Jump to content

Winapp2.ini additions


Winapp2.ini

Recommended Posts

  • Moderators
5 hours ago, siliconman01 said:

BTW is there a DetectOS=11 for Windows 11?

my guess is no until October ccleaner's release (or maybe even November's).  This is a guess with no actual basis

 

ADVICE FOR USING CCleaner'S REGISTRY INTEGRITY SECTION

DON'T JUST CLEAN EVERYTHING THAT'S CHECKED OFF.

Do your Registry Cleaning in small bits (at the very least Check-mark by Check-mark)

ALWAYS BACKUP THE ENTRY, YOU NEVER KNOW WHAT YOU'LL BREAK IF YOU DON'T.

CCLEANER, RECUVA, DEFRAGGLER AND SPECCY DOCUMENTATION CAN BE FOUND AT  https://support.piriform.com/hc/en-us and  https://www.ccleaner.com/docs

Pro users file a PRIORITY SUPPORT request at https://support.piriform.com/hc/en-us/requests/new

link to WINAPP2.INI explanation

Link to comment
Share on other sites

New entry:  [Explorer IconCachetoDelete *]

[Explorer IconCachetoDelete *]
LangSecRef=3025
Detect=HKCU\Microsoft\Windows\CurrentVersion\Explorer
FileKey1=%LocalAppData%\Microsoft\Windows\Explorer\IconCachetoDelete|*.tmp

 

Windows 10 x64 Pro on ASUS Maximus VIII Extreme motherboard, i7-6700k CPU,H220 X2 Liquid Cooler, 64 gbyte RipJaws DDR4 3200 RAM, Samsung 970 Pro NVMe M.2 500 gbyte SSD + Samsung 850 Pro 512 gbyte SSD, EVGA Nvidia GeForce 980 Titan card (Home Built System);  Windows 11x64 Pro on 512 gigabyte Dell XPS 15 2-in-1 Laptop/tablet.  ASUS RT-AC88U router, 14 tbyte WD My Cloud PR2100 NAS Server, 200 Mbps cable Internet, MS Edge Chromium, MS Office 2021 (Local), Casper 11, DisplayFusion (3 Flat Panel Displays per system):   Kaspersky Internet Security 2021, Malwarebytes 4, Quicken, Weather Watcher Live, ThumbsPlus 10, Sticky Password 8, WD Smartware, CyberLink PowerDVD21, MSI Burner, Rainmeter, Windows Sidebar, WD Smartware and many more.

Link to comment
Share on other sites

41 minutes ago, APMichael said:

Perhaps this can also be added to the existing [Icon Cache *] entry?

[Icon Cache *] requires Explorer to be restarted.  The [Explorer IconCachetoDelete *] does not.

 

Edited by siliconman01
Changed response

Windows 10 x64 Pro on ASUS Maximus VIII Extreme motherboard, i7-6700k CPU,H220 X2 Liquid Cooler, 64 gbyte RipJaws DDR4 3200 RAM, Samsung 970 Pro NVMe M.2 500 gbyte SSD + Samsung 850 Pro 512 gbyte SSD, EVGA Nvidia GeForce 980 Titan card (Home Built System);  Windows 11x64 Pro on 512 gigabyte Dell XPS 15 2-in-1 Laptop/tablet.  ASUS RT-AC88U router, 14 tbyte WD My Cloud PR2100 NAS Server, 200 Mbps cable Internet, MS Edge Chromium, MS Office 2021 (Local), Casper 11, DisplayFusion (3 Flat Panel Displays per system):   Kaspersky Internet Security 2021, Malwarebytes 4, Quicken, Weather Watcher Live, ThumbsPlus 10, Sticky Password 8, WD Smartware, CyberLink PowerDVD21, MSI Burner, Rainmeter, Windows Sidebar, WD Smartware and many more.

Link to comment
Share on other sites

  • Moderators
On 04/10/2021 at 18:23, SMalik said:

New Entry

[Stored Notification Settings *]
LangSecRef=3025
Detect=HKCU\SOFTWARE\Microsoft\Windows
RegKey1=HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Notifications\Settings

[Stored Notification Settings *] cleaner from this post causes issues and likely needs a warning comment inside it, otherwise people will likely have a very difficult time determining why all of a sudden 3rd party privacy tools such as O&O ShutUp10 for example that recommend disabling Lock Screen notifications in Windows 10 are all of a sudden indicating settings changes after that cleaner is used.

Edit:
So in other words it conflicts with what a user may intend to do with another tool by deleting the setting.

Edited by Andavari
Link to comment
Share on other sites

  • Moderators
On 09/10/2021 at 03:24, siliconman01 said:

New entry:  [Explorer IconCachetoDelete *]

[Explorer IconCachetoDelete *]
LangSecRef=3025
Detect=HKCU\Microsoft\Windows\CurrentVersion\Explorer
FileKey1=%LocalAppData%\Microsoft\Windows\Explorer\IconCachetoDelete|*.tmp

 

Another one that inadvertently causes an issue is [Explorer IconCachetoDelete *] which eventually causes custom folder view style settings such as using Tiles, etc., to be deleted, so when opening a folder it goes back to the default view style.

Link to comment
Share on other sites

  • 3 weeks later...

Modified entry:  [Quicken *]

Added FileKey11:  FileKey11=%CommonAppData%\Quicken\Inet\QWWebData\Session Storage|Log.old

[Quicken *]
LangSecRef=3021
Detect1=HKLM\Software\Intuit\Quicken
Detect2=HKLM\Software\Quicken
FileKey1=%AppData%\Intuit\Quicken\Log|*.txt;*.log
FileKey2=%AppData%\Quicken\Log|*.txt;*.log
FileKey3=%CommonAppData%\Intuit\Quicken\Log|*.log
FileKey4=%CommonAppData%\Intuit\Quicken\Log\installer|*.*|REMOVESELF
FileKey5=%CommonAppData%\Intuit\SendError|*.log
FileKey6=%CommonAppData%\Quicken\Inet\QWWebData|Log.old
FileKey7=%CommonAppData%\Quicken\Inet\QWWebData\Cache|*.*
FileKey8=%CommonAppData%\Quicken\Inet\QWWebData\File System\Origins|Log.old
FileKey9=%CommonAppData%\Quicken\Inet\QWWebData\IndexedDB\*|Log.old
FileKey10=%CommonAppData%\Quicken\Inet\QWWebData\Local Storage\leveldb|Log.old;*tmp
FileKey11=%CommonAppData%\Quicken\Inet\QWWebData\Session Storage|Log.old
FileKey12=%CommonAppData%\Quicken\Log|*.log
FileKey13=%CommonAppData%\Quicken\Log\installer|*.*|REMOVESELF
FileKey14=%CommonAppData%\Quicken\SendError|*.log
FileKey15=%LocalAppData%\Intuit\Common\Authorization\V1\Logs|*.txt
FileKey16=%LocalAppData%\Quicken\Common\Authorization\V1\Logs|*.txt
FileKey17=%ProgramFiles%\Quicken\PDFDrv|install.log;InstallPDFConverter.log

 

Windows 10 x64 Pro on ASUS Maximus VIII Extreme motherboard, i7-6700k CPU,H220 X2 Liquid Cooler, 64 gbyte RipJaws DDR4 3200 RAM, Samsung 970 Pro NVMe M.2 500 gbyte SSD + Samsung 850 Pro 512 gbyte SSD, EVGA Nvidia GeForce 980 Titan card (Home Built System);  Windows 11x64 Pro on 512 gigabyte Dell XPS 15 2-in-1 Laptop/tablet.  ASUS RT-AC88U router, 14 tbyte WD My Cloud PR2100 NAS Server, 200 Mbps cable Internet, MS Edge Chromium, MS Office 2021 (Local), Casper 11, DisplayFusion (3 Flat Panel Displays per system):   Kaspersky Internet Security 2021, Malwarebytes 4, Quicken, Weather Watcher Live, ThumbsPlus 10, Sticky Password 8, WD Smartware, CyberLink PowerDVD21, MSI Burner, Rainmeter, Windows Sidebar, WD Smartware and many more.

Link to comment
Share on other sites

Modified Entry:  [Windows Client WebExperience *]

Modified FileKey3:  FileKey3=%LocalAppData%\Packages\MicrosoftWindows.Client.WebExperience_*\LocalState\EBWebview\*\*\*|*.old

[Windows Client WebExperience *]
LangSecRef=3031
Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy
FileKey1=%LocalAppData%\Packages\MicrosoftWindows.Client.WebExperience_*\LocalState\EBWebview\*|*.old
FileKey2=%LocalAppData%\Packages\MicrosoftWindows.Client.WebExperience_*\LocalState\EBWebview\*\*|*.old
FileKey3=%LocalAppData%\Packages\MicrosoftWindows.Client.WebExperience_*\LocalState\EBWebview\*\*\*|*.old

 

Windows 10 x64 Pro on ASUS Maximus VIII Extreme motherboard, i7-6700k CPU,H220 X2 Liquid Cooler, 64 gbyte RipJaws DDR4 3200 RAM, Samsung 970 Pro NVMe M.2 500 gbyte SSD + Samsung 850 Pro 512 gbyte SSD, EVGA Nvidia GeForce 980 Titan card (Home Built System);  Windows 11x64 Pro on 512 gigabyte Dell XPS 15 2-in-1 Laptop/tablet.  ASUS RT-AC88U router, 14 tbyte WD My Cloud PR2100 NAS Server, 200 Mbps cable Internet, MS Edge Chromium, MS Office 2021 (Local), Casper 11, DisplayFusion (3 Flat Panel Displays per system):   Kaspersky Internet Security 2021, Malwarebytes 4, Quicken, Weather Watcher Live, ThumbsPlus 10, Sticky Password 8, WD Smartware, CyberLink PowerDVD21, MSI Burner, Rainmeter, Windows Sidebar, WD Smartware and many more.

Link to comment
Share on other sites

  • Moderators
7 hours ago, siliconman01 said:

Modified Entry:  [Windows Client WebExperience *]

I can't test it I don't have Win11 however... ...Wouldn't just a single filekey work using |RECURSE for *.old instead of having three? Looks like it would work simplifying it.

Link to comment
Share on other sites

12 hours ago, Andavari said:

I can't test it I don't have Win11 however... ...Wouldn't just a single filekey work using |RECURSE for *.old instead of having three? Looks like it would work simplifying it.

It doesn't work for me (I thought it should as well).  However, these *.old files are located in multiple subfolders of EBWebView.  With only one *, it finds 1 log.old; with two *, it finds 10 log.old; with three *, it finds 18 Log.old. 

Windows 10 x64 Pro on ASUS Maximus VIII Extreme motherboard, i7-6700k CPU,H220 X2 Liquid Cooler, 64 gbyte RipJaws DDR4 3200 RAM, Samsung 970 Pro NVMe M.2 500 gbyte SSD + Samsung 850 Pro 512 gbyte SSD, EVGA Nvidia GeForce 980 Titan card (Home Built System);  Windows 11x64 Pro on 512 gigabyte Dell XPS 15 2-in-1 Laptop/tablet.  ASUS RT-AC88U router, 14 tbyte WD My Cloud PR2100 NAS Server, 200 Mbps cable Internet, MS Edge Chromium, MS Office 2021 (Local), Casper 11, DisplayFusion (3 Flat Panel Displays per system):   Kaspersky Internet Security 2021, Malwarebytes 4, Quicken, Weather Watcher Live, ThumbsPlus 10, Sticky Password 8, WD Smartware, CyberLink PowerDVD21, MSI Burner, Rainmeter, Windows Sidebar, WD Smartware and many more.

Link to comment
Share on other sites

Modified entry:  [Edge Logs *]

Added FileKey4, FileKey5, FileKey6

[Edge Logs *]
LangSecRef=3006
DetectFile=%LocalAppData%\Microsoft\Edge*
FileKey1=%LocalAppData%\Microsoft\Edge*\Application|debug.log
FileKey2=%LocalAppData%\Microsoft\Edge*\User Data\*|LOG;LOG.old|RECURSE
FileKey3=%ProgramFiles%\Microsoft\Edge*\Application|debug.log
FileKey4=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Edge\*\*|Log.Old
FileKey5=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Edge\*\*\*|Log.Old
FileKey6=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Edge\*\*\*\*|Log.Old

 

Windows 10 x64 Pro on ASUS Maximus VIII Extreme motherboard, i7-6700k CPU,H220 X2 Liquid Cooler, 64 gbyte RipJaws DDR4 3200 RAM, Samsung 970 Pro NVMe M.2 500 gbyte SSD + Samsung 850 Pro 512 gbyte SSD, EVGA Nvidia GeForce 980 Titan card (Home Built System);  Windows 11x64 Pro on 512 gigabyte Dell XPS 15 2-in-1 Laptop/tablet.  ASUS RT-AC88U router, 14 tbyte WD My Cloud PR2100 NAS Server, 200 Mbps cable Internet, MS Edge Chromium, MS Office 2021 (Local), Casper 11, DisplayFusion (3 Flat Panel Displays per system):   Kaspersky Internet Security 2021, Malwarebytes 4, Quicken, Weather Watcher Live, ThumbsPlus 10, Sticky Password 8, WD Smartware, CyberLink PowerDVD21, MSI Burner, Rainmeter, Windows Sidebar, WD Smartware and many more.

Link to comment
Share on other sites

6 hours ago, siliconman01 said:

It doesn't work for me (I thought it should as well). ...

Strange, because for me |RECURSE works as expected.

Your entry:

Quote

Analysis Complete - (0.316 seconds)
------------------------------------------------------------------------------------------
3,39 KB to be removed. (Approximate size)
------------------------------------------------------------------------------------------

Details of files to be deleted (Note: No files have been deleted yet)
------------------------------------------------------------------------------------------
Windows Store - Windows Client WebExperience *    4 KB    17 files    
------------------------------------------------------------------------------------------
...MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebview\Default\LOG.old    0 KB
...MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebview\Default\AutofillStrikeDatabase\LOG.old    0 KB
...MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebview\Default\BudgetDatabase\LOG.old    0 KB
...MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebview\Default\data_reduction_proxy_leveldb\LOG.old    1 KB
...MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebview\Default\Extension State\LOG.old    1 KB
...MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebview\Default\optimization_guide_hint_cache_store\LOG.old    0 KB
...MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebview\Default\optimization_guide_model_and_features_store\LOG.old    0 KB
...MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebview\Default\Session Storage\LOG.old    1 KB
...MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebview\Default\shared_proto_db\LOG.old    1 KB
...MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebview\Default\Site Characteristics Database\LOG.old    1 KB
...MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebview\Default\Download Service\EntryDB\LOG.old    0 KB
...MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebview\Default\Feature Engagement Tracker\AvailabilityDB\LOG.old    0 KB
...MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebview\Default\Feature Engagement Tracker\EventDB\LOG.old    0 KB
...MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebview\Default\Local Storage\leveldb\LOG.old    1 KB
...MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebview\Default\Service Worker\Database\LOG.old    1 KB
...MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebview\Default\shared_proto_db\metadata\LOG.old    1 KB
...MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebview\Default\Sync Data\LevelDB\LOG.old    1 KB

Entry with |RECURSE:

Quote

Analysis Complete - (0.059 seconds)
------------------------------------------------------------------------------------------
3,39 KB to be removed. (Approximate size)
------------------------------------------------------------------------------------------

Details of files to be deleted (Note: No files have been deleted yet)
------------------------------------------------------------------------------------------
Windows Store - Windows Client WebExperience *    4 KB    17 files    
------------------------------------------------------------------------------------------
...MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebview\Default\LOG.old    0 KB
...MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebview\Default\AutofillStrikeDatabase\LOG.old    0 KB
...MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebview\Default\BudgetDatabase\LOG.old    0 KB
...MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebview\Default\data_reduction_proxy_leveldb\LOG.old    1 KB
...MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebview\Default\Download Service\EntryDB\LOG.old    0 KB
...MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebview\Default\Extension State\LOG.old    1 KB
...MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebview\Default\Feature Engagement Tracker\AvailabilityDB\LOG.old    0 KB
...MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebview\Default\Feature Engagement Tracker\EventDB\LOG.old    0 KB
...MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebview\Default\Local Storage\leveldb\LOG.old    1 KB
...MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebview\Default\optimization_guide_hint_cache_store\LOG.old    0 KB
...MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebview\Default\optimization_guide_model_and_features_store\LOG.old    0 KB
...MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebview\Default\Service Worker\Database\LOG.old    1 KB
...MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebview\Default\Session Storage\LOG.old    1 KB
...MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebview\Default\shared_proto_db\LOG.old    1 KB
...MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebview\Default\shared_proto_db\metadata\LOG.old    1 KB
...MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebview\Default\Site Characteristics Database\LOG.old    1 KB
...MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebview\Default\Sync Data\LevelDB\LOG.old    1 KB

Identical result. Maybe files were still locked during your first attempts?

[Windows Client WebExperience *]
LangSecRef=3031
Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy
FileKey1=%LocalAppData%\Packages\MicrosoftWindows.Client.WebExperience_*\LocalState\EBWebview\*|*.old|RECURSE

 

Link to comment
Share on other sites

1 hour ago, APMichael said:

Strange, because for me |RECURSE works as expected.

Your entry:

Entry with |RECURSE:

Identical result. Maybe files were still locked during your first attempts?

[Windows Client WebExperience *]
LangSecRef=3031
Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy
FileKey1=%LocalAppData%\Packages\MicrosoftWindows.Client.WebExperience_*\LocalState\EBWebview\*|*.old|RECURSE

 

AH Ha, I stupidly left off the |RECURSE.  Thanks APM for setting me straight. 🙃 Here are the corrected entries:

[Edge Logs *]
LangSecRef=3006
DetectFile=%LocalAppData%\Microsoft\Edge*
FileKey1=%LocalAppData%\Microsoft\Edge*\Application|debug.log
FileKey2=%LocalAppData%\Microsoft\Edge*\User Data\*|LOG;LOG.old|RECURSE
FileKey3=%ProgramFiles%\Microsoft\Edge*\Application|debug.log
FileKey4=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\Edge\*\*|Log.Old|RECURSE
[Windows Client WebExperience *]
LangSecRef=3031
Detect=HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\SystemAppData\MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy
FileKey1=%LocalAppData%\Packages\MicrosoftWindows.Client.WebExperience_*\LocalState\EBWebview\*|*.old|RECURSE

 

Windows 10 x64 Pro on ASUS Maximus VIII Extreme motherboard, i7-6700k CPU,H220 X2 Liquid Cooler, 64 gbyte RipJaws DDR4 3200 RAM, Samsung 970 Pro NVMe M.2 500 gbyte SSD + Samsung 850 Pro 512 gbyte SSD, EVGA Nvidia GeForce 980 Titan card (Home Built System);  Windows 11x64 Pro on 512 gigabyte Dell XPS 15 2-in-1 Laptop/tablet.  ASUS RT-AC88U router, 14 tbyte WD My Cloud PR2100 NAS Server, 200 Mbps cable Internet, MS Edge Chromium, MS Office 2021 (Local), Casper 11, DisplayFusion (3 Flat Panel Displays per system):   Kaspersky Internet Security 2021, Malwarebytes 4, Quicken, Weather Watcher Live, ThumbsPlus 10, Sticky Password 8, WD Smartware, CyberLink PowerDVD21, MSI Burner, Rainmeter, Windows Sidebar, WD Smartware and many more.

Link to comment
Share on other sites

  • 2 weeks later...

There's been a few winapp2ool updates recently, just a reminder that until I get a new code signing certificate in my current name, builds will be unsigned and may cause false positives with your antivirus software because of this. Hopefully by mid December this should be resolved.

Link to comment
Share on other sites

10 hours ago, Winapp2.ini said:

There's been a few winapp2ool updates recently, just a reminder that until I get a new code signing certificate in my current name, builds will be unsigned and may cause false positives with your antivirus software because of this. Hopefully by mid December this should be resolved.

Thanks for the updates to winapp2ool.exe.  Haven't encountered any problems with NIS 2021.  Is there a new winapp2.ini being issued soon??

Windows 10 x64 Pro on ASUS Maximus VIII Extreme motherboard, i7-6700k CPU,H220 X2 Liquid Cooler, 64 gbyte RipJaws DDR4 3200 RAM, Samsung 970 Pro NVMe M.2 500 gbyte SSD + Samsung 850 Pro 512 gbyte SSD, EVGA Nvidia GeForce 980 Titan card (Home Built System);  Windows 11x64 Pro on 512 gigabyte Dell XPS 15 2-in-1 Laptop/tablet.  ASUS RT-AC88U router, 14 tbyte WD My Cloud PR2100 NAS Server, 200 Mbps cable Internet, MS Edge Chromium, MS Office 2021 (Local), Casper 11, DisplayFusion (3 Flat Panel Displays per system):   Kaspersky Internet Security 2021, Malwarebytes 4, Quicken, Weather Watcher Live, ThumbsPlus 10, Sticky Password 8, WD Smartware, CyberLink PowerDVD21, MSI Burner, Rainmeter, Windows Sidebar, WD Smartware and many more.

Link to comment
Share on other sites

  • 2 weeks later...

New Entry

[Foxit PDF Editor *]
LangSecRef=3021
Detect=HKCU\SOFTWARE\Foxit Software\Foxit PDF Editor 11.0
FileKey1=%LocalLowAppData%\Foxit\Search|*.*|RECURSE
FileKey2=%AppData%\Foxit Software\Addon\Foxit PDF Editor\Install|*.*|RECURSE
FileKey3=%AppData%\Foxit Software\Foxit PDF Editor\Cache|*.*|RECURSE
FileKey4=%AppData%\Foxit Software\Foxit PDF Editor\FormFiller|AutoComplete.ds
FileKey5=%AppData%\Foxit Software\Foxit PDF Editor\StartPage\*\Start\en-US|index.html
FileKey6=%AppData%\Foxit Software\RMS|FXRMS_Log.txt
RegKey1=HKCU\SOFTWARE\Foxit Software\Foxit PDF Editor 11.0\CommentPanel\Filter
RegKey2=HKCU\Software\Foxit Software\Foxit PDF Editor 11.0\Foxit PhantomPDF Advanced Editor\Recent File List
RegKey3=HKCU\Software\Foxit Software\Foxit PDF Editor 11.0\MRU\File MRU
RegKey4=HKCU\Software\Foxit Software\Foxit PDF Editor 11.0\MRU\Place MRU
RegKey5=HKCU\Software\Foxit Software\Foxit PDF Editor 11.0\plugins\JSPlugins
RegKey6=HKCU\Software\Foxit Software\Foxit PDF Editor 11.0\Preferences\History

Link to comment
Share on other sites

Revised Entry

Added: Detect1 and related FileKeys

[Wondershare UniConverter *]
LangSecRef=3023
Detect=HKLM\SOFTWARE\Wondershare\Wondershare UniConverter
Detect1=HKLM\SOFTWARE\Wondershare\Wondershare UniConverter 13
FileKey1=%CommonAppData%\Wondershare\ProductFeatures\*Logs|*.*|RECURSE
FileKey2=%CommonAppData%\Wondershare\UniConverter\DataTrack|tmp;*.bak;*.log
FileKey3=%CommonAppData%\Wondershare\UniConverter\TempThumbDir|*.*|RECURSE
FileKey4=%CommonAppData%\Wondershare\WAF\ProductFeatures\*Logs|*.*|RECURSE
FileKey5=%CommonAppData%\Wondershare\UniConverter 13\DataTrack|tmp;*.bak;*.log
FileKey6=%CommonAppData%\Wondershare\UniConverter 13\TempThumbDir|*.*|RECURSE
FileKey7=%CommonAppData%\Wondershare\WAF\ProductFeatures\*Logs|*.*|RECURSE
FileKey8=%ProgramFiles%\Wondershare\UniConverter\Log|*.*|RECURSE
FileKey9=%ProgramFiles%\Wondershare\Wondershare UniConverter 13 for Windows\Log|*.*|RECURSE
FileKey10=%Public%\Documents\Wondershare|*.*|REMOVESELF
FileKey11=%SystemDrive%|logWSVCUUpdateHelper.log
FileKey12=%SystemDrive%\Wondershare UniConverter\Downloaded\temp|*.*|REMOVESELF
FileKey13=%UserProfile%\.cache|*.*|REMOVESELF

Link to comment
Share on other sites

3 hours ago, SMalik said:

New Entry

[Foxit PDF Editor *]
 

[Foxit PDF Editor *]
LangSecRef=3021
Detect=HKCU\SOFTWARE\Foxit Software\Foxit PDF Editor 11.0
FileKey1=%AppData%\Foxit Software\Addon\Foxit PDF Editor\Install|*.*|RECURSE
FileKey2=%AppData%\Foxit Software\Foxit PDF Editor\Cache|*.*|RECURSE
FileKey3=%AppData%\Foxit Software\Foxit PDF Editor\FormFiller|AutoComplete.ds
FileKey4=%AppData%\Foxit Software\Foxit PDF Editor\StartPage\*\Start\en-US|index.html
FileKey5=%AppData%\Foxit Software\RMS|FXRMS_Log.txt
FileKey6=%CommonAppData%\Foxit Software\Foxit PDF Editor\Foxit Service\Log|*.*|RECURSE
FileKey7=%CommonAppData%\Foxit Software\Foxit PDF Editor\FoxitSensor\Log|*.*|RECURSE
FileKey8=%LocalLowAppData%\Foxit\Search|*.*|RECURSE
RegKey1=HKCU\SOFTWARE\Foxit Software\Foxit PDF Editor 11.0\CommentPanel\Filter
RegKey2=HKCU\Software\Foxit Software\Foxit PDF Editor 11.0\MRU\File MRU
RegKey3=HKCU\Software\Foxit Software\Foxit PDF Editor 11.0\MRU\Place MRU
RegKey4=HKCU\Software\Foxit Software\Foxit PDF Editor 11.0\plugins\JSPlugins
RegKey5=HKCU\Software\Foxit Software\Foxit PDF Editor 11.0\Preferences\History

Link to comment
Share on other sites

Revised entry:   [Samsung Magician *]

Added FileKey1 and FileKey2

[Samsung Magician *]
LangSecRef=3024
Detect=HKLM\Software\Samsung Magician
FileKey1=%AppData%\Samsung Magician\Local Storage\leveldb|*.old
FileKey2=%AppData%\Samsung Magician\Session Storage|*.old
FileKey3=%CommonAppData%\Samsung\Backup|*.exe
FileKey4=%CommonAppData%\Samsung\Samsung Magician|*.exe|RECURSE
FileKey5=%CommonAppData%\Samsung\Samsung Magician\PB|*.txt
FileKey6=%ProgramFiles%\Samsung Magician\Logs|*.*
FileKey7=%ProgramFiles%\Samsung\Samsung Magician\Log*|*.*
FileKey8=%SystemDrive%\MagicianPerf*|*.*|REMOVESELF
RegKey1=HKCU\Software\Local AppWizard-Generated Applications\SamsungMagician

 

Windows 10 x64 Pro on ASUS Maximus VIII Extreme motherboard, i7-6700k CPU,H220 X2 Liquid Cooler, 64 gbyte RipJaws DDR4 3200 RAM, Samsung 970 Pro NVMe M.2 500 gbyte SSD + Samsung 850 Pro 512 gbyte SSD, EVGA Nvidia GeForce 980 Titan card (Home Built System);  Windows 11x64 Pro on 512 gigabyte Dell XPS 15 2-in-1 Laptop/tablet.  ASUS RT-AC88U router, 14 tbyte WD My Cloud PR2100 NAS Server, 200 Mbps cable Internet, MS Edge Chromium, MS Office 2021 (Local), Casper 11, DisplayFusion (3 Flat Panel Displays per system):   Kaspersky Internet Security 2021, Malwarebytes 4, Quicken, Weather Watcher Live, ThumbsPlus 10, Sticky Password 8, WD Smartware, CyberLink PowerDVD21, MSI Burner, Rainmeter, Windows Sidebar, WD Smartware and many more.

Link to comment
Share on other sites

On 13/11/2021 at 16:49, Winapp2.ini said:

Hopefully by mid December this should be resolved.

Encountered a setback in updating my documentation to reflect my new name which will delay things by at least several weeks. I will resume signing builds as soon as I am able.

Link to comment
Share on other sites

New entry:  [RivetNetworks Logs *]

[RivetNetworks Logs *]
LangSecRef=3024
Detect=HKLM\Software\RivetNetworks
FileKey1=%CommonAppData%\RivetNetworks\Killer|*.log
FileKey2=%WinDir%\System32\drivers\RivetNetworks\Killer|*.log

Revised entry:  [MS OneDrive *]

Added FileKey5

[MS OneDrive *]
LangSecRef=3021
Detect=HKCU\Software\Microsoft\OneDrive
FileKey1=%LocalAppData%\Microsoft\OneDrive\logs|*.*|RECURSE
FileKey2=%LocalAppData%\Microsoft\OneDrive\setup\logs|*.*|RECURSE
FileKey3=%LocalAppData%\Microsoft\Windows\OneDrive\logs|*.*|RECURSE
FileKey4=%LocalAppData%\OneDrive\cache|*.*|RECURSE
FileKey5=%ProgramFiles%\Microsoft OneDrive\Setup\Logs|*.*
FileKey6=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\OneDrive\logs|*.*|RECURSE
FileKey7=%WinDir%\System32\config\systemprofile\AppData\Local\Microsoft\OneDrive\setup\logs|*.*|RECURSE
FileKey8=%WinDir%\System32\LogFiles\CloudFiles|*.*|RECURSE
FileKey9=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\OneDrive\logs|*.*|RECURSE
FileKey10=%WinDir%\SysWOW64\config\systemprofile\AppData\Local\Microsoft\OneDrive\setup\logs|*.*|RECURSE

 

Windows 10 x64 Pro on ASUS Maximus VIII Extreme motherboard, i7-6700k CPU,H220 X2 Liquid Cooler, 64 gbyte RipJaws DDR4 3200 RAM, Samsung 970 Pro NVMe M.2 500 gbyte SSD + Samsung 850 Pro 512 gbyte SSD, EVGA Nvidia GeForce 980 Titan card (Home Built System);  Windows 11x64 Pro on 512 gigabyte Dell XPS 15 2-in-1 Laptop/tablet.  ASUS RT-AC88U router, 14 tbyte WD My Cloud PR2100 NAS Server, 200 Mbps cable Internet, MS Edge Chromium, MS Office 2021 (Local), Casper 11, DisplayFusion (3 Flat Panel Displays per system):   Kaspersky Internet Security 2021, Malwarebytes 4, Quicken, Weather Watcher Live, ThumbsPlus 10, Sticky Password 8, WD Smartware, CyberLink PowerDVD21, MSI Burner, Rainmeter, Windows Sidebar, WD Smartware and many more.

Link to comment
Share on other sites

Modified entry:  [Snagit *]

Added RegKey48-54 for new Snagit version 22


[Snagit *]
LangSecRef=3021
Detect=HKCU\Software\TechSmith\Snagit
FileKey1=%CommonAppData%\TechSmith\Uploader|*.log
FileKey2=%Documents%|SnagitDebug.log
FileKey3=%LocalAppData%\TechSmith\Logs|*.log
FileKey4=%LocalAppData%\TechSmith\Snagit|Tray.bin
FileKey5=%LocalAppData%\TechSmith\Snagit\*\NativeCrashReporting\Reports|*.dmp|RECURSE
FileKey6=%LocalAppData%\TechSmith\Snagit\CrashDumps|*.*|RECURSE
FileKey7=%LocalAppData%\TechSmith\Snagit\DataStore\AppIcons|*.ico
FileKey8=%LocalAppData%\TechSmith\Snagit\DataStore\WebSiteIcons|*.ico
FileKey9=%LocalAppData%\TechSmith\Snagit\Thumbnails|*.*|RECURSE
FileKey10=%LocalAppData%\TechSmith\Snagit\TrackerbirdFiles|*.log;*.logtmp
FileKey11=%Public%\TechSmith\Snagit\License|*.log
RegKey1=HKCU\Software\TechSmith\Snagit\9|StampCustomFolder
RegKey2=HKCU\Software\TechSmith\Snagit\10|StampCustomFolder
RegKey3=HKCU\Software\TechSmith\Snagit\11|CaptureCount
RegKey4=HKCU\Software\TechSmith\Snagit\11|CaptureOpenCount
RegKey5=HKCU\Software\TechSmith\Snagit\11|OutputDirLastUsed
RegKey6=HKCU\Software\TechSmith\Snagit\11|VidOutputDirLastUsed
RegKey7=HKCU\Software\TechSmith\Snagit\11\SnagItEditor\Tray|Thumbnailsize
RegKey8=HKCU\Software\TechSmith\Snagit\12|CaptureCount
RegKey9=HKCU\Software\TechSmith\Snagit\12|CaptureOpenCount
RegKey10=HKCU\Software\TechSmith\Snagit\12|OutputDirLastUsed
RegKey11=HKCU\Software\TechSmith\Snagit\12|VidOutputDirLastUsed
RegKey12=HKCU\Software\TechSmith\Snagit\12\SnagItEditor\Tray|Thumbnailsize
RegKey13=HKCU\Software\TechSmith\Snagit\13|CaptureCount
RegKey14=HKCU\Software\TechSmith\Snagit\13|CaptureOpenCount
RegKey15=HKCU\Software\TechSmith\Snagit\13|OutputDirLastUsed
RegKey16=HKCU\Software\TechSmith\Snagit\13|VidOutputDirLastUsed
RegKey17=HKCU\Software\TechSmith\Snagit\13\Recent Captures
RegKey18=HKCU\Software\TechSmith\Snagit\13\SnagitEditor\Recent File List
RegKey19=HKCU\Software\TechSmith\Snagit\13\SnagItEditor\Tray|Thumbnailsize
RegKey20=HKCU\Software\TechSmith\Snagit\18|CaptureCount
RegKey21=HKCU\Software\TechSmith\Snagit\18|CaptureOpenCount
RegKey22=HKCU\Software\TechSmith\Snagit\18|OutputDirLastUsed
RegKey23=HKCU\Software\TechSmith\Snagit\18|VidOutputDirLastUsed
RegKey24=HKCU\Software\TechSmith\Snagit\18\Recent Captures
RegKey25=HKCU\Software\TechSmith\Snagit\18\SnagitEditor\Recent File List
RegKey26=HKCU\Software\TechSmith\Snagit\18\SnagItEditor\Tray|Thumbnailsize
RegKey27=HKCU\Software\TechSmith\Snagit\19|CaptureCount
RegKey28=HKCU\Software\TechSmith\Snagit\19|CaptureOpenCount
RegKey29=HKCU\Software\TechSmith\Snagit\19|OutputDirLastUsed
RegKey30=HKCU\Software\TechSmith\Snagit\19|VidOutputDirLastUsed
RegKey31=HKCU\Software\TechSmith\Snagit\19\Recent Captures
RegKey32=HKCU\Software\TechSmith\Snagit\19\SnagitEditor\Recent File List
RegKey33=HKCU\Software\TechSmith\Snagit\19\SnagItEditor\Tray|Thumbnailsize
RegKey34=HKCU\Software\TechSmith\Snagit\20|CaptureCount
RegKey35=HKCU\Software\TechSmith\Snagit\20|CaptureOpenCount
RegKey36=HKCU\Software\TechSmith\Snagit\20|OutputDirLastUsed
RegKey37=HKCU\Software\TechSmith\Snagit\20|VidOutputDirLastUsed
RegKey38=HKCU\Software\TechSmith\Snagit\20\Recent Captures
RegKey39=HKCU\Software\TechSmith\Snagit\20\SnagitEditor\Recent File List
RegKey40=HKCU\Software\TechSmith\Snagit\20\SnagItEditor\Tray|Thumbnailsize
RegKey41=HKCU\Software\TechSmith\Snagit\21|CaptureCount
RegKey42=HKCU\Software\TechSmith\Snagit\21|CaptureOpenCount
RegKey43=HKCU\Software\TechSmith\Snagit\21|OutputDirLastUsed
RegKey44=HKCU\Software\TechSmith\Snagit\21|VidOutputDirLastUsed
RegKey45=HKCU\Software\TechSmith\Snagit\21\Recent Captures
RegKey46=HKCU\Software\TechSmith\Snagit\21\SnagitEditor\Recent File List
RegKey47=HKCU\Software\TechSmith\Snagit\21\SnagItEditor\Tray|Thumbnailsize
RegKey48=HKCU\Software\TechSmith\Snagit\22|CaptureCount
RegKey49=HKCU\Software\TechSmith\Snagit\22|CaptureOpenCount
RegKey50=HKCU\Software\TechSmith\Snagit\22|OutputDirLastUsed
RegKey51=HKCU\Software\TechSmith\Snagit\22|VidOutputDirLastUsed
RegKey52=HKCU\Software\TechSmith\Snagit\22\Recent Captures
RegKey53=HKCU\Software\TechSmith\Snagit\22\SnagitEditor\Recent File List
RegKey54=HKCU\Software\TechSmith\Snagit\22\SnagItEditor\Tray|Thumbnailsize

 

Windows 10 x64 Pro on ASUS Maximus VIII Extreme motherboard, i7-6700k CPU,H220 X2 Liquid Cooler, 64 gbyte RipJaws DDR4 3200 RAM, Samsung 970 Pro NVMe M.2 500 gbyte SSD + Samsung 850 Pro 512 gbyte SSD, EVGA Nvidia GeForce 980 Titan card (Home Built System);  Windows 11x64 Pro on 512 gigabyte Dell XPS 15 2-in-1 Laptop/tablet.  ASUS RT-AC88U router, 14 tbyte WD My Cloud PR2100 NAS Server, 200 Mbps cable Internet, MS Edge Chromium, MS Office 2021 (Local), Casper 11, DisplayFusion (3 Flat Panel Displays per system):   Kaspersky Internet Security 2021, Malwarebytes 4, Quicken, Weather Watcher Live, ThumbsPlus 10, Sticky Password 8, WD Smartware, CyberLink PowerDVD21, MSI Burner, Rainmeter, Windows Sidebar, WD Smartware and many more.

Link to comment
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
×
×
  • Create New...

Important Information

By using this site, you agree to our Terms of Use.