FileKey2=%SystemDrive%\PerfLogs\System\Performance|*.*|RECURSE

 

[Realtek Install Files*]

LangSecRef=3021

Detect=HKLM\Software\Realtek

Default=False

FileKey1=%ProgramFiles%\Realtek\Audio|*.InstallLog

 

[sprint Hero RUU Installer Log*]

LangSecRef=3023

DetectFile=%SystemDrive%\ruu_log

Default=False

FileKey1=%SystemDrive%\ruu_log|*.*|REMOVESELF

 

[stored HSTS Cookies*]

LangSecRef=3026

SpecialDetect=DET_MOZILLA

Default=False

FileKey1=%AppData%\Mozilla\Firefox\Profiles\*|SiteSecurityServiceState.txt

 

[Windows Defender More*]

LangSecRef=3025

Detect=HKLM\Software\Microsoft\Windows Defender

Default=False

FileKey1=%CommonAppData%\Microsoft\Windows Defender\Definition Updates\Backup|*.*|RECURSE

FileKey2=%CommonAppData%\Microsoft\Windows Defender\Scans|*.bin;*.bin*

FileKey3=%CommonAppData%\Microsoft\Windows Defender\Scans\History\Service|*.log

FileKey4=%CommonAppData%\Microsoft\Windows Defender\Scans\Scans\History\CacheManager|*.*|RECURSE

FileKey5=%CommonAppData%\Microsoft\Windows Defender\Support|*.*|RECURSE

 

 

 

------------------------------------------------------------------------------

 

Modified Entries:

 

 

[Adobe Acrobat Distiller*]

LangSecRef=3021

Detect1=HKCU\Software\Adobe\Acrobat Distiller

Detect2=HKLM\Software\Adobe\Acrobat Distiller\11.0

Default=False

FileKey1=%AppData%\Adobe\Acrobat\Distiller 11|*.log

FileKey2=%AppData%\Adobe\Acrobat\Distiller 11\Cache|*.*

RegKey1=HKCU\Software\Adobe\Acrobat Distiller\PrinterJobControl

 

    - Added Detect2

 

    

[bitDefender Total Security 2014/15 (Logs)*]

LangSecRef=3024

Detect1=HKLM\Software\BitDefender\Bitdefender Total Security

Detect2=HKLM\Software\BitDefender\Bitdefender Total Security 2015

Warning=This removes only logs created while scanning external drives and other special unneeded scan logs generated by Bitdefender scanner.

Default=False

FileKey1=%AppData%\Bitdefender\Desktop\profiles\Logs\*|*.xml    

    

-  Changed Name from [bitDefender Total Security 2014 (Logs)*] to [bitDefender Total Security 2014/15 (Logs)*]

-  Added Detect2

 

[Dropbox*]

LangSecRef=3024

Detect=HKCU\Software\Dropbox

Default=False

FileKey1=%AppData%\DropBox|Filecache.db;SigStore.db

FileKey2=%AppData%\DropBox\Bin|*.log

FileKey3=%AppData%\Dropbox\logs|*.*|RECURSE

FileKey4=%AppData%\Dropbox\Cache|*.*|RECURSE

FileKey5=%CommonAppData%\Dropbox\Update\Log\|*.*

 

    - Added FileKey5

 

[Java Setup Files*]

LangSecRef=3022

Detect=HKLM\Software\JavaSoft\Java Runtime Environment

Default=False

FileKey1=%CommonAppData%\Oracle\Java\installcache|*.*|RECURSE

FileKey2=%AppData%\Sun\Java\jre*|*.*|REMOVESELF

FileKey3=%LocalLowAppData%\Sun\Java\jre*|*.*|REMOVESELF

FileKey4=%LocalLowAppData%\Sun\Java\jdk*|*.*|REMOVESELF

 

    - Added FileKey1

    

[Norton Installer Logs*]

LangSecRef=3024

DetectFile=%CommonAppData%\NortonInstaller\Logs

Default=False

FileKey1=%CommonAppData%\Norton|*.log;*.txt

FileKey2=%CommonAppData%\NortonInstaller\Logs|*.*|RECURSE

FileKey3=%LocalAppData%\VirtualStore\ProgramData\NortonInstaller\Logs|*.*|RECURSE

 

    - Added FileKey1

    

[Wondershare SafeEraser*]

LangSecRef=3021

Detect=HKLM\Software\Wondershare\SafeEraser

Default=False

FileKey1=%SystemDrive%\se_tmp|*.*|REMOVESELF

FileKey2=%AppData%\HYXDevPsnList|*.*|REMOVESELF

FileKey3=%AppData%\se_tmp|*.*|REMOVESELF

FileKey4=%AppData%\se_tmp_win|*.*|REMOVESELF

FileKey5=%AppData%\Wondershare\SafeEraser|*.log

 

    - Added fileKey3

 

------------------------------------------------------------------------------

Removed Entries:

 

 

------------------------------------------------------------------------------

 

 

 

Thanks for the update.

 

You forgot to add the listed below.

 

[Acrobat Reader DC*]

LangSecRef=3021

Detect=HKLM\Software\Adobe\Acrobat Reader\DC

Default=False

FileKey1=%ProgramFiles%\Adobe\Acrobat Reader DC\Setup Files|*.*|REMOVESELF

FileKey2=%CommonAppData%\Adobe\Setup|*.*|REMOVESELF

FileKey3=%LocalAppData%\Adobe\Acrobat\DC\Cache|*.*|RECURSE

RegKey1=HKCU\Software\Adobe\Acrobat Reader\DC\AVConversionFromPDF

RegKey2=HKCU\Software\Adobe\Acrobat Reader\DC\AVConversionToPDF

RegKey3=HKCU\Software\Adobe\Acrobat Reader\DC\AVGeneral\cDockables

RegKey4=HKCU\Software\Adobe\Acrobat Reader\DC\AVGeneral\cRecentFiles

RegKey5=HKCU\Software\Adobe\Acrobat Reader\DC\AVGeneral\cToolbars

RegKey6=HKCU\Software\Adobe\Acrobat Reader\DC\RememberedViews\cNoCategoryFiles

RegKey7=HKCU\Software\Adobe\Acrobat Reader\DC\ShareIdentity

RegKey8=HKCU\Software\Adobe\Adobe Synchronizer\DC

 

[east-tec Eraser*]

LangSecRef=3024

Detect=HKLM\Software\East-Tec\east-tec Eraser

Default=False

FileKey1=%ProgramFiles%\east-tec Eraser|except.log

FileKey2=%CommonAppData%\East-Tec\east-tec Eraser\Updates|*.*|RECURSE

 

Also, Detect1 should be removed from the [Adobe Acrobat Distiller*] as it conflicts with the [Adobe Acrobat Distiller DC*] entry. I just have Adobe Acrobat Distiller DC on my system, but the [Adobe Acrobat Distiller*] entry shows up also along with the [Adobe Acrobat Distiller DC*] entry.

 

[Adobe Acrobat Distiller*]

LangSecRef=3021

Detect1=HKCU\Software\Adobe\Acrobat Distiller

Detect2=HKLM\Software\Adobe\Acrobat Distiller\11.0

Default=False

FileKey1=%AppData%\Adobe\Acrobat\Distiller 11|*.log

FileKey2=%AppData%\Adobe\Acrobat\Distiller 11\Cache|*.*

RegKey1=HKCU\Software\Adobe\Acrobat Distiller\PrinterJobControl

Link to comment
Share on other sites

Thanks for the update.

 

You forgot to add the listed below.

 

[Acrobat Reader DC*]

LangSecRef=3021

Detect=HKLM\Software\Adobe\Acrobat Reader\DC

Default=False

FileKey1=%ProgramFiles%\Adobe\Acrobat Reader DC\Setup Files|*.*|REMOVESELF

FileKey2=%CommonAppData%\Adobe\Setup|*.*|REMOVESELF

FileKey3=%LocalAppData%\Adobe\Acrobat\DC\Cache|*.*|RECURSE

RegKey1=HKCU\Software\Adobe\Acrobat Reader\DC\AVConversionFromPDF

RegKey2=HKCU\Software\Adobe\Acrobat Reader\DC\AVConversionToPDF

RegKey3=HKCU\Software\Adobe\Acrobat Reader\DC\AVGeneral\cDockables

RegKey4=HKCU\Software\Adobe\Acrobat Reader\DC\AVGeneral\cRecentFiles

RegKey5=HKCU\Software\Adobe\Acrobat Reader\DC\AVGeneral\cToolbars

RegKey6=HKCU\Software\Adobe\Acrobat Reader\DC\RememberedViews\cNoCategoryFiles

RegKey7=HKCU\Software\Adobe\Acrobat Reader\DC\ShareIdentity

RegKey8=HKCU\Software\Adobe\Adobe Synchronizer\DC

 

[east-tec Eraser*]

LangSecRef=3024

Detect=HKLM\Software\East-Tec\east-tec Eraser

Default=False

FileKey1=%ProgramFiles%\east-tec Eraser|except.log

FileKey2=%CommonAppData%\East-Tec\east-tec Eraser\Updates|*.*|RECURSE

 

Also, Detect1 should be removed from the [Adobe Acrobat Distiller*] as it conflicts with the [Adobe Acrobat Distiller DC*] entry. I just have Adobe Acrobat Distiller DC on my system, but the [Adobe Acrobat Distiller*] entry shows up also along with the [Adobe Acrobat Distiller DC*] entry.

 

[Adobe Acrobat Distiller*]

LangSecRef=3021

Detect1=HKCU\Software\Adobe\Acrobat Distiller

Detect2=HKLM\Software\Adobe\Acrobat Distiller\11.0

Default=False

FileKey1=%AppData%\Adobe\Acrobat\Distiller 11|*.log

FileKey2=%AppData%\Adobe\Acrobat\Distiller 11\Cache|*.*

RegKey1=HKCU\Software\Adobe\Acrobat Distiller\PrinterJobControl

 

Ahh. I was a tad confused as there were at least 4 different posts about the Distiller entries :)

Link to comment
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
×
×
  • Create New...

Important Information

By using this site, you agree to our Terms of Use.