start:: CreateRestorePoint: cmd: Net stop wuauserv cmd: Rd /s /q %windir%\SoftwareDistribution\. CloseProcesses: EmptyTemp: EmptyEventLogs: Hosts: RemoveProxy: C:\Windows\Temp\*.* C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Temp\* C:\Windows\ServiceProfiles\LocalService\AppData\Local\Temp\* C:\Users\CurrentUserName\Appdata\Local\Temp\*.* C:\ProgramData\Microsoft\Windows Defender\Scans\mpenginedb.db C:\ProgramData\Microsoft\Windows Defender\Scans\History\Service\*.* StartBatch: rd /s /q "%userprofile%\AppData\Roaming\discord\Cache" rd /s /q "%userprofile%\AppData\Roaming\discord\code cache" rd /s /q "%userprofile%\AppData\Roaming\discord\gpucache" Endbatch: StartRegEdit: Windows Registry Editor Version 5.00 [HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{3f5dd364-8acb-4923-8833-902bb51ed8f6}:] "NameServer"="" EndRegEdit: DeleteKey: HKCU\SOFTWARE\AvastAdSDK DeleteKey: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\SOFTWARE\AvastAdSDK DeleteValue: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|RiotClient DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\\Software\Microsoft\Windows\CurrentVersion\Run|RiotClient] C:\Users\Didier\AppData\Local\Temp\mat-debug-10068.log C:\Users\Didier\AppData\Local\Temp\mat-debug-10552.log C:\Users\Didier\AppData\Local\Temp\mat-debug-10632.log C:\Users\Didier\AppData\Local\Temp\mat-debug-11400.log C:\Users\Didier\AppData\Local\Temp\mat-debug-11500.log C:\Users\Didier\AppData\Local\Temp\mat-debug-11552.log C:\Users\Didier\AppData\Local\Temp\mat-debug-12744.log C:\Users\Didier\AppData\Local\Temp\mat-debug-12808.log C:\Users\Didier\AppData\Local\Temp\mat-debug-1284.log C:\Users\Didier\AppData\Local\Temp\mat-debug-13808.log C:\Users\Didier\AppData\Local\Temp\mat-debug-14692.log C:\Users\Didier\AppData\Local\Temp\mat-debug-1724.log C:\Users\Didier\AppData\Local\Temp\mat-debug-2552.log C:\Users\Didier\AppData\Local\Temp\mat-debug-3876.log C:\Users\Didier\AppData\Local\Temp\mat-debug-3956.log C:\Users\Didier\AppData\Local\Temp\mat-debug-4720.log C:\Users\Didier\AppData\Local\Temp\mat-debug-5392.log C:\Users\Didier\AppData\Local\Temp\mat-debug-5396.log C:\Users\Didier\AppData\Local\Temp\mat-debug-5908.log C:\Users\Didier\AppData\Local\Temp\mat-debug-6252.log C:\Users\Didier\AppData\Local\Temp\mat-debug-6264.log C:\Users\Didier\AppData\Local\Temp\mat-debug-6476.log C:\Users\Didier\AppData\Local\Temp\mat-debug-6840.log C:\Users\Didier\AppData\Local\Temp\mat-debug-6844.log C:\Users\Didier\AppData\Local\Temp\mat-debug-7032.log C:\Users\Didier\AppData\Local\Temp\mat-debug-8068.log C:\Users\Didier\AppData\Local\Temp\mat-debug-8460.log C:\Users\Didier\AppData\Local\Temp\mat-debug-88.log C:\Users\Didier\AppData\Local\Temp\mat-debug-9112.log C:\Users\Didier\AppData\Local\Google\Chrome\User Data\Default\File System\000 DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\Ninite 7Zip CCleaner CDBurnerXP Chrome Installer.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\Ninite 7Zip CCleaner CDBurnerXP Chrome Installer.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\ed542f43-86c2-11ee-8ac3-10604b89e39a\Ninite.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\ed542f43-86c2-11ee-8ac3-10604b89e39a\Ninite.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPWPD.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPWPD.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files\Malwarebytes\Anti-Malware\mb4uns.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files\Malwarebytes\Anti-Malware\mb4uns.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\FF001.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\FF001.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\jds3711734.tmp\jre-8u391-windows-i586-iftw.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\jds3711734.tmp\jre-8u391-windows-i586-iftw.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\UpdaterTemp\HPSALight\msiinstaller.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\UpdaterTemp\HPSALight\msiinstaller.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\ultracopier_2-2-6-7_fr_336026_32.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\wireguard-installer.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\wireguard-installer.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files\WireGuard\wireguard.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files\WireGuard\wireguard.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Install\Comptabilité personnelle.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Install\Comptabilité personnelle.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\mes_comptes.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\mes_comptes.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Desktop\office\Office\Setup32.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Desktop\office\Office\Setup32.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|F:\Logiciels\Office 2021 Pro Plus (dernier 18-07-23)\OInstall.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|F:\Logiciels\OFFICE WITH DUOTECH\OInstall.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\installation Office.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\installation Office.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|F:\Logiciels\Installation Office\Office 2013-2021 nouveau logiciel\Office 2013-2021 C2R Install 7.3.0\Microsoft Office 2021 Pro Plus LTSC\OInstall.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files (x86)\Java\jre-1.8\bin\javaw.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files (x86)\Java\jre-1.8\bin\javaw.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files (x86)\Java\jre-1.8\bin\jp2launcher.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files (x86)\Java\jre-1.8\bin\jp2launcher.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files\Adobe\Acrobat DC\Acrobat\acrodist.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files\Adobe\Acrobat DC\Acrobat\acrodist.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\Sumatra-Uninstaller.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\Sumatra-Uninstaller.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\GalaxyInstaller_PdzLo\GalaxyInstaller.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\GalaxyInstaller_PdzLo\GalaxyInstaller.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Riot Games\Riot Client\UX\RiotClientUx.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Riot Games\Riot Client\UX\RiotClientUx.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Riot Games\League of Legends\Game\League of Legends.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Riot Games\League of Legends\Game\League of Legends.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\ShowKeyPlus1.0.7060\ShowKeyPlus1.0.7060\ShowKeyPlus_x64\ShowKeyPlus_x64\ShowKeyPlus.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\jds1593761640.tmp\jre-8u401-windows-au.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\jds1593761640.tmp\jre-8u401-windows-au.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\SodaPDFDesktop14.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\SodaPDFDesktop14.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\ProgramData\Soda PDF Desktop 14\Installation\SodaPDFDesktop14.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\ProgramData\Soda PDF Desktop 14\Installation\SodaPDFDesktop14.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\HPPSdr.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\HPEasyStart_16_5_6.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\7zS5347\HP.EasyStart.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\7zS5347\HP.EasyStart.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\7zS6EA0\HP.EasyStart.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\7zS6EA0\HP.EasyStart.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\WinScan2PDF.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\WinScan2PDF.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\{3460B16A-D81F-4681-81AB-25114D7D4D99}\paperscanfree-3.0.127.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\{3460B16A-D81F-4681-81AB-25114D7D4D99}\paperscanfree-3.0.127.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\is-MBNA3.tmp\Adobe.Acrobat.XI.v11.0.23.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\is-MBNA3.tmp\Adobe.Acrobat.XI.v11.0.23.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\jds431573781.tmp\jre-8u411-windows-au.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\jds431573781.tmp\jre-8u411-windows-au.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files (x86)\Steam\steamapps\common\The Witcher 3\bin\x64\witcher3.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files (x86)\Steam\steamapps\common\The Witcher 3\bin\x64\witcher3.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files (x86)\Steam\steamapps\common\Hades II\Ship\Hades2.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files (x86)\Steam\steamapps\common\Hades II\Ship\Hades2.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\jds-1575188109.tmp\jre-8u421-windows-au.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\jds-1575188109.tmp\jre-8u421-windows-au.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|G:\GOG_Galaxy_2.0.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|G:\GOG_Galaxy_2.0.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|G:\Install League of Legends euw.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|G:\Install League of Legends euw.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Documents\Logiciels\rufus_4-1_fr_430321.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Documents\Logiciels\rufus_4-1_fr_430321.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\OperaGXSetup.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\7zS5B0E\HP.EasyStart.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\7zS5B0E\HP.EasyStart.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\MBSetup.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\MBSetup.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\adwcleaner.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\adwcleaner.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\adwcleaner(1).exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\adwcleaner(1).exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\ChromeSetup.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\ChromeSetup.exe.ApplicationCompany DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|G:\paperscanfree-3.0.127.exe.FriendlyAppName DeleteValue: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|G:\paperscanfree-3.0.127.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\Ninite 7Zip CCleaner CDBurnerXP Chrome Installer.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\Ninite 7Zip CCleaner CDBurnerXP Chrome Installer.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\ed542f43-86c2-11ee-8ac3-10604b89e39a\Ninite.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\ed542f43-86c2-11ee-8ac3-10604b89e39a\Ninite.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPWPD.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPWPD.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files\Malwarebytes\Anti-Malware\mb4uns.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files\Malwarebytes\Anti-Malware\mb4uns.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\FF001.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\FF001.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\jds3711734.tmp\jre-8u391-windows-i586-iftw.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\jds3711734.tmp\jre-8u391-windows-i586-iftw.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\UpdaterTemp\HPSALight\msiinstaller.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\UpdaterTemp\HPSALight\msiinstaller.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\ultracopier_2-2-6-7_fr_336026_32.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\wireguard-installer.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\wireguard-installer.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files\WireGuard\wireguard.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files\WireGuard\wireguard.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Install\Comptabilité personnelle.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Install\Comptabilité personnelle.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\mes_comptes.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\mes_comptes.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Desktop\office\Office\Setup32.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Desktop\office\Office\Setup32.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|F:\Logiciels\Office 2021 Pro Plus (dernier 18-07-23)\OInstall.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|F:\Logiciels\OFFICE WITH DUOTECH\OInstall.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\installation Office.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\installation Office.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|F:\Logiciels\Installation Office\Office 2013-2021 nouveau logiciel\Office 2013-2021 C2R Install 7.3.0\Microsoft Office 2021 Pro Plus LTSC\OInstall.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files (x86)\Java\jre-1.8\bin\javaw.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files (x86)\Java\jre-1.8\bin\javaw.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files (x86)\Java\jre-1.8\bin\jp2launcher.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files (x86)\Java\jre-1.8\bin\jp2launcher.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files\Adobe\Acrobat DC\Acrobat\acrodist.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files\Adobe\Acrobat DC\Acrobat\acrodist.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\Sumatra-Uninstaller.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\Sumatra-Uninstaller.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\GalaxyInstaller_PdzLo\GalaxyInstaller.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\GalaxyInstaller_PdzLo\GalaxyInstaller.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Riot Games\Riot Client\UX\RiotClientUx.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Riot Games\Riot Client\UX\RiotClientUx.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Riot Games\League of Legends\Game\League of Legends.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Riot Games\League of Legends\Game\League of Legends.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\ShowKeyPlus1.0.7060\ShowKeyPlus1.0.7060\ShowKeyPlus_x64\ShowKeyPlus_x64\ShowKeyPlus.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\jds1593761640.tmp\jre-8u401-windows-au.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\jds1593761640.tmp\jre-8u401-windows-au.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\SodaPDFDesktop14.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\SodaPDFDesktop14.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\ProgramData\Soda PDF Desktop 14\Installation\SodaPDFDesktop14.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\ProgramData\Soda PDF Desktop 14\Installation\SodaPDFDesktop14.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\HPPSdr.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\HPEasyStart_16_5_6.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\7zS5347\HP.EasyStart.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\7zS5347\HP.EasyStart.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\7zS6EA0\HP.EasyStart.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\7zS6EA0\HP.EasyStart.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\WinScan2PDF.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\WinScan2PDF.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\{3460B16A-D81F-4681-81AB-25114D7D4D99}\paperscanfree-3.0.127.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\{3460B16A-D81F-4681-81AB-25114D7D4D99}\paperscanfree-3.0.127.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\is-MBNA3.tmp\Adobe.Acrobat.XI.v11.0.23.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\is-MBNA3.tmp\Adobe.Acrobat.XI.v11.0.23.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\jds431573781.tmp\jre-8u411-windows-au.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\jds431573781.tmp\jre-8u411-windows-au.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files (x86)\Steam\steamapps\common\The Witcher 3\bin\x64\witcher3.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files (x86)\Steam\steamapps\common\The Witcher 3\bin\x64\witcher3.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files (x86)\Steam\steamapps\common\Hades II\Ship\Hades2.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files (x86)\Steam\steamapps\common\Hades II\Ship\Hades2.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\jds-1575188109.tmp\jre-8u421-windows-au.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\jds-1575188109.tmp\jre-8u421-windows-au.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|G:\GOG_Galaxy_2.0.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|G:\GOG_Galaxy_2.0.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|G:\Install League of Legends euw.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|G:\Install League of Legends euw.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Documents\Logiciels\rufus_4-1_fr_430321.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Documents\Logiciels\rufus_4-1_fr_430321.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\OperaGXSetup.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\7zS5B0E\HP.EasyStart.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\AppData\Local\Temp\7zS5B0E\HP.EasyStart.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\MBSetup.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\MBSetup.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\adwcleaner.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\adwcleaner.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\adwcleaner(1).exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\adwcleaner(1).exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\ChromeSetup.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Users\Didier\Downloads\ChromeSetup.exe.ApplicationCompany DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|G:\paperscanfree-3.0.127.exe.FriendlyAppName DeleteValue: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|G:\paperscanfree-3.0.127.exe.ApplicationCompany C:\ProgramData\Norton HKLM-x32\...\Run: [] => [X] HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\...\Run: [GalaxyClient] => [X] HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\...\Run: [RiotClient] => C:\Riot Games\Riot Client\RiotClientServices.exe --launch-background-mode (Pas de fichier) GroupPolicy: Restriction ? <==== ATTENTION Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [4116912 2024-07-26] (Adobe Inc. -> Adobe Systems, Incorporated) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1160408 2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [752208 2024-06-05] (Oracle America, Inc. -> Oracle Corporation) HKLM\Software\Policies\...\system: [EnableSmartScreen] 0 HKU\S-1-5-21-3262927612-1677394149-2524797181-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45227312 2024-10-15] (Gen Digital Inc. -> Piriform Software Ltd) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\130.0.6723.92\Installer\chrmstp.exe [2024-11-01] (Google LLC -> Google LLC) Task: {F4549621-B796-400E-80A2-75C1419A91FF} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [4116912 2024-07-26] (Adobe Inc. -> Adobe Systems, Incorporated) Task: {118B0088-F513-4D91-BF0D-3015E7089C81} - System32\Tasks\Adobe-Genuine-Software-Integrity-Scheduler-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [4454832 2024-07-26] (Adobe Inc. -> Adobe Systems, Incorporated) Task: {CB4072D4-F924-415F-91DD-CC6D912045EF} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [829408 2024-10-15] (Gen Digital Inc. -> Gen Digital Inc.) Task: {BECF44FB-4011-46F1-B529-D851475D5336} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [5983536 2024-10-15] (Gen Digital Inc. -> Gen Digital Inc.) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "27e4bbb1-f24c-4f99-bea9-c52cf1641f13" --version "6.29.11342" --silent Task: {20DF542E-DCF2-4CE8-A12C-AB74733CD14D} - System32\Tasks\CCleanerSkipUAC - Didier => C:\Program Files\CCleaner\CCleaner.exe [39090480 2024-10-15] (Gen Digital Inc. -> Piriform Software Ltd) Task: {42F38AC4-BED9-43E5-A36C-18714128272C} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem131.0.6776.0{71701F6B-A43C-48D5-B398-2F4E2790608B} => C:\Program Files (x86)\Google\GoogleUpdater\131.0.6776.0\updater.exe [5507168 2024-10-14] (Google LLC -> Google LLC) Task: {71A05EC2-17C1-4B55-8ED9-A3EF6114AEBE} - System32\Tasks\SamsungMagician => C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagician.exe [140405056 2024-08-23] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) -> C:\Program Files (x86)\Samsung\Samsung Magician\\--disable-gpu-sandbox /AUTOHIDE CHR HKLM-x32\...\Chrome\Extension: [cchfigjcpjmclmmphipdkeocklpnjecm] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx [2017-11-01] 2024-04-03 10:47 - 2024-04-03 10:47 - 000000000 _____ () C:\Users\Didier\AppData\Local\oobelibMkey.log CustomCLSID: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001_Classes\CLSID\{38626B40-64E1-4F8C-AEDA-CFF32F38602E}\localserver32 -> "C:\Program Files (x86)\Druide\Antidote 10\Application\Bin64\AgentAntidote.exe" -activex => Pas de fichier CustomCLSID: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001_Classes\CLSID\{5563940C-ABF0-47B4-BB0E-B5D8680B570A}\localserver32 -> "C:\Program Files (x86)\Druide\Connectix 10\Application\Bin64\MoteurIntegration.exe" -activex => Pas de fichier CustomCLSID: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001_Classes\CLSID\{5563940D-49FD-4F1A-96AA-147B474290EE}\localserver32 -> "C:\Program Files (x86)\Druide\Connectix 10\Application\Bin64\MoteurIntegration.exe" -activex => Pas de fichier CustomCLSID: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001_Classes\CLSID\{A12A9CAB-1C75-4AA3-A980-74F25AB94C8E}\localserver32 -> "C:\Program Files (x86)\Druide\Connectix 10\Application\Bin64\AgentConnectix.exe" -activex => Pas de fichier CustomCLSID: HKU\S-1-5-21-3262927612-1677394149-2524797181-1001_Classes\CLSID\{A12A9CAB-1C75-4AA3-A980-74F25AB94C8F}\localserver32 -> "C:\Program Files (x86)\Druide\Connectix 10\Application\Bin64\AgentConnectix.exe" -activex => Pas de fichier FirewallRules: [{40B20ED7-E25C-4C8F-90C3-927A3DC77579}] => (Allow) C:\Users\Didier\AppData\Local\Temp\7zS5347\HP.EasyStart.exe => Pas de fichier FirewallRules: [{58C81AA1-949F-4F96-9274-CC807DD75FF6}] => (Allow) C:\Users\Didier\AppData\Local\Temp\7zS6EA0\HP.EasyStart.exe => Pas de fichier FirewallRules: [{3C9F6770-D9E0-4687-90EB-66BFEF6D8879}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hades II\Ship\Hades2.exe => Pas de fichier FirewallRules: [{C82585D2-2E60-4AC0-8B13-6F6039C8A710}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hades II\Ship\Hades2.exe => Pas de fichier FirewallRules: [{BA97CDC2-76DA-4FDE-B9CA-C39B2B4389D5}] => (Allow) C:\Users\Didier\AppData\Local\Temp\7zS5B0E\HP.EasyStart.exe => Pas de fichier HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Riot Games\Client Riot.lnk StartBatch: del /s /q C:\Windows\prefetch\*.* del /s /q "%userprofile%\AppData\Local\Temp\*.*" del /s /q "%userprofile%\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\*.*" del /s /q "%userprofile%\AppData\LocalLow\Microsoft\CryptnetUrlCache\Metada\*.*" del /s /q "%userprofile%\AppData\Local\Microsoft\Windows\History\*.*" del /s /q "%userprofile%\AppData\Local\Microsoft\Windows\Temporary Internet Files\*.*" del /s /q "%userprofile%\AppData\Roaming\Microsoft\Windows\Recent\*.lnk" For /D %%d In ("%userprofile%\AppData\Local\Mozilla\Firefox\Profiles\*") Do (If Exist "%%d\Cache2" Del /s /q "%%d\Cache2\*.*") del /s /q "%userprofile%\AppData\Local\Google\Chrome\User Data\Default\Code Cache\Js\." del /s /q "%userprofile%\AppData\Local\Google\Chrome\User Data\Default\Cache\*.*" del /s /q "%userprofile%\AppData\Local\Microsoft\Edge\User Data\Default\Code Cache\Js\." del /s /q "%userprofile%\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\." For /D %%d In ("%userprofile%\AppData\Local\Thunderbird\Profiles\*") Do (If Exist "%%d\Cache2" Del /s /q "%%d\Cache2\*.*") For /D %%d In ("%userprofile%\AppData\Roaming\Mozilla\Firefox\Profiles\*") Do (If Exist "%%d\Places.Sqlite" Del /s /q "%%d\Places.Sqlite") del /s /q "%userprofile%\AppData\Local\Google\Chrome\User Data\Default\History" del /s /q "%userprofile%\AppData\Local\Microsoft\Edge\User Data\Default\History" ipconfig /release ipconfig /renew ipconfig /flushdns ipconfig /registerdns netsh winsock reset netsh advfirewall reset netsh advfirewall set allprofiles state on netsh winhttp reset proxy bitsadmin /reset /allusers net start sdrsvc net start vss net start rpcss net start eventsystem net start winmgmt net start msiserver net start bfe net start trustedinstaller net start windefend net start mpssvc net start mpsdrv Winmgmt /salvagerepository Winmgmt /resetrepository Winmgmt /resyncperf Endbatch: cmd: Net start wuauserv Reboot: end::