You are here

strange behavior

6 posts / 0 new
Last post
tapsklaps
Offline
Last seen: 6 years 1 month ago
Developer
Joined: 2010-10-17 08:11
strange behavior

Again I've checked the app Drago Portable, which I've made portable. Regarding some entries in the registry I received the following result with Regshot:

HKLM\SOFTWARE\Cygwin
HKLM\SOFTWARE\Cygwin\Installations
HKLM\SOFTWARE\Cygwin\Program Options
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Cygwin
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Cygwin\Program Options

Accordingly I pasted the following code in the file DragoPortable.ini:

[Activate]
Registry=true

[RegistryKeys]
Cygwin1=HKLM\SOFTWARE\Cygwin
Cygwin2=HKLM\SOFTWARE\Cygwin\Installations
Cygwin3=HKLM\SOFTWARE\Cygwin\Program Options
Cygwin4=HKCU\Software\Cygwin
Cygwin5=HKCU\Software\Cygwin\Program Options

Now I've executed the file DragoPortable.exe. But during the execution of the app I can't detect any of the above mentioned registry keys. Has anyone an explanation for this strange behavior?

Aluísio A. S. G.
Offline
Last seen: 8 years 4 months ago
DeveloperTranslator
Joined: 2010-11-09 17:43
Accidental execution

Perhaps you somehow accidently ran Cygwin when testing?

Previously known as kAlug.

John T. Haller
John T. Haller's picture
Online
Last seen: 3 min 49 sec ago
AdminDeveloperModeratorTranslator
Joined: 2005-11-28 22:21
Overlap

It should be noted that there is overlap with other apps if you're doing that whole hierarchy. Also, if you do HKLM\SOFTWARE\Cygwin alone, that emcompasses the keys in HKLM\SOFTWARE\Cygwin\Installations and HKLM\SOFTWARE\Cygwin\Program Options.

A better option would be to specifically check for any keys/values specific to the app and then treat it as cleanups in this order:

[RegistryCleanupIfEmpty]
1=HKLM\SOFTWARE\Cygwin\Installations
2=HKLM\SOFTWARE\Cygwin\Program Options
3=HKLM\SOFTWARE\Cygwin
4=HKCU\Software\Cygwin\Program Options
5=HKCU\Software\Cygwin

Sometimes, the impossible can become possible, if you're awesome!

tapsklaps
Offline
Last seen: 6 years 1 month ago
Developer
Joined: 2010-10-17 08:11
Launcher creates these registry entries

I've now detected, that the Launcher DragoPortable.exe creates all the above mentioned registry entries. This conclusion is derived as follows.

First I started the base app "Drago.exe" and closed it again and I got the following results with Regshot:

Regshot 1.8.3-beta2
Kommentar:
Datum und Zeit:2013/1/21 18:21:28  ,  2013/1/21 18:24:35
Computer:ANDREAS-PC , ANDREAS-PC
Benutzername:Andreas Piatek , Andreas Piatek

----------------------------------
Schlüssel gelöscht:3
----------------------------------
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\8\0\1\0\0
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\8\0\1\0\2
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\8\0\1\0\5

----------------------------------
Schlüssel hinzugefügt:4
----------------------------------
HKLM\SOFTWARE\Classes\Drago.Document
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\924\0\22\0\1\0
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\924\0\22\0\2
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\924\0\22\0\2\0

----------------------------------
Werte gelöscht:9
----------------------------------
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\8\0\1\0\0: 59 00 50 42 33 30 05 00 00 00 08 00 00 00 00 00 00 00 00 00 00 00 0C 00 00 00 10 00 00 00 14 00 00 00 18 00 00 00 20 00 00 00 24 00 00 00 46 00 6F 00 74 00 6F 00 73 00 00 00 00 0B 00 00 77 01 00 FA 00 00 00 00 00 70 60 8B 55 0E C6 01 00 00 00 00 00 0B 00 00 00 00 00 00 00
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\8\0\1\0\2: AD 00 50 42 33 30 05 00 00 00 08 00 00 00 00 00 00 00 00 00 00 00 60 00 00 00 64 00 00 00 68 00 00 00 6C 00 00 00 74 00 00 00 78 00 00 00 7B 00 36 00 36 00 64 00 65 00 37 00 38 00 38 00 63 00 2D 00 32 00 39 00 35 00 36 00 2D 00 31 00 31 00 64 00 62 00 2D 00 39 00 36 00 32 00 64 00 2D 00 30 00 30 00 65 00 30 00 38 00 31 00 36 00 31 00 31 00 36 00 35 00 66 00 7D 00 52 00 65 00 6C 00 6F 00 63 00 61 00 74 00 65 00 64 00 00 00 00 0F 00 00 77 01 00 FA 00 00 00 00 00 8A 73 51 5E B0 C8 01 00 00 00 00 00 0F 00 00 00 00 00 00 00
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\8\0\1\0\5: 69 00 50 42 33 30 05 00 00 00 08 00 00 00 00 00 00 00 00 00 00 00 1C 00 00 00 20 00 00 00 24 00 00 00 28 00 00 00 30 00 00 00 34 00 00 00 45 00 6D 00 70 00 66 00 2E 00 20 00 44 00 61 00 74 00 65 00 69 00 65 00 6E 00 00 00 00 0B 00 00 77 01 00 FA 00 00 00 00 00 D8 24 ED 5D 0E C6 01 00 00 00 00 00 0B 00 00 00 00 00 00 00
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\8\0\1\0\0\NodeSlot: 0x000000CC
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\8\0\1\0\0\MRUListEx: FF FF FF FF
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\8\0\1\0\2\NodeSlot: 0x000000D6
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\8\0\1\0\2\MRUListEx: FF FF FF FF
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\8\0\1\0\5\NodeSlot: 0x00000348
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\8\0\1\0\5\MRUListEx: FF FF FF FF

----------------------------------
Werte hinzugefügt:38
----------------------------------
HKLM\SOFTWARE\Classes\Drago.Document\: "Drago document"
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACNGU:Q:\cbegnoyr Cebtenzzr(arh)\CbegnoyrNccf\QentbCbegnoyr\Ncc\Qentb\Qentb.rkr: 6C 05 00 00 06 00 00 00 80 FD 45 2A 04 F8 CD 01
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\924\0\22\0\2: 46 00 31 00 00 00 00 00 35 42 F8 69 10 00 44 45 46 41 55 4C 7E 31 00 00 2E 00 03 00 04 00 EF BE 35 42 F8 69 35 42 8C 91 14 00 00 00 44 00 65 00 66 00 61 00 75 00 6C 00 74 00 44 00 61 00 74 00 61 00 00 00 18 00 00 00
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\924\0\22\0\1\0: 42 00 31 00 00 00 00 00 35 42 FA 69 10 00 67 6E 75 67 6F 2D 33 2E 38 00 2A 00 03 00 04 00 EF BE 35 42 F9 69 35 42 8C 91 14 00 00 00 67 00 6E 00 75 00 67 00 6F 00 2D 00 33 00 2E 00 38 00 00 00 18 00 00 00
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\924\0\22\0\1\0\NodeSlot: 0x000000D6
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\924\0\22\0\1\0\MRUListEx: FF FF FF FF
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\924\0\22\0\2\0\NodeSlot: 0x000000CC
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\924\0\22\0\2\0\MRUListEx: FF FF FF FF
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\924\0\22\0\2\NodeSlot: 0x00000348
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\924\0\22\0\2\MRUListEx: 00 00 00 00 FF FF FF FF
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\924\0\22\0\2\0: 40 00 31 00 00 00 00 00 35 42 F8 69 10 00 73 65 74 74 69 6E 67 73 00 00 28 00 03 00 04 00 EF BE 35 42 F8 69 35 42 8C 91 14 00 00 00 73 00 65 00 74 00 74 00 69 00 6E 00 67 00 73 00 00 00 18 00 00 00
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\FolderType: "Documents"
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\Vid: "{65F125E5-7BE1-4810-BA9D-D271C8432CE3}"
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\Mode: 0x00000006
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\ScrollPos1024x768(1).x: 0x00000000
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\ScrollPos1024x768(1).y: 0x00000000
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\Sort: 0x00000000
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\SortDir: 0x00000001
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\Col: 0xFFFFFFFF
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\ColInfo: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 FD DF DF FD 0F 00 04 00 20 00 10 00 28 00 3C 00 00 00 00 00 01 00 00 00 02 00 00 00 03 00 00 00 B4 00 60 00 78 00 78 00 00 00 00 00 01 00 00 00 02 00 00 00 03 00 00 00 FF FF FF FF 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\FolderType: "Documents"
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\Vid: "{65F125E5-7BE1-4810-BA9D-D271C8432CE3}"
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\Mode: 0x00000006
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\ScrollPos1024x768(1).x: 0x00000000
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\ScrollPos1024x768(1).y: 0x00000000
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\Sort: 0x00000000
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\SortDir: 0x00000001
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\Col: 0xFFFFFFFF
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\ColInfo: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 FD DF DF FD 0F 00 07 00 2C 00 10 00 3A 00 4E 00 00 00 00 00 01 00 00 00 02 00 00 00 03 00 00 00 04 00 00 00 05 00 00 00 06 00 00 00 B4 00 60 00 78 00 78 00 B4 00 B4 00 78 00 00 00 00 00 01 00 00 00 02 00 00 00 03 00 00 00 FF FF FF FF 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\FolderType: "Documents"
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\Vid: "{65F125E5-7BE1-4810-BA9D-D271C8432CE3}"
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\Mode: 0x00000006
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\ScrollPos1024x768(1).x: 0x00000000
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\ScrollPos1024x768(1).y: 0x00000000
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\Sort: 0x00000000
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\SortDir: 0x00000001
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\Col: 0xFFFFFFFF
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\ColInfo: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 FD DF DF FD 0F 00 04 00 20 00 10 00 28 00 3C 00 00 00 00 00 01 00 00 00 02 00 00 00 03 00 00 00 B4 00 60 00 78 00 78 00 00 00 00 00 01 00 00 00 02 00 00 00 03 00 00 00 FF FF FF FF 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00

----------------------------------
Werte geändert:40
----------------------------------
HKLM\SOFTWARE\Microsoft\Cryptography\RNG\Seed: 72 AC A3 C9 4E 8C B3 D2 22 58 C8 C5 8D 20 03 E9 7D 19 CE 0B F3 BD 25 EF F2 16 98 83 9F 62 66 DF 73 BC D2 2D 61 E1 27 3C FF 9E 09 E8 24 F4 52 FC 82 A5 74 33 0D 4B 89 84 D1 92 6C D0 4B 5B 21 0C 06 FE D8 90 FD E3 F2 A5 D5 EC A0 3B 3E 8A 5D BF
HKLM\SOFTWARE\Microsoft\Cryptography\RNG\Seed: DB 5F 9B 32 96 9B B9 A4 D1 3F 30 A6 6D D8 B6 E4 31 FE 26 B5 DE 96 B1 FD 5F C2 D8 57 71 20 0C CB 7E 78 F3 F9 73 E6 57 37 5F F4 13 A5 3C C5 1D C7 4F 71 CC F6 23 63 43 40 B4 92 BC 7A 3D A7 1A DF F2 68 EF 36 94 52 15 63 15 8A 92 28 9D AA F8 55
HKLM\SOFTWARE\Microsoft\SchedulingAgent\LastTaskRun: DD 07 01 00 01 00 15 00 12 00 39 00 01 00 00 00
HKLM\SOFTWARE\Microsoft\SchedulingAgent\LastTaskRun: DD 07 01 00 01 00 15 00 13 00 16 00 01 00 00 00
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\2BA0CE767FC85144F907F7CB95C3D0E5\Usage\Main32: 0x42353252
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\2BA0CE767FC85144F907F7CB95C3D0E5\Usage\Main32: 0x42353253
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\68AB67CA3301004F7716000000000040\Usage\AcrobatElements: 0x423527D6
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\68AB67CA3301004F7716000000000040\Usage\AcrobatElements: 0x423527D7
HKU\S-1-5-20\Software\Microsoft\MediaPlayer\Preferences\BackgroundScanCompleteDate: "21.01.2013 18:17:18"
HKU\S-1-5-20\Software\Microsoft\MediaPlayer\Preferences\BackgroundScanCompleteDate: "21.01.2013 18:24:23"
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{5E6AB780-7743-11CF-A12B-00AA004AE837}\Count\HRZR_HVGBBYONE: BD 05 00 00 0D 37 00 00 90 AA 76 49 D9 F7 CD 01
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{5E6AB780-7743-11CF-A12B-00AA004AE837}\Count\HRZR_HVGBBYONE: BD 05 00 00 11 37 00 00 A0 DA 45 7D 04 F8 CD 01
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{5E6AB780-7743-11CF-A12B-00AA004AE837}\Count\HRZR_HVGBBYONE:0k1,130: BD 05 00 00 4D 36 00 00 90 AA 76 49 D9 F7 CD 01
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{5E6AB780-7743-11CF-A12B-00AA004AE837}\Count\HRZR_HVGBBYONE:0k1,130: BD 05 00 00 51 36 00 00 A0 DA 45 7D 04 F8 CD 01
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACNGU: 6C 05 00 00 B9 B0 00 00 60 15 C5 9B 02 F8 CD 01
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACNGU: 6C 05 00 00 BA B0 00 00 80 FD 45 2A 04 F8 CD 01
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\924\0\22\0\MRUListEx: 01 00 00 00 00 00 00 00 FF FF FF FF
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\924\0\22\0\MRUListEx: 02 00 00 00 01 00 00 00 00 00 00 00 FF FF FF FF
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\924\0\22\0\1\MRUListEx: FF FF FF FF
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\924\0\22\0\1\MRUListEx: 00 00 00 00 FF FF FF FF
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\8\0\1\0\MRUListEx: 03 00 00 00 06 00 00 00 00 00 00 00 05 00 00 00 02 00 00 00 FF FF FF FF
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\8\0\1\0\MRUListEx: 03 00 00 00 06 00 00 00 FF FF FF FF
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\MinPos1024x768(1).x: 0xFFFFFFFF
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\MinPos1024x768(1).x: 0xFFFF8300
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\MinPos1024x768(1).y: 0xFFFFFFFF
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\MinPos1024x768(1).y: 0xFFFF8300
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\WinPos1024x768(1).left: 0x00000016
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\WinPos1024x768(1).left: 0x00000057
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\WinPos1024x768(1).top: 0x0000001D
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\WinPos1024x768(1).top: 0x00000057
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\WinPos1024x768(1).right: 0x00000336
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\WinPos1024x768(1).right: 0x00000377
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\WinPos1024x768(1).bottom: 0x00000275
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\WinPos1024x768(1).bottom: 0x000002AF
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\FFlags: 0x00000000
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\204\Shell\FFlags: 0x00000001
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\WinPos1024x768(1).left: 0x00000016
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\WinPos1024x768(1).left: 0x00000057
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\WinPos1024x768(1).top: 0x0000001D
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\WinPos1024x768(1).top: 0x00000057
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\WinPos1024x768(1).right: 0x00000336
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\WinPos1024x768(1).right: 0x00000377
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\WinPos1024x768(1).bottom: 0x00000275
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\WinPos1024x768(1).bottom: 0x000002AF
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\FFlags: 0x00000000
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\214\Shell\FFlags: 0x00000001
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\285\Shell\WinPos1024x768(1).left: 0x0000006E
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\285\Shell\WinPos1024x768(1).left: 0x00000057
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\285\Shell\WinPos1024x768(1).top: 0x00000086
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\285\Shell\WinPos1024x768(1).top: 0x00000057
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\285\Shell\WinPos1024x768(1).right: 0x0000038E
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\285\Shell\WinPos1024x768(1).right: 0x00000377
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\285\Shell\WinPos1024x768(1).bottom: 0x000002DE
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\285\Shell\WinPos1024x768(1).bottom: 0x000002AF
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\285\Shell\FFlags: 0x00000000
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\285\Shell\FFlags: 0x00000001
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\285\Shell\ScrollPos1024x768(1).y: 0x00000000
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\285\Shell\ScrollPos1024x768(1).y: 0x00000002
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\285\Shell\ColInfo: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 FD DF DF FD 0F 00 08 00 30 00 10 00 40 00 5C 00 00 00 00 00 01 00 00 00 02 00 00 00 03 00 00 00 04 00 00 00 05 00 00 00 06 00 00 00 07 00 00 00 B4 00 B4 00 78 00 60 00 78 00 78 00 B4 00 B4 00 00 00 00 00 01 00 00 00 02 00 00 00 03 00 00 00 04 00 00 00 05 00 00 00 FF FF FF FF 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\285\Shell\ColInfo: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 FD DF DF FD 0F 00 06 00 28 00 10 00 34 00 48 00 00 00 00 00 01 00 00 00 02 00 00 00 03 00 00 00 04 00 00 00 05 00 00 00 B4 00 60 00 78 00 78 00 B4 00 B4 00 00 00 00 00 01 00 00 00 02 00 00 00 03 00 00 00 FF FF FF FF 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\MinPos1024x768(1).x: 0xFFFFFFFF
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\MinPos1024x768(1).x: 0xFFFF8300
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\MinPos1024x768(1).y: 0xFFFFFFFF
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\MinPos1024x768(1).y: 0xFFFF8300
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\WinPos1024x768(1).left: 0x00000016
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\WinPos1024x768(1).left: 0x00000057
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\WinPos1024x768(1).top: 0x0000001D
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\WinPos1024x768(1).top: 0x00000057
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\WinPos1024x768(1).right: 0x00000336
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\WinPos1024x768(1).right: 0x00000377
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\WinPos1024x768(1).bottom: 0x00000275
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\WinPos1024x768(1).bottom: 0x000002AF
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\FFlags: 0x00000000
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\840\Shell\FFlags: 0x00000001
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\847\Shell\MinPos1024x768(1).x: 0xFFFFFFFF
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\847\Shell\MinPos1024x768(1).x: 0xFFFF8300
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\847\Shell\MinPos1024x768(1).y: 0xFFFFFFFF
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\847\Shell\MinPos1024x768(1).y: 0xFFFF8300
HKU\S-1-5-21-1202660629-515967899-725345543-1005\SessionInformation\ProgramCount: 0x00000004
HKU\S-1-5-21-1202660629-515967899-725345543-1005\SessionInformation\ProgramCount: 0x00000002

----------------------------------
Dateien hinzugefügt:1
----------------------------------
D:\portable Programme(neu)\PortableApps\DragoPortable\App\Drago\Drago.ini

----------------------------------
Dateiattribute geändert:14
----------------------------------
C:\Dokumente und Einstellungen\Andreas Piatek\ntuser.dat.LOG
C:\Dokumente und Einstellungen\NetworkService\ntuser.dat.LOG
C:\WINDOWS\Prefetch\AVWSC.EXE-24612965.pf
C:\WINDOWS\Prefetch\DRAGO.EXE-297E78D3.pf
C:\WINDOWS\system32\config\software.LOG
C:\WINDOWS\system32\wbem\Logs\wbemcore.log
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP
C:\WINDOWS\Tasks\{66BA574B-1E11-49b8-909C-8CC9E0E8E015}.job
D:\System Volume Information\_restore{9E2C34C1-41B3-4614-8461-A555528CC58E}\RP734\change.log

----------------------------------
Gesamte Änderungen:109
----------------------------------

Afterwards I started the Launcher "DragoPortable.exe" and closed it again and I got the following results with Regshot:

Regshot 1.8.3-beta2
Kommentar:
Datum und Zeit:2013/1/21 12:53:51  ,  2013/1/21 12:54:38
Computer:ANDREAS-PC , ANDREAS-PC
Benutzername:Andreas Piatek , Andreas Piatek

----------------------------------
Schlüssel hinzugefügt:5
----------------------------------
HKLM\SOFTWARE\Cygwin
HKLM\SOFTWARE\Cygwin\Installations
HKLM\SOFTWARE\Cygwin\Program Options
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Cygwin
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Cygwin\Program Options

----------------------------------
Werte hinzugefügt:1
----------------------------------
HKLM\SOFTWARE\Cygwin\Installations\eaad165d9153b07b: "\??\D:\portable Programme(neu)\PortableApps\DragoPortable\App\Drago"

----------------------------------
Werte geändert:2
----------------------------------
HKLM\SOFTWARE\Microsoft\Cryptography\RNG\Seed: 09 D4 F7 59 8B 38 33 D1 C5 3D 23 B8 89 4C BE 43 CE 92 D3 66 AC 4D D1 E0 21 40 E6 B0 2C 84 46 85 51 78 B4 79 EB 48 67 1A CE 11 32 8B C9 5C 81 E9 16 16 AC 21 8C E5 B0 B1 9A F6 35 2E 4D D0 0A F8 50 CE 93 A0 A4 65 8C 9F 3F 58 5E 6C 56 F2 26 F1
HKLM\SOFTWARE\Microsoft\Cryptography\RNG\Seed: 36 38 38 6E F4 1F 63 54 B1 32 AE 2D FF CD 33 1F 2A 9D 42 9B 01 EC 75 C5 86 CF A4 77 A5 72 C2 2D 71 77 54 8F 1E AF 58 52 01 2E 1C 42 CA F3 39 4C 72 CC 79 49 2D 19 6C 06 C6 12 AA FC 47 98 2A 59 19 E3 73 FE 44 D0 17 98 CD E7 0A 9D A1 57 9A 7B
HKU\S-1-5-20\Software\Microsoft\MediaPlayer\Preferences\BackgroundScanCompleteDate: "21.01.2013 12:53:42"
HKU\S-1-5-20\Software\Microsoft\MediaPlayer\Preferences\BackgroundScanCompleteDate: "21.01.2013 12:54:33"

----------------------------------
Dateiattribute geändert:11
----------------------------------
C:\Dokumente und Einstellungen\Andreas Piatek\Cookies\index.dat
C:\Dokumente und Einstellungen\Andreas Piatek\IETldCache\index.dat
C:\Dokumente und Einstellungen\Andreas Piatek\Lokale Einstellungen\Temporary Internet Files\Content.IE5\index.dat
C:\Dokumente und Einstellungen\Andreas Piatek\Lokale Einstellungen\Verlauf\History.IE5\index.dat
C:\Dokumente und Einstellungen\Andreas Piatek\ntuser.dat.LOG
C:\Dokumente und Einstellungen\NetworkService\ntuser.dat.LOG
C:\WINDOWS\Prefetch\DRAGO.EXE-297E78D3.pf
C:\WINDOWS\Prefetch\DRAGOPORTABLE.EXE-197E868F.pf
C:\WINDOWS\Prefetch\GNUGO.EXE-2DA1C1D3.pf
C:\WINDOWS\system32\config\software.LOG
C:\WINDOWS\system32\wbem\Logs\wbemcore.log

----------------------------------
Gesamte Änderungen:19
----------------------------------

Accordingly I've adapted the file DragoPortable.ini with respect to these registry entries as follows:

[RegistryKeys]
Cygwin1=HKLM\SOFTWARE\Cygwin
Cygwin2=HKCU\Software\Cygwin

This research has also shown me that it is not enough, that I check the base app with Regshot. It is also necessary to test the launcher again with Regshot.

Gord Caswell
Gord Caswell's picture
Offline
Last seen: 22 hours 43 min ago
DeveloperModerator
Joined: 2008-07-24 18:46
not needed

If the base app doesn't write the cygwin keys, than you don't need to have the launcher write them either.

tapsklaps
Offline
Last seen: 6 years 1 month ago
Developer
Joined: 2010-10-17 08:11
research incompletely

I have to correct my previous description. The registry entries, which I have mentioned above, are generated by the base app and not from the Launcher. Here are the results of Regshot in connection wit the base app Drago.exe:

Regshot 1.8.3-beta2
Kommentar:
Datum und Zeit:2013/1/21 20:27:13  ,  2013/1/21 20:30:40
Computer:ANDREAS-PC , ANDREAS-PC
Benutzername:Andreas Piatek , Andreas Piatek

----------------------------------
Schlüssel gelöscht:1
----------------------------------
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\8

----------------------------------
Schlüssel hinzugefügt:7
----------------------------------
HKLM\SOFTWARE\Classes\Drago.Document
HKLM\SOFTWARE\Cygwin
HKLM\SOFTWARE\Cygwin\Installations
HKLM\SOFTWARE\Cygwin\Program Options
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\997\0\0\1\0
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Cygwin
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Cygwin\Program Options

----------------------------------
Werte gelöscht:3
----------------------------------
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\8: 14 00 2E 80 E4 51 66 41 3C 9C D9 11 8B DE F6 6B AD 1E 3F 3A 00 00
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\8\NodeSlot: 0x000000C1
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\8\MRUListEx: FF FF FF FF

----------------------------------
Werte hinzugefügt:8
----------------------------------
HKLM\SOFTWARE\Classes\Drago.Document\: "Drago document"
HKLM\SOFTWARE\Cygwin\Installations\3f8f01a38c6852a4: "\??\D:\Drago_Test\DragoPortable\App\Drago"
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACNGU:Q:\Qentb_Grfg\QentbCbegnoyr\Ncc\Qentb\Qentb.rkr: 6C 05 00 00 06 00 00 00 F0 79 C5 E8 15 F8 CD 01
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\997\0\0\1\0: 42 00 31 00 00 00 00 00 7A 41 7A 69 10 00 67 6E 75 67 6F 2D 33 2E 38 00 2A 00 03 00 04 00 EF BE 7A 41 79 69 35 42 30 A3 14 00 00 00 67 00 6E 00 75 00 67 00 6F 00 2D 00 33 00 2E 00 38 00 00 00 18 00 00 00
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\997\0\0\1\0\NodeSlot: 0x000000C1
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\997\0\0\1\0\MRUListEx: FF FF FF FF
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\Bags\193\Shell\FolderType: "Documents"
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\MUICache\D:\Drago_Test\DragoPortable\App\Drago\Drago.exe: "Drago"

----------------------------------
Werte geändert:16
----------------------------------
HKLM\SOFTWARE\Microsoft\Cryptography\RNG\Seed: 34 41 4D D6 C0 6D A0 BB A3 C5 13 3D 8C A4 BE C2 10 20 0F CB C1 1F 99 8B 2C 50 91 23 C2 B7 81 2E 59 9A 2E B2 A1 D7 C2 69 F5 C8 DC D5 21 79 AA F5 C2 DC 33 1F 0C 84 BF 4B B5 22 90 C3 54 19 75 1B E0 46 16 AA A8 A8 4E 7E 44 CC E2 41 9B 9E BB 1C
HKLM\SOFTWARE\Microsoft\Cryptography\RNG\Seed: 7F B2 2F EA 62 FF 0A F8 15 95 21 1A 96 F8 9C E6 10 B7 FC 05 84 B8 3A 72 F4 DB 5B 25 D1 2D 88 66 0A 1C 85 13 C0 7E 5F 73 07 37 E6 B2 4F CE 2B BB 32 BD 59 B2 61 CB 13 7E CB CD 80 C1 5E CC 09 2D EC 0B EB D1 5C D4 8C 7E A7 73 E2 D5 D6 57 90 9B
HKLM\SOFTWARE\Microsoft\SchedulingAgent\LastTaskRun: DD 07 01 00 01 00 15 00 15 00 16 00 01 00 00 00
HKLM\SOFTWARE\Microsoft\SchedulingAgent\LastTaskRun: DD 07 01 00 01 00 15 00 15 00 1B 00 01 00 00 00
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Prefetcher\TracesProcessed: 0x00000058
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Prefetcher\TracesProcessed: 0x000000C6
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Prefetcher\TracesSuccessful: 0x00000055
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Prefetcher\TracesSuccessful: 0x000000C0
HKU\S-1-5-20\Software\Microsoft\MediaPlayer\Preferences\BackgroundScanCompleteDate: "21.01.2013 20:26:50"
HKU\S-1-5-20\Software\Microsoft\MediaPlayer\Preferences\BackgroundScanCompleteDate: "21.01.2013 20:30:22"
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\LastVisitedMRU\MRUList: "phrscboinwmgjyfxtvkuedalq"
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\LastVisitedMRU\MRUList: "rphscboinwmgjyfxtvkuedalq"
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\LastVisitedMRU\r: 44 00 72 00 61 00 67 00 6F 00 2E 00 65 00 78 00 65 00 00 00 44 00 3A 00 5C 00 70 00 6F 00 72 00 74 00 61 00 62 00 6C 00 65 00 20 00 50 00 72 00 6F 00 67 00 72 00 61 00 6D 00 6D 00 65 00 28 00 6E 00 65 00 75 00 29 00 5C 00 50 00 6F 00 72 00 74 00 61 00 62 00 6C 00 65 00 41 00 70 00 70 00 73 00 5C 00 44 00 72 00 61 00 67 00 6F 00 50 00 6F 00 72 00 74 00 61 00 62 00 6C 00 65 00 5C 00 41 00 70 00 70 00 5C 00 44 00 72 00 61 00 67 00 6F 00 5C 00 67 00 6E 00 75 00 67 00 6F 00 2D 00 33 00 2E 00 38 00 00 00
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\LastVisitedMRU\r: 44 00 72 00 61 00 67 00 6F 00 2E 00 65 00 78 00 65 00 00 00 44 00 3A 00 5C 00 44 00 72 00 61 00 67 00 6F 00 5F 00 54 00 65 00 73 00 74 00 5C 00 44 00 72 00 61 00 67 00 6F 00 50 00 6F 00 72 00 74 00 61 00 62 00 6C 00 65 00 5C 00 41 00 70 00 70 00 5C 00 44 00 72 00 61 00 67 00 6F 00 5C 00 67 00 6E 00 75 00 67 00 6F 00 2D 00 33 00 2E 00 38 00 00 00
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\*\MRUList: "abhefdjgic"
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\*\MRUList: "cabhefdjgi"
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\*\c: "D:\Drago1.txt"
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\*\c: "D:\Drago_Test\DragoPortable\App\Drago\gnugo-3.8\gnugo.exe"
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\exe\MRUList: "cdbhaifgej"
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\exe\MRUList: "jcdbhaifge"
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\exe\j: "D:\wpp_full_4.0-beta2\winPenPack\Downloads\mp3DirectCutPortable_2.17_Dev_Test_3_online.paf.exe"
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\exe\j: "D:\Drago_Test\DragoPortable\App\Drago\gnugo-3.8\gnugo.exe"
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACNGU: 6C 05 00 00 D2 B0 00 00 90 E9 EF 8B 15 F8 CD 01
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACNGU: 6C 05 00 00 D4 B0 00 00 F0 79 C5 E8 15 F8 CD 01
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACNGU:P:\JVAQBJF\ertrqvg.rkr: 6C 05 00 00 28 00 00 00 C0 92 3A A0 14 F8 CD 01
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count\HRZR_EHACNGU:P:\JVAQBJF\ertrqvg.rkr: 6C 05 00 00 29 00 00 00 80 03 61 E3 15 F8 CD 01
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\MRUListEx: 01 00 00 00 00 00 00 00 04 00 00 00 02 00 00 00 03 00 00 00 0D 00 00 00 06 00 00 00 07 00 00 00 0B 00 00 00 09 00 00 00 0C 00 00 00 08 00 00 00 FF FF FF FF
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\MRUListEx: 01 00 00 00 00 00 00 00 04 00 00 00 02 00 00 00 03 00 00 00 0D 00 00 00 06 00 00 00 07 00 00 00 0B 00 00 00 09 00 00 00 0C 00 00 00 FF FF FF FF
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\997\0\0\1\MRUListEx: FF FF FF FF
HKU\S-1-5-21-1202660629-515967899-725345543-1005\Software\Microsoft\Windows\ShellNoRoam\BagMRU\1\1\997\0\0\1\MRUListEx: 00 00 00 00 FF FF FF FF
HKU\S-1-5-21-1202660629-515967899-725345543-1005\SessionInformation\ProgramCount: 0x00000005
HKU\S-1-5-21-1202660629-515967899-725345543-1005\SessionInformation\ProgramCount: 0x00000006

----------------------------------
Dateien hinzugefügt:1
----------------------------------
D:\Drago_Test\DragoPortable\App\Drago\Drago.ini

----------------------------------
Dateiattribute geändert:7
----------------------------------
C:\Dokumente und Einstellungen\Andreas Piatek\ntuser.dat.LOG
C:\Dokumente und Einstellungen\NetworkService\ntuser.dat.LOG
C:\WINDOWS\Prefetch\REGEDIT.EXE-1B606482.pf
C:\WINDOWS\system32\config\software.LOG
C:\WINDOWS\system32\wbem\Logs\wbemcore.log
D:\System Volume Information\_restore{9E2C34C1-41B3-4614-8461-A555528CC58E}\RP734\change.log
D:\wpp_full_4.0-beta2\winPenPack\User\Firefox\Profiles\Default\places.sqlite-wal

----------------------------------
Gesamte Änderungen:43
----------------------------------

Associated with file associations here also appears the registry entry "HKLM\SOFTWARE\Classes\Drago.Document".

Accordingly it seems necessary,that I adapted the section [RegistryKeys] as follows:

[RegistryKeys]
Cygwin1=HKLM\SOFTWARE\Cygwin
Cygwin2=HKCU\Software\Cygwin
-=HKLM\SOFTWARE\Classes\Drago.Document

But I have found that it is sufficient if I write the section [RegistryKeys] without the third entry as follows:

[RegistryKeys]
Cygwin1=HKLM\SOFTWARE\Cygwin
Cygwin2=HKCU\Software\Cygwin

But why is that possible?

Log in or register to post comments