[ ijbswa-Bugs-3487350 ] Unsafe uninstall deletion

SourceForge.net <[email protected]>
Newsgroups gmane.comp.web.privoxy.devel
Message-ID <[email protected]>
Bugs item #3487350, was opened at 2012-02-13 09:48
Message generated for change (Comment added) made by proactivesvcs
You can respond by visiting: 
https://sourceforge.net/tracker/?func=detail&atid=111118&aid=3487350&group_id=11118

Please note that this message will contain a full copy of the comment thread,
including the initial issue submission, for this request,
not just the latest update.
Category: windows-specific
Group: version 3.0.19
Status: Open
Resolution: None
Priority: 5
Private: No
Submitted By: 4h34d ()
Assigned to: Nobody/Anonymous (nobody)
Summary: Unsafe uninstall deletion

Initial Comment:
Hi,

I had issues running Privoxy out of the box on Windows 7 using the default Program Files (x86) folder. So I decided to install it in My Documents. Unfortunately, I forgot to put Privoxy as the last directoy in the installation path, so I ended up using something like C:\Users\Username\My Documents. A few minutes after, I realized the files where in the latter directory, so I ran the uninstall file and... everything is gone, no way to recover anything :( Now I just hope I haven't lost so much...

I know it was my mistake to install Privoxy in the wrong directory but still I don't think it should assume to delete the whole installation directory (at least not without checking that the directory is empty), but rather just it's internal files and directories (some kind of whitelist deleting?).

----------------------------------------------------------------------

>Comment By: Adam Piggott (proactivesvcs)
Date: 2012-05-25 06:38

Message:
You may be able to recover the lost files using
http://www.handyrecovery.com/handyrecovery-fw.exe

Make sure you install it to a different physical device e.g. USB stick or
secondary hard disk.

----------------------------------------------------------------------

Comment By: Lee (ler762)
Date: 2012-05-24 21:11

Message:
Yes, the current uninstall behavior is extremely poor - no checks at all,
just:
RMDir /r "$SMPROGRAMS\Privoxy"
RMDir /r "$INSTDIR"

Unfortunately, this is probably going to be one of those
http://cygwin.com/acronyms/#PTC situations.  The NSIS script language is a
real pain to figure out.

Sorry.

> Preventing the
> installation into an already existing directory might be a workaround.

I doubt it - windows users want to be able to install over an existing
installation.  There was at least one person who contributed patches for
the installer to get the behavior they desired..

Lee


----------------------------------------------------------------------

Comment By: Adam Piggott (proactivesvcs)
Date: 2012-02-21 08:54

Message:
<a href="http://www.handyrecovery.com/handyrecovery-fw.exe">Handy
Recovery</a> may help you get back the deleted files. Make sure you
download it, and install, to a USB stick or drive other than C:.

----------------------------------------------------------------------

Comment By: Fabian Keil (fabiankeil)
Date: 2012-02-13 12:05

Message:
Thanks a lot for the report. I'm sorry for your loss.

The described behavior seems surprising and non-intuitive to me, too.

I don't know what best-practices for a deinstaller on Windows are, but on
FreeBSD deinstalling a package is not supposed to remove any files or
directories unless they have been created by the package in question and
their content hasn't been modified later on.

This means that for example a modified Privoxy config file and the log file
should survive the deinstallation.

I do not know how much work implementing something similar for the Windows
packages would be, but it probably isn't trivial. Preventing the
installation into an already existing directory might be a workaround.

Lee, can you comment on this?

If the current behavior has to be kept, the installer and the documentation
should probably at least warn about it.

----------------------------------------------------------------------

You can respond by visiting: 
https://sourceforge.net/tracker/?func=detail&atid=111118&aid=3487350&group_id=11118

------------------------------------------------------------------------------
Live Security Virtual Conference
Exclusive live event will cover all the ways today's security and 
threat landscape has changed and how IT managers can respond. Discussions 
will include endpoint security, mobile security and the latest in malware 
threats. http://www.accelacomm.com/jaw/sfrnl04242012/114/50122263/
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.