Again I've checked the app Drago Portable, which I've made portable. Regarding some entries in the registry I received the following result with Regshot:
HKLM\SOFTWARE\Cygwin HKLM\SOFTWARE\Cygwin\Installations HKLM\SOFTWARE\Cygwin\Program Options HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Cygwin HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Cygwin\Program Options
Accordingly I pasted the following code in the file DragoPortable.ini:
[Activate] Registry=true [RegistryKeys] Cygwin1=HKLM\SOFTWARE\Cygwin Cygwin2=HKLM\SOFTWARE\Cygwin\Installations Cygwin3=HKLM\SOFTWARE\Cygwin\Program Options Cygwin4=HKCU\Software\Cygwin Cygwin5=HKCU\Software\Cygwin\Program Options
Now I've executed the file DragoPortable.exe. But during the execution of the app I can't detect any of the above mentioned registry keys. Has anyone an explanation for this strange behavior?
Perhaps you somehow accidently ran Cygwin when testing?
Previously known as kAlug.
It should be noted that there is overlap with other apps if you're doing that whole hierarchy. Also, if you do HKLM\SOFTWARE\Cygwin alone, that emcompasses the keys in HKLM\SOFTWARE\Cygwin\Installations and HKLM\SOFTWARE\Cygwin\Program Options.
A better option would be to specifically check for any keys/values specific to the app and then treat it as cleanups in this order:
[RegistryCleanupIfEmpty]
1=HKLM\SOFTWARE\Cygwin\Installations
2=HKLM\SOFTWARE\Cygwin\Program Options
3=HKLM\SOFTWARE\Cygwin
4=HKCU\Software\Cygwin\Program Options
5=HKCU\Software\Cygwin
Sometimes, the impossible can become possible, if you're awesome!
I've now detected, that the Launcher DragoPortable.exe creates all the above mentioned registry entries. This conclusion is derived as follows.
First I started the base app "Drago.exe" and closed it again and I got the following results with Regshot:
Regshot 1.8.3-beta2 Kommentar: Datum und Zeit:2013/1/21 18:21:28 , 2013/1/21 18:24:35 Computer:ANDREAS-PC , ANDREAS-PC Benutzername:Andreas Piatek , Andreas Piatek ---------------------------------- Schlüssel gelöscht:3 ---------------------------------- HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\8\0\1\0\0 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\8\0\1\0\2 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\8\0\1\0\5 ---------------------------------- Schlüssel hinzugefügt:4 ---------------------------------- HKLM\SOFTWARE\Classes\Drago.Document HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\924\0\22\0\1\0 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\924\0\22\0\2 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\924\0\22\0\2\0 ---------------------------------- Werte gelöscht:9 ---------------------------------- HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\8\0\1\0\0: 59 00 50 42 33 30 05 00 00 00 08 00 00 00 00 00 00 00 00 00 00 00 0C 00 00 00 10 00 00 00 14 00 00 00 18 00 00 00 20 00 00 00 24 00 00 00 46 00 6F 00 74 00 6F 00 73 00 00 00 00 0B 00 00 77 01 00 FA 00 00 00 00 00 70 60 8B 55 0E C6 01 00 00 00 00 00 0B 00 00 00 00 00 00 00 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\8\0\1\0\2: AD 00 50 42 33 30 05 00 00 00 08 00 00 00 00 00 00 00 00 00 00 00 60 00 00 00 64 00 00 00 68 00 00 00 6C 00 00 00 74 00 00 00 78 00 00 00 7B 00 36 00 36 00 64 00 65 00 37 00 38 00 38 00 63 00 2D 00 32 00 39 00 35 00 36 00 2D 00 31 00 31 00 64 00 62 00 2D 00 39 00 36 00 32 00 64 00 2D 00 30 00 30 00 65 00 30 00 38 00 31 00 36 00 31 00 31 00 36 00 35 00 66 00 7D 00 52 00 65 00 6C 00 6F 00 63 00 61 00 74 00 65 00 64 00 00 00 00 0F 00 00 77 01 00 FA 00 00 00 00 00 8A 73 51 5E B0 C8 01 00 00 00 00 00 0F 00 00 00 00 00 00 00 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\8\0\1\0\5: 69 00 50 42 33 30 05 00 00 00 08 00 00 00 00 00 00 00 00 00 00 00 1C 00 00 00 20 00 00 00 24 00 00 00 28 00 00 00 30 00 00 00 34 00 00 00 45 00 6D 00 70 00 66 00 2E 00 20 00 44 00 61 00 74 00 65 00 69 00 65 00 6E 00 00 00 00 0B 00 00 77 01 00 FA 00 00 00 00 00 D8 24 ED 5D 0E C6 01 00 00 00 00 00 0B 00 00 00 00 00 00 00 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\8\0\1\0\0\NodeSlot: 0x000000CC HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\8\0\1\0\0\MRUListEx: FF FF FF FF HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\8\0\1\0\2\NodeSlot: 0x000000D6 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\8\0\1\0\2\MRUListEx: FF FF FF FF HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\8\0\1\0\5\NodeSlot: 0x00000348 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\8\0\1\0\5\MRUListEx: FF FF FF FF ---------------------------------- Werte hinzugefügt:38 ---------------------------------- HKLM\SOFTWARE\Classes\Drago.Document\: "Drago document" HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACNGU:Q:\cbegnoyr Cebtenzzr(arh)\CbegnoyrNccf\QentbCbegnoyr\Ncc\Qentb\Qentb.rkr: 6C 05 00 00 06 00 00 00 80 FD 45 2A 04 F8 CD 01 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\924\0\22\0\2: 46 00 31 00 00 00 00 00 35 42 F8 69 10 00 44 45 46 41 55 4C 7E 31 00 00 2E 00 03 00 04 00 EF BE 35 42 F8 69 35 42 8C 91 14 00 00 00 44 00 65 00 66 00 61 00 75 00 6C 00 74 00 44 00 61 00 74 00 61 00 00 00 18 00 00 00 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\924\0\22\0\1\0: 42 00 31 00 00 00 00 00 35 42 FA 69 10 00 67 6E 75 67 6F 2D 33 2E 38 00 2A 00 03 00 04 00 EF BE 35 42 F9 69 35 42 8C 91 14 00 00 00 67 00 6E 00 75 00 67 00 6F 00 2D 00 33 00 2E 00 38 00 00 00 18 00 00 00 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\924\0\22\0\1\0\NodeSlot: 0x000000D6 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\924\0\22\0\1\0\MRUListEx: FF FF FF FF HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\924\0\22\0\2\0\NodeSlot: 0x000000CC HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\924\0\22\0\2\0\MRUListEx: FF FF FF FF HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\924\0\22\0\2\NodeSlot: 0x00000348 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\924\0\22\0\2\MRUListEx: 00 00 00 00 FF FF FF FF HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\924\0\22\0\2\0: 40 00 31 00 00 00 00 00 35 42 F8 69 10 00 73 65 74 74 69 6E 67 73 00 00 28 00 03 00 04 00 EF BE 35 42 F8 69 35 42 8C 91 14 00 00 00 73 00 65 00 74 00 74 00 69 00 6E 00 67 00 73 00 00 00 18 00 00 00 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\FolderType: "Documents" HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\Vid: "{65F125E5-7BE1-4810-BA9D-D271C8432CE3}" HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\Mode: 0x00000006 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\ScrollPos1024x768(1).x: 0x00000000 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\ScrollPos1024x768(1).y: 0x00000000 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\Sort: 0x00000000 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\SortDir: 0x00000001 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\Col: 0xFFFFFFFF HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\ColInfo: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 FD DF DF FD 0F 00 04 00 20 00 10 00 28 00 3C 00 00 00 00 00 01 00 00 00 02 00 00 00 03 00 00 00 B4 00 60 00 78 00 78 00 00 00 00 00 01 00 00 00 02 00 00 00 03 00 00 00 FF FF FF FF 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\FolderType: "Documents" HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\Vid: "{65F125E5-7BE1-4810-BA9D-D271C8432CE3}" HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\Mode: 0x00000006 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\ScrollPos1024x768(1).x: 0x00000000 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\ScrollPos1024x768(1).y: 0x00000000 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\Sort: 0x00000000 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\SortDir: 0x00000001 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\Col: 0xFFFFFFFF HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\ColInfo: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 FD DF DF FD 0F 00 07 00 2C 00 10 00 3A 00 4E 00 00 00 00 00 01 00 00 00 02 00 00 00 03 00 00 00 04 00 00 00 05 00 00 00 06 00 00 00 B4 00 60 00 78 00 78 00 B4 00 B4 00 78 00 00 00 00 00 01 00 00 00 02 00 00 00 03 00 00 00 FF FF FF FF 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\FolderType: "Documents" HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\Vid: "{65F125E5-7BE1-4810-BA9D-D271C8432CE3}" HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\Mode: 0x00000006 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\ScrollPos1024x768(1).x: 0x00000000 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\ScrollPos1024x768(1).y: 0x00000000 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\Sort: 0x00000000 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\SortDir: 0x00000001 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\Col: 0xFFFFFFFF HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\ColInfo: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 FD DF DF FD 0F 00 04 00 20 00 10 00 28 00 3C 00 00 00 00 00 01 00 00 00 02 00 00 00 03 00 00 00 B4 00 60 00 78 00 78 00 00 00 00 00 01 00 00 00 02 00 00 00 03 00 00 00 FF FF FF FF 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ---------------------------------- Werte geändert:40 ---------------------------------- HKLM\SOFTWARE\Microsoft\Cryptography\RNG\Seed: 72 AC A3 C9 4E 8C B3 D2 22 58 C8 C5 8D 20 03 E9 7D 19 CE 0B F3 BD 25 EF F2 16 98 83 9F 62 66 DF 73 BC D2 2D 61 E1 27 3C FF 9E 09 E8 24 F4 52 FC 82 A5 74 33 0D 4B 89 84 D1 92 6C D0 4B 5B 21 0C 06 FE D8 90 FD E3 F2 A5 D5 EC A0 3B 3E 8A 5D BF HKLM\SOFTWARE\Microsoft\Cryptography\RNG\Seed: DB 5F 9B 32 96 9B B9 A4 D1 3F 30 A6 6D D8 B6 E4 31 FE 26 B5 DE 96 B1 FD 5F C2 D8 57 71 20 0C CB 7E 78 F3 F9 73 E6 57 37 5F F4 13 A5 3C C5 1D C7 4F 71 CC F6 23 63 43 40 B4 92 BC 7A 3D A7 1A DF F2 68 EF 36 94 52 15 63 15 8A 92 28 9D AA F8 55 HKLM\SOFTWARE\Microsoft\SchedulingAgent\LastTaskRun: DD 07 01 00 01 00 15 00 12 00 39 00 01 00 00 00 HKLM\SOFTWARE\Microsoft\SchedulingAgent\LastTaskRun: DD 07 01 00 01 00 15 00 13 00 16 00 01 00 00 00 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\2BA0CE767FC85144F907F7CB95C3D0E5\Usage\Main32: 0x42353252 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\2BA0CE767FC85144F907F7CB95C3D0E5\Usage\Main32: 0x42353253 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\68AB67CA3301004F7716000000000040\Usage\AcrobatElements: 0x423527D6 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\68AB67CA3301004F7716000000000040\Usage\AcrobatElements: 0x423527D7 HKU\S-1-5-20\Software\Microsoft\MediaPlayer\Preferences\BackgroundScanCompleteDate: "21.01.2013 18:17:18" HKU\S-1-5-20\Software\Microsoft\MediaPlayer\Preferences\BackgroundScanCompleteDate: "21.01.2013 18:24:23" HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{5E6AB780-7743-11CF-A12B-00AA004AE837}\Count\HRZR_HVGBBYONE: BD 05 00 00 0D 37 00 00 90 AA 76 49 D9 F7 CD 01 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{5E6AB780-7743-11CF-A12B-00AA004AE837}\Count\HRZR_HVGBBYONE: BD 05 00 00 11 37 00 00 A0 DA 45 7D 04 F8 CD 01 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{5E6AB780-7743-11CF-A12B-00AA004AE837}\Count\HRZR_HVGBBYONE:0k1,130: BD 05 00 00 4D 36 00 00 90 AA 76 49 D9 F7 CD 01 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{5E6AB780-7743-11CF-A12B-00AA004AE837}\Count\HRZR_HVGBBYONE:0k1,130: BD 05 00 00 51 36 00 00 A0 DA 45 7D 04 F8 CD 01 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACNGU: 6C 05 00 00 B9 B0 00 00 60 15 C5 9B 02 F8 CD 01 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACNGU: 6C 05 00 00 BA B0 00 00 80 FD 45 2A 04 F8 CD 01 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\924\0\22\0\MRUListEx: 01 00 00 00 00 00 00 00 FF FF FF FF HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\924\0\22\0\MRUListEx: 02 00 00 00 01 00 00 00 00 00 00 00 FF FF FF FF HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\924\0\22\0\1\MRUListEx: FF FF FF FF HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\924\0\22\0\1\MRUListEx: 00 00 00 00 FF FF FF FF HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\8\0\1\0\MRUListEx: 03 00 00 00 06 00 00 00 00 00 00 00 05 00 00 00 02 00 00 00 FF FF FF FF HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\8\0\1\0\MRUListEx: 03 00 00 00 06 00 00 00 FF FF FF FF HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\MinPos1024x768(1).x: 0xFFFFFFFF HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\MinPos1024x768(1).x: 0xFFFF8300 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\MinPos1024x768(1).y: 0xFFFFFFFF HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\MinPos1024x768(1).y: 0xFFFF8300 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\WinPos1024x768(1).left: 0x00000016 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\WinPos1024x768(1).left: 0x00000057 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\WinPos1024x768(1).top: 0x0000001D HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\WinPos1024x768(1).top: 0x00000057 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\WinPos1024x768(1).right: 0x00000336 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\WinPos1024x768(1).right: 0x00000377 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\WinPos1024x768(1).bottom: 0x00000275 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\WinPos1024x768(1).bottom: 0x000002AF HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\FFlags: 0x00000000 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\FFlags: 0x00000001 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\WinPos1024x768(1).left: 0x00000016 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\WinPos1024x768(1).left: 0x00000057 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\WinPos1024x768(1).top: 0x0000001D HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\WinPos1024x768(1).top: 0x00000057 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\WinPos1024x768(1).right: 0x00000336 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\WinPos1024x768(1).right: 0x00000377 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\WinPos1024x768(1).bottom: 0x00000275 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\WinPos1024x768(1).bottom: 0x000002AF HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\FFlags: 0x00000000 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\FFlags: 0x00000001 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\285\Shell\WinPos1024x768(1).left: 0x0000006E HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\285\Shell\WinPos1024x768(1).left: 0x00000057 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\285\Shell\WinPos1024x768(1).top: 0x00000086 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\285\Shell\WinPos1024x768(1).top: 0x00000057 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\285\Shell\WinPos1024x768(1).right: 0x0000038E HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\285\Shell\WinPos1024x768(1).right: 0x00000377 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\285\Shell\WinPos1024x768(1).bottom: 0x000002DE HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\285\Shell\WinPos1024x768(1).bottom: 0x000002AF HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\285\Shell\FFlags: 0x00000000 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\285\Shell\FFlags: 0x00000001 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\285\Shell\ScrollPos1024x768(1).y: 0x00000000 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\285\Shell\ScrollPos1024x768(1).y: 0x00000002 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\285\Shell\ColInfo: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 FD DF DF FD 0F 00 08 00 30 00 10 00 40 00 5C 00 00 00 00 00 01 00 00 00 02 00 00 00 03 00 00 00 04 00 00 00 05 00 00 00 06 00 00 00 07 00 00 00 B4 00 B4 00 78 00 60 00 78 00 78 00 B4 00 B4 00 00 00 00 00 01 00 00 00 02 00 00 00 03 00 00 00 04 00 00 00 05 00 00 00 FF FF FF FF 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\285\Shell\ColInfo: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 FD DF DF FD 0F 00 06 00 28 00 10 00 34 00 48 00 00 00 00 00 01 00 00 00 02 00 00 00 03 00 00 00 04 00 00 00 05 00 00 00 B4 00 60 00 78 00 78 00 B4 00 B4 00 00 00 00 00 01 00 00 00 02 00 00 00 03 00 00 00 FF FF FF FF 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\MinPos1024x768(1).x: 0xFFFFFFFF HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\MinPos1024x768(1).x: 0xFFFF8300 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\MinPos1024x768(1).y: 0xFFFFFFFF HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\MinPos1024x768(1).y: 0xFFFF8300 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\WinPos1024x768(1).left: 0x00000016 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\WinPos1024x768(1).left: 0x00000057 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\WinPos1024x768(1).top: 0x0000001D HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\WinPos1024x768(1).top: 0x00000057 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\WinPos1024x768(1).right: 0x00000336 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\WinPos1024x768(1).right: 0x00000377 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\WinPos1024x768(1).bottom: 0x00000275 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\WinPos1024x768(1).bottom: 0x000002AF HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\FFlags: 0x00000000 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\FFlags: 0x00000001 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\847\Shell\MinPos1024x768(1).x: 0xFFFFFFFF HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\847\Shell\MinPos1024x768(1).x: 0xFFFF8300 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\847\Shell\MinPos1024x768(1).y: 0xFFFFFFFF HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\847\Shell\MinPos1024x768(1).y: 0xFFFF8300 HKU\S-1-5-21-1202660629-515967899-725345543-1005\SessionInformation\ProgramCount: 0x00000004 HKU\S-1-5-21-1202660629-515967899-725345543-1005\SessionInformation\ProgramCount: 0x00000002 ---------------------------------- Dateien hinzugefügt:1 ---------------------------------- D:\portable Programme(neu)\PortableApps\DragoPortable\App\Drago\Drago.ini ---------------------------------- Dateiattribute geändert:14 ---------------------------------- C:\Dokumente und Einstellungen\Andreas Piatek\ntuser.dat.LOG C:\Dokumente und Einstellungen\NetworkService\ntuser.dat.LOG C:\WINDOWS\Prefetch\AVWSC.EXE-24612965.pf C:\WINDOWS\Prefetch\DRAGO.EXE-297E78D3.pf C:\WINDOWS\system32\config\software.LOG C:\WINDOWS\system32\wbem\Logs\wbemcore.log C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP C:\WINDOWS\Tasks\{66BA574B-1E11-49b8-909C-8CC9E0E8E015}.job D:\System Volume Information\_restore{9E2C34C1-41B3-4614-8461-A555528CC58E}\RP734\change.log ---------------------------------- Gesamte Änderungen:109 ----------------------------------Afterwards I started the Launcher "DragoPortable.exe" and closed it again and I got the following results with Regshot:
Accordingly I've adapted the file DragoPortable.ini with respect to these registry entries as follows:
This research has also shown me that it is not enough, that I check the base app with Regshot. It is also necessary to test the launcher again with Regshot.
If the base app doesn't write the cygwin keys, than you don't need to have the launcher write them either.
I have to correct my previous description. The registry entries, which I have mentioned above, are generated by the base app and not from the Launcher. Here are the results of Regshot in connection wit the base app Drago.exe:
Regshot 1.8.3-beta2 Kommentar: Datum und Zeit:2013/1/21 20:27:13 , 2013/1/21 20:30:40 Computer:ANDREAS-PC , ANDREAS-PC Benutzername:Andreas Piatek , Andreas Piatek ---------------------------------- Schlüssel gelöscht:1 ---------------------------------- HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\8 ---------------------------------- Schlüssel hinzugefügt:7 ---------------------------------- HKLM\SOFTWARE\Classes\Drago.Document HKLM\SOFTWARE\Cygwin HKLM\SOFTWARE\Cygwin\Installations HKLM\SOFTWARE\Cygwin\Program Options HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\997\0\0\1\0 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Cygwin HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Cygwin\Program Options ---------------------------------- Werte gelöscht:3 ---------------------------------- HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\8: 14 00 2E 80 E4 51 66 41 3C 9C D9 11 8B DE F6 6B AD 1E 3F 3A 00 00 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\8\NodeSlot: 0x000000C1 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\8\MRUListEx: FF FF FF FF ---------------------------------- Werte hinzugefügt:8 ---------------------------------- HKLM\SOFTWARE\Classes\Drago.Document\: "Drago document" HKLM\SOFTWARE\Cygwin\Installations\3f8f01a38c6852a4: "\??\D:\Drago_Test\DragoPortable\App\Drago" HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACNGU:Q:\Qentb_Grfg\QentbCbegnoyr\Ncc\Qentb\Qentb.rkr: 6C 05 00 00 06 00 00 00 F0 79 C5 E8 15 F8 CD 01 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\997\0\0\1\0: 42 00 31 00 00 00 00 00 7A 41 7A 69 10 00 67 6E 75 67 6F 2D 33 2E 38 00 2A 00 03 00 04 00 EF BE 7A 41 79 69 35 42 30 A3 14 00 00 00 67 00 6E 00 75 00 67 00 6F 00 2D 00 33 00 2E 00 38 00 00 00 18 00 00 00 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\997\0\0\1\0\NodeSlot: 0x000000C1 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\997\0\0\1\0\MRUListEx: FF FF FF FF HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\193\Shell\FolderType: "Documents" HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\MUICache\D:\Drago_Test\DragoPortable\App\Drago\Drago.exe: "Drago" ---------------------------------- Werte geändert:16 ---------------------------------- HKLM\SOFTWARE\Microsoft\Cryptography\RNG\Seed: 34 41 4D D6 C0 6D A0 BB A3 C5 13 3D 8C A4 BE C2 10 20 0F CB C1 1F 99 8B 2C 50 91 23 C2 B7 81 2E 59 9A 2E B2 A1 D7 C2 69 F5 C8 DC D5 21 79 AA F5 C2 DC 33 1F 0C 84 BF 4B B5 22 90 C3 54 19 75 1B E0 46 16 AA A8 A8 4E 7E 44 CC E2 41 9B 9E BB 1C HKLM\SOFTWARE\Microsoft\Cryptography\RNG\Seed: 7F B2 2F EA 62 FF 0A F8 15 95 21 1A 96 F8 9C E6 10 B7 FC 05 84 B8 3A 72 F4 DB 5B 25 D1 2D 88 66 0A 1C 85 13 C0 7E 5F 73 07 37 E6 B2 4F CE 2B BB 32 BD 59 B2 61 CB 13 7E CB CD 80 C1 5E CC 09 2D EC 0B EB D1 5C D4 8C 7E A7 73 E2 D5 D6 57 90 9B HKLM\SOFTWARE\Microsoft\SchedulingAgent\LastTaskRun: DD 07 01 00 01 00 15 00 15 00 16 00 01 00 00 00 HKLM\SOFTWARE\Microsoft\SchedulingAgent\LastTaskRun: DD 07 01 00 01 00 15 00 15 00 1B 00 01 00 00 00 HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Prefetcher\TracesProcessed: 0x00000058 HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Prefetcher\TracesProcessed: 0x000000C6 HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Prefetcher\TracesSuccessful: 0x00000055 HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Prefetcher\TracesSuccessful: 0x000000C0 HKU\S-1-5-20\Software\Microsoft\MediaPlayer\Preferences\BackgroundScanCompleteDate: "21.01.2013 20:26:50" HKU\S-1-5-20\Software\Microsoft\MediaPlayer\Preferences\BackgroundScanCompleteDate: "21.01.2013 20:30:22" HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\LastVisitedMRU\MRUList: "phrscboinwmgjyfxtvkuedalq" HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\LastVisitedMRU\MRUList: "rphscboinwmgjyfxtvkuedalq" HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\LastVisitedMRU\r: 44 00 72 00 61 00 67 00 6F 00 2E 00 65 00 78 00 65 00 00 00 44 00 3A 00 5C 00 70 00 6F 00 72 00 74 00 61 00 62 00 6C 00 65 00 20 00 50 00 72 00 6F 00 67 00 72 00 61 00 6D 00 6D 00 65 00 28 00 6E 00 65 00 75 00 29 00 5C 00 50 00 6F 00 72 00 74 00 61 00 62 00 6C 00 65 00 41 00 70 00 70 00 73 00 5C 00 44 00 72 00 61 00 67 00 6F 00 50 00 6F 00 72 00 74 00 61 00 62 00 6C 00 65 00 5C 00 41 00 70 00 70 00 5C 00 44 00 72 00 61 00 67 00 6F 00 5C 00 67 00 6E 00 75 00 67 00 6F 00 2D 00 33 00 2E 00 38 00 00 00 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\LastVisitedMRU\r: 44 00 72 00 61 00 67 00 6F 00 2E 00 65 00 78 00 65 00 00 00 44 00 3A 00 5C 00 44 00 72 00 61 00 67 00 6F 00 5F 00 54 00 65 00 73 00 74 00 5C 00 44 00 72 00 61 00 67 00 6F 00 50 00 6F 00 72 00 74 00 61 00 62 00 6C 00 65 00 5C 00 41 00 70 00 70 00 5C 00 44 00 72 00 61 00 67 00 6F 00 5C 00 67 00 6E 00 75 00 67 00 6F 00 2D 00 33 00 2E 00 38 00 00 00 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\*\MRUList: "abhefdjgic" HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\*\MRUList: "cabhefdjgi" HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\*\c: "D:\Drago1.txt" HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\*\c: "D:\Drago_Test\DragoPortable\App\Drago\gnugo-3.8\gnugo.exe" HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\exe\MRUList: "cdbhaifgej" HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\exe\MRUList: "jcdbhaifge" HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\exe\j: "D:\wpp_full_4.0-beta2\winPenPack\Downloads\mp3DirectCutPortable_2.17_Dev_Test_3_online.paf.exe" HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\exe\j: "D:\Drago_Test\DragoPortable\App\Drago\gnugo-3.8\gnugo.exe" HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACNGU: 6C 05 00 00 D2 B0 00 00 90 E9 EF 8B 15 F8 CD 01 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACNGU: 6C 05 00 00 D4 B0 00 00 F0 79 C5 E8 15 F8 CD 01 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACNGU:P:\JVAQBJF\ertrqvg.rkr: 6C 05 00 00 28 00 00 00 C0 92 3A A0 14 F8 CD 01 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACNGU:P:\JVAQBJF\ertrqvg.rkr: 6C 05 00 00 29 00 00 00 80 03 61 E3 15 F8 CD 01 HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\MRUListEx: 01 00 00 00 00 00 00 00 04 00 00 00 02 00 00 00 03 00 00 00 0D 00 00 00 06 00 00 00 07 00 00 00 0B 00 00 00 09 00 00 00 0C 00 00 00 08 00 00 00 FF FF FF FF HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\MRUListEx: 01 00 00 00 00 00 00 00 04 00 00 00 02 00 00 00 03 00 00 00 0D 00 00 00 06 00 00 00 07 00 00 00 0B 00 00 00 09 00 00 00 0C 00 00 00 FF FF FF FF HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\997\0\0\1\MRUListEx: FF FF FF FF HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\997\0\0\1\MRUListEx: 00 00 00 00 FF FF FF FF HKU\S-1-5-21-1202660629-515967899-725345543-1005\SessionInformation\ProgramCount: 0x00000005 HKU\S-1-5-21-1202660629-515967899-725345543-1005\SessionInformation\ProgramCount: 0x00000006 ---------------------------------- Dateien hinzugefügt:1 ---------------------------------- D:\Drago_Test\DragoPortable\App\Drago\Drago.ini ---------------------------------- Dateiattribute geändert:7 ---------------------------------- C:\Dokumente und Einstellungen\Andreas Piatek\ntuser.dat.LOG C:\Dokumente und Einstellungen\NetworkService\ntuser.dat.LOG C:\WINDOWS\Prefetch\REGEDIT.EXE-1B606482.pf C:\WINDOWS\system32\config\software.LOG C:\WINDOWS\system32\wbem\Logs\wbemcore.log D:\System Volume Information\_restore{9E2C34C1-41B3-4614-8461-A555528CC58E}\RP734\change.log D:\wpp_full_4.0-beta2\winPenPack\User\Firefox\Profiles\Default\places.sqlite-wal ---------------------------------- Gesamte Änderungen:43 ----------------------------------Associated with file associations here also appears the registry entry "HKLM\SOFTWARE\Classes\Drago.Document".
Accordingly it seems necessary,that I adapted the section [RegistryKeys] as follows:
But I have found that it is sufficient if I write the section [RegistryKeys] without the third entry as follows:
But why is that possible?