siliconman01 Posted February 6, 2021 Share Posted February 6, 2021 Modified entry: [Syncios Cell Phone Backup & Manage *] Added FileKey5/6/8 [Syncios Cell Phone Backup & Manage *] LangSecRef=3024 Detect1=HKCU\Software\Syncios Detect2=HKCU\Software\Syncios Data Transfer Detect3=HKLM\Software\Microsoft\Windows\CurrentVersion\App Paths\Syncios Data Transfer.exe FileKey1=%AppData%\app_sycnios_transfer_loader|*.*|REMOVESELF FileKey2=%AppData%\Syncios|android.log;log.txt FileKey3=%AppData%\Syncios Data Transfer|*.log|RECURSE FileKey4=%AppData%\Syncios Data Transfer\GPUCache|*.* FileKey5=%AppData%\Syncios Data Transfer\Local Storage\Leveldb|Log.Old FileKey6=%AppData%\Syncios Toolkit\Local Storage\leveldb|Log.Old FileKey7=%AppData%\Syncios Toolkit\Logs|*.* FileKey8=%AppData%\Syncios\Local Storage\leveldb|Log.old FileKey9=%Documents%\Syncios Data Transfer|preference_conf.ini.old.bak FileKey10=%SystemDrive%\temp|*.*|REMOVESELF Windows 10 x64 Pro on ASUS Maximus VIII Extreme motherboard, i7-6700k CPU,H220 X2 Liquid Cooler, 64 gbyte RipJaws DDR4 3200 RAM, Samsung 970 Pro NVMe M.2 500 gbyte SSD + Samsung 850 Pro 512 gbyte SSD, EVGA RTX 3060 Titan graphics card (Home Built System); Windows 11x64 Pro on 512 gigabyte Dell XPS 15 2-in-1 Laptop/tablet and Dell XPS 8940 PC. ASUS RT-AC88U router, 14 tbyte WD My Cloud PR2100 NAS Server, 200 Mbps cable Internet, MS Edge Chromium, MS Office 2021 (Local), Casper 11, DisplayFusion (3 Flat Panel Displays per system): Bitdefender Internet Security 2022, Malwarebytes 4, Quicken, Weather Watcher Live, ThumbsPlus 10, Sticky Password 8, WD Smartware, CyberLink PowerDVD22, MSI AfterBurner, Rainmeter, Windows Sidebar, and many more. Link to comment Share on other sites More sharing options...
SMalik Posted February 7, 2021 Share Posted February 7, 2021 New Entries [Storage Usage Statistics *] LangSecRef=3026 Detect1=HKLM\Software\ComodoGroup\IceDragon Detect2=HKLM\Software\FlashPeak\SlimBrowser Detect3=HKLM\Software\Mozilla\Basilisk Detect4=HKLM\Software\Mozilla\Pale Moon Detect5=HKLM\Software\Mozilla\SeaMonkey Detect6=HKLM\Software\Mozilla\Waterfox DetectFile=%AppData%\Mozilla\Firefox FileKey1=%AppData%\Comodo\IceDragon\Profiles\*|storage.sqlite FileKey2=%AppData%\FlashPeak\SlimBrowser\Profiles\*|storage.sqlite FileKey3=%AppData%\Moonchild Productions\Basilisk\Profiles\*|storage.sqlite FileKey4=%AppData%\Moonchild Productions\Pale Moon\Profiles\*|storage.sqlite FileKey5=%AppData%\Mozilla\Firefox\Profiles\*|storage.sqlite FileKey6=%AppData%\Mozilla\SeaMonkey\Profiles\*|storage.sqlite FileKey7=%AppData%\Waterfox\Profiles\*|storage.sqlite [WebRender Shader Cache *] LangSecRef=3026 Detect1=HKLM\Software\ComodoGroup\IceDragon Detect2=HKLM\Software\FlashPeak\SlimBrowser Detect3=HKLM\Software\Mozilla\Basilisk Detect4=HKLM\Software\Mozilla\Pale Moon Detect5=HKLM\Software\Mozilla\SeaMonkey Detect6=HKLM\Software\Mozilla\Waterfox DetectFile=%AppData%\Mozilla\Firefox FileKey1=%AppData%\Comodo\IceDragon\Profiles\*\shader-cache|*.*|RECURSE FileKey2=%AppData%\FlashPeak\SlimBrowser\Profiles\*\shader-cache|*.*|RECURSE FileKey3=%AppData%\Moonchild Productions\Basilisk\Profiles\*\shader-cache|*.*|RECURSE FileKey4=%AppData%\Moonchild Productions\Pale Moon\Profiles\*\shader-cache|*.*|RECURSE FileKey5=%AppData%\Mozilla\Firefox\Profiles\*\shader-cache|*.*|RECURSE FileKey6=%AppData%\Mozilla\SeaMonkey\Profiles\*\shader-cache|*.*|RECURSE FileKey7=%AppData%\Waterfox\Profiles\*\shader-cache|*.*|RECURSE Link to comment Share on other sites More sharing options...
siliconman01 Posted February 7, 2021 Share Posted February 7, 2021 Modified entry: [Movie Collector - Collectorz *] Added FileKey1 [Movie Collector - Collectorz *] LangSecRef=3023 Detect=HKCU\Software\Collectorz.com\Movie FileKey1=%Documents%\Movie Collector\Images|*.tmp FileKey2=%LocalAppData%\Collectorz.com\Movie Collector\Temp\Images|*.* Windows 10 x64 Pro on ASUS Maximus VIII Extreme motherboard, i7-6700k CPU,H220 X2 Liquid Cooler, 64 gbyte RipJaws DDR4 3200 RAM, Samsung 970 Pro NVMe M.2 500 gbyte SSD + Samsung 850 Pro 512 gbyte SSD, EVGA RTX 3060 Titan graphics card (Home Built System); Windows 11x64 Pro on 512 gigabyte Dell XPS 15 2-in-1 Laptop/tablet and Dell XPS 8940 PC. ASUS RT-AC88U router, 14 tbyte WD My Cloud PR2100 NAS Server, 200 Mbps cable Internet, MS Edge Chromium, MS Office 2021 (Local), Casper 11, DisplayFusion (3 Flat Panel Displays per system): Bitdefender Internet Security 2022, Malwarebytes 4, Quicken, Weather Watcher Live, ThumbsPlus 10, Sticky Password 8, WD Smartware, CyberLink PowerDVD22, MSI AfterBurner, Rainmeter, Windows Sidebar, and many more. Link to comment Share on other sites More sharing options...
APMichael Posted February 8, 2021 Share Posted February 8, 2021 Thanks for the modified, revised and new entries. Winapp2.ini update:https://github.com/MoscaDotTo/Winapp2/commit/4b7233ce183fbae306ed23742bdd1ed9fcc89519 Link to comment Share on other sites More sharing options...
SMalik Posted February 8, 2021 Share Posted February 8, 2021 Revised Entry Added: %LocalAppData%\Packages\Microsoft.YourPhone_*\AC\TokenBroker\Cache|*.*|RECURSE [Your Phone *] DetectOS=10.0| LangSecRef=3031 Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\Microsoft.YourPhone_8wekyb3d8bbwe FileKey1=%LocalAppData%\Packages\Microsoft.YourPhone_*\AC\INet*|*.*|RECURSE FileKey2=%LocalAppData%\Packages\Microsoft.YourPhone_*\AC\Microsoft\CryptnetUrlCache\*|*.*|RECURSE FileKey3=%LocalAppData%\Packages\Microsoft.YourPhone_*\AC\Temp|*.*|RECURSE FileKey4=%LocalAppData%\Packages\Microsoft.YourPhone_*\AC\TokenBroker\Cache|*.*|RECURSE FileKey5=%LocalAppData%\Packages\Microsoft.YourPhone_*\LocalCache|*.*|RECURSE FileKey6=%LocalAppData%\Packages\Microsoft.YourPhone_*\LocalState\Cache|*.*|RECURSE FileKey7=%LocalAppData%\Packages\Microsoft.YourPhone_*\TempState|*.*|RECURSE Link to comment Share on other sites More sharing options...
SMalik Posted February 8, 2021 Share Posted February 8, 2021 Revised Entry Autopilot and Device Provisioning Diagnostic Logs Added: %CommonAppData%\Microsoft\DiagnosticLogCSP\Collectors|*.etl;*.etl.merged https://www.anoopcnair.com/mdm-diagnostics-tool-windows-autopilot/ [Windows Logs *] LangSecRef=3025 Detect=HKLM\Software\Microsoft\Windows FileKey1=%CommonAppData%\Microsoft\Diagnosis\DownloadedSettings|*.json.bk FileKey2=%CommonAppData%\Microsoft\DiagnosticLogCSP\Collectors|*.etl;*.etl.merged FileKey3=%CommonAppData%\Microsoft\Network\Downloader|*.*|RECURSE FileKey4=%CommonAppData%\Microsoft\WDF|*.*|RECURSE FileKey5=%CommonAppData%\Microsoft\Windows Security Health\Logs|*.*|RECURSE FileKey6=%CommonAppData%\USOShared\Logs|*.*|RECURSE FileKey7=%LocalAppData%\ConnectedDevicesPlatform|*.log FileKey8=%LocalAppData%\Diagnostics|*.*|RECURSE FileKey9=%ProgramFiles%\UNP\*Logs|*.* FileKey10=%SystemDrive%\PerfLogs\System\Diagnostics|*.*|RECURSE FileKey11=%SystemDrive%\PerfLogs\System\Performance|*.*|RECURSE FileKey12=%WinDir%\AppCompat\Programs|*.txt;*.xml FileKey13=%WinDir%\AppCompat\Programs\Install|*.txt;*.xml FileKey14=%WinDir%\debug\WIA|*.log FileKey15=%WinDir%\inf|*.log* FileKey16=%WinDir%\Logs\CBS|*.cab FileKey17=%WinDir%\Logs\dosvc|*.*|RECURSE FileKey18=%WinDir%\Logs\NetSetup|*.*|RECURSE FileKey19=%WinDir%\Logs\SIH|*.*|RECURSE FileKey20=%WinDir%\Logs\WindowsBackup|*.etl FileKey21=%WinDir%\Panther|cbs.log;DDACLSys.log;miglog.xml;Migrep.html;PostGatherPnPList.log;PreGatherPnPList.log FileKey22=%WinDir%\Panther\FastCleanup|*.log FileKey23=%WinDir%\Panther\Rollback|*.txt FileKey24=%WinDir%\Panther\UnattendGC|diagerr.xml;diagwrn.xml FileKey25=%WinDir%\repair|setup.log FileKey26=%WinDir%\security\logs|*.*|RECURSE FileKey27=%WinDir%\System32\CatRoot|*.tmp FileKey28=%WinDir%\System32\catroot2|*.chk;*.log;*.jrs;*.txt FileKey29=%WinDir%\System32\LogFiles\HTTPERR|*.log FileKey30=%WinDir%\System32\LogFiles\Scm|*.*|RECURSE FileKey31=%WinDir%\System32\LogFiles\setupcln|*.*|RECURSE FileKey32=%WinDir%\System32\LogFiles\Srt|*.*|RECURSE FileKey33=%WinDir%\System32\LogFiles\WMI|*.*|RECURSE FileKey34=%WinDir%\System32\SleepStudy|*.etl FileKey35=%WinDir%\System32\SleepStudy\ScreenOn|*.etl FileKey36=%WinDir%\System32\sysprep\Panther\IE|diagerr.xml;diagwrn.xml;*.log FileKey37=%WinDir%\System32\WDI\*|snapshot.etl|REMOVESELF FileKey38=%WinDir%\System32\WDI\LogFiles\StartupInfo|*.*|RECURSE RegKey1=HKLM\Software\Microsoft\RADAR\HeapLeakDetection\DiagnosedApplications RegKey2=HKLM\Software\Microsoft\Tracing RegKey3=HKLM\Software\Wow6432Node\Microsoft\RADAR\HeapLeakDetection\DiagnosedApplications RegKey4=HKLM\Software\Wow6432Node\Microsoft\Tracing Link to comment Share on other sites More sharing options...
SMalik Posted February 14, 2021 Share Posted February 14, 2021 Revised Entry Removed: Detect2, Detect3, Detect4, Detect5 Added: Detect2=HKCU\Software\Nero %AppData%\Nero\Nero Start\cefcache.1\Cache|*.*|RECURSE %AppData%\Nero\Nero Start\cefcache.1\Code Cache|*.*|RECURSE %AppData%\Nero\Nero Start\cefcache.1\GPUCache|*.*|RECURSE %AppData%\Nero\Nero Start\cefcache.1\IndexedDB|*.*|RECURSE %AppData%\Nero\Nero Start\cefcache.1\Local Storage\leveldb|*.log;*.old;MANIFEST-000001 %AppData%\Nero\Nero Start\cefcache.1\Session Storage|*.log;*.old;MANIFEST-000001 %AppData%\Nero\Nero Start\cefcache.1|*.log;*.old;Cookies;Cookies-journal;MANIFEST-000001;QuotaManager;QuotaManager-journal;Visited Links %AppData%\Nero\Nero Start\logs|*.*|RECURSE %AppData%\Nero\Nero Start\temp|*.*|RECURSE %LocalAppData%\Nero\NeroKnowHowPLUS\*|*.cache %LocalAppData%\Nero\NeroKnowHowPLUS|*.log [Nero *] LangSecRef=3021 Detect1=HKCU\Software\Ahead Detect2=HKCU\Software\Nero FileKey1=%AppData%\Nero|NeroHistory.log FileKey2=%AppData%\Nero\Nero Burning ROM|*.log FileKey3=%AppData%\Nero\Nero*\Nero BackItUp\Cache|*.* FileKey4=%AppData%\Nero\Nero*\Nero Burning ROM|*.log FileKey5=%AppData%\Nero\Nero*\Nero Recode\AnalysisData|*.dat FileKey6=%AppData%\Nero\Nero*\Nero Recode\Thumbs|*.* FileKey7=%AppData%\Nero\Nero*\Nero Vision|*.txt;*.bin FileKey8=%AppData%\Nero\Nero*\Nero Vision\NVFACache|*.* FileKey9=%AppData%\Nero\Nero*\Nero3D|*.log FileKey10=%AppData%\Nero\Nero Start\cefcache.1\Cache|*.*|RECURSE FileKey11=%AppData%\Nero\Nero Start\cefcache.1\Code Cache|*.*|RECURSE FileKey12=%AppData%\Nero\Nero Start\cefcache.1\GPUCache|*.*|RECURSE FileKey13=%AppData%\Nero\Nero Start\cefcache.1\IndexedDB|*.*|RECURSE FileKey14=%AppData%\Nero\Nero Start\cefcache.1\Local Storage\leveldb|*.log;*.old;MANIFEST-000001 FileKey15=%AppData%\Nero\Nero Start\cefcache.1\Session Storage|*.log;*.old;MANIFEST-000001 FileKey16=%AppData%\Nero\Nero Start\cefcache.1|*.log;*.old;Cookies;Cookies-journal;MANIFEST-000001;QuotaManager;QuotaManager-journal;Visited Links FileKey17=%AppData%\Nero\Nero Start\logs|*.*|RECURSE FileKey18=%AppData%\Nero\Nero Start\temp|*.*|RECURSE FileKey19=%CommonAppData%\Nero\Nero BackItUp*\Cache|*.* FileKey20=%CommonAppData%\Nero\PeakFiles|*.tmp FileKey21=%LocalAppData%\Nero\Nero *\Nero Vision\Cache|*.* FileKey22=%LocalAppData%\Nero\Nero *\Nero Vision\Cache\GraphicObjectCache|*.* FileKey23=%LocalAppData%\Nero\NeroKnowHowPLUS\*|*.cache FileKey24=%LocalAppData%\Nero\NeroKnowHowPLUS|*.log RegKey1=HKCU\Software\ahead\Nero PhotoSnap\Recent File List RegKey2=HKCU\Software\Ahead\NeroSearch\NeroSavedSearches\SavedSearches RegKey3=HKCU\Software\ahead\NeroVision\2.0\RecentFiles RegKey4=HKCU\Software\Nero\Nero 11\Nero Burning ROM\Compilation|VolumeLabelAutoTemplate RegKey5=HKCU\Software\Nero\Nero 11\Nero Burning ROM\Compilation|VolumeLabelISOTemplate RegKey6=HKCU\Software\Nero\Nero 11\Nero Burning ROM\Compilation|VolumelabelJolietTemplate RegKey7=HKCU\Software\Nero\Nero 11\Nero Burning ROM\Compilation|VolumeLabelUDFTemplate RegKey8=HKCU\Software\Nero\Nero 11\Nero Burning ROM\Recent File List RegKey9=HKCU\Software\Nero\Nero 11\Nero Burning ROM\Settings|EncodingLastDir RegKey10=HKCU\Software\Nero\Nero 11\Nero Burning ROM\Settings|NeroCompilation RegKey11=HKCU\Software\Nero\Nero 11\Nero Burning ROM\Settings|TrackSaveDir RegKey12=HKCU\Software\Nero\Nero 11\Nero Burning ROM\Settings|WorkingDir RegKey13=HKCU\Software\Nero\Nero 11\Nero CoverDesigner\Recent File List RegKey14=HKCU\Software\Nero\Nero 11\Nero Express\Compilation|VolumeLabelAutoTemplate RegKey15=HKCU\Software\Nero\Nero 11\Nero Express\Compilation|VolumeLabelISOTemplate RegKey16=HKCU\Software\Nero\Nero 11\Nero Express\Compilation|VolumelabelJolietTemplate RegKey17=HKCU\Software\Nero\Nero 11\Nero Express\Compilation|VolumeLabelUDFTemplate RegKey18=HKCU\Software\Nero\Nero 11\Nero Express\General|OFDLastAudioDir RegKey19=HKCU\Software\Nero\Nero 11\Nero Express\General|OFDLastISODir RegKey20=HKCU\Software\Nero\Nero 11\Nero Express\General|OFDLastVideoDVDKey RegKey21=HKCU\Software\Nero\Nero 11\Nero Express\Recent File List RegKey22=HKCU\Software\Nero\Nero 11\Nero Express\Settings|BootImageDir RegKey23=HKCU\Software\Nero\Nero 11\Nero Express\Settings|BrowserDir RegKey24=HKCU\Software\Nero\Nero 11\Nero Express\Settings|ImageDir RegKey25=HKCU\Software\Nero\Nero 11\Nero Express\Settings|NeroCompilation RegKey26=HKCU\Software\Nero\Nero 11\Nero Express\Settings|TrackSaveDir RegKey27=HKCU\Software\Nero\Nero 11\Nero Express\Settings|WorkingDir RegKey28=HKCU\Software\Nero\Nero 11\Nero Toolkit\DiscSpeed\Capture|Folder RegKey29=HKCU\Software\Nero\Nero 11\Nero Toolkit\DiscSpeed\Save|Folder RegKey30=HKCU\Software\Nero\Nero 11\Nero Vision\Application|AudioDir RegKey31=HKCU\Software\Nero\Nero 11\Nero Vision\Application|CaptureDir RegKey32=HKCU\Software\Nero\Nero 11\Nero Vision\Application|DocDir RegKey33=HKCU\Software\Nero\Nero 11\Nero Vision\Application|ExportAudioDir RegKey34=HKCU\Software\Nero\Nero 11\Nero Vision\Application|ExportVideoDir RegKey35=HKCU\Software\Nero\Nero 11\Nero Vision\Application|ImportVideoDir RegKey36=HKCU\Software\Nero\Nero 11\Nero Vision\Application|MediaDir RegKey37=HKCU\Software\Nero\Nero 11\Nero Vision\Application|PicDir RegKey38=HKCU\Software\Nero\Nero 11\Nero Vision\Application|PicSaveDir RegKey39=HKCU\Software\Nero\Nero 11\Nero Vision\Application|TmpDir RegKey40=HKCU\Software\Nero\Nero 11\Nero Vision\Application|VideoDir RegKey41=HKCU\Software\Nero\Nero 11\Nero WaveEditor\Directories|Last RegKey42=HKCU\Software\Nero\Nero 11\Nero WaveEditor\Recent File List RegKey43=HKCU\Software\Nero\Nero 12\Nero Burning ROM\Compilation|VolumeLabelAutoTemplate RegKey44=HKCU\Software\Nero\Nero 12\Nero Burning ROM\Compilation|VolumeLabelISOTemplate RegKey45=HKCU\Software\Nero\Nero 12\Nero Burning ROM\Compilation|VolumelabelJolietTemplate RegKey46=HKCU\Software\Nero\Nero 12\Nero Burning ROM\Compilation|VolumeLabelUDFTemplate RegKey47=HKCU\Software\Nero\Nero 12\Nero Burning ROM\Settings|EncodingLastDir RegKey48=HKCU\Software\Nero\Nero 12\Nero Burning ROM\Settings|TrackSaveDir RegKey49=HKCU\Software\Nero\Nero 12\Nero Burning ROM\Settings|WorkingDir RegKey50=HKCU\Software\Nero\Nero 12\Nero Express\Compilation|VolumeLabelAutoTemplate RegKey51=HKCU\Software\Nero\Nero 12\Nero Express\Compilation|VolumeLabelISOTemplate RegKey52=HKCU\Software\Nero\Nero 12\Nero Express\Compilation|VolumelabelJolietTemplate RegKey53=HKCU\Software\Nero\Nero 12\Nero Express\Compilation|VolumeLabelUDFTemplate RegKey54=HKCU\Software\Nero\Nero 12\Nero Express\Settings|BootImageDir RegKey55=HKCU\Software\Nero\Nero 12\Nero Express\Settings|ImageDir RegKey56=HKCU\Software\Nero\Nero 12\Nero Express\Settings|NeroCompilation RegKey57=HKCU\Software\Nero\Nero 12\Nero Express\Settings|TrackSaveDir RegKey58=HKCU\Software\Nero\Nero 12\Nero Toolkit\DiscSpeed\Capture|Folder RegKey59=HKCU\Software\Nero\Nero 12\Nero Toolkit\DiscSpeed\Save|Folder RegKey60=HKCU\Software\Nero\Nero 12\Nero Vision\Application|AudioDir RegKey61=HKCU\Software\Nero\Nero 12\Nero Vision\Application|CaptureDir RegKey62=HKCU\Software\Nero\Nero 12\Nero Vision\Application|DocDir RegKey63=HKCU\Software\Nero\Nero 12\Nero Vision\Application|ExportAudioDir RegKey64=HKCU\Software\Nero\Nero 12\Nero Vision\Application|ExportVideoDir RegKey65=HKCU\Software\Nero\Nero 12\Nero Vision\Application|ImportVideoDir RegKey66=HKCU\Software\Nero\Nero 12\Nero Vision\Application|MediaDir RegKey67=HKCU\Software\Nero\Nero 12\Nero Vision\Application|PicDir RegKey68=HKCU\Software\Nero\Nero 12\Nero Vision\Application|PicSaveDir RegKey69=HKCU\Software\Nero\Nero 12\Nero Vision\Application|TmpDir RegKey70=HKCU\Software\Nero\Nero 12\Nero Vision\Application|VideoDir RegKey71=HKCU\Software\Nero\Nero 12\Nero WaveEditor\Directories|Last RegKey72=HKCU\Software\Nero\Nero Blu-ray Player\Settings|DefFolder RegKey73=HKCU\Software\Nero\Nero8\Cover Designer\Recent File List RegKey74=HKCU\Software\Nero\Nero8\Nero - Burning Rom\Recent File List Link to comment Share on other sites More sharing options...
APMichael Posted February 14, 2021 Share Posted February 14, 2021 8 hours ago, SMalik said: ... %AppData%\Nero\Nero Start\cefcache.1\Local Storage\leveldb|*.log;*.old;MANIFEST-000001 %AppData%\Nero\Nero Start\cefcache.1\Session Storage|*.log;*.old;MANIFEST-000001 %AppData%\Nero\Nero Start\cefcache.1|*.log;*.old;Cookies;Cookies-journal;MANIFEST-000001;QuotaManager;QuotaManager-journal;Visited Links ... Just to be sure: These folders are Chromium-based and use LevelDB. The *.log files are therefore not usual logfiles but important database files. Therefore, all files of a database (*.ldb;*.log;CURRENT;LOCK;LOG;LOG.old;MANIFEST-*) should always be deleted or only the real logfiles (LOG;LOG.old). https://github.com/google/leveldb/blob/master/doc/impl.md Link to comment Share on other sites More sharing options...
SMalik Posted February 14, 2021 Share Posted February 14, 2021 6 hours ago, APMichael said: Just to be sure: These folders are Chromium-based and use LevelDB. The *.log files are therefore not usual logfiles but important database files. Therefore, all files of a database (*.ldb;*.log;CURRENT;LOCK;LOG;LOG.old;MANIFEST-*) should always be deleted or only the real logfiles (LOG;LOG.old). https://github.com/google/leveldb/blob/master/doc/impl.md We can add the rest of the files. Link to comment Share on other sites More sharing options...
SMalik Posted February 14, 2021 Share Posted February 14, 2021 Revised Entry Changed: LangSecRef from 3023 to 3021 [Mp3tag *] LangSecRef=3021 Detect=HKLM\Software\Florian Heidenreich\Mp3tag FileKey1=%AppData%\Mp3tag|Mp3tagError.log Link to comment Share on other sites More sharing options...
SMalik Posted February 15, 2021 Share Posted February 15, 2021 I think we should go through all of the entries and see if any LangSecRef need to be corrected. Link to comment Share on other sites More sharing options...
APMichael Posted February 15, 2021 Share Posted February 15, 2021 2 hours ago, SMalik said: I think we should go through all of the entries and see if any LangSecRef need to be corrected. Just my humble opinion: Since the category (LangSecRef, Section) has no impact on the function of an entry, but only on the visual sorting in the user interface, this effort is not really worth it. In addition, the categories between the different lists (winapp.ini, winapp2.ini, removed entries.ini, winapp3.ini) are now well aligned, so a mass change could mess things up again. Link to comment Share on other sites More sharing options...
APMichael Posted February 15, 2021 Share Posted February 15, 2021 Thanks for the revised entries. Winapp2.ini updates:https://github.com/MoscaDotTo/Winapp2/commit/feef4b9f199a4eba3d15a748621d82c739350276 Winapp3.ini update:https://github.com/MoscaDotTo/Winapp2/commit/2ae1ef092d5bee672f76c38c7e831f94ed8c48b5 Link to comment Share on other sites More sharing options...
SMalik Posted February 16, 2021 Share Posted February 16, 2021 New Entry [Edge Stored Favicons *] LangSecRef=3006 DetectFile=%LocalAppData%\Microsoft\Edge* FileKey1=%LocalAppData%\Microsoft\Edge*\User Data\*\|Favicons Link to comment Share on other sites More sharing options...
siliconman01 Posted February 16, 2021 Share Posted February 16, 2021 2 hours ago, SMalik said: New Entry [Edge Stored Favicons *] LangSecRef=3006 DetectFile=%LocalAppData%\Microsoft\Edge* FileKey1=%LocalAppData%\Microsoft\Edge*\User Data\*\|Favicons This entry is totally undesirable in my opinion because it deletes all the favicons in Edge's Favorites bar. I think this was debated several months ago. Please put it in Winapp3.ini if accepted. Windows 10 x64 Pro on ASUS Maximus VIII Extreme motherboard, i7-6700k CPU,H220 X2 Liquid Cooler, 64 gbyte RipJaws DDR4 3200 RAM, Samsung 970 Pro NVMe M.2 500 gbyte SSD + Samsung 850 Pro 512 gbyte SSD, EVGA RTX 3060 Titan graphics card (Home Built System); Windows 11x64 Pro on 512 gigabyte Dell XPS 15 2-in-1 Laptop/tablet and Dell XPS 8940 PC. ASUS RT-AC88U router, 14 tbyte WD My Cloud PR2100 NAS Server, 200 Mbps cable Internet, MS Edge Chromium, MS Office 2021 (Local), Casper 11, DisplayFusion (3 Flat Panel Displays per system): Bitdefender Internet Security 2022, Malwarebytes 4, Quicken, Weather Watcher Live, ThumbsPlus 10, Sticky Password 8, WD Smartware, CyberLink PowerDVD22, MSI AfterBurner, Rainmeter, Windows Sidebar, and many more. Link to comment Share on other sites More sharing options...
APMichael Posted February 16, 2021 Share Posted February 16, 2021 4 hours ago, SMalik said: ... [Edge Stored Favicons *] ... FileKey1=%LocalAppData%\Microsoft\Edge*\User Data\*\|Favicons This entry already exists, as it does for all other Chromium-based browsers. [Edge Bookmarks Icons Extras *] LangSecRef=3006 DetectFile=%LocalAppData%\Microsoft\Edge* Warning=This will delete all the icons of your bookmarks. The icons will be rebuilt as websites are manually re-visited. FileKey1=%LocalAppData%\Microsoft\Edge*\User Data\*|Favicons However, these entries were moved to "removed entries.ini" after you reported in October 2019 that CCleaner now correctly deletes orphaned icons (from bookmarks that no longer exist). If this is no longer the case, then you should report the bug under "CCleaner Bug Reporting". Link to comment Share on other sites More sharing options...
SMalik Posted February 26, 2021 Share Posted February 26, 2021 Revised Entry Removed FileKey3=%WinDir%\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\Caches|*.*|RECURSE because this location does not exist. This is the correct location %WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Caches|*.*|RECURSE, but I think this should be excluded. [Windows Start Cache *] DetectOS=10.0| Section=Dangerous Windows Detect=HKCU\Software\Microsoft\Windows Warning=Use only in Windows Safe Mode. FileKey1=%CommonAppData%\Microsoft\Windows\Caches|*.*|RECURSE FileKey2=%LocalAppData%\Microsoft\Windows\Caches|*.*|RECURSE Link to comment Share on other sites More sharing options...
SMalik Posted February 27, 2021 Share Posted February 27, 2021 New Entries [Taskbar Favorites Statistics *] DetectOS=10.0| LangSecRef=3025 Detect=HKCU\SOFTWARE\Microsoft\Windows RegKey1=HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Taskband|FavoritesChanges [Windows Media Player *] LangSecRef=3025 Detect=HKCU\SOFTWARE\Microsoft\MediaPlayer RegKey1=HKCU\SOFTWARE\Microsoft\MediaPlayer\Preferences|MostRecentFileAddOrRemove Link to comment Share on other sites More sharing options...
APMichael Posted March 1, 2021 Share Posted March 1, 2021 Thanks for the revised and new entries. Winapp2.ini updates:https://github.com/MoscaDotTo/Winapp2/commit/0201f9a9c56a86d046e70fd5c84f8cf854a6d80dhttps://github.com/MoscaDotTo/Winapp2/commit/5c5c1a8ce81c1e0824350024a37d3f1b8e143880 Winapp3.ini update:https://github.com/MoscaDotTo/Winapp2/commit/9bceee426d96829e17486be01c9aae2a86e674d6 Link to comment Share on other sites More sharing options...
APMichael Posted March 3, 2021 Share Posted March 3, 2021 An entry for removing these empty "tw-*.tmp" folders has existed for quite some time: [System Profile Temp Folders *] Link to comment Share on other sites More sharing options...
SMalik Posted March 6, 2021 Share Posted March 6, 2021 On 03/03/2021 at 03:34, APMichael said: An entry for removing these empty "tw-*.tmp" folders has existed for quite some time: [System Profile Temp Folders *] As soon as I posted about these empty folders, I realized there is already an entry for this. I requested one of the admins to delete the post. They deleted that post to which afterwards, I noticed your response. My apologies. Link to comment Share on other sites More sharing options...
APMichael Posted March 6, 2021 Share Posted March 6, 2021 7 hours ago, SMalik said: As soon as I posted about these empty folders, I realized there is already an entry for this. I requested one of the admins to delete the post. They deleted that post to which afterwards, I noticed your response. My apologies. Thank you for your reply. Ok, got it. Never mind. Link to comment Share on other sites More sharing options...
APMichael Posted March 8, 2021 Share Posted March 8, 2021 Winapp2.ini update:https://github.com/MoscaDotTo/Winapp2/commit/30a76685265d325d9dc7c763bd2cbfa19181b755 Link to comment Share on other sites More sharing options...
Moderators Andavari Posted March 21, 2021 Moderators Share Posted March 21, 2021 Updated, added FileKey2. [ClamWin Portable Failed Updates *] LangSecRef=3024 DetectFile=%SystemDrive%\PortableApps\ClamWinPortable\ClamWinPortable.exe FileKey1=%SystemDrive%\PortableApps\ClamWinPortable\Data\db\clamav*|*.*|REMOVESELF FileKey2=%SystemDrive%\PortableApps\ClamWinPortable\Data\db\tmp.*|*.*|REMOVESELF Link to comment Share on other sites More sharing options...
APMichael Posted March 22, 2021 Share Posted March 22, 2021 Thanks for the updated entry. Winapp2.ini update:https://github.com/MoscaDotTo/Winapp2/commit/d1fe2808efbf19ff9b169e32320375b5b8d21c0c Link to comment Share on other sites More sharing options...
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now