winutil icon indicating copy to clipboard operation
winutil copied to clipboard

Unwanted / unlisted application installed by winutil

Open rfxtek opened this issue 1 year ago • 3 comments

Describe the bug

A clear and concise description of what the bug is. I chose procmon and tcpview to install. To my surprise, the script installed Versasec's vSEC:CMS User, which is not present in forntend of your tool but is present in background install: Found vSEC:CMS User [9NQZS0JTTWK7] Version Unknown.

To Reproduce

Steps to reproduce the behavior:

  1. Chose: procmon and tcpview to install
  2. Install
  3. In backend window present Versasec's vSEC:CMS and application installed

Log:

CCCCCCCCCCCCCTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTT

CCC::::::::::::CT:::::::::::::::::::::TT:::::::::::::::::::::T CC:::::::::::::::CT:::::::::::::::::::::TT:::::::::::::::::::::T C:::::CCCCCCCC::::CT:::::TT:::::::TT:::::TT:::::TT:::::::TT:::::T C:::::C CCCCCCTTTTTT T:::::T TTTTTTTTTTTT T:::::T TTTTTT C:::::C T:::::T T:::::T C:::::C T:::::T T:::::T C:::::C T:::::T T:::::T C:::::C T:::::T T:::::T C:::::C T:::::T T:::::T C:::::C T:::::T T:::::T C:::::C CCCCCC T:::::T T:::::T C:::::CCCCCCCC::::C TT:::::::TT TT:::::::TT CC:::::::::::::::C T:::::::::T T:::::::::T CCC::::::::::::C T:::::::::T T:::::::::T CCCCCCCCCCCCC TTTTTTTTTTT TTTTTTTTTTT

====Chris Titus Tech===== =====Windows Toolbox===== Running Script for WPFTweaksRestorePoint Changing system to allow multiple restore points per day WARNING: The 'Microsoft.PowerShell.Management' module was not imported because the 'Microsoft.PowerShell.Management' snap-in was already imported. System Restore Point Created Successfully

-- Tweaks are Finished ---

Disabling Bing Search Running Script for WPFTweaksRestorePoint WARNING: The 'Microsoft.PowerShell.Management' module was not imported because the 'Microsoft.PowerShell.Management' snap-in was already imported. System Restore Point Created Successfully HKLM:\Software\Microsoft\PolicyManager\default\WiFi\AllowWiFiHotSpotReporting was not found, Creating... Set HKLM:\Software\Microsoft\PolicyManager\default\WiFi\AllowWiFiHotSpotReporting\Value to 0 Set HKLM:\Software\Microsoft\PolicyManager\default\WiFi\AllowAutoConnectToWiFiSenseHotspots\Value to 0 Disabling Scheduled Task Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser Disabling Scheduled Task Microsoft\Windows\Application Experience\ProgramDataUpdater WARNING: Unable to set Microsoft\Windows\Application Experience\ProgramDataUpdater due to unhandled exception WARNING: Nie można odnaleźć określonego pliku. Disabling Scheduled Task Microsoft\Windows\Autochk\Proxy Disabling Scheduled Task Microsoft\Windows\Customer Experience Improvement Program\Consolidator Disabling Scheduled Task Microsoft\Windows\Customer Experience Improvement Program\UsbCeip Disabling Scheduled Task Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector Disabling Scheduled Task Microsoft\Windows\Feedback\Siuf\DmClient Disabling Scheduled Task Microsoft\Windows\Feedback\Siuf\DmClientOnScenarioDownload Disabling Scheduled Task Microsoft\Windows\Windows Error Reporting\QueueReporting Disabling Scheduled Task Microsoft\Windows\Application Experience\MareBackup Disabling Scheduled Task Microsoft\Windows\Application Experience\StartupAppTask Disabling Scheduled Task Microsoft\Windows\Application Experience\PcaPatchDbTask Disabling Scheduled Task Microsoft\Windows\Maps\MapsUpdateTask Set HKLM:\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\DataCollection\AllowTelemetry to 0 Set HKLM:\SOFTWARE\Policies\Microsoft\Windows\DataCollection\AllowTelemetry to 0 Set HKCU:\SOFTWARE\Microsoft\Windows\CurrentVersion\ContentDeliveryManager\ContentDeliveryAllowed to 0 Set HKCU:\SOFTWARE\Microsoft\Windows\CurrentVersion\ContentDeliveryManager\OemPreInstalledAppsEnabled to 0 Set HKCU:\SOFTWARE\Microsoft\Windows\CurrentVersion\ContentDeliveryManager\PreInstalledAppsEnabled to 0 Set HKCU:\SOFTWARE\Microsoft\Windows\CurrentVersion\ContentDeliveryManager\PreInstalledAppsEverEnabled to 0 Set HKCU:\SOFTWARE\Microsoft\Windows\CurrentVersion\ContentDeliveryManager\SilentInstalledAppsEnabled to 0 Set HKCU:\Software\Microsoft\Windows\CurrentVersion\ContentDeliveryManager\SubscribedContent-338387Enabled to 0 Set HKCU:\SOFTWARE\Microsoft\Windows\CurrentVersion\ContentDeliveryManager\SubscribedContent-338388Enabled to 0 Set HKCU:\SOFTWARE\Microsoft\Windows\CurrentVersion\ContentDeliveryManager\SubscribedContent-338389Enabled to 0 Set HKCU:\SOFTWARE\Microsoft\Windows\CurrentVersion\ContentDeliveryManager\SubscribedContent-353698Enabled to 0 Set HKCU:\SOFTWARE\Microsoft\Windows\CurrentVersion\ContentDeliveryManager\SystemPaneSuggestionsEnabled to 0 Set HKCU:\SOFTWARE\Microsoft\Siuf\Rules\NumberOfSIUFInPeriod to 0 Set HKLM:\SOFTWARE\Policies\Microsoft\Windows\DataCollection\DoNotShowFeedbackNotifications to 1 Set HKCU:\SOFTWARE\Policies\Microsoft\Windows\CloudContent\DisableTailoredExperiencesWithDiagnosticData to 1 Set HKLM:\SOFTWARE\Policies\Microsoft\Windows\AdvertisingInfo\DisabledByGroupPolicy to 1 Set HKLM:\SOFTWARE\Microsoft\Windows\Windows Error Reporting\Disabled to 1 HKLM:\SOFTWARE\Microsoft\Windows\CurrentVersion\DeliveryOptimization\Config was not found, Creating... Set HKLM:\SOFTWARE\Microsoft\Windows\CurrentVersion\DeliveryOptimization\Config\DODownloadMode to 1 Set HKLM:\SYSTEM\CurrentControlSet\Control\Remote Assistance\fAllowToGetHelp to 0 Set HKCU:\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\OperationStatusManager\EnthusiastMode to 1 Set HKCU:\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\ShowTaskViewButton to 0 Set HKCU:\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\People\PeopleBand to 0 Set HKCU:\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\LaunchTo to 1 Set HKLM:\SYSTEM\CurrentControlSet\Control\FileSystem\LongPathsEnabled to 1 Set HKLM:\SOFTWARE\Microsoft\Windows\CurrentVersion\DriverSearching\SearchOrderConfig to 1 Set HKLM:\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Multimedia\SystemProfile\SystemResponsiveness to 0 Set HKLM:\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Multimedia\SystemProfile\NetworkThrottlingIndex to 4294967295 Set HKCU:\Control Panel\Desktop\MenuShowDelay to 1 Set HKCU:\Control Panel\Desktop\AutoEndTasks to 1 Set HKLM:\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\ClearPageFileAtShutdown to 0 Set HKLM:\SYSTEM\ControlSet001\Services\Ndu\Start to 2 Set HKCU:\Control Panel\Mouse\MouseHoverTime to 400 Set HKLM:\SYSTEM\CurrentControlSet\Services\LanmanServer\Parameters\IRPStackSize to 30 Set HKCU:\SOFTWARE\Policies\Microsoft\Windows\Windows Feeds\EnableFeeds to 0 Set HKCU:\Software\Microsoft\Windows\CurrentVersion\Feeds\ShellFeedsTaskbarViewMode to 2 Set HKCU:\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\HideSCAMeetNow to 1 Set HKCU:\Software\Microsoft\Windows\CurrentVersion\UserProfileEngagement\ScoobeSystemSettingEnabled to 0 Running Script for WPFTweaksTele Set HKLM:\SOFTWARE\Policies\Microsoft\Windows\System\EnableActivityFeed to 0 Set HKLM:\SOFTWARE\Policies\Microsoft\Windows\System\PublishUserActivities to 0 Set HKLM:\SOFTWARE\Policies\Microsoft\Windows\System\UploadUserActivities to 0 Running Script for WPFTweaksEndTaskOnTaskbar Set HKLM:\SOFTWARE\Microsoft\Windows\CurrentVersion\CapabilityAccessManager\ConsentStore\location\Value to Deny Set HKLM:\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Sensor\Overrides{BFA794E4-F964-4FDB-90F6-51056BFE4B44}\SensorPermissionState to 0 Set HKLM:\SYSTEM\CurrentControlSet\Services\lfsvc\Service\Configuration\Status to 0 Set HKLM:\SYSTEM\Maps\AutoUpdateEnabled to 0 Running Script for WPFTweaksPowershell7Tele

-- Tweaks are Finished ---

@{winget=Microsoft.Sysinternals.ProcessMonitor; choco=procexp} @{winget=Microsoft.Sysinternals.TCPView; choco=tcpview} Queueing Microsoft.Sysinternals.ProcessMonitor for Winget install Queueing Microsoft.Sysinternals.TCPView for Winget install

--- Winget is installed ---

Version: v1.8.1911 - Winget is a release version. - Winget is Up to Date Winget is already installed. =========================================== -- Configuring winget packages --- =========================================== Starting install of Microsoft.Sysinternals.ProcessMonitor with winget. Found Process Monitor [Microsoft.Sysinternals.ProcessMonitor] Version 4.01 This application is licensed to you by its owner. Microsoft is not responsible for, nor does it grant any licenses to, third-party packages. Downloading https://live.sysinternals.com/Procmon64.exe ██████████████████████████████ 2.04 MB / 2.04 MB Successfully verified installer hash Starting package install... Command line alias added: "procmon" Path environment variable modified; restart your shell to use the new value. Successfully installed Microsoft.Sysinternals.ProcessMonitor installed successfully. Starting install of Microsoft.Sysinternals.TCPView with winget. Found TCPView [Microsoft.Sysinternals.TCPView] Version 4.19 This application is licensed to you by its owner. Microsoft is not responsible for, nor does it grant any licenses to, third-party packages. Downloading https://live.sysinternals.com/Tcpview64.exe ██████████████████████████████ 1.03 MB / 1.03 MB Successfully verified installer hash Starting package install... Command line alias added: "tcpview" Successfully installed Microsoft.Sysinternals.TCPView installed successfully. Starting install of with winget. No package found matching input criteria. Attempt with User scope Found vSEC:CMS User [9NQZS0JTTWK7] Version Unknown This package is provided through Microsoft Store. winget may need to acquire the package from Microsoft Store on behalf of the current user. Agreements for vSEC:CMS User [9NQZS0JTTWK7] Version Unknown Version: Unknown Publisher: Versasec Publisher Url: https://versasec.com/ Publisher Support Url: mailto:[email protected] License: https://versasec.com/support/license-agreement/ Privacy Url: https://versasec.com/products/privacypolicy Copyright: ©2007-2022 Versasec AB. All rights reserved. Agreements: Category: Productivity Pricing: Free Free Trial: No Terms of Transaction: https://aka.ms/microsoft-store-terms-of-transaction Seizure Warning: https://aka.ms/microsoft-store-seizure-warning Store License Terms: https://aka.ms/microsoft-store-license

Starting package install... ██████████████████████████████ 100% Successfully installed installed successfully with User scope. =========================================== -- Installs have finished --- =========================================== @{winget=Microsoft.Sysinternals.ProcessMonitor; choco=procexp} @{winget=mRemoteNG.mRemoteNG; choco=mremoteng} @{winget=angryziber.AngryIPScanner; choco=angryip} @{winget=Famatech.AdvancedIPScanner; choco=advanced-ip-scanner} @{winget=Microsoft.Sysinternals.TCPView; choco=tcpview} Queueing Microsoft.Sysinternals.ProcessMonitor for Winget install Queueing mRemoteNG.mRemoteNG for Winget install Queueing angryziber.AngryIPScanner for Winget install Queueing Famatech.AdvancedIPScanner for Winget install Queueing Microsoft.Sysinternals.TCPView for Winget install =========================================== --- Winget is installed --- =========================================== Version: v1.8.1911 - Winget is a release version. - Winget is Up to Date Winget is already installed.

rfxtek avatar Jul 18 '24 13:07 rfxtek

Hey @rfxtek I am sorry for the Issues you are having, the same issue was already adressed in #2385 and should have been fixed in https://github.com/ChrisTitusTech/winutil/commit/c90363181cf974c4342d5c3e01a58766d04cacf6.

May I asked when you ran full- or pre-release of winutil? The issue should have been fixed yesterday.

MyDrift-user avatar Jul 18 '24 14:07 MyDrift-user

As @MyDrift-user has said in his comment, this issue was fixed by reverting some changes (the revert was done on commit c90363181cf974c4342d5c3e01a58766d04cacf6), and currently this issue should not be present in the latest stable release (as of time of writing).

og-mrk avatar Jul 18 '24 17:07 og-mrk

Thank you gentlemans. I was doing it yesterday. Probably before your fixed the isssue.

rfxtek avatar Jul 18 '24 18:07 rfxtek

Seeing as there seems nothing to be done anymore, I'll close this issue. If you still encounter issues, please let use know and we'll take a look :) /close

Marterich avatar Jul 19 '24 19:07 Marterich