Zoek.exe v5.0.0.0 Updated 05-September-2014 Tool run by Elham on vr 05-09-2014 at 14:54:25,62. Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Elham\Desktop\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== System Restore Info ====================== 5-9-2014 14:56:39 Zoek.exe System Restore Point Created Succesfully. ==== Empty Folders Check ====================== C:\PROGRA~2\AGEIA Technologies deleted successfully C:\PROGRA~2\AVS4YOU deleted successfully C:\PROGRA~2\MediaPlayerV1 deleted successfully C:\PROGRA~2\MSXML 4.0 deleted successfully C:\PROGRA~2\SQUARE ENIX deleted successfully C:\PROGRA~2\Trend Micro deleted successfully C:\PROGRA~2\wither 2 deleted successfully C:\PROGRA~2\COMMON~1\Symantec Shared deleted successfully C:\Program Files\Intel deleted successfully C:\PROGRA~3\AVAST Software deleted successfully C:\PROGRA~3\DAEMON Tools Pro deleted successfully C:\PROGRA~3\Oracle deleted successfully C:\PROGRA~3\xml_param deleted successfully C:\Users\Elham\AppData\Roaming\Dofike deleted successfully C:\Users\Elham\AppData\Roaming\Malwarebytes deleted successfully C:\Users\Elham\AppData\Roaming\Tanyo deleted successfully C:\Users\Elham\AppData\Roaming\WordWeb deleted successfully C:\Users\Elham\AppData\Roaming\{950EB46C-6AC7-4ACC-AB36-9A6A77C08B6A} deleted successfully C:\Users\Elham\AppData\Local\FSP deleted successfully C:\Users\Elham\AppData\Local\LogMeIn Rescue Applet deleted successfully C:\Users\Elham\AppData\Local\My Games deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-55408526-856673997-1952082211-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1B4D240E-8BDE-4C8D-8B93-C74D2F8A8284} deleted successfully HKEY_USERS\S-1-5-21-55408526-856673997-1952082211-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1B4D240E-8BDE-4C8D-8B93-C74D2F8A8284} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{1B4D240E-8BDE-4C8D-8B93-C74D2F8A8284} deleted successfully HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{1B4D240E-8BDE-4C8D-8B93-C74D2F8A8284} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1B4D240E-8BDE-4C8D-8B93-C74D2F8A8284} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== Registry Fix Code x64 ====================== Windows Registry Editor Version 5.00 [-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1B4D240E-8BDE-4C8D-8B93-C74D2F8A8284}] ==== Deleting Files \ Folders ====================== C:\Users\Elham\AppData\Local\Flvto Youtube Downloader deleted C:\Program Files (x86)\FLV2PC deleted C:\PROGRA~2\VideoPlayerV3 deleted C:\PROGRA~2\WebexpEnhancedV1 deleted C:\PROGRA~2\Wondershare deleted C:\found.000 deleted C:\Users\Elham\AppData\Roaming\dll-files.com deleted C:\PROGRA~3\hash.dat deleted C:\PROGRA~3\Wondershare Video Converter Ultimate deleted C:\PROGRA~3\Package Cache deleted C:\Users\Elham\AppData\Local\CRE deleted C:\Users\Elham\AppData\Local\NativeMessaging deleted C:\Users\Elham\AppData\Local\Wondershare deleted C:\windows\wininit.ini deleted C:\windows\SysNative\config\systemprofile\Searches deleted C:\Users\Elham\Desktop\Flvto Youtube Downloader.lnk deleted "C:\windows\Installer\1b29653.msi" deleted "C:\windows\Installer\1b29653.msi" deleted "C:\Users\Elham\AppData\Local\{95EE8F7D-61EA-4960-8D2A-AA47C521F09C}" deleted ==== Files Recently Created / Modified ====================== ====== C:\windows ==== ====== C:\Users\Elham\AppData\Local\Temp ==== 2014-09-04 17:49:41 FDEBDF07F5C0018A6F36C2AAA4185E5C 272056 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\V3\amd64\hpinkcoiC211.dll 2014-09-04 17:49:41 FD9E709D6107F039A9533DE5FE316E73 324152 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\utils\x86\DIFxAPI.dll 2014-09-04 17:49:41 F9884F405C4BDE276EAB50F20AA31046 739512 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\V3\amd64\hpbytxUI11.dll 2014-09-04 17:49:41 F3D4C92BED5C7796208E8E9D90BC3002 2525368 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\drivers\scanner\x32\HPScanTRDrv_DJ2540.dll 2014-09-04 17:49:41 EF7AD800D464599B9D6753BC201BAC61 333496 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\V3\amd64\hpinkstsC211LM.dll 2014-09-04 17:49:41 ED63F3324D0F01A97EB7D69BCA024740 669880 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\V3\amd64\hpinkstsC211.dll 2014-09-04 17:49:41 E427E60015515E3DB9E34FF5CEAB4C94 599736 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\V3\amd64\hpfime52.dll 2014-09-04 17:49:41 D61D6DF25F75E8AF11CFC318CBDF1806 685240 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\V3\i386\hpbytxdrv11.dll 2014-09-04 17:49:41 D5662E0CC706817A77F5CE12E1717C38 576184 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\V3\i386\hpfime52.dll 2014-09-04 17:49:41 D496480A00ABDE0655C0FDCE9530B43E 216064 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\Optional\gcapi_dll.dll 2014-09-04 17:49:41 CCE675895842FDA649F516CDCABF64D4 346296 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\V3\amd64\hpvplres11.dll 2014-09-04 17:49:41 BD4463D2EB414C36FC231ED09C208FDE 5765304 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\V3\amd64\hpbxpsrender.dll 2014-09-04 17:49:41 AE2A23229873B9CDC2E9E319BD692B20 1773672 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\Optional\RLBootstrap.exe 2014-09-04 17:49:41 AB56C1DFF18A0B10DF8837172BC73F88 884224 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\V3\amd64\UNIDRVUI.DLL 2014-09-04 17:49:41 A67BE966B85FB9F678C57E0F4AFFF345 4673720 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\V3\i386\hpbxpsrender.dll 2014-09-04 17:49:41 A6189F9CBE3D0CCF546CFCF1238533A1 762368 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\V3\amd64\UNIRES.DLL 2014-09-04 17:49:41 A50CA593D4BBED54D1DE37E14AE54226 528056 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\V3\i386\hpbytxUI11.dll 2014-09-04 17:49:41 99633C198EE46BF64E7FD3057F1B782A 518328 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\drivers\scanner\x64\HPWia1_DJ2540.dll 2014-09-04 17:49:41 9193DAF7D3A050936C40F4329B91ABFA 3574456 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\drivers\scanner\x64\HPScanTRDrv_DJ2540.dll 2014-09-04 17:49:41 8F5149D74F9562D832B91393E6EF0B12 747520 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\V3\i386\UNIDRVUI.DLL 2014-09-04 17:49:41 87A45F57756B356773EFC5A3CFBB4610 1770808 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\Optional\smartprintsetup.exe 2014-09-04 17:49:41 7B42404D97C5BB25400C7EAA9631EA3A 2936832 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\V3\amd64\xpssvcs.dll 2014-09-04 17:49:41 757BBE6F1922817121EFC45245754A5B 417464 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\drivers\scanner\x32\HPWia1_DJ2540.dll 2014-09-04 17:49:41 70ADF0169959477942F3EE8DBF0034DD 4991488 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\V3\i386\mtxr.dll 2014-09-04 17:49:41 696628D304556B4187C4324B40C7ACF9 536760 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\V3\i386\hpinkstsC211.dll 2014-09-04 17:49:41 634557D21BB11C455564B106D5861BE9 525496 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\drivers\scanner\x64\HPWia2_DJ2540.dll 2014-09-04 17:49:41 61BC40D1FAD9E0FAA9A07219B90BA0E4 73344 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\Optional\gtapi_signed.dll 2014-09-04 17:49:41 5BAA4353D40DDD5E0F6F6EA038F89B89 1676288 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\V3\i386\xpssvcs.dll 2014-09-04 17:49:41 5B8EF1B7E18D7BDBC9E7494B4F913C25 1725448 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\Setup.exe 2014-09-04 17:49:41 585D2EB9FBED6B7B9D0107BFB5C94043 531512 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\utils\x64\DIFxAPI.dll 2014-09-04 17:49:41 453AB2636CECBBEBA3C22C7BA1BFC78F 760320 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\V3\amd64\mxdwdrv.dll 2014-09-04 17:49:41 360E58D6BB4AC2C0F9CDCA70A65A0978 375296 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\V3\i386\UNIDRV.DLL 2014-09-04 17:49:41 318CC6638AE6386B81EB96B2DC80DF05 222904 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\V3\i386\hpinkcoiC211.dll 2014-09-04 17:49:41 2B858401FC4B38D11D5C69D379B19296 346296 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\V3\i386\hpvplres11.dll 2014-09-04 17:49:41 231AD4C07F2716540001330F01E05688 5863936 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\V3\amd64\mtxr.dll 2014-09-04 17:49:41 1E291EB2E7EDD9D0E666EAF3CAA6F887 420024 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\drivers\scanner\x32\HPWia2_DJ2540.dll 2014-09-04 17:49:41 1D7EE6A1E9326C157E380173BE2B31A4 779776 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\V3\i386\mxdwdrv.dll 2014-09-04 17:49:41 15FBC3C3DA0CE32D2851D72EDE0F59C0 479232 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\V3\amd64\UNIDRV.DLL 2014-09-04 17:49:41 15A9B01686075F7524D91BB479926F87 762368 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\V3\i386\UNIRES.DLL 2014-09-04 17:49:41 136DD3B6A6F1A6A3F45CD55F7F1180D3 896184 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\V3\amd64\hpbytxdrv11.dll 2014-09-04 17:49:41 03BC9FFB36F0E9E4E7302C5E0AEE041A 309768 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\utils\x64\RemovePreinstalledDrivers.exe 2014-09-04 17:49:41 02BE16BF5CFDAFBB004DAF09617FBF2B 271032 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\V3\i386\hpinkstsC211LM.dll 2014-09-04 17:49:40 AD5BFE2D06A30947B4F2881899BC28EB 257032 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\utils\x86\RemovePreinstalledDrivers.exe 2014-09-04 17:49:38 F911AB60CF26C7BFEEC7806A86A6014B 2878648 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\V3\amd64\hpinkinsC211.exe 2014-09-04 17:49:38 CF2CDAA86B40C6BFA93FCB545726F506 22879240 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\HP-DQEX5.exe 2014-09-04 17:49:38 CBA729142694A081A984262E3E9A7097 6914064 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\Optional\HP_IPG_Toolbar_installer.exe 2014-09-04 17:49:38 C8C3098AB5B04D17AF8024A6074955C3 34267376 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\Optional\HP_IPG_Chrome_installer.exe 2014-09-04 17:49:38 B5C499857492D0FED8B668839853FE79 198664 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\utils\hpUrlLauncher.exe 2014-09-04 17:49:38 AAFC1D3295077019BD8B653540143616 2220216 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\V3\i386\hpinkinsC211.exe 2014-09-04 17:49:38 269F314B87E6222A20E5F745B6B89783 2869264 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\DotNet\dotNetFx35setup.exe 2014-09-04 17:49:33 FFCF8E3421FB4B04B7C95583B6E6CDDD 967168 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\Optional\HP Update.msi 2014-09-04 17:49:33 E35BA4B76A778E958D173F5745774E08 4571136 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\D2540x86.msi 2014-09-04 17:49:33 9B9C8811CECE78EBC83E91FBA4B22222 245760 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\Optional\D254Ux64.msi 2014-09-04 17:49:33 399713C464B76AAC0DC7868C23D2FF3E 147456 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\Optional\lp-dj2540MSI.msi 2014-09-04 17:49:33 2891AF03433FE6605050E0F27D8EA6AD 245760 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\Optional\D254Ux86.msi 2014-09-04 17:49:33 223FC92EEB80352C8E47FA89C92D61E9 4775936 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\D2540x64.msi 2014-09-04 17:48:28 AB56C1DFF18A0B10DF8837172BC73F88 884224 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\V3\amd64\UNIDRVUI.DLL 2014-09-04 17:48:28 A6189F9CBE3D0CCF546CFCF1238533A1 762368 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\V3\amd64\UNIRES.DLL 2014-09-04 17:48:28 7B42404D97C5BB25400C7EAA9631EA3A 2936832 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\V3\amd64\xpssvcs.dll 2014-09-04 17:48:28 5BAA4353D40DDD5E0F6F6EA038F89B89 1676288 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\V3\i386\xpssvcs.dll 2014-09-04 17:48:28 15A9B01686075F7524D91BB479926F87 762368 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\V3\i386\UNIRES.DLL 2014-09-04 17:48:27 FDEBDF07F5C0018A6F36C2AAA4185E5C 272056 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\V3\amd64\hpinkcoiC211.dll 2014-09-04 17:48:27 FD9E709D6107F039A9533DE5FE316E73 324152 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\utils\x86\DIFxAPI.dll 2014-09-04 17:48:27 F9884F405C4BDE276EAB50F20AA31046 739512 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\V3\amd64\hpbytxUI11.dll 2014-09-04 17:48:27 F3D4C92BED5C7796208E8E9D90BC3002 2525368 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\drivers\scanner\x32\HPScanTRDrv_DJ2540.dll 2014-09-04 17:48:27 EF7AD800D464599B9D6753BC201BAC61 333496 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\V3\amd64\hpinkstsC211LM.dll 2014-09-04 17:48:27 ED63F3324D0F01A97EB7D69BCA024740 669880 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\V3\amd64\hpinkstsC211.dll 2014-09-04 17:48:27 E427E60015515E3DB9E34FF5CEAB4C94 599736 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\V3\amd64\hpfime52.dll 2014-09-04 17:48:27 D61D6DF25F75E8AF11CFC318CBDF1806 685240 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\V3\i386\hpbytxdrv11.dll 2014-09-04 17:48:27 D5662E0CC706817A77F5CE12E1717C38 576184 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\V3\i386\hpfime52.dll 2014-09-04 17:48:27 D496480A00ABDE0655C0FDCE9530B43E 216064 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\Optional\gcapi_dll.dll 2014-09-04 17:48:27 CCE675895842FDA649F516CDCABF64D4 346296 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\V3\amd64\hpvplres11.dll 2014-09-04 17:48:27 BD4463D2EB414C36FC231ED09C208FDE 5765304 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\V3\amd64\hpbxpsrender.dll 2014-09-04 17:48:27 AE2A23229873B9CDC2E9E319BD692B20 1773672 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\Optional\RLBootstrap.exe 2014-09-04 17:48:27 AD5BFE2D06A30947B4F2881899BC28EB 257032 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\utils\x86\RemovePreinstalledDrivers.exe 2014-09-04 17:48:27 A67BE966B85FB9F678C57E0F4AFFF345 4673720 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\V3\i386\hpbxpsrender.dll 2014-09-04 17:48:27 A50CA593D4BBED54D1DE37E14AE54226 528056 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\V3\i386\hpbytxUI11.dll 2014-09-04 17:48:27 99633C198EE46BF64E7FD3057F1B782A 518328 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\drivers\scanner\x64\HPWia1_DJ2540.dll 2014-09-04 17:48:27 9193DAF7D3A050936C40F4329B91ABFA 3574456 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\drivers\scanner\x64\HPScanTRDrv_DJ2540.dll 2014-09-04 17:48:27 8F5149D74F9562D832B91393E6EF0B12 747520 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\V3\i386\UNIDRVUI.DLL 2014-09-04 17:48:27 87A45F57756B356773EFC5A3CFBB4610 1770808 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\Optional\smartprintsetup.exe 2014-09-04 17:48:27 757BBE6F1922817121EFC45245754A5B 417464 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\drivers\scanner\x32\HPWia1_DJ2540.dll 2014-09-04 17:48:27 70ADF0169959477942F3EE8DBF0034DD 4991488 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\V3\i386\mtxr.dll 2014-09-04 17:48:27 696628D304556B4187C4324B40C7ACF9 536760 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\V3\i386\hpinkstsC211.dll 2014-09-04 17:48:27 634557D21BB11C455564B106D5861BE9 525496 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\drivers\scanner\x64\HPWia2_DJ2540.dll 2014-09-04 17:48:27 61BC40D1FAD9E0FAA9A07219B90BA0E4 73344 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\Optional\gtapi_signed.dll 2014-09-04 17:48:27 5B8EF1B7E18D7BDBC9E7494B4F913C25 1725448 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\Setup.exe 2014-09-04 17:48:27 585D2EB9FBED6B7B9D0107BFB5C94043 531512 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\utils\x64\DIFxAPI.dll 2014-09-04 17:48:27 453AB2636CECBBEBA3C22C7BA1BFC78F 760320 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\V3\amd64\mxdwdrv.dll 2014-09-04 17:48:27 360E58D6BB4AC2C0F9CDCA70A65A0978 375296 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\V3\i386\UNIDRV.DLL 2014-09-04 17:48:27 318CC6638AE6386B81EB96B2DC80DF05 222904 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\V3\i386\hpinkcoiC211.dll 2014-09-04 17:48:27 2B858401FC4B38D11D5C69D379B19296 346296 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\V3\i386\hpvplres11.dll 2014-09-04 17:48:27 231AD4C07F2716540001330F01E05688 5863936 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\V3\amd64\mtxr.dll 2014-09-04 17:48:27 1E291EB2E7EDD9D0E666EAF3CAA6F887 420024 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\drivers\scanner\x32\HPWia2_DJ2540.dll 2014-09-04 17:48:27 1D7EE6A1E9326C157E380173BE2B31A4 779776 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\V3\i386\mxdwdrv.dll 2014-09-04 17:48:27 15FBC3C3DA0CE32D2851D72EDE0F59C0 479232 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\V3\amd64\UNIDRV.DLL 2014-09-04 17:48:27 136DD3B6A6F1A6A3F45CD55F7F1180D3 896184 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\V3\amd64\hpbytxdrv11.dll 2014-09-04 17:48:27 03BC9FFB36F0E9E4E7302C5E0AEE041A 309768 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\utils\x64\RemovePreinstalledDrivers.exe 2014-09-04 17:48:27 02BE16BF5CFDAFBB004DAF09617FBF2B 271032 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\V3\i386\hpinkstsC211LM.dll 2014-09-04 17:48:25 F911AB60CF26C7BFEEC7806A86A6014B 2878648 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\V3\amd64\hpinkinsC211.exe 2014-09-04 17:48:25 CF2CDAA86B40C6BFA93FCB545726F506 22879240 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\HP-DQEX5.exe 2014-09-04 17:48:25 CBA729142694A081A984262E3E9A7097 6914064 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\Optional\HP_IPG_Toolbar_installer.exe 2014-09-04 17:48:25 C8C3098AB5B04D17AF8024A6074955C3 34267376 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\Optional\HP_IPG_Chrome_installer.exe 2014-09-04 17:48:25 B5C499857492D0FED8B668839853FE79 198664 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\utils\hpUrlLauncher.exe 2014-09-04 17:48:25 AAFC1D3295077019BD8B653540143616 2220216 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\V3\i386\hpinkinsC211.exe 2014-09-04 17:48:25 269F314B87E6222A20E5F745B6B89783 2869264 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\DotNet\dotNetFx35setup.exe 2014-09-04 17:48:20 FFCF8E3421FB4B04B7C95583B6E6CDDD 967168 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\Optional\HP Update.msi 2014-09-04 17:48:20 E35BA4B76A778E958D173F5745774E08 4571136 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\D2540x86.msi 2014-09-04 17:48:20 9B9C8811CECE78EBC83E91FBA4B22222 245760 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\Optional\D254Ux64.msi 2014-09-04 17:48:20 399713C464B76AAC0DC7868C23D2FF3E 147456 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\Optional\lp-dj2540MSI.msi 2014-09-04 17:48:20 2891AF03433FE6605050E0F27D8EA6AD 245760 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\Optional\D254Ux86.msi 2014-09-04 17:48:20 223FC92EEB80352C8E47FA89C92D61E9 4775936 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\D2540x64.msi 2014-09-04 17:19:39 4965B005492CBA7719E82B71E3245495 174440 ----a-w- C:\Users\Elham\AppData\Local\Temp\Setup00000e2c\ose00000.exe 2014-09-04 17:17:26 EB84A9F59427CFDE0E9952C55AFDE600 7394472 ----a-w- C:\Users\Elham\AppData\Local\Temp\Setup00001b9c\OSETUP.DLL 2014-09-04 17:17:26 B0387D2909B467081EABEB45B1A0A7C7 193144 ----a-w- C:\Users\Elham\AppData\Local\Temp\Setup00001b9c\OSETUPUI.DLL 2014-09-04 17:09:17 EB84A9F59427CFDE0E9952C55AFDE600 7394472 ----a-w- C:\Users\Elham\AppData\Local\Temp\Setup00001ba8\OSETUP.DLL 2014-09-04 17:09:17 B0387D2909B467081EABEB45B1A0A7C7 193144 ----a-w- C:\Users\Elham\AppData\Local\Temp\Setup00001ba8\OSETUPUI.DLL 2014-09-04 17:02:15 FDEBDF07F5C0018A6F36C2AAA4185E5C 272056 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\V3\amd64\hpinkcoiC211.dll 2014-09-04 17:02:15 FD9E709D6107F039A9533DE5FE316E73 324152 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\utils\x86\DIFxAPI.dll 2014-09-04 17:02:15 F9884F405C4BDE276EAB50F20AA31046 739512 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\V3\amd64\hpbytxUI11.dll 2014-09-04 17:02:15 F3D4C92BED5C7796208E8E9D90BC3002 2525368 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\drivers\scanner\x32\HPScanTRDrv_DJ2540.dll 2014-09-04 17:02:15 EF7AD800D464599B9D6753BC201BAC61 333496 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\V3\amd64\hpinkstsC211LM.dll 2014-09-04 17:02:15 ED63F3324D0F01A97EB7D69BCA024740 669880 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\V3\amd64\hpinkstsC211.dll 2014-09-04 17:02:15 E427E60015515E3DB9E34FF5CEAB4C94 599736 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\V3\amd64\hpfime52.dll 2014-09-04 17:02:15 D61D6DF25F75E8AF11CFC318CBDF1806 685240 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\V3\i386\hpbytxdrv11.dll 2014-09-04 17:02:15 D5662E0CC706817A77F5CE12E1717C38 576184 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\V3\i386\hpfime52.dll 2014-09-04 17:02:15 D496480A00ABDE0655C0FDCE9530B43E 216064 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\Optional\gcapi_dll.dll 2014-09-04 17:02:15 CCE675895842FDA649F516CDCABF64D4 346296 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\V3\amd64\hpvplres11.dll 2014-09-04 17:02:15 BD4463D2EB414C36FC231ED09C208FDE 5765304 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\V3\amd64\hpbxpsrender.dll 2014-09-04 17:02:15 AE2A23229873B9CDC2E9E319BD692B20 1773672 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\Optional\RLBootstrap.exe 2014-09-04 17:02:15 AD5BFE2D06A30947B4F2881899BC28EB 257032 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\utils\x86\RemovePreinstalledDrivers.exe 2014-09-04 17:02:15 AB56C1DFF18A0B10DF8837172BC73F88 884224 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\V3\amd64\UNIDRVUI.DLL 2014-09-04 17:02:15 A67BE966B85FB9F678C57E0F4AFFF345 4673720 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\V3\i386\hpbxpsrender.dll 2014-09-04 17:02:15 A6189F9CBE3D0CCF546CFCF1238533A1 762368 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\V3\amd64\UNIRES.DLL 2014-09-04 17:02:15 A50CA593D4BBED54D1DE37E14AE54226 528056 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\V3\i386\hpbytxUI11.dll 2014-09-04 17:02:15 99633C198EE46BF64E7FD3057F1B782A 518328 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\drivers\scanner\x64\HPWia1_DJ2540.dll 2014-09-04 17:02:15 9193DAF7D3A050936C40F4329B91ABFA 3574456 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\drivers\scanner\x64\HPScanTRDrv_DJ2540.dll 2014-09-04 17:02:15 8F5149D74F9562D832B91393E6EF0B12 747520 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\V3\i386\UNIDRVUI.DLL 2014-09-04 17:02:15 87A45F57756B356773EFC5A3CFBB4610 1770808 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\Optional\smartprintsetup.exe 2014-09-04 17:02:15 7B42404D97C5BB25400C7EAA9631EA3A 2936832 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\V3\amd64\xpssvcs.dll 2014-09-04 17:02:15 757BBE6F1922817121EFC45245754A5B 417464 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\drivers\scanner\x32\HPWia1_DJ2540.dll 2014-09-04 17:02:15 70ADF0169959477942F3EE8DBF0034DD 4991488 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\V3\i386\mtxr.dll 2014-09-04 17:02:15 696628D304556B4187C4324B40C7ACF9 536760 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\V3\i386\hpinkstsC211.dll 2014-09-04 17:02:15 634557D21BB11C455564B106D5861BE9 525496 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\drivers\scanner\x64\HPWia2_DJ2540.dll 2014-09-04 17:02:15 61BC40D1FAD9E0FAA9A07219B90BA0E4 73344 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\Optional\gtapi_signed.dll 2014-09-04 17:02:15 5BAA4353D40DDD5E0F6F6EA038F89B89 1676288 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\V3\i386\xpssvcs.dll 2014-09-04 17:02:15 5B8EF1B7E18D7BDBC9E7494B4F913C25 1725448 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\Setup.exe 2014-09-04 17:02:15 585D2EB9FBED6B7B9D0107BFB5C94043 531512 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\utils\x64\DIFxAPI.dll 2014-09-04 17:02:15 453AB2636CECBBEBA3C22C7BA1BFC78F 760320 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\V3\amd64\mxdwdrv.dll 2014-09-04 17:02:15 360E58D6BB4AC2C0F9CDCA70A65A0978 375296 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\V3\i386\UNIDRV.DLL 2014-09-04 17:02:15 318CC6638AE6386B81EB96B2DC80DF05 222904 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\V3\i386\hpinkcoiC211.dll 2014-09-04 17:02:15 2B858401FC4B38D11D5C69D379B19296 346296 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\V3\i386\hpvplres11.dll 2014-09-04 17:02:15 231AD4C07F2716540001330F01E05688 5863936 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\V3\amd64\mtxr.dll 2014-09-04 17:02:15 1E291EB2E7EDD9D0E666EAF3CAA6F887 420024 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\drivers\scanner\x32\HPWia2_DJ2540.dll 2014-09-04 17:02:15 1D7EE6A1E9326C157E380173BE2B31A4 779776 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\V3\i386\mxdwdrv.dll 2014-09-04 17:02:15 15FBC3C3DA0CE32D2851D72EDE0F59C0 479232 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\V3\amd64\UNIDRV.DLL 2014-09-04 17:02:15 15A9B01686075F7524D91BB479926F87 762368 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\V3\i386\UNIRES.DLL 2014-09-04 17:02:15 136DD3B6A6F1A6A3F45CD55F7F1180D3 896184 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\V3\amd64\hpbytxdrv11.dll 2014-09-04 17:02:15 03BC9FFB36F0E9E4E7302C5E0AEE041A 309768 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\utils\x64\RemovePreinstalledDrivers.exe 2014-09-04 17:02:15 02BE16BF5CFDAFBB004DAF09617FBF2B 271032 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\V3\i386\hpinkstsC211LM.dll 2014-09-04 17:02:13 F911AB60CF26C7BFEEC7806A86A6014B 2878648 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\V3\amd64\hpinkinsC211.exe 2014-09-04 17:02:13 CF2CDAA86B40C6BFA93FCB545726F506 22879240 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\HP-DQEX5.exe 2014-09-04 17:02:13 CBA729142694A081A984262E3E9A7097 6914064 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\Optional\HP_IPG_Toolbar_installer.exe 2014-09-04 17:02:13 C8C3098AB5B04D17AF8024A6074955C3 34267376 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\Optional\HP_IPG_Chrome_installer.exe 2014-09-04 17:02:13 B5C499857492D0FED8B668839853FE79 198664 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\utils\hpUrlLauncher.exe 2014-09-04 17:02:13 AAFC1D3295077019BD8B653540143616 2220216 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\V3\i386\hpinkinsC211.exe 2014-09-04 17:02:12 269F314B87E6222A20E5F745B6B89783 2869264 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\DotNet\dotNetFx35setup.exe 2014-09-04 17:02:08 FFCF8E3421FB4B04B7C95583B6E6CDDD 967168 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\Optional\HP Update.msi 2014-09-04 17:02:08 E35BA4B76A778E958D173F5745774E08 4571136 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\D2540x86.msi 2014-09-04 17:02:08 9B9C8811CECE78EBC83E91FBA4B22222 245760 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\Optional\D254Ux64.msi 2014-09-04 17:02:08 399713C464B76AAC0DC7868C23D2FF3E 147456 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\Optional\lp-dj2540MSI.msi 2014-09-04 17:02:08 2891AF03433FE6605050E0F27D8EA6AD 245760 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\Optional\D254Ux86.msi 2014-09-04 17:02:08 223FC92EEB80352C8E47FA89C92D61E9 4775936 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\D2540x64.msi 2014-09-04 17:00:51 B7F0E5E885781E6BB1E1DD77078983DA 106859936 ----a-w- C:\Users\Elham\AppData\Local\Temp\HPInstaller.exe 2014-09-04 17:00:20 EF197AA4B0957EC309C80E54359C9859 2139144 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1D09\FileExtractor.exe 2014-09-04 17:00:20 9D00F1AB38581BF88B14FE2D252A146A 59200 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1D09\OESISCore.dll 2014-09-04 17:00:20 98ABCBD70CDA02B76E1A1E46C16192FA 35176 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1D09\hpodss01.dll 2014-09-04 17:00:20 67EC459E42D3081DD8FD34356F7CAFC1 770384 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1D09\msvcr100.dll 2014-09-04 17:00:20 3B69E2DC4064DC69C5DAC34EDE63BCDD 62272 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1D09\Impl_FirewallLib.dll 2014-09-04 17:00:20 34B262667221A3BE9F3B655A0515C115 2278920 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1D09\DeviceManager\DeviceManager.exe 2014-09-04 17:00:20 1EAE1C335BF0832D01679A64EB4BDC6B 4914184 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1D09\HPDiagnosticCoreUI.exe 2014-09-04 17:00:20 176B8323665484EA625FB3C693EF1AE2 81728 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1D09\Impl_SoftwareProductLib.dll 2014-09-04 17:00:20 03E9314004F504A14A61C3D364B62F66 421200 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1D09\msvcp100.dll 2014-09-04 17:00:19 D199B1ADFFB14070E8C4DA9E879EDBEE 309760 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1D09\DIFxAPI.dll 2014-09-04 17:00:19 A8CCE8212C38B19FB32450FA84F3EF66 511296 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1D09\CoreUtils.dll 2014-09-04 17:00:19 6FD3D9D5E12B2A140224F934AA2348B7 3590152 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1D09\HPDiagnosticCore.dll 2014-09-04 17:00:19 62B3ECAC5E2832CDD7C29CC711C4ABB6 219968 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1D09\FWManager.dll 2014-09-04 17:00:19 585D2EB9FBED6B7B9D0107BFB5C94043 531512 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1D09\DeviceManager\DIFxAPI.dll 2014-09-04 12:07:07 B0387D2909B467081EABEB45B1A0A7C7 193144 ----a-w- C:\Users\Elham\AppData\Local\Temp\Setup00001694\OSETUPUI.DLL 2014-09-04 12:07:06 EB84A9F59427CFDE0E9952C55AFDE600 7394472 ----a-w- C:\Users\Elham\AppData\Local\Temp\Setup00001694\OSETUP.DLL 2014-09-03 16:03:46 8FB443844DDE0AD7D9C004BC92BB9993 191872 ----a-w- C:\Users\Elham\AppData\Local\Temp\Setup000017a4\OSETUPUI.DLL 2014-09-03 16:03:46 27B7A7A8CB23796840624C13E78450BF 7378792 ----a-w- C:\Users\Elham\AppData\Local\Temp\Setup000017a4\OSETUP.DLL 2014-09-03 15:31:05 9D10F99A6712E28F8ACD5641E3A7EA6B 149352 ----a-w- C:\Users\Elham\AppData\Local\Temp\Setup00001ce0\ose00000.exe 2014-09-03 15:30:39 5E9692FC8D8A1A027CDC1F2360C85DED 5799592 ----a-w- C:\Users\Elham\AppData\Local\Temp\Setup00001ce0\OSETUP.DLL 2014-09-03 15:30:39 231FFAA09851ABD623E3179F12ADB70F 193144 ----a-w- C:\Users\Elham\AppData\Local\Temp\Setup00001ce0\OSETUPUI.DLL 2014-09-03 13:22:21 EF197AA4B0957EC309C80E54359C9859 2139144 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS280D\FileExtractor.exe 2014-09-03 13:22:21 1EAE1C335BF0832D01679A64EB4BDC6B 4914184 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS280D\HPDiagnosticCoreUI.exe 2014-09-03 13:22:20 D199B1ADFFB14070E8C4DA9E879EDBEE 309760 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS280D\DIFxAPI.dll 2014-09-03 13:22:20 A8CCE8212C38B19FB32450FA84F3EF66 511296 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS280D\CoreUtils.dll 2014-09-03 13:22:20 9D00F1AB38581BF88B14FE2D252A146A 59200 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS280D\OESISCore.dll 2014-09-03 13:22:20 98ABCBD70CDA02B76E1A1E46C16192FA 35176 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS280D\hpodss01.dll 2014-09-03 13:22:20 6FD3D9D5E12B2A140224F934AA2348B7 3590152 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS280D\HPDiagnosticCore.dll 2014-09-03 13:22:20 67EC459E42D3081DD8FD34356F7CAFC1 770384 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS280D\msvcr100.dll 2014-09-03 13:22:20 62B3ECAC5E2832CDD7C29CC711C4ABB6 219968 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS280D\FWManager.dll 2014-09-03 13:22:20 585D2EB9FBED6B7B9D0107BFB5C94043 531512 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS280D\DeviceManager\DIFxAPI.dll 2014-09-03 13:22:20 3B69E2DC4064DC69C5DAC34EDE63BCDD 62272 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS280D\Impl_FirewallLib.dll 2014-09-03 13:22:20 34B262667221A3BE9F3B655A0515C115 2278920 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS280D\DeviceManager\DeviceManager.exe 2014-09-03 13:22:20 176B8323665484EA625FB3C693EF1AE2 81728 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS280D\Impl_SoftwareProductLib.dll 2014-09-03 13:22:20 03E9314004F504A14A61C3D364B62F66 421200 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS280D\msvcp100.dll 2014-09-02 18:58:47 EF197AA4B0957EC309C80E54359C9859 2139144 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS5B6A\FileExtractor.exe 2014-09-02 18:58:47 9D00F1AB38581BF88B14FE2D252A146A 59200 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS5B6A\OESISCore.dll 2014-09-02 18:58:47 98ABCBD70CDA02B76E1A1E46C16192FA 35176 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS5B6A\hpodss01.dll 2014-09-02 18:58:47 67EC459E42D3081DD8FD34356F7CAFC1 770384 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS5B6A\msvcr100.dll 2014-09-02 18:58:47 3B69E2DC4064DC69C5DAC34EDE63BCDD 62272 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS5B6A\Impl_FirewallLib.dll 2014-09-02 18:58:47 34B262667221A3BE9F3B655A0515C115 2278920 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS5B6A\DeviceManager\DeviceManager.exe 2014-09-02 18:58:47 1EAE1C335BF0832D01679A64EB4BDC6B 4914184 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS5B6A\HPDiagnosticCoreUI.exe 2014-09-02 18:58:47 176B8323665484EA625FB3C693EF1AE2 81728 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS5B6A\Impl_SoftwareProductLib.dll 2014-09-02 18:58:47 03E9314004F504A14A61C3D364B62F66 421200 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS5B6A\msvcp100.dll 2014-09-02 18:58:46 D199B1ADFFB14070E8C4DA9E879EDBEE 309760 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS5B6A\DIFxAPI.dll 2014-09-02 18:58:46 A8CCE8212C38B19FB32450FA84F3EF66 511296 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS5B6A\CoreUtils.dll 2014-09-02 18:58:46 6FD3D9D5E12B2A140224F934AA2348B7 3590152 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS5B6A\HPDiagnosticCore.dll 2014-09-02 18:58:46 62B3ECAC5E2832CDD7C29CC711C4ABB6 219968 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS5B6A\FWManager.dll 2014-09-02 18:58:46 585D2EB9FBED6B7B9D0107BFB5C94043 531512 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS5B6A\DeviceManager\DIFxAPI.dll 2014-09-02 17:48:47 EF197AA4B0957EC309C80E54359C9859 2139144 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS25DA\FileExtractor.exe 2014-09-02 17:48:47 D199B1ADFFB14070E8C4DA9E879EDBEE 309760 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS25DA\DIFxAPI.dll 2014-09-02 17:48:47 A8CCE8212C38B19FB32450FA84F3EF66 511296 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS25DA\CoreUtils.dll 2014-09-02 17:48:47 9D00F1AB38581BF88B14FE2D252A146A 59200 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS25DA\OESISCore.dll 2014-09-02 17:48:47 98ABCBD70CDA02B76E1A1E46C16192FA 35176 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS25DA\hpodss01.dll 2014-09-02 17:48:47 6FD3D9D5E12B2A140224F934AA2348B7 3590152 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS25DA\HPDiagnosticCore.dll 2014-09-02 17:48:47 67EC459E42D3081DD8FD34356F7CAFC1 770384 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS25DA\msvcr100.dll 2014-09-02 17:48:47 62B3ECAC5E2832CDD7C29CC711C4ABB6 219968 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS25DA\FWManager.dll 2014-09-02 17:48:47 585D2EB9FBED6B7B9D0107BFB5C94043 531512 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS25DA\DeviceManager\DIFxAPI.dll 2014-09-02 17:48:47 3B69E2DC4064DC69C5DAC34EDE63BCDD 62272 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS25DA\Impl_FirewallLib.dll 2014-09-02 17:48:47 34B262667221A3BE9F3B655A0515C115 2278920 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS25DA\DeviceManager\DeviceManager.exe 2014-09-02 17:48:47 1EAE1C335BF0832D01679A64EB4BDC6B 4914184 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS25DA\HPDiagnosticCoreUI.exe 2014-09-02 17:48:47 176B8323665484EA625FB3C693EF1AE2 81728 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS25DA\Impl_SoftwareProductLib.dll 2014-09-02 17:48:47 03E9314004F504A14A61C3D364B62F66 421200 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS25DA\msvcp100.dll 2014-09-02 17:41:02 7B42404D97C5BB25400C7EAA9631EA3A 2936832 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\V3\amd64\xpssvcs.dll 2014-09-02 17:41:02 5BAA4353D40DDD5E0F6F6EA038F89B89 1676288 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\V3\i386\xpssvcs.dll 2014-09-02 17:41:02 15A9B01686075F7524D91BB479926F87 762368 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\V3\i386\UNIRES.DLL 2014-09-02 17:41:01 FDEBDF07F5C0018A6F36C2AAA4185E5C 272056 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\V3\amd64\hpinkcoiC211.dll 2014-09-02 17:41:01 FD9E709D6107F039A9533DE5FE316E73 324152 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\utils\x86\DIFxAPI.dll 2014-09-02 17:41:01 F9884F405C4BDE276EAB50F20AA31046 739512 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\V3\amd64\hpbytxUI11.dll 2014-09-02 17:41:01 F3D4C92BED5C7796208E8E9D90BC3002 2525368 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\drivers\scanner\x32\HPScanTRDrv_DJ2540.dll 2014-09-02 17:41:01 EF7AD800D464599B9D6753BC201BAC61 333496 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\V3\amd64\hpinkstsC211LM.dll 2014-09-02 17:41:01 ED63F3324D0F01A97EB7D69BCA024740 669880 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\V3\amd64\hpinkstsC211.dll 2014-09-02 17:41:01 E427E60015515E3DB9E34FF5CEAB4C94 599736 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\V3\amd64\hpfime52.dll 2014-09-02 17:41:01 D61D6DF25F75E8AF11CFC318CBDF1806 685240 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\V3\i386\hpbytxdrv11.dll 2014-09-02 17:41:01 D5662E0CC706817A77F5CE12E1717C38 576184 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\V3\i386\hpfime52.dll 2014-09-02 17:41:01 D496480A00ABDE0655C0FDCE9530B43E 216064 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\Optional\gcapi_dll.dll 2014-09-02 17:41:01 CCE675895842FDA649F516CDCABF64D4 346296 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\V3\amd64\hpvplres11.dll 2014-09-02 17:41:01 BD4463D2EB414C36FC231ED09C208FDE 5765304 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\V3\amd64\hpbxpsrender.dll 2014-09-02 17:41:01 AE2A23229873B9CDC2E9E319BD692B20 1773672 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\Optional\RLBootstrap.exe 2014-09-02 17:41:01 AD5BFE2D06A30947B4F2881899BC28EB 257032 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\utils\x86\RemovePreinstalledDrivers.exe 2014-09-02 17:41:01 AB56C1DFF18A0B10DF8837172BC73F88 884224 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\V3\amd64\UNIDRVUI.DLL 2014-09-02 17:41:01 A67BE966B85FB9F678C57E0F4AFFF345 4673720 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\V3\i386\hpbxpsrender.dll 2014-09-02 17:41:01 A6189F9CBE3D0CCF546CFCF1238533A1 762368 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\V3\amd64\UNIRES.DLL 2014-09-02 17:41:01 A50CA593D4BBED54D1DE37E14AE54226 528056 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\V3\i386\hpbytxUI11.dll 2014-09-02 17:41:01 99633C198EE46BF64E7FD3057F1B782A 518328 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\drivers\scanner\x64\HPWia1_DJ2540.dll 2014-09-02 17:41:01 9193DAF7D3A050936C40F4329B91ABFA 3574456 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\drivers\scanner\x64\HPScanTRDrv_DJ2540.dll 2014-09-02 17:41:01 8F5149D74F9562D832B91393E6EF0B12 747520 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\V3\i386\UNIDRVUI.DLL 2014-09-02 17:41:01 87A45F57756B356773EFC5A3CFBB4610 1770808 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\Optional\smartprintsetup.exe 2014-09-02 17:41:01 757BBE6F1922817121EFC45245754A5B 417464 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\drivers\scanner\x32\HPWia1_DJ2540.dll 2014-09-02 17:41:01 70ADF0169959477942F3EE8DBF0034DD 4991488 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\V3\i386\mtxr.dll 2014-09-02 17:41:01 696628D304556B4187C4324B40C7ACF9 536760 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\V3\i386\hpinkstsC211.dll 2014-09-02 17:41:01 634557D21BB11C455564B106D5861BE9 525496 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\drivers\scanner\x64\HPWia2_DJ2540.dll 2014-09-02 17:41:01 61BC40D1FAD9E0FAA9A07219B90BA0E4 73344 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\Optional\gtapi_signed.dll 2014-09-02 17:41:01 5B8EF1B7E18D7BDBC9E7494B4F913C25 1725448 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\Setup.exe 2014-09-02 17:41:01 585D2EB9FBED6B7B9D0107BFB5C94043 531512 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\utils\x64\DIFxAPI.dll 2014-09-02 17:41:01 453AB2636CECBBEBA3C22C7BA1BFC78F 760320 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\V3\amd64\mxdwdrv.dll 2014-09-02 17:41:01 360E58D6BB4AC2C0F9CDCA70A65A0978 375296 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\V3\i386\UNIDRV.DLL 2014-09-02 17:41:01 318CC6638AE6386B81EB96B2DC80DF05 222904 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\V3\i386\hpinkcoiC211.dll 2014-09-02 17:41:01 2B858401FC4B38D11D5C69D379B19296 346296 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\V3\i386\hpvplres11.dll 2014-09-02 17:41:01 231AD4C07F2716540001330F01E05688 5863936 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\V3\amd64\mtxr.dll 2014-09-02 17:41:01 1E291EB2E7EDD9D0E666EAF3CAA6F887 420024 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\drivers\scanner\x32\HPWia2_DJ2540.dll 2014-09-02 17:41:01 1D7EE6A1E9326C157E380173BE2B31A4 779776 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\V3\i386\mxdwdrv.dll 2014-09-02 17:41:01 15FBC3C3DA0CE32D2851D72EDE0F59C0 479232 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\V3\amd64\UNIDRV.DLL 2014-09-02 17:41:01 136DD3B6A6F1A6A3F45CD55F7F1180D3 896184 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\V3\amd64\hpbytxdrv11.dll 2014-09-02 17:41:01 03BC9FFB36F0E9E4E7302C5E0AEE041A 309768 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\utils\x64\RemovePreinstalledDrivers.exe 2014-09-02 17:41:01 02BE16BF5CFDAFBB004DAF09617FBF2B 271032 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\V3\i386\hpinkstsC211LM.dll 2014-09-02 17:40:59 CBA729142694A081A984262E3E9A7097 6914064 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\Optional\HP_IPG_Toolbar_installer.exe 2014-09-02 17:40:58 F911AB60CF26C7BFEEC7806A86A6014B 2878648 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\V3\amd64\hpinkinsC211.exe 2014-09-02 17:40:58 CF2CDAA86B40C6BFA93FCB545726F506 22879240 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\HP-DQEX5.exe 2014-09-02 17:40:58 C8C3098AB5B04D17AF8024A6074955C3 34267376 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\Optional\HP_IPG_Chrome_installer.exe 2014-09-02 17:40:58 B5C499857492D0FED8B668839853FE79 198664 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\utils\hpUrlLauncher.exe 2014-09-02 17:40:58 AAFC1D3295077019BD8B653540143616 2220216 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\V3\i386\hpinkinsC211.exe 2014-09-02 17:40:58 269F314B87E6222A20E5F745B6B89783 2869264 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\DotNet\dotNetFx35setup.exe 2014-09-02 17:40:51 FFCF8E3421FB4B04B7C95583B6E6CDDD 967168 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\Optional\HP Update.msi 2014-09-02 17:40:51 E35BA4B76A778E958D173F5745774E08 4571136 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\D2540x86.msi 2014-09-02 17:40:51 9B9C8811CECE78EBC83E91FBA4B22222 245760 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\Optional\D254Ux64.msi 2014-09-02 17:40:51 399713C464B76AAC0DC7868C23D2FF3E 147456 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\Optional\lp-dj2540MSI.msi 2014-09-02 17:40:51 2891AF03433FE6605050E0F27D8EA6AD 245760 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\Optional\D254Ux86.msi 2014-09-02 17:40:51 223FC92EEB80352C8E47FA89C92D61E9 4775936 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\D2540x64.msi 2014-09-02 17:09:35 EF197AA4B0957EC309C80E54359C9859 2139144 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS07D6\FileExtractor.exe 2014-09-02 17:09:35 D199B1ADFFB14070E8C4DA9E879EDBEE 309760 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS07D6\DIFxAPI.dll 2014-09-02 17:09:35 A8CCE8212C38B19FB32450FA84F3EF66 511296 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS07D6\CoreUtils.dll 2014-09-02 17:09:35 9D00F1AB38581BF88B14FE2D252A146A 59200 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS07D6\OESISCore.dll 2014-09-02 17:09:35 98ABCBD70CDA02B76E1A1E46C16192FA 35176 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS07D6\hpodss01.dll 2014-09-02 17:09:35 6FD3D9D5E12B2A140224F934AA2348B7 3590152 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS07D6\HPDiagnosticCore.dll 2014-09-02 17:09:35 67EC459E42D3081DD8FD34356F7CAFC1 770384 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS07D6\msvcr100.dll 2014-09-02 17:09:35 62B3ECAC5E2832CDD7C29CC711C4ABB6 219968 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS07D6\FWManager.dll 2014-09-02 17:09:35 585D2EB9FBED6B7B9D0107BFB5C94043 531512 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS07D6\DeviceManager\DIFxAPI.dll 2014-09-02 17:09:35 3B69E2DC4064DC69C5DAC34EDE63BCDD 62272 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS07D6\Impl_FirewallLib.dll 2014-09-02 17:09:35 34B262667221A3BE9F3B655A0515C115 2278920 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS07D6\DeviceManager\DeviceManager.exe 2014-09-02 17:09:35 1EAE1C335BF0832D01679A64EB4BDC6B 4914184 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS07D6\HPDiagnosticCoreUI.exe 2014-09-02 17:09:35 176B8323665484EA625FB3C693EF1AE2 81728 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS07D6\Impl_SoftwareProductLib.dll 2014-09-02 17:09:35 03E9314004F504A14A61C3D364B62F66 421200 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS07D6\msvcp100.dll ====== Java Cache ===== ====== C:\windows\SysWOW64 ===== 2014-09-04 15:51:32 204882085A7D984D455AA4DE7B7074C6 5694464 ----a-w- C:\windows\SysWOW64\mstscax.dll 2014-09-04 11:52:00 AB5EFB103DB01C1912C9D2F545EA5621 17920 ----a-w- C:\windows\SysWOW64\wksprtPS.dll 2014-09-04 11:52:00 8DEEE20D8D30E9B0FBDCA31E58A027BD 53248 ----a-w- C:\windows\SysWOW64\tsgqec.dll 2014-09-04 11:52:00 4676AAA9DDF52A50C829FEDB4EA81E54 1068544 ----a-w- C:\windows\SysWOW64\mstsc.exe 2014-09-04 11:52:00 2EFB1279E7BEA7D12D9F4D6508D27880 50176 ----a-w- C:\windows\SysWOW64\MsRdpWebAccess.dll 2014-09-04 11:51:59 5E676B296B762E211D83B87635F2C330 855552 ----a-w- C:\windows\SysWOW64\rdvidcrl.dll 2014-09-04 11:51:08 8999F18D38D55E34D356796507FFD639 192000 ----a-w- C:\windows\SysWOW64\rdpendp_winip.dll 2014-09-04 11:48:23 AAB5D8C5ABE71873DC19ED004EF25009 792576 ----a-w- C:\windows\SysWOW64\TSWorkspace.dll 2014-08-28 09:12:59 980305AC3AF53C1964A11190451ABB32 311808 ----a-w- C:\windows\SysWOW64\gdi32.dll ====== C:\windows\SysWOW64\drivers ===== ====== C:\windows\Sysnative ===== 2014-09-05 09:12:24 D5D9ADE778937C4866D9AEBAF1E8FFFE 763912 ------w- C:\windows\Sysnative\HPDiscoPMC211.dll 2014-09-04 15:51:44 2147C5330F983D76A36B73F4A804F778 16384 ----a-w- C:\windows\Sysnative\RdpGroupPolicyExtension.dll 2014-09-04 15:51:40 EF2D8BBA6E077559B675513BC0EE5FC2 3178496 ----a-w- C:\windows\Sysnative\rdpcorets.dll 2014-09-04 15:51:30 879A3F94118D686E63041A386FE91EBE 6574592 ----a-w- C:\windows\Sysnative\mstscax.dll 2014-09-04 11:52:02 DDED7C5558B3AE09F568945281A9A6D1 44544 ----a-w- C:\windows\Sysnative\TsUsbGDCoInstaller.dll 2014-09-04 11:52:00 FEC6178962DFF33074D39CA907971405 12800 ----a-w- C:\windows\Sysnative\TsUsbRedirectionGroupPolicyExtension.dll 2014-09-04 11:52:00 8E75B1112C374EBDF18FD640DA2F0655 1147392 ----a-w- C:\windows\Sysnative\mstsc.exe 2014-09-04 11:52:00 7BD2E6E2458A5B95F8341244C7FC7DD4 18944 ----a-w- C:\windows\Sysnative\wksprtPS.dll 2014-09-04 11:52:00 79EE5ECB4BE89343E4CF1E48F7769F59 420864 ----a-w- C:\windows\Sysnative\wksprt.exe 2014-09-04 11:52:00 5289A00E2D21BB3A7D6761646543ED5C 62976 ----a-w- C:\windows\Sysnative\tsgqec.dll 2014-09-04 11:52:00 149A388C17F04AD1F99B477A43BE1A9F 56832 ----a-w- C:\windows\Sysnative\MsRdpWebAccess.dll 2014-09-04 11:52:00 108C257D765AAD2E6EC46557DA0B02BD 13824 ----a-w- C:\windows\Sysnative\TsUsbRedirectionGroupPolicyControl.exe 2014-09-04 11:52:00 0D2C2FAC4F29B5868D39B7267058CFEF 83968 ----a-w- C:\windows\Sysnative\TSWbPrxy.exe 2014-09-04 11:51:59 A4420969E5AB94856E5C0C02E6099D3F 1057280 ----a-w- C:\windows\Sysnative\rdvidcrl.dll 2014-09-04 11:51:07 D346E07D62E3D4BEAB040939744EC31B 228864 ----a-w- C:\windows\Sysnative\rdpendp_winip.dll 2014-09-04 11:51:07 AD4D0AEDB5993EDA31EB80A54EDBC344 243200 ----a-w- C:\windows\Sysnative\rdpudd.dll 2014-09-04 11:48:23 9E2EDE952A3EC44754A829F048CE93A0 1030144 ----a-w- C:\windows\Sysnative\TSWorkspace.dll 2014-08-28 09:13:00 A347EF56B7CD8360B3EF7772FEA597B9 3163648 ----a-w- C:\windows\Sysnative\win32k.sys 2014-08-28 09:12:59 860528C9E50AB84935843B23A80E665E 404480 ----a-w- C:\windows\Sysnative\gdi32.dll ====== C:\windows\Sysnative\drivers ===== 2014-09-04 11:52:00 E9981ECE8D894CEF7038FD1D040EB426 56832 ----a-w- C:\windows\Sysnative\drivers\TsUsbFlt.sys 2014-09-04 11:51:09 AD64450A4ABE076F5CB34CC08EEACB07 30208 ----a-w- C:\windows\Sysnative\drivers\TsUsbGD.sys 2014-09-04 11:51:09 313F68E1A3E6345A4F47A36B07062F34 19456 ----a-w- C:\windows\Sysnative\drivers\rdpvideominiport.sys 2014-08-15 12:36:47 2232AE1BB51A96A7381A2CA17DF12E24 12866008 ----a-w- C:\windows\Sysnative\drivers\nvlddmkm.sys 2014-08-13 09:19:10 87CE5C8965E101CCCED1F4675557E868 985536 ----a-w- C:\windows\Sysnative\drivers\dxgkrnl.sys ====== C:\windows\Tasks ====== 2014-09-05 09:12:30 FD57BE2A0D8F5A8EC3CB62312711D6DC 3616 ----a-w- C:\windows\Sysnative\Tasks\HPCustParticipation HP Deskjet 2540 series 2014-09-04 18:09:05 E873927E7CCB3B76E5240617B24B6C60 3758 ----a-w- C:\windows\Sysnative\Tasks\AutoKMS ====== C:\windows\Temp ====== ======= C:\Program Files ===== 2014-09-05 09:11:51 -------- d-----w- C:\Program Files\HP 2014-09-05 08:57:41 -------- d-----w- C:\Program Files\trend micro 2014-09-04 22:40:54 -------- d-----w- C:\Program Files\Microsoft.NET 2014-09-04 17:57:25 -------- d-----w- C:\Program Files\Common Files\DESIGNER 2014-09-04 17:57:06 -------- d-----w- C:\Program Files\Microsoft SQL Server 2014-09-04 12:31:55 -------- d-----w- C:\Program Files\Microsoft Analysis Services 2014-09-03 15:55:38 -------- d-----w- C:\Program Files\Microsoft Office ======= C:\PROGRA~2 ===== 2014-09-05 09:12:46 -------- d-----w- C:\PROGRA~2\HP Photo Creations 2014-09-04 17:57:19 -------- d-----w- C:\PROGRA~2\Microsoft SQL Server 2014-09-04 12:53:05 -------- d-----w- C:\PROGRA~2\MSECache 2014-09-04 12:31:55 -------- d-----w- C:\PROGRA~2\Microsoft Analysis Services 2014-09-03 15:55:44 -------- d-----w- C:\PROGRA~2\Microsoft Office 2014-09-02 15:51:50 -------- d-----w- C:\PROGRA~2\Hewlett-Packard 2014-09-02 15:50:51 -------- d-----w- C:\PROGRA~2\HP 2014-08-26 09:57:12 -------- d-----w- C:\PROGRA~2\PPSSPP ======= C: ===== ====== C:\Users\Elham\AppData\Roaming ====== 2014-09-03 12:46:45 -------- d-----w- C:\windows\serviceprofiles\Localservice\AppData\Local\CrashDumps 2014-09-02 15:51:31 -------- d-----w- C:\Users\Elham\AppData\Roaming\HpUpdate 2014-09-02 14:38:28 -------- d-----w- C:\Users\Elham\AppData\Local\HP 2014-08-31 21:48:04 -------- d-----w- C:\Users\Elham\AppData\Local\Adobe ====== C:\Users\Elham ====== 2014-09-05 09:12:46 -------- d-----w- C:\ProgramData\HP Photo Creations 2014-09-05 09:12:23 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP 2014-09-05 08:56:48 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Elham\Downloads\RSITx64.exe 2014-09-04 19:43:58 A0844C730F1091B491A8737404F4C914 347816 ----a-w- C:\Users\Elham\Downloads\MicrosoftFixit.Printing.FISC.237333290578333210.1.1.Run.exe 2014-09-04 18:11:51 088449626EF01CED74ABD558799A13E6 1713112 ----a-w- C:\Users\Elham\Downloads\screentiplanguage_nl-nl_64bit.exe 2014-09-04 18:11:30 486B76E4BC6414691762F74650A8459E 7005576 ----a-w- C:\Users\Elham\Downloads\proofingtools_nl-nl-x64.exe 2014-09-04 17:57:37 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2014-09-04 17:46:16 B7F0E5E885781E6BB1E1DD77078983DA 106859936 ----a-w- C:\Users\Elham\Downloads\DJ2540_188 (1).exe 2014-09-04 17:42:49 DDD767E998742506F9322E108BBA0EE8 2458176 ----a-w- C:\Users\Elham\Downloads\DJ2540_R1418B.exe 2014-09-04 12:47:41 -------- d-----w- C:\ProgramData\Microsoft Toolkit 2014-09-04 12:33:44 -------- d-----w- C:\ProgramData\regid.1991-06.com.microsoft 2014-09-03 19:36:46 A0844C730F1091B491A8737404F4C914 347816 ----a-w- C:\Users\Elham\Downloads\MicrosoftFixit.wu.LB.1333203797288594.1.1.Run.exe 2014-09-02 17:39:49 B7F0E5E885781E6BB1E1DD77078983DA 106859936 ----a-w- C:\Users\Elham\Downloads\DJ2540_188.exe 2014-09-02 17:20:47 1E44EA7195AF75FE874C8A7345A11DC8 43243608 ----a-w- C:\Users\Elham\Downloads\hpphotocreations.exe 2014-09-02 17:09:25 7B0636B2CB5617A4A125E6E19A36741C 6674824 ----a-w- C:\Users\Elham\Downloads\HPPSdr.exe 2014-09-02 15:51:48 -------- d-----w- C:\ProgramData\Visan 2014-09-02 15:50:52 -------- d-----w- C:\ProgramData\HP 2014-09-02 15:49:37 86D243F071D309E18A7174424C40B436 57 ----a-w- C:\ProgramData\Ament.ini ====== C: exe-files == 2014-09-05 12:51:35 27BD87D23170E599E6EE334F27EB9435 4005520 ----a-w- C:\Users\Elham\AppData\Local\NVIDIA\NvBackend\Packages\000061b3\DAO.18850839.exe 2014-09-05 08:57:48 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\Elham.exe 2014-09-05 08:57:05 B2C38063C5FB03EB4168BD2EFEEF016E 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-55408526-856673997-1952082211-1000\$IBGRC5E.exe 2014-09-05 08:56:48 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Elham\Downloads\RSITx64.exe 2014-09-05 08:56:48 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-55408526-856673997-1952082211-1000\$RBGRC5E.exe 2014-09-04 21:34:55 2FB742C226D0474202D28A5724E6CA4B 7235664 ----a-w- C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\37.0.2062.103\37.0.2062.103_36.0.1985.143_chrome_updater.exe 2014-09-04 20:10:00 0BF614103179B455F3B96A8C5623B5B7 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-55408526-856673997-1952082211-1000\$IUZHWP5.exe 2014-09-04 19:45:58 A0844C730F1091B491A8737404F4C914 347816 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-55408526-856673997-1952082211-1000\$RUZHWP5.exe 2014-09-04 19:43:58 A0844C730F1091B491A8737404F4C914 347816 ----a-w- C:\Users\Elham\Downloads\MicrosoftFixit.Printing.FISC.237333290578333210.1.1.Run.exe 2014-09-04 18:11:51 088449626EF01CED74ABD558799A13E6 1713112 ----a-w- C:\Users\Elham\Downloads\screentiplanguage_nl-nl_64bit.exe 2014-09-04 18:11:30 486B76E4BC6414691762F74650A8459E 7005576 ----a-w- C:\Users\Elham\Downloads\proofingtools_nl-nl-x64.exe 2014-09-04 18:09:04 140237BA8BD1AAC665893A4A456ABDD9 3732480 ----a-w- C:\Windows\AutoKMS\AutoKMS.exe 2014-09-04 17:49:41 AE2A23229873B9CDC2E9E319BD692B20 1773672 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\Optional\RLBootstrap.exe 2014-09-04 17:49:41 87A45F57756B356773EFC5A3CFBB4610 1770808 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\Optional\smartprintsetup.exe 2014-09-04 17:49:41 5B8EF1B7E18D7BDBC9E7494B4F913C25 1725448 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\Setup.exe 2014-09-04 17:49:41 03BC9FFB36F0E9E4E7302C5E0AEE041A 309768 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\utils\x64\RemovePreinstalledDrivers.exe 2014-09-04 17:49:40 AD5BFE2D06A30947B4F2881899BC28EB 257032 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\utils\x86\RemovePreinstalledDrivers.exe 2014-09-04 17:49:38 F911AB60CF26C7BFEEC7806A86A6014B 2878648 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\V3\amd64\hpinkinsC211.exe 2014-09-04 17:49:38 CF2CDAA86B40C6BFA93FCB545726F506 22879240 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\HP-DQEX5.exe 2014-09-04 17:49:38 CBA729142694A081A984262E3E9A7097 6914064 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\Optional\HP_IPG_Toolbar_installer.exe 2014-09-04 17:49:38 C8C3098AB5B04D17AF8024A6074955C3 34267376 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\Optional\HP_IPG_Chrome_installer.exe 2014-09-04 17:49:38 B5C499857492D0FED8B668839853FE79 198664 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\utils\hpUrlLauncher.exe 2014-09-04 17:49:38 AAFC1D3295077019BD8B653540143616 2220216 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\V3\i386\hpinkinsC211.exe 2014-09-04 17:49:38 269F314B87E6222A20E5F745B6B89783 2869264 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\DotNet\dotNetFx35setup.exe 2014-09-04 17:48:27 AE2A23229873B9CDC2E9E319BD692B20 1773672 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\Optional\RLBootstrap.exe 2014-09-04 17:48:27 AD5BFE2D06A30947B4F2881899BC28EB 257032 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\utils\x86\RemovePreinstalledDrivers.exe 2014-09-04 17:48:27 87A45F57756B356773EFC5A3CFBB4610 1770808 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\Optional\smartprintsetup.exe 2014-09-04 17:48:27 5B8EF1B7E18D7BDBC9E7494B4F913C25 1725448 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\Setup.exe 2014-09-04 17:48:27 03BC9FFB36F0E9E4E7302C5E0AEE041A 309768 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\utils\x64\RemovePreinstalledDrivers.exe 2014-09-04 17:48:25 F911AB60CF26C7BFEEC7806A86A6014B 2878648 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\V3\amd64\hpinkinsC211.exe 2014-09-04 17:48:25 CF2CDAA86B40C6BFA93FCB545726F506 22879240 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\HP-DQEX5.exe 2014-09-04 17:48:25 CBA729142694A081A984262E3E9A7097 6914064 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\Optional\HP_IPG_Toolbar_installer.exe 2014-09-04 17:48:25 C8C3098AB5B04D17AF8024A6074955C3 34267376 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\Optional\HP_IPG_Chrome_installer.exe 2014-09-04 17:48:25 B5C499857492D0FED8B668839853FE79 198664 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\utils\hpUrlLauncher.exe 2014-09-04 17:48:25 AAFC1D3295077019BD8B653540143616 2220216 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\V3\i386\hpinkinsC211.exe 2014-09-04 17:48:25 269F314B87E6222A20E5F745B6B89783 2869264 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\DotNet\dotNetFx35setup.exe 2014-09-04 17:46:16 B7F0E5E885781E6BB1E1DD77078983DA 106859936 ----a-w- C:\Users\Elham\Downloads\DJ2540_188 (1).exe 2014-09-04 17:42:49 DDD767E998742506F9322E108BBA0EE8 2458176 ----a-w- C:\Users\Elham\Downloads\DJ2540_R1418B.exe 2014-09-04 17:28:00 C5A2A21A3D67B840FD1DC269A50F1B36 365920 ----a-w- C:\Users\Elham\Desktop\Nieuwe map\Autorun.exe 2014-09-04 17:27:48 AA63D1FA6D81D69C08B388C7B54D9507 207496 ----a-w- C:\Users\Elham\Desktop\Nieuwe map\x86\setup.exe 2014-09-04 17:27:31 2B8E4C792BED0E5882702720BC528AE5 150648 ----a-w- C:\Users\Elham\Desktop\Nieuwe map\x86\proplus.ww\ose.exe 2014-09-04 17:27:13 2C430C0A60E3B669D37B25B09F4BE8EF 214664 ----a-w- C:\Users\Elham\Desktop\Nieuwe map\x64\setup.exe 2014-09-04 17:27:13 2C430C0A60E3B669D37B25B09F4BE8EF 214664 ----a-w- C:\MSOCache\All Users\{90150000-0011-0000-1000-0000000FF1CE}-C\setup.exe 2014-09-04 17:27:00 B9C125314A025127FE562C116D614AA3 178824 ----a-w- C:\Users\Elham\Desktop\Nieuwe map\x64\proplus.ww\ose.exe 2014-09-04 17:27:00 B9C125314A025127FE562C116D614AA3 178824 ----a-w- C:\MSOCache\All Users\{90150000-0011-0000-1000-0000000FF1CE}-C\ose.exe 2014-09-04 17:26:57 7F8A3114659A0ADAA572F0E9E4255BFC 38431744 ----a-w- C:\Users\Elham\Desktop\Nieuwe map\# Crack\Microsoft Toolkit.exe 2014-09-04 17:26:46 7F8A3114659A0ADAA572F0E9E4255BFC 38431744 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-55408526-856673997-1952082211-1000\$RCMX4QQ\Microsoft Toolkit.exe 2014-09-04 17:19:39 4965B005492CBA7719E82B71E3245495 174440 ----a-w- C:\Users\Elham\AppData\Local\Temp\Setup00000e2c\ose00000.exe 2014-09-04 17:02:15 AE2A23229873B9CDC2E9E319BD692B20 1773672 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\Optional\RLBootstrap.exe 2014-09-04 17:02:15 AD5BFE2D06A30947B4F2881899BC28EB 257032 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\utils\x86\RemovePreinstalledDrivers.exe 2014-09-04 17:02:15 87A45F57756B356773EFC5A3CFBB4610 1770808 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\Optional\smartprintsetup.exe 2014-09-04 17:02:15 5B8EF1B7E18D7BDBC9E7494B4F913C25 1725448 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\Setup.exe 2014-09-04 17:02:15 03BC9FFB36F0E9E4E7302C5E0AEE041A 309768 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\utils\x64\RemovePreinstalledDrivers.exe 2014-09-04 17:02:13 F911AB60CF26C7BFEEC7806A86A6014B 2878648 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\V3\amd64\hpinkinsC211.exe 2014-09-04 17:02:13 CF2CDAA86B40C6BFA93FCB545726F506 22879240 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\HP-DQEX5.exe 2014-09-04 17:02:13 CBA729142694A081A984262E3E9A7097 6914064 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\Optional\HP_IPG_Toolbar_installer.exe 2014-09-04 17:02:13 C8C3098AB5B04D17AF8024A6074955C3 34267376 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\Optional\HP_IPG_Chrome_installer.exe 2014-09-04 17:02:13 B5C499857492D0FED8B668839853FE79 198664 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\utils\hpUrlLauncher.exe 2014-09-04 17:02:13 AAFC1D3295077019BD8B653540143616 2220216 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\V3\i386\hpinkinsC211.exe 2014-09-04 17:02:12 269F314B87E6222A20E5F745B6B89783 2869264 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\DotNet\dotNetFx35setup.exe 2014-09-04 17:00:51 B7F0E5E885781E6BB1E1DD77078983DA 106859936 ----a-w- C:\Users\Elham\AppData\Local\Temp\HPInstaller.exe 2014-09-04 17:00:51 B7F0E5E885781E6BB1E1DD77078983DA 106859936 ----a-w- C:\Users\Elham\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\CAOFSHME\DJ2540_188[2].exe 2014-09-04 17:00:50 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\Users\Elham\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\CAOFSHME\DJ2540_188[1].exe 2014-09-04 17:00:20 EF197AA4B0957EC309C80E54359C9859 2139144 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1D09\FileExtractor.exe 2014-09-04 17:00:20 34B262667221A3BE9F3B655A0515C115 2278920 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1D09\DeviceManager\DeviceManager.exe 2014-09-04 17:00:20 1EAE1C335BF0832D01679A64EB4BDC6B 4914184 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1D09\HPDiagnosticCoreUI.exe 2014-09-04 11:52:00 8E75B1112C374EBDF18FD640DA2F0655 1147392 ----a-w- C:\Windows\System32\mstsc.exe 2014-09-04 11:52:00 79EE5ECB4BE89343E4CF1E48F7769F59 420864 ----a-w- C:\Windows\System32\wksprt.exe 2014-09-04 11:52:00 4676AAA9DDF52A50C829FEDB4EA81E54 1068544 ----a-w- C:\Windows\SysWOW64\mstsc.exe 2014-09-04 11:52:00 108C257D765AAD2E6EC46557DA0B02BD 13824 ----a-w- C:\Windows\System32\TsUsbRedirectionGroupPolicyControl.exe 2014-09-04 11:52:00 0D2C2FAC4F29B5868D39B7267058CFEF 83968 ----a-w- C:\Windows\System32\TSWbPrxy.exe 2014-09-03 19:36:46 A0844C730F1091B491A8737404F4C914 347816 ----a-w- C:\Users\Elham\Downloads\MicrosoftFixit.wu.LB.1333203797288594.1.1.Run.exe 2014-09-03 15:31:05 9D10F99A6712E28F8ACD5641E3A7EA6B 149352 ----a-w- C:\Users\Elham\AppData\Local\Temp\Setup00001ce0\ose00000.exe 2014-09-03 15:29:56 A094D53D9AEB315A1E7395407C52E5E2 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-55408526-856673997-1952082211-1000\$IIIC5RG.exe 2014-09-03 15:29:56 1DE256AA72F7E9063146005BCF111579 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-55408526-856673997-1952082211-1000\$IHA2AVP.exe 2014-09-03 15:16:05 325D79B86D6E367ACDE7DA82091F04EE 1481024 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-55408526-856673997-1952082211-1000\$RIIC5RG.exe 2014-09-03 13:22:21 EF197AA4B0957EC309C80E54359C9859 2139144 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS280D\FileExtractor.exe 2014-09-03 13:22:21 1EAE1C335BF0832D01679A64EB4BDC6B 4914184 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS280D\HPDiagnosticCoreUI.exe 2014-09-03 13:22:20 34B262667221A3BE9F3B655A0515C115 2278920 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS280D\DeviceManager\DeviceManager.exe 2014-09-02 20:10:41 A69365FF2809EB091744C813EBFFD7D7 1868959 ----a-r- C:\$RECYCLE.BIN\S-1-5-21-55408526-856673997-1952082211-1000\$RHA2AVP.exe 2014-09-02 18:58:47 EF197AA4B0957EC309C80E54359C9859 2139144 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS5B6A\FileExtractor.exe 2014-09-02 18:58:47 34B262667221A3BE9F3B655A0515C115 2278920 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS5B6A\DeviceManager\DeviceManager.exe 2014-09-02 18:58:47 1EAE1C335BF0832D01679A64EB4BDC6B 4914184 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS5B6A\HPDiagnosticCoreUI.exe 2014-09-02 17:48:47 EF197AA4B0957EC309C80E54359C9859 2139144 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS25DA\FileExtractor.exe 2014-09-02 17:48:47 34B262667221A3BE9F3B655A0515C115 2278920 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS25DA\DeviceManager\DeviceManager.exe 2014-09-02 17:48:47 1EAE1C335BF0832D01679A64EB4BDC6B 4914184 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS25DA\HPDiagnosticCoreUI.exe 2014-09-02 17:41:01 AE2A23229873B9CDC2E9E319BD692B20 1773672 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\Optional\RLBootstrap.exe 2014-09-02 17:41:01 AD5BFE2D06A30947B4F2881899BC28EB 257032 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\utils\x86\RemovePreinstalledDrivers.exe 2014-09-02 17:41:01 87A45F57756B356773EFC5A3CFBB4610 1770808 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\Optional\smartprintsetup.exe 2014-09-02 17:41:01 5B8EF1B7E18D7BDBC9E7494B4F913C25 1725448 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\Setup.exe 2014-09-02 17:41:01 03BC9FFB36F0E9E4E7302C5E0AEE041A 309768 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\utils\x64\RemovePreinstalledDrivers.exe 2014-09-02 17:40:59 CBA729142694A081A984262E3E9A7097 6914064 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\Optional\HP_IPG_Toolbar_installer.exe 2014-09-02 17:40:58 F911AB60CF26C7BFEEC7806A86A6014B 2878648 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\V3\amd64\hpinkinsC211.exe 2014-09-02 17:40:58 CF2CDAA86B40C6BFA93FCB545726F506 22879240 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\HP-DQEX5.exe 2014-09-02 17:40:58 C8C3098AB5B04D17AF8024A6074955C3 34267376 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\Optional\HP_IPG_Chrome_installer.exe 2014-09-02 17:40:58 B5C499857492D0FED8B668839853FE79 198664 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\utils\hpUrlLauncher.exe 2014-09-02 17:40:58 AAFC1D3295077019BD8B653540143616 2220216 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\V3\i386\hpinkinsC211.exe 2014-09-02 17:40:58 269F314B87E6222A20E5F745B6B89783 2869264 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\DotNet\dotNetFx35setup.exe 2014-09-02 17:39:49 B7F0E5E885781E6BB1E1DD77078983DA 106859936 ----a-w- C:\Users\Elham\Downloads\DJ2540_188.exe 2014-09-02 17:20:47 1E44EA7195AF75FE874C8A7345A11DC8 43243608 ----a-w- C:\Users\Elham\Downloads\hpphotocreations.exe 2014-09-02 17:09:36 7B0636B2CB5617A4A125E6E19A36741C 6674824 ----a-w- C:\Program Files (x86)\HP\Diagnostics\PSDR\HPPSDr.exe 2014-09-02 17:09:35 EF197AA4B0957EC309C80E54359C9859 2139144 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS07D6\FileExtractor.exe 2014-09-02 17:09:35 34B262667221A3BE9F3B655A0515C115 2278920 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS07D6\DeviceManager\DeviceManager.exe 2014-09-02 17:09:35 1EAE1C335BF0832D01679A64EB4BDC6B 4914184 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS07D6\HPDiagnosticCoreUI.exe 2014-09-02 17:09:25 7B0636B2CB5617A4A125E6E19A36741C 6674824 ----a-w- C:\Users\Elham\Downloads\HPPSdr.exe 2014-08-31 08:42:01 038805274593327422D55C807489CEF8 179200 ----a-w- C:\Program Files (x86)\Popcorn Time\Updater.exe 2014-08-31 08:42:00 9BFC9809962357512B023CD51C6DE63B 878147 ----a-w- C:\Program Files (x86)\Popcorn Time\unins000.exe 2014-08-31 08:41:32 19E844D75DF67AD92A7B3A135A9C2B53 1142370 ----a-w- C:\Windows\Temp\set5540.tmp.exe 2014-08-30 19:03:55 403EAB3445DFCF93203AF6ED963EA0DF 1147328 ----a-w- C:\Windows\Temp\set587B.tmp.exe 2014-08-30 13:35:56 6875DB6E3D985983C5F0266F5BE55255 413696 ----a-w- C:\Windows\Temp\set64BA.tmp.exe === C: other files == 2014-09-04 17:49:33 E5A66920DCD993EA66340D6D494CAF46 7288591 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS42A4\licensing\OpenSource\OpenSource.zip 2014-09-04 17:48:20 E5A66920DCD993EA66340D6D494CAF46 7288591 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS41B2\licensing\OpenSource\OpenSource.zip 2014-09-04 17:02:07 E5A66920DCD993EA66340D6D494CAF46 7288591 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1E56\licensing\OpenSource\OpenSource.zip 2014-09-04 15:27:41 E5A66920DCD993EA66340D6D494CAF46 7288591 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS560C\licensing\OpenSource\OpenSource.zip 2014-09-04 14:57:49 E5A66920DCD993EA66340D6D494CAF46 7288591 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS3F30\licensing\OpenSource\OpenSource.zip 2014-09-04 11:52:00 E9981ECE8D894CEF7038FD1D040EB426 56832 ----a-w- C:\Windows\System32\drivers\TsUsbFlt.sys 2014-09-04 11:51:09 AD64450A4ABE076F5CB34CC08EEACB07 30208 ----a-w- C:\Windows\System32\drivers\TsUsbGD.sys 2014-09-04 11:51:09 313F68E1A3E6345A4F47A36B07062F34 19456 ----a-w- C:\Windows\System32\drivers\rdpvideominiport.sys 2014-09-02 17:40:51 E5A66920DCD993EA66340D6D494CAF46 7288591 ----a-w- C:\Users\Elham\AppData\Local\Temp\7zS1FB4\licensing\OpenSource\OpenSource.zip ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-21-55408526-856673997-1952082211-1000\Software\Microsoft\Windows\CurrentVersion\Run] "ISUSPM"="C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe -scheduler" "uTorrent"="C:\Users\Elham\AppData\Roaming\uTorrent\uTorrent.exe /MINIMIZED" "MSNAutoLogon"="C:\Program Files (x86)\msi\EasyFace2\MessengerSignIn.exe" [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce] [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\RunOnce] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IAStorIcon"="C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" "NUSB3MON"="C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" "MGSysCtrl"="C:\Program Files (x86)\System Control Manager\MGSysCtrl.exe" "THX Audio Control Panel"="C:\Program Files (x86)\Creative\THX TruStudio Pro\THXAudioCP\THXAudio.exe /r" "UpdReg"="C:\windows\UpdReg.EXE" "NVIDIAOCAP"="C:\Program Files (x86)\MSI\NVIDIA Overclock Tool\NVIDIAOCAP.exe" "Nuance PDF Reader-reminder"="C:\Program Files (x86)\Nuance\PDF Reader\Ereg\Ereg.exe -r C:\ProgramData\Nuance\PDF Reader\Ereg\Ereg.ini" "F-Secure Hoster (45123)"="C:\Program Files (x86)\Internetbeveiliging\fshoster32.exe -app -hosterid:1" "F-Secure Manager"="C:\Program Files (x86)\Internetbeveiliging\apps\ComputerSecurity\Common\FSM32.EXE /splash" "HP Software Update"="C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "ISUSPM"="C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe -scheduler" "uTorrent"="C:\Users\Elham\AppData\Roaming\uTorrent\uTorrent.exe /MINIMIZED" "MSNAutoLogon"="C:\Program Files (x86)\msi\EasyFace2\MessengerSignIn.exe" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RTHDVCPL"="C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s" "BTMTrayAgent"="rundll32.exe C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll,TrayApp" "THXCfg64"="C:\windows\system32\RunDLL32.exe C:\windows\system32\THXCfg64.dll,RunDLLEntry THXCfg64" "NvBackend"="C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" "ShadowPlay"="C:\windows\system32\rundll32.exe C:\windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart" "fspuip"="%ProgramFiles%\FSP\fspuip.exe " ==== Startup Registry Disabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe ARM] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Adobe ARM" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\APSDaemon] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="APSDaemon" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Common Files\\Apple\\Apple Application Support\\APSDaemon.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\BCSSync] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="BCSSync" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Microsoft Office\\Office14\\BCSSync.exe\" /DelayServices" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Cinema ProII AP] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Cinema ProII AP" "hkey"="HKLM" "command"="C:\\Program Files (x86)\\MSI\\Cinema ProII\\CinemaProII.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Cinema ProII Controler] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Cinema ProII Controler" "hkey"="HKLM" "command"="C:\\Program Files (x86)\\MSI\\Cinema ProII\\Cinema ProII Controler.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\DAEMON Tools Lite] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="DAEMON Tools Lite" "hkey"="HKCU" "command"="\"C:\\Program Files (x86)\\DAEMON Tools Lite\\DTLite.exe\" -autorun" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\iTunesHelper] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="iTunesHelper" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\iTunes\\iTunesHelper.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Live Update 5] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Live Update 5" "hkey"="HKLM" "command"="C:\\Program Files (x86)\\MSI\\Live Update 5\\LU5.exe /reminder" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\msi LED Manager] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="msi LED Manager" "hkey"="HKLM" "command"="C:\\Program Files (x86)\\msi\\msi LED Manager\\SLM.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\msnmsgr] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="msnmsgr" "hkey"="HKCU" "command"="\"C:\\Program Files (x86)\\Windows Live\\Messenger\\msnmsgr.exe\" /background" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\PWRISOVM.EXE] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="PWRISOVM.EXE" "hkey"="HKLM" "command"="C:\\Program Files (x86)\\PowerISO\\PWRISOVM.EXE -startup" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\QuickTime Task] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="QuickTime Task" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\QuickTime\\QTTask.exe\" -atboottime" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\RGSC] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="RGSC" "hkey"="HKCU" "command"="C:\\Program Files (x86)\\Rockstar Games Social Club\\RGSCLauncher.exe /silent" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Skype] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Skype" "hkey"="HKCU" "command"="\"C:\\Program Files (x86)\\Skype\\Phone\\Skype.exe\" /minimized /regrun" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Steam] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Steam" "hkey"="HKCU" "command"="\"C:\\Program Files (x86)\\Steam\\Steam.exe\" -silent" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SunJavaUpdateSched] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="SunJavaUpdateSched" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Common Files\\Java\\Java Update\\jusched.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\uTorrent] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="uTorrent" "hkey"="HKCU" "command"="\"C:\\Users\\Elham\\AppData\\Roaming\\uTorrent\\uTorrent.exe\" /MINIMIZED" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\WordWeb] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="WordWeb" "hkey"="HKCU" "command"="\"C:\\Program Files (x86)\\WordWeb\\wweb32.exe\" -startup" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^GamersFirst LIVE!.lnk] "path"="C:\\ProgramData\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\GamersFirst LIVE!.lnk" "backup"="C:\\windows\\pss\\GamersFirst LIVE!.lnk.CommonStartup" "backupExtension"=".CommonStartup" "command"="C:\\PROGRA~2\\GAMERS~1\\LIVE!\\Live.exe /silent" "item"="GamersFirst LIVE!" ==== Task Scheduler Jobs ====================== C:\windows\tasks\Adobe Flash Player Updater.job --a------ C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [30-08-2014 21:06] C:\windows\tasks\DLL-files.com Fixer_MONTHLY.job --a------ :C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe [] C:\windows\tasks\DLL-files.com Fixer_UPDATES.job --a------ [Undetermined Task] C:\windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [28-02-2013 21:32] C:\windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [28-02-2013 21:32] ==== Other Scheduled Tasks ====================== "C:\windows\SysNative\tasks\Adobe Flash Player Updater" [C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\windows\SysNative\tasks\AutoKMS" [C:\windows\AutoKMS\AutoKMS.exe] "C:\windows\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\windows\SysNative\tasks\CreateChoiceProcessTask" [C:\Windows\System32\browserchoice.exe] "C:\windows\SysNative\tasks\DLL-files.com Fixer_MONTHLY" [C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe] "C:\windows\SysNative\tasks\DLL-files.com Fixer_UPDATES" [C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe] "C:\windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\windows\SysNative\tasks\HPCustParticipation HP Deskjet 2540 series" ["C:\Program Files\HP\HP Deskjet 2540 series\Bin\HPCustPartic.exe"] "C:\windows\SysNative\tasks\SidebarExecute" [C:\Program Files\Windows Sidebar\sidebar.exe] "C:\windows\SysNative\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "ext@VideoPlayerV3beta958.net"="C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta958\ff" [] [HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions] "wcapturex@deskperience.com"="C:\Program Files (x86)\WordWeb\WCaptureMoz" [01-07-2013 17:39] ==== Firefox Extensions ====================== AppDir: C:\Program Files (x86)\Mozilla Firefox - Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ==== Firefox Plugins ====================== Profilepath: C:\Users\Elham\AppData\Roaming\Mozilla\Firefox\Profiles\khpe23wj.default 9EE20E6E2E3F94714D44F739B9A228F4 - C:\windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_179.dll - Shockwave Flash C195AC4544729A69CFF30BB62F473054 - C:\windows\SysWOW64\Adobe\Director\np32dsw_1212152.dll - Shockwave for Director / Shockwave for Director ==== Chrome Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions kdfbddbdpnahdahmamlolacimfdbeckk - C:\Users\Elham\AppData\Local\CRE\kdfbddbdpnahdahmamlolacimfdbeckk.crx[] kpcecidfffnehbgcgbninnchcepcecmp - C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta958\ch\VideoPlayerV3beta958.crx[] mjdepfkicdcciagbigfcmdhknnoaaegf - C:\Program Files (x86)\WordWeb\wcxChrome.crx[25-05-2012 17:11] ncialldpifpciagjjfflaakjcildgane - C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha8541\ch\WebexpEnhancedV1alpha8541.crx[] HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions kdfbddbdpnahdahmamlolacimfdbeckk - C:\Users\Elham\AppData\Local\CRE\kdfbddbdpnahdahmamlolacimfdbeckk.crx[] Google Docs - Elham\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Elham\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Elham\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Last updated at time on date - Elham\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb Google Search - Elham\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf entrusted - Elham\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdfbddbdpnahdahmamlolacimfdbeckk Video Player - Elham\AppData\Local\Google\Chrome\User Data\Default\Extensions\kpcecidfffnehbgcgbninnchcepcecmp Google Dictionary (by Google) - Elham\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgijmajocgfcbeboacabfgobmjgjcoja Webexp Enhanced - Elham\AppData\Local\Google\Chrome\User Data\Default\Extensions\ncialldpifpciagjjfflaakjcildgane Google Wallet - Elham\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Elham\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Chrome Fix ====================== C:\Users\Elham\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdfbddbdpnahdahmamlolacimfdbeckk deleted successfully C:\Users\Elham\AppData\Local\Google\Chrome\User Data\Default\Extensions\kpcecidfffnehbgcgbninnchcepcecmp deleted successfully C:\Users\Elham\AppData\Local\Google\Chrome\User Data\Default\Extensions\ncialldpifpciagjjfflaakjcildgane deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://nl.msn.com/?ocid=U218DHP&pc=U218" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://nl.msn.com/?ocid=U218DHP&pc=U218" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{BE6CA35B-BE9F-4C49-BAA1-1E04BAC2848C}" {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}" {BE6CA35B-BE9F-4C49-BAA1-1E04BAC2848C} Bing Url="http://www.bing.com/search?FORM=U218DF&PC=U218&q={searchTerms}&src=IE-SearchBox" ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\{1E73965B-8B48-48be-9C8D-68B920ABC1C4} deleted successfully HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\FFPDFArchitectConverter@pdfarchitect.com deleted successfully HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\ext@WebexpEnhancedV1alpha8541.net deleted successfully HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\ext@VideoPlayerV3beta958.net deleted successfully ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\3192AA38321C641458DBDAF83979D193 deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\kdfbddbdpnahdahmamlolacimfdbeckk deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\kpcecidfffnehbgcgbninnchcepcecmp deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\ncialldpifpciagjjfflaakjcildgane deleted successfully HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions\kdfbddbdpnahdahmamlolacimfdbeckk deleted successfully HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Video Player deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BCSSync deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\msnmsgr deleted successfully ==== Empty IE Cache ====================== C:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Elham\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Elham\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully ==== Empty FireFox Cache ====================== No FireFox Cache found ==== Empty Chrome Cache ====================== C:\Users\Elham\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=763 folders=200 108179630 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\temp emptied successfully C:\Users\Default User\AppData\Local\temp emptied successfully C:\Users\Elham\AppData\Local\Temp will be emptied at reboot C:\Users\Public\AppData\Local\temp emptied successfully C:\windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\windows\Temp successfully emptied C:\Users\Elham\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on vr 05-09-2014 at 15:16:11,86 ======================