Jump to content
CCleaner Community Forums

CSGalloway

Experienced Members
  • Content Count

    375
  • Joined

  • Last visited

Everything posted by CSGalloway

  1. You can find out what version of CCleaner you are running by opening CCLeaner and the version will appear in the upper left of the program. ============ I would recommend un-installing CCleaner first. Then restart the computer. The currnt slim version of CCleaner can be retried from: http://www.piriform....ccleaner/builds it's the last thing on the page, look for: CCleaner - Slim Installer, no toolbar 2,936 kb - ccsetup323_slim.exe
  2. Combine [sUMo Log*] and [sUMo*] to [sUMo BAKs/LOGs*] LangSecRef=3024 Detect=HKCU\Software\KC Softwares\SUMo Default=False FileKey1=%AppData%\KC Softwares\SUMo|*.log FileKey2=%AppData%\KC Softwares\SUMo|db.bak ================== Change the LangSecRef in [ACDSee 6.0 Standard Database*] [ACDSee 6.0 Standard Registry*] to be 3021 so it matches [ACDSee Pro*]
  3. I have come up with close to good entries for my BAK and TMP file posts. I'll post the ones I am not sure of at the bottom: New Entry [Google Toolbar Notifier*] LangSecRef=3022 Detect=HKCU\Software\Google\GoogleToolbarNotifier Default=False FileKey1=%ProgramFiles%\Google\GoogleToolbarNotifier|*.tmp|RECURSE [TuneUp XP*] LangSecRef=3021 DetectFile=%ProgramFiles%\TuneXP Default=False FileKey1=%ProgramFiles%\TuneXP\docs\*.bak [Windows Assembly*] LangSecRef=???? DetectFile=%WinDir%\assemply Default=False FileKey1=%WinDir%\assemply|*.tmp|Recurse [Misc Windows Tmp/Bak's *] LangSecRef=3022 <== Not sure ? DetectFile=%WinDir%\system32 Default=False FileKey1=%WinDir%\system32|*.bak FileKey2=%WinDir%\system32|*.tmp [Registry Backup Files] LangSecRef=3024 DetectFile1=%UserProfile%\..\LocalService DetectFile2=%UserProfile%\..\NetworkService Default=False Warning=This removes additional registry hive bakcup files FileKey1=%UserProfile%\..\LocalService\Local Settings\Application Data\Microsoft\Windows|UsrClass.dat.tmp FileKey2=%UserProfile%\..\NetworkService\Local Settings\Application Data\Microsoft\Windows|UsrClass.dat.tmp [File Transfer Manager] LangSecRef=3022 <== ???? DetectFile=%appdata%\Microsoft\File Transfer Manager Default=False FileKey1=%appdata%\Microsoft\File Transfer Manager|*.bak ;===================================================================== Revise Entry [secunia PSI*] LangSecRef=3021 Detect1=HKLM\SOFTWARE\Secunia\PSI Detect2=HKCU\Software\Secunia\PSI Default=False FileKey1=%ProgramFiles%\secunia\PSI|sualog.txt FileKey2=%ProgramFiles%\Secunia\PSI|psialog.txt* FileKey3=%ProgramFiles%\Secunia\PSI|*.tmp <== ADD The ones I am not sure of are: C:\Documents and Settings\All Users\Application Data\Microsoft\OFFICE\DATA\OPA11.BAK C:\WINDOWS\pchealth\helpctr\Config\Cache\Professional_32_1033.dat.bak C:\WINDOWS\system32\NtmsData\NTMSDATA.BAK Thank you.
  4. For users of Yahoo Messenger it would be nice if someone would make an winapp2.ini enry to set the chat window size and location back tpo the "just installed" state. Not sure what key it would be but at least HKCU\Software\Yahoo!\pager would be a good start.
  5. I just ran CCleaner with the least program open and then did the same DIR as above and got this: C:\Documents and Settings\All Users\Application Data\Microsoft\OFFICE\DATA\OPA11.BAK C:\Documents and Settings\Charles\Application Data\Microsoft\File Transfer Manager\ftmTransferList.txt.bak C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.tmp C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.tmp C:\Program Files\Google\GoogleToolbarNotifier\GooA32.tmp C:\Program Files\Google\GoogleToolbarNotifier\5.7.6406.1642\gthA2B.tmp C:\Program Files\Google\GoogleToolbarNotifier\5.7.6406.1642\gtnA2A.tmp C:\Program Files\Google\GoogleToolbarNotifier\5.7.6406.1642\swgA29.tmp C:\Program Files\Google\GoogleToolbarNotifier\5.7.7018.1622\gthA2E.tmp C:\Program Files\Google\GoogleToolbarNotifier\5.7.7018.1622\gtnA2D.tmp C:\Program Files\Google\GoogleToolbarNotifier\5.7.7018.1622\swgA2C.tmp C:\Program Files\Google\GoogleToolbarNotifier\5.7.7227.1100\gthA31.tmp C:\Program Files\Google\GoogleToolbarNotifier\5.7.7227.1100\gtnA30.tmp C:\Program Files\Google\GoogleToolbarNotifier\5.7.7227.1100\swgA2F.tmp C:\Program Files\Secunia\PSI\RCX3CA.tmp C:\Program Files\TuneXP\docs\hardware.html.bak C:\Program Files\TuneXP\docs\memoryfs.html.bak C:\WINDOWS\msdownld.tmp C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP2A.tmp C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP6B.tmp C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP14.tmp C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP74D.tmp C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP80.tmp C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP113A.tmp C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP229.tmp C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP349.tmp C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAPDB.tmp C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAPF21.tmp C:\WINDOWS\pchealth\helpctr\Config\Cache\Professional_32_1033.dat.bak C:\WINDOWS\system32\REN72.tmp C:\WINDOWS\system32\wuapi.dll.wusetup.139324421.bak C:\WINDOWS\system32\wuauclt.exe.wusetup.139325171.bak C:\WINDOWS\system32\wuaueng.dll.wusetup.139325937.bak C:\WINDOWS\system32\NtmsData\NTMSDATA.BAK so one can see there are some BAK files from Google... and other places that could be cleaned.
  6. re: OPA11.BAK I have Microsfot Ofice Standard Edition 2003 - not sure if this file can be removed or not. re: NTMSDATA.BAK look at http://www.google.com/search?sourceid=navclient&aq=f&oq=NTMSDATA.BAK&ie=UTF-8&rlz=1T4GGHP_enUS442US442&q=NTMSDATA.BAK&gs_upl=0l0l0l2000lllllllllll0&aqi=g-K1
  7. I search my hard drive for *.bak and *.tmp files and would like help in creating Winapp2.ini entries to remove them please. C:\Documents and Settings\All Users\Application Data\Microsoft\OFFICE\DATA\OPA11.BAK C:\Documents and Settings\Charles\Application Data\Microsoft\File Transfer Manager\ftmTransferList.txt.bak C:\Documents and Settings\Charles\Local Settings\jv16PT_temp.tmp C:\Documents and Settings\Charles\Local Settings\Temp\DIO4.tmp C:\Documents and Settings\Charles\Local Settings\Temp\DIO9.tmp C:\Documents and Settings\Charles\Local Settings\Temp\MAR1.tmp C:\Documents and Settings\Charles\Local Settings\Temp\MAR2.tmp C:\Documents and Settings\Charles\Local Settings\Temp\REG1A0.tmp C:\Documents and Settings\Charles\Local Settings\Temp\REG1A1.tmp C:\Documents and Settings\Charles\Local Settings\Temp\REG19A.tmp C:\Documents and Settings\Charles\Local Settings\Temp\REG19B.tmp C:\Documents and Settings\Charles\Local Settings\Temp\REG19C.tmp C:\Documents and Settings\Charles\Local Settings\Temp\REG19E.tmp C:\Documents and Settings\Charles\Local Settings\Temp\REG19F.tmp C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.tmp C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.tmp C:\Program Files\Google\GoogleToolbarNotifier\GooA32.tmp C:\Program Files\Google\GoogleToolbarNotifier\5.7.6406.1642\gthA2B.tmp C:\Program Files\Google\GoogleToolbarNotifier\5.7.6406.1642\gtnA2A.tmp C:\Program Files\Google\GoogleToolbarNotifier\5.7.6406.1642\swgA29.tmp C:\Program Files\Google\GoogleToolbarNotifier\5.7.7018.1622\gthA2E.tmp C:\Program Files\Google\GoogleToolbarNotifier\5.7.7018.1622\gtnA2D.tmp C:\Program Files\Google\GoogleToolbarNotifier\5.7.7018.1622\swgA2C.tmp C:\Program Files\Google\GoogleToolbarNotifier\5.7.7227.1100\gthA31.tmp C:\Program Files\Google\GoogleToolbarNotifier\5.7.7227.1100\gtnA30.tmp C:\Program Files\Google\GoogleToolbarNotifier\5.7.7227.1100\swgA2F.tmp C:\Program Files\Secunia\PSI\RCX3CA.tmp C:\Program Files\TuneXP\docs\hardware.html.bak C:\Program Files\TuneXP\docs\memoryfs.html.bak C:\Program Files\Yahoo!\Messenger\Cache\9G0IMTf7KSnOtr1pRkveNQ--.ProfileMap.dat.tmp C:\RECYCLER\S-1-5-21-1202660629-854245398-1801674531-1003\Dc1.bak C:\RECYCLER\S-1-5-21-1202660629-854245398-1801674531-1003\Dc2.bak C:\WINDOWS\msdownld.tmp C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP2A.tmp C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP6B.tmp C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP14.tmp C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP74D.tmp C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP80.tmp C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP113A.tmp C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP229.tmp C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP349.tmp C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAPDB.tmp C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAPF21.tmp C:\WINDOWS\pchealth\helpctr\Config\Cache\Professional_32_1033.dat.bak C:\WINDOWS\system32\REN72.tmp C:\WINDOWS\system32\wuapi.dll.wusetup.139324421.bak C:\WINDOWS\system32\wuauclt.exe.wusetup.139325171.bak C:\WINDOWS\system32\wuaueng.dll.wusetup.139325937.bak C:\WINDOWS\system32\NtmsData\NTMSDATA.BAK Thanks in advance
  8. The updated version works except it still shows Firefox Logs* Firefox Updates* Install Log*
  9. Wonder when the new winapp2.ini will be released? So many false detections for Mozolla / Firefox it would be nice to have the fix in the orginal...
  10. So to use this would I remove the Detect and Detectfile lines for the Mozolla/Firefox sections? ?What other SpecialDetect lines are available?
  11. Thanks Nergal. Wondered if there is another regkey that could be used to detect Firefox? As the one I have is used by HP printing online.... which I would like to lkeave aloine
  12. The current winapp2.ini now shows Mozolla/FireFox even though I don't have either installed. I exported the HKCU\Software\Mozolla key and here it is. REGEDIT4 [HKEY_CURRENT_USER\Software\Mozilla] [HKEY_CURRENT_USER\Software\Mozilla\Firefox] [HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions] "smartwebprinting@hp.com"="C:\\Program Files\\HP\\Digital Imaging\\Smart Web Printing\\MozillaAddOn3" Not sure how else CCleaner is identifing Mozilla/Firefox but willing to help track this down...
  13. Modify the entry please.... [AI Roboform Search*] LangSecRef=3022 Detect=HKCU\Software\Siber Systems Default=False RegKey1=HKCU\Software\Siber Systems\RoboForm\Query-MRU ; clears the MRU data. Will be reset when RF is restarted. FileKey1=%Documents%\My RoboForm Data\**|mru.rfo|RECURSE
  14. They are not replacement registry files so they are ok to remove.
  15. Tools -> Startup, Save to text file still uses the same name for all 4 tabs. v.3.20.1750 undr Win XP Pro sp3
  16. I just ran the compress registry part of jv16 powertools and it created the following files. Can I suggest the winapp2 entry for all of the jv16 versions also check for these and similar named files in the other folders? C:\Documents and Settings\LocalService\NTUSER.DAT.tmp C:\Documents and Settings\NetworkService\NTUSER.DAT.tmp
  17. Winapp2.ini: Is http://winapp2.com/Winapp2.ini accessiable by FTP and if so what is the address please?
  18. I currently use Windows XP Pro sp3 so a lot of your suggestions aren't available natively. Hence why I use a 3rd party wallpaper changer, desktop weather app, etc. I use Google Toolbar so it can show me related searches I like to be able to use hard to recall passwords so that is why I use Roboform. Sicne I do plan to get a new computer by Christmas 2012 - it will be either Windows 7 or maybe 8. The wallpaper changer I use now makes a list of custom image files that are wanted to rotate on a user-selected basis. How exactly does the wallpaper changer in Win 7 work? Screen shots of someone using it would be greatly appreciated! What exactly does Clfmon do - or supposed to do? And it starts automatically as part of windows - I may use it - have to do some investigating first....
  19. Because I want them to all automatically start.
  20. I have things like Yahoo Messenger and other programs opening on boot so I'd like to know if there is a way to get CCleaner to run before those programs run? Attached I have my startup.txt items. Yes HKCU:Run ctfmon.exe C:\WINDOWS\system32\ctfmon.exe Yes HKCU:Run Messenger (Yahoo!) "C:\PROGRA~1\Yahoo!\Messenger\YahooMessenger.exe" -quiet Yes HKCU:Run msnmsgr "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background Yes HKCU:Run MySpaceIM "C:\Program Files\MySpace\IM\MySpaceIM.exe" Yes HKCU:Run RoboForm "C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe" Yes HKCU:Run swg "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" Yes HKCU:Run WallPaper C:\PROGRA~1\WALLPA~1\WALLPA~1.EXE /h Yes HKLM:Run Adobe ARM "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" Yes HKLM:Run googletalk C:\Program Files\Google\Google Talk\googletalk.exe /autostart Yes HKLM:Run HotKeysCmds "C:\WINDOWS\system32\hkcmd.exe" Yes HKLM:Run HP Software Update "C:\Program Files\HP\HP Software Update\HPWuSchd2.exe" Yes HKLM:Run IgfxTray "C:\WINDOWS\system32\igfxtray.exe" Yes HKLM:Run LogitechCommunicationsManager "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe" Yes HKLM:Run LogitechQuickCamRibbon "C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide Yes HKLM:Run MSC "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey Yes HKLM:Run SoundMan "C:\WINDOWS\SOUNDMAN.EXE" Yes HKLM:Run SunJavaUpdateSched "C:\Program Files\Common Files\Java\Java Update\jusched.exe" Yes Startup Common HP Digital Imaging Monitor.lnk C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe Yes Startup Common Secunia PSI Tray.lnk C:\Program Files\Secunia\PSI\psi_tray.exe Yes Startup User ietsr.exe C:\Documents and Settings\Charles\Start Menu\Programs\Startup\ietsr.exe Yes Startup User WRAL Desktop Alert.lnk C:\Program Files\WRAL Desktop Alert\liveonline_4013133.exe startup.txt
  21. Where do I get "Trim-12.bat" from and I am trying to find out a good Detect= line instead of the DetectFile= one.
  22. This should work better. and if you recall I said I wasn't sure what the local application data should be so it matches all OS possibilities. So there is no need to get after me either. [TWC Desktop Weather*] ; From: The Weather Channel LangSecRef=3021 DetectFile=%LocalAppData%\The Weather Channel\Desktop\patch Default=False FileKey1=%LocalAppData%\The Weather Channel\Desktop\patch|*.*
  23. Please add this .... and I can't remember what the C:\D&S\username\Local Settings\Application data\ should be shortened to for all OSes. [TWC Desktop Weather*] ; From: http://www.weather.com/services/winapp.html LangSecRef=3021 DetectFile=C:\Documents and Settings\Charles\Local Settings\Application Data\The Weather Channel\Desktop\patch Default=False FileKey1=C:\Documents and Settings\Charles\Local Settings\Application Data\The Weather Channel\Desktop\patch|*.*
  24. I am using Win XP Pro sp3 and ran a difference report between MSE beiong ok, running CCleaner, and MSE not being ok. It appears as an attachment File compare: 04/07/12 05:10:49PM File 1: D:\MSE_ok.txt File 2: D:\MSE_not_ok.txt Difference: File 1, lines 3 to 2 File 2, lines 3 to 3 File 1 detail: File 2 detail: 3: C:\Documents and Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Support Difference: File 1, lines 21 to 25 File 2, lines 22 to 21 File 1 detail: 21: C:\Documents and Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\History\Results\Quick 22: C:\Documents and Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\History\Results\Resource 23: C:\Documents and Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\History\Results\Quick\{D8F0D524-A4F6-43B9-909A-6839C971D4CD} 24: C:\Documents and Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\History\Results\Resource\{94DBA5FD-A8B1-4A42-AE87-12CA86D19F91} 25: C:\Documents and Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\History\Results\Resource\{16968BCD-4803-4FCB-A6E2-44A869AEB3D5} File 2 detail: Difference: File 1, lines 30 to 30 File 2, lines 26 to 25 File 1 detail: 30: C:\Documents and Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\History\Service\DetectionHistory\14\9EABEE93-13A3-4A17-AE43-F94B6F162CD5 File 2 detail: Seems to have something with the Scans folder - not localcopy....?
  25. Yes they are in tab format but if you do "Save as text" under all 3 tabs - the default name is startup.txt - hence my suggestion. Try it yourself pcunite....
×
×
  • Create New...