Too late, did quick scan. Here are the logs. Do I need to run otl again with complete scan?
aswMBR:
aswMBR version 0.9.9.1297 Copyright© 2011 AVAST Software
Run date: 2012-01-14 21:59:47
-----------------------------
21:59:47.923 OS Version: Windows 6.0.6002 Service Pack 2
21:59:47.923 Number of processors: 2 586 0x1706
21:59:47.924 ComputerName: LINDA-PC UserName: Linda
21:59:49.399 Initialize success
21:59:49.516 AVAST engine defs: 12011401
22:00:30.226 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\0000006d
22:00:30.227 Disk 0 Vendor: Hitachi_ GM4O Size: 476940MB BusType: 6
22:00:30.256 Disk 0 MBR read successfully
22:00:30.258 Disk 0 MBR scan
22:00:30.260 Disk 0 unknown MBR code
22:00:30.264 Disk 0 Partition 1 00 27 Hidden NTFS WinRE NTFS 9993 MB offset 63
22:00:30.279 Disk 0 Partition 2 80 (A) 06 FAT16 NTFS 233604 MB offset 20467712
22:00:30.309 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 233341 MB offset 498888704
22:00:30.323 Disk 0 scanning sectors +976771072
22:00:30.449 Disk 0 scanning C:\Windows\system32\drivers
22:00:49.687 Service scanning
22:00:50.826 Service sptd C:\Windows\System32\Drivers\sptd.sys **LOCKED** 32
22:00:51.422 Modules scanning
22:01:12.986 Disk 0 trace - called modules:
22:01:13.011 ntkrnlpa.exe CLASSPNP.SYS disk.sys acpi.sys hal.dll >>UNKNOWN [0x86d311f8]<<
22:01:13.014 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x87839688]
22:01:13.017 3 CLASSPNP.SYS[8430f8b3] -> nt!IofCallDriver -> [0x86da5550]
22:01:13.021 5 acpi.sys[842126bc] -> nt!IofCallDriver -> \Device\0000006d[0x86db5300]
22:01:13.025 \Driver\nvstor32[0x86da3980] -> IRP_MJ_CREATE -> 0x86d311f8
22:01:14.591 AVAST engine scan C:\Windows
22:01:23.400 AVAST engine scan C:\Windows\system32
22:03:52.886 AVAST engine scan C:\Windows\system32\drivers
22:04:08.954 AVAST engine scan C:\Users\Linda
22:47:37.492 AVAST engine scan C:\ProgramData
22:51:39.130 Scan finished successfully
23:01:27.045 Disk 0 MBR has been saved successfully to "C:\Users\Linda\Desktop\MBR.dat"
23:01:27.052 The log file has been saved successfully to "C:\Users\Linda\Desktop\aswMBR.txt"
aswMBR version 0.9.9.1532 Copyright© 2011 AVAST Software
Run date: 2012-01-28 10:25:48
-----------------------------
10:25:48.785 OS Version: Windows 6.0.6002 Service Pack 2
10:25:48.785 Number of processors: 2 586 0x1706
10:25:48.785 ComputerName: LINDA-PC UserName: Linda
10:25:52.798 Initialize success
10:26:11.754 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\0000006c
10:26:11.757 Disk 0 Vendor: Hitachi_ GM4O Size: 476940MB BusType: 6
10:26:11.775 Disk 0 MBR read successfully
10:26:11.777 Disk 0 MBR scan
10:26:11.779 Disk 0 unknown MBR code
10:26:11.782 Disk 0 Partition 1 00 27 Hidden NTFS WinRE NTFS 9993 MB offset 63
10:26:11.798 Disk 0 Partition 2 80 (A) 06 FAT16 NTFS 233604 MB offset 20467712
10:26:11.819 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 233341 MB offset 498888704
10:26:11.823 Disk 0 scanning sectors +976771072
10:26:11.889 Disk 0 scanning C:\Windows\system32\drivers
10:26:20.429 Service scanning
10:26:21.338 Service MpKsl747f46f0 C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{2697998C-D6B2-4BB0-88F8-0100CBA21E2C}\MpKsl747f46f0.sys **LOCKED** 32
10:26:21.343 Service MpNWMon C:\Windows\system32\DRIVERS\MpNWMon.sys **LOCKED** 32
10:26:21.435 Service sptd C:\Windows\System32\Drivers\sptd.sys **LOCKED** 32
10:26:22.021 Modules scanning
10:26:30.538 Disk 0 trace - called modules:
10:26:30.545
10:26:30.550 Scan finished successfully
10:27:03.104 Disk 0 MBR has been saved successfully to "C:\Users\Linda\Desktop\MBR.dat"
10:27:03.125 The log file has been saved successfully to "C:\Users\Linda\Desktop\aswMBR.txt"
-------------------------------------------
OTL log:
aswMBR version 0.9.9.1297 Copyright© 2011 AVAST Software
Run date: 2012-01-14 21:59:47
-----------------------------
21:59:47.923 OS Version: Windows 6.0.6002 Service Pack 2
21:59:47.923 Number of processors: 2 586 0x1706
21:59:47.924 ComputerName: LINDA-PC UserName: Linda
21:59:49.399 Initialize success
21:59:49.516 AVAST engine defs: 12011401
22:00:30.226 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\0000006d
22:00:30.227 Disk 0 Vendor: Hitachi_ GM4O Size: 476940MB BusType: 6
22:00:30.256 Disk 0 MBR read successfully
22:00:30.258 Disk 0 MBR scan
22:00:30.260 Disk 0 unknown MBR code
22:00:30.264 Disk 0 Partition 1 00 27 Hidden NTFS WinRE NTFS 9993 MB offset 63
22:00:30.279 Disk 0 Partition 2 80 (A) 06 FAT16 NTFS 233604 MB offset 20467712
22:00:30.309 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 233341 MB offset 498888704
22:00:30.323 Disk 0 scanning sectors +976771072
22:00:30.449 Disk 0 scanning C:\Windows\system32\drivers
22:00:49.687 Service scanning
22:00:50.826 Service sptd C:\Windows\System32\Drivers\sptd.sys **LOCKED** 32
22:00:51.422 Modules scanning
22:01:12.986 Disk 0 trace - called modules:
22:01:13.011 ntkrnlpa.exe CLASSPNP.SYS disk.sys acpi.sys hal.dll >>UNKNOWN [0x86d311f8]<<
22:01:13.014 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x87839688]
22:01:13.017 3 CLASSPNP.SYS[8430f8b3] -> nt!IofCallDriver -> [0x86da5550]
22:01:13.021 5 acpi.sys[842126bc] -> nt!IofCallDriver -> \Device\0000006d[0x86db5300]
22:01:13.025 \Driver\nvstor32[0x86da3980] -> IRP_MJ_CREATE -> 0x86d311f8
22:01:14.591 AVAST engine scan C:\Windows
22:01:23.400 AVAST engine scan C:\Windows\system32
22:03:52.886 AVAST engine scan C:\Windows\system32\drivers
22:04:08.954 AVAST engine scan C:\Users\Linda
22:47:37.492 AVAST engine scan C:\ProgramData
22:51:39.130 Scan finished successfully
23:01:27.045 Disk 0 MBR has been saved successfully to "C:\Users\Linda\Desktop\MBR.dat"
23:01:27.052 The log file has been saved successfully to "C:\Users\Linda\Desktop\aswMBR.txt"
aswMBR version 0.9.9.1532 Copyright© 2011 AVAST Software
Run date: 2012-01-28 10:25:48
-----------------------------
10:25:48.785 OS Version: Windows 6.0.6002 Service Pack 2
10:25:48.785 Number of processors: 2 586 0x1706
10:25:48.785 ComputerName: LINDA-PC UserName: Linda
10:25:52.798 Initialize success
10:26:11.754 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\0000006c
10:26:11.757 Disk 0 Vendor: Hitachi_ GM4O Size: 476940MB BusType: 6
10:26:11.775 Disk 0 MBR read successfully
10:26:11.777 Disk 0 MBR scan
10:26:11.779 Disk 0 unknown MBR code
10:26:11.782 Disk 0 Partition 1 00 27 Hidden NTFS WinRE NTFS 9993 MB offset 63
10:26:11.798 Disk 0 Partition 2 80 (A) 06 FAT16 NTFS 233604 MB offset 20467712
10:26:11.819 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 233341 MB offset 498888704
10:26:11.823 Disk 0 scanning sectors +976771072
10:26:11.889 Disk 0 scanning C:\Windows\system32\drivers
10:26:20.429 Service scanning
10:26:21.338 Service MpKsl747f46f0 C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{2697998C-D6B2-4BB0-88F8-0100CBA21E2C}\MpKsl747f46f0.sys **LOCKED** 32
10:26:21.343 Service MpNWMon C:\Windows\system32\DRIVERS\MpNWMon.sys **LOCKED** 32
10:26:21.435 Service sptd C:\Windows\System32\Drivers\sptd.sys **LOCKED** 32
10:26:22.021 Modules scanning
10:26:30.538 Disk 0 trace - called modules:
10:26:30.545
10:26:30.550 Scan finished successfully
10:27:03.104 Disk 0 MBR has been saved successfully to "C:\Users\Linda\Desktop\MBR.dat"
10:27:03.125 The log file has been saved successfully to "C:\Users\Linda\Desktop\aswMBR.txt"
-----------------------------------------
Extras log:
OTL Extras logfile created on: 1/28/2012 13:13:12 - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\Linda\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000C0C | Country: Canada | Language: FRC | Date Format: M/d/yyyy
3,00 Gb Total Physical Memory | 2,49 Gb Available Physical Memory | 82,88% Memory free
6,19 Gb Paging File | 5,89 Gb Available in Paging File | 95,09% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 228,13 Gb Total Space | 54,14 Gb Free Space | 23,73% Space Free | Partition Type: NTFS
Drive D: | 227,87 Gb Total Space | 227,49 Gb Free Space | 99,83% Space Free | Partition Type: NTFS
Computer Name: LINDA-PC | User Name: Linda | Logged in as Administrator.
Boot Mode: SafeMode with Networking | Scan Mode: All users | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ========== ========== File Associations ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
[HKEY_USERS\S-1-5-21-53930244-3333630975-3341998274-1000\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
========== Shell Spawning ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- C:\Program Files\VideoLAN\VLC\vlc.exe --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- C:\Program Files\VideoLAN\VLC\vlc.exe --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiSpyware]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"VistaSp2" = Reg Error: Unknown registry data type -- File not found
========== Firewall Settings ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
========== Authorized Applications List ========== ========== Vista Active Open Ports Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{040A5FF4-1118-418D-9866-5476E6842CE6}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss |
[email protected],-28539 |
"{068DF9DF-CE67-4C5A-9CAC-DB6C1E078A87}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{0D7E7935-0D52-47FE-A188-899C8A990B4D}" = rport=138 | protocol=17 | dir=out | app=system |
"{10F9170A-DC31-4E91-9AB6-FC280B339DE0}" = lport=138 | protocol=17 | dir=in | app=system |
"{37F607C2-284B-4CB5-9014-895D2E571E69}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe |
"{47A6AED8-A83E-46A5-8F5D-604F43EC3A0D}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{5415C27E-45B9-4820-946D-4694829CEB95}" = rport=137 | protocol=17 | dir=out | app=system |
"{57105829-1A1C-4CCB-A910-86667079A3E7}" = lport=2869 | protocol=6 | dir=in | app=system |
"{720AB563-E8FE-4F6C-ADA4-3EA24BD4E544}" = lport=2869 | protocol=6 | dir=in | app=system |
"{809E952E-72A3-45DA-8543-6F72E98E26CB}" = lport=4100 | protocol=17 | dir=in | name=upnp router control port |
"{8F5D6AE2-C628-499A-B58D-63D034446AAB}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{954553FB-94DF-43B0-AA45-EEF2BFF521BA}" = lport=139 | protocol=6 | dir=in | app=system |
"{A7F68CAB-24C9-48E4-8D34-8CD97C88227F}" = rport=139 | protocol=6 | dir=out | app=system |
"{B2D1CF5E-EAB9-4E28-B017-AD8FA5D6E690}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe |
"{C61DEACF-44A9-486B-83C4-1A40BA691222}" = rport=445 | protocol=6 | dir=out | app=system |
"{CD6B3102-34FD-4F73-B483-8C41393BDCD4}" = lport=445 | protocol=6 | dir=in | app=system |
"{CF20F232-C880-46E2-BD1B-7AA7B603C1D3}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{D1E6EA7B-95DF-40BF-8739-3FAF65414F3B}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{D9C77D2D-0C62-48D5-9F93-C12428403880}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{E07863D6-8105-4B5B-A5A8-3BA605E40FD9}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{F417EA7A-9388-4960-B87B-06746FCB080B}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{F44949A8-94A2-4D30-93DD-2A782EAD00F0}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{F7377A03-32E9-4336-8411-C03869BD5C11}" = lport=137 | protocol=17 | dir=in | app=system |
========== Vista Active Application Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0838EBC8-E663-4B66-866E-FA6DBCF15D59}" = protocol=1 | dir=out |
[email protected],-28544 |
"{092F1740-2D8E-486D-A10F-BB5922013136}" = protocol=6 | dir=in | app=c:\program files\samsung\samsung new pc studio\npsasvr.exe |
"{0A8A1534-BD28-46F6-9CA9-ECC60F40E410}" = protocol=1 | dir=in |
[email protected],-28543 |
"{1599FD2C-F29D-46C2-B9AA-9ED69FA0A4C3}" = protocol=17 | dir=in | app=c:\program files\microsoft lifecam\lifetray.exe |
"{173969C0-F670-4DBF-9570-97324A6713B6}" = protocol=6 | dir=in | app=c:\program files\yahoo!\messenger\yahoomessenger.exe |
"{175ABA97-7B0D-4F80-B5F0-84D6AB729B78}" = protocol=6 | dir=in | app=c:\program files\samsung\samsung new pc studio\npsvsvr.exe |
"{1ABBD73E-7B08-47D0-B694-CCEDF53B6F6A}" = protocol=17 | dir=in | app=c:\program files\microsoft lifecam\lifecam.exe |
"{1C4C93FE-A809-4596-9008-F2B3D08EFF21}" = protocol=17 | dir=in | app=c:\program files\microsoft lifecam\lifeenc2.exe |
"{1F90B495-9ADE-47AC-9530-8C2C2CA48ABD}" = dir=in | app=c:\program files\itunes\itunes.exe |
"{20A33BFC-01CD-4127-9C32-C7DA6FCD5FCA}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{24E429E7-CED5-4DC7-AD87-92BBA056071E}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{2CA36D6C-7E8A-45FC-BEE4-5DAF62D64107}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe |
"{31EB5216-7D72-4C17-8DF2-FA5B69B7869E}" = dir=in | app=c:\program files\acer arcade live\acer homemedia connect\acer homemedia connect.exe |
"{34FFB7A0-1A20-4347-B608-04B53942437D}" = protocol=6 | dir=in | app=c:\users\linda\downloads\3gpconvertersetup.exe |
"{38D0A2A9-099B-4256-A928-F810181F14E9}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{39863CA9-3184-4F99-9510-39E313EE846B}" = dir=in | app=c:\program files\acer arcade live\acer homemedia connect\kernel\dms\clmsserver.exe |
"{479ECCE8-031F-4BCF-B7EB-31702685CE3A}" = dir=in | app=c:\program files\acer arcade live\acer arcade live main page\acer arcade live.exe |
"{49A12236-69A5-4A8D-A922-09F6F7CB7754}" = dir=in | app=c:\program files\windows live\messenger\livecall.exe |
"{4C294858-6B1A-4B89-A2A6-405DABD744A4}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"{4D28F399-76C1-4F69-A98B-145C52AAEBFC}" = protocol=6 | dir=in | app=c:\program files\microsoft lifecam\lifetray.exe |
"{6A4CAF56-9623-4AFA-854B-D47483B10A3B}" = dir=in | app=c:\program files\acer arcade live\acer videomagician\acer videomagician.exe |
"{70441C18-3E53-4EFF-B676-D2C732DCB557}" = dir=in | app=c:\program files\acer arcade live\acer dv magician\acer dv magician.exe |
"{7DC067A8-B0E3-4313-9110-AF4E161E15EC}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{7DD43CEF-4847-4132-97EC-9EB1965C200B}" = protocol=6 | dir=in | app=c:\users\linda\appdata\local\temp\~os5c67.tmp\rlvknlg.exe |
"{84BB645A-5F9B-44EB-ADAE-4354AF107AD1}" = protocol=17 | dir=in | app=c:\users\linda\appdata\local\temp\7zsdff2.tmp\symnrt.exe |
"{89EC6C5A-4AB0-4332-8222-0B151E8A8E96}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"{8A7520D5-A8CD-4998-9766-90FDE9060FF6}" = protocol=17 | dir=in | app=c:\program files\relevantknowledge\rlvknlg.exe |
"{8B14073C-8DF3-460C-A5D7-2A4303C5D37D}" = protocol=17 | dir=in | app=c:\program files\yahoo!\messenger\yahoomessenger.exe |
"{8E5AC746-02CF-4513-9F72-04A74B446FFC}" = dir=in | app=c:\program files\acer arcade live\acer dvdivine\acer dvdivine.exe |
"{92E72A5C-B72B-4379-94AE-F07E353CAB52}" = dir=in | app=c:\program files\acer arcade live\acer homemedia\acer homemedia.exe |
"{94063567-A94D-492C-A5FE-C8A914B9B6F4}" = dir=in | app=c:\program files\acer arcade live\acer slideshow dvd\acer slideshow dvd.exe |
"{A1080A2B-EC30-4184-A6A0-15B2D5F66F8C}" = protocol=17 | dir=in | app=c:\program files\samsung\samsung new pc studio\npsvsvr.exe |
"{A4413086-4FAF-4E62-8077-480B57875EF8}" = protocol=6 | dir=in | app=c:\users\linda\appdata\local\temp\~os5b3f.tmp\rlvknlg.exe |
"{A95B326A-DD98-4550-8653-CE41D482B8FA}" = dir=in | app=c:\program files\acer arcade live\acer homemedia trial creator\acer homemedia trial creator.exe |
"{B30E2A90-DF68-48D4-94D1-240213326E85}" = dir=in | app=c:\program files\windows live\messenger\wlcsdk.exe |
"{B3CB2823-7266-4730-A1E8-62CFCE4EF5B7}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe |
"{B4499393-1FA9-42A0-ADAA-94946735DA45}" = protocol=6 | dir=in | app=c:\program files\microsoft lifecam\lifeexp.exe |
"{B631B083-CC86-4B07-B0C0-C5ECE51CAAA0}" = protocol=6 | dir=in | app=c:\program files\utorrent\utorrent.exe |
"{BDCB107B-4450-4115-8B46-F70E77776510}" = protocol=58 | dir=in |
[email protected],-28545 |
"{BE36BF55-C18D-4CB0-8F3E-10E171D0EF9D}" = protocol=58 | dir=out |
[email protected],-28546 |
"{C318B0A4-B2D0-4D2E-9441-555DC11A8A75}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"{C4ED1D25-12EA-474D-A3DA-C1FE95B6C266}" = protocol=17 | dir=in | app=c:\program files\utorrent\utorrent.exe |
"{CC629500-0671-49A9-9C7B-C75316C50354}" = protocol=6 | dir=in | app=c:\users\linda\appdata\local\temp\7zsdff2.tmp\symnrt.exe |
"{CD5DC196-3F73-4772-945B-665E0182F5F5}" = protocol=17 | dir=in | app=c:\users\linda\downloads\3gpconvertersetup.exe |
"{DE28F74C-2560-413A-A845-67039C138EFB}" = protocol=17 | dir=in | app=c:\program files\samsung\samsung new pc studio\npsasvr.exe |
"{ED2C8899-0F7B-4055-9B94-6532B733779E}" = protocol=6 | dir=in | app=c:\users\linda\appdata\local\temp\~os4d1b.tmp\rlvknlg.exe |
"{F578644D-E241-428A-9E89-CE2D8448C616}" = protocol=17 | dir=in | app=c:\program files\microsoft lifecam\lifeexp.exe |
"{F8FD3EF0-7E5A-497A-8777-034A106D806C}" = protocol=6 | dir=in | app=c:\program files\microsoft lifecam\lifecam.exe |
"{F9A4C7B5-7EED-4912-984B-C97497DDCC83}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"{FA7A4DCB-A9DE-40B7-9032-CEEC060DDCBF}" = protocol=6 | dir=in | app=c:\program files\relevantknowledge\rlvknlg.exe |
"{FDA65146-4764-4BBA-ACB9-707F8D9A8392}" = protocol=6 | dir=in | app=c:\program files\microsoft lifecam\lifeenc2.exe |
"TCP Query User{0F2098FB-EA86-49F8-A29B-8768B6F0DA2F}C:\program files\java\jre6\bin\java.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\java.exe |
"TCP Query User{1101FFBD-5789-4A32-B8AC-1709CC519868}C:\program files\downloadhq\downloadhq.exe" = protocol=6 | dir=in | app=c:\program files\downloadhq\downloadhq.exe |
"TCP Query User{1ECFC746-D685-4509-80CD-30599263EDE5}C:\program files\mirc\mirc.exe" = protocol=6 | dir=in | app=c:\program files\mirc\mirc.exe |
"TCP Query User{240369D5-ADE2-4739-A3EC-8BA3BE0EF38E}C:\users\linda\appdata\local\apps\2.0\cxy2d0t1.k6h\4w1x71v6.czp\2dff..tion_fcdf29b345c9098a_0001.0000_89b83da73a004bb4\2df freeplay client.exe" = protocol=6 | dir=in | app=c:\users\linda\appdata\local\apps\2.0\cxy2d0t1.k6h\4w1x71v6.czp\2dff..tion_fcdf29b345c9098a_0001.0000_89b83da73a004bb4\2df freeplay client.exe |
"TCP Query User{386FC08D-B078-4239-8D24-E5CB7E91F531}E:\easysetupassistant\easysetupassistant.exe" = protocol=6 | dir=in | app=e:\easysetupassistant\easysetupassistant.exe |
"TCP Query User{3CA50967-2AF0-438F-97E8-F847C184B158}C:\program files\google\google earth\plugin\geplugin.exe" = protocol=6 | dir=in | app=c:\program files\google\google earth\plugin\geplugin.exe |
"TCP Query User{45348198-370E-45DD-A0A6-59DDA100AECA}C:\program files\aim6\aim6.exe" = protocol=6 | dir=in | app=c:\program files\aim6\aim6.exe |
"TCP Query User{4C8E4D3F-260C-4DA7-B125-065E3684BFAE}C:\users\linda\desktop\immaterial and missing power\cowcaster.exe" = protocol=6 | dir=in | app=c:\users\linda\desktop\immaterial and missing power\cowcaster.exe |
"TCP Query User{70FA6043-A046-47C1-91CB-9C4D1EA9DDDB}C:\users\linda\appdata\roaming\damdai\2df\freeplay\freeplay_emu.exe" = protocol=6 | dir=in | app=c:\users\linda\appdata\roaming\damdai\2df\freeplay\freeplay_emu.exe |
"TCP Query User{742FE18D-63D6-466D-8963-FD02FF6EBE04}C:\program files\limewire\limewire.exe" = protocol=6 | dir=in | app=c:\program files\limewire\limewire.exe |
"TCP Query User{8F917F24-F23A-4983-86BE-B749DB05B758}C:\program files\mirc\mirc.exe" = protocol=6 | dir=in | app=c:\program files\mirc\mirc.exe |
"TCP Query User{99DA85AA-6305-4023-B724-BE80C61B7DD7}C:\program files\utorrent\utorrent.exe" = protocol=6 | dir=in | app=c:\program files\utorrent\utorrent.exe |
"TCP Query User{ABDD3112-511B-4A0F-8F8C-AA9A0D1CE77D}C:\program files\ggpo\ggpofba.exe" = protocol=6 | dir=in | app=c:\program files\ggpo\ggpofba.exe |
"TCP Query User{DA3A38E1-7DBD-4A3D-BE9A-73C70294F03D}C:\program files\google\google earth\client\googleearth.exe" = protocol=6 | dir=in | app=c:\program files\google\google earth\client\googleearth.exe |
"TCP Query User{E06C083A-3474-4F7C-9A07-22F93092C34F}C:\program files\starcraft\starcraft.exe" = protocol=6 | dir=in | app=c:\program files\starcraft\starcraft.exe |
"TCP Query User{EB9746BE-FD63-4171-93FE-0AB44B0B40B1}C:\program files\ggpo\ggpo.exe" = protocol=6 | dir=in | app=c:\program files\ggpo\ggpo.exe |
"TCP Query User{EE407EBE-540B-41B9-B988-DC8972BF3A4F}C:\program files\yahoo!\messenger\yahoomessenger.exe" = protocol=6 | dir=in | app=c:\program files\yahoo!\messenger\yahoomessenger.exe |
"TCP Query User{F5BFDC82-B8FB-45DA-BFF9-B0722391FBA0}C:\program files\mozilla firefox\firefox.exe" = protocol=6 | dir=in | app=c:\program files\mozilla firefox\firefox.exe |
"UDP Query User{2A4BE886-5F61-4D30-86FB-0AB39BF102C2}C:\users\linda\desktop\immaterial and missing power\cowcaster.exe" = protocol=17 | dir=in | app=c:\users\linda\desktop\immaterial and missing power\cowcaster.exe |
"UDP Query User{353BD60C-06B6-46D2-9404-C4A3A0CBD9F0}C:\program files\mozilla firefox\firefox.exe" = protocol=17 | dir=in | app=c:\program files\mozilla firefox\firefox.exe |
"UDP Query User{475582BD-48B4-4761-BB0F-9167013D1735}C:\program files\yahoo!\messenger\yahoomessenger.exe" = protocol=17 | dir=in | app=c:\program files\yahoo!\messenger\yahoomessenger.exe |
"UDP Query User{55CFF293-E8DC-4C10-BDF9-37C2953BA3FF}C:\program files\utorrent\utorrent.exe" = protocol=17 | dir=in | app=c:\program files\utorrent\utorrent.exe |
"UDP Query User{568F2C6A-A7B1-46C2-BF79-06497CF725E4}C:\users\linda\appdata\roaming\damdai\2df\freeplay\freeplay_emu.exe" = protocol=17 | dir=in | app=c:\users\linda\appdata\roaming\damdai\2df\freeplay\freeplay_emu.exe |
"UDP Query User{5ADCB34B-4691-4F57-B009-C0326E0A28D9}E:\easysetupassistant\easysetupassistant.exe" = protocol=17 | dir=in | app=e:\easysetupassistant\easysetupassistant.exe |
"UDP Query User{5E6F8B93-C36C-4F12-8767-84BCB51C4958}C:\program files\mirc\mirc.exe" = protocol=17 | dir=in | app=c:\program files\mirc\mirc.exe |
"UDP Query User{71767655-E174-4C00-9127-155D07A6898A}C:\users\linda\appdata\local\apps\2.0\cxy2d0t1.k6h\4w1x71v6.czp\2dff..tion_fcdf29b345c9098a_0001.0000_89b83da73a004bb4\2df freeplay client.exe" = protocol=17 | dir=in | app=c:\users\linda\appdata\local\apps\2.0\cxy2d0t1.k6h\4w1x71v6.czp\2dff..tion_fcdf29b345c9098a_0001.0000_89b83da73a004bb4\2df freeplay client.exe |
"UDP Query User{88F5415E-BC1C-401A-A937-210D78FC6852}C:\program files\ggpo\ggpofba.exe" = protocol=17 | dir=in | app=c:\program files\ggpo\ggpofba.exe |
"UDP Query User{89E07E44-7CD3-4892-BFC2-0DC75B6B0D49}C:\program files\mirc\mirc.exe" = protocol=17 | dir=in | app=c:\program files\mirc\mirc.exe |
"UDP Query User{8F56739C-2F88-4F59-84A1-1F15E4813291}C:\program files\limewire\limewire.exe" = protocol=17 | dir=in | app=c:\program files\limewire\limewire.exe |
"UDP Query User{9529DA20-1D7C-4F2B-A404-C2F14953BDD9}C:\program files\starcraft\starcraft.exe" = protocol=17 | dir=in | app=c:\program files\starcraft\starcraft.exe |
"UDP Query User{9B3700FA-E6BE-4725-B7D7-3BEDE739E5CA}C:\program files\aim6\aim6.exe" = protocol=17 | dir=in | app=c:\program files\aim6\aim6.exe |
"UDP Query User{9DA3A951-78CC-40A4-B7BE-832203F46B4B}C:\program files\google\google earth\client\googleearth.exe" = protocol=17 | dir=in | app=c:\program files\google\google earth\client\googleearth.exe |
"UDP Query User{9E52535D-C886-4FEA-86CD-7AC3674F5F50}C:\program files\ggpo\ggpo.exe" = protocol=17 | dir=in | app=c:\program files\ggpo\ggpo.exe |
"UDP Query User{D82F89D5-7200-4F51-84C4-67D58140AB44}C:\program files\downloadhq\downloadhq.exe" = protocol=17 | dir=in | app=c:\program files\downloadhq\downloadhq.exe |
"UDP Query User{EEE93EC3-520F-412B-89F9-89270D86E2D5}C:\program files\google\google earth\plugin\geplugin.exe" = protocol=17 | dir=in | app=c:\program files\google\google earth\plugin\geplugin.exe |
"UDP Query User{F4C028BE-48EB-48C7-BD4B-3E877486602E}C:\program files\java\jre6\bin\java.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\java.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}" = PDFCreator
"{00E139DD-A721-6CAD-BD4C-6FF597FC52BD}" = Catalyst Control Center Graphics Light
"{015C5B35-B678-451C-9AEE-821E8D69621C}_is1" = PeerBlock 1.1 (r518)
"{02F1F814-3458-9AE2-B360-6BA8C8DF9049}" = Catalyst Control Center Localization Danish
"{0542231F-2010-4C7B-9169-EC0C0CB9F371}" = Sun xVM VirtualBox
"{05BFB060-4F22-4710-B0A2-2801A1B606C5}" = Microsoft Antimalware
"{062D3AEE-6E5C-BCE9-4BE4-1190D29EE352}" = CCC Help Thai
"{06A4892F-EC84-7384-B401-52F30FC122FE}" = Catalyst Control Center Localization Japanese
"{0CC4C654-6439-52F7-FB58-7A6A720166ED}" = CCC Help Turkish
"{132888AE-EF67-41C5-BCA2-7D5D2488AB63}" = Acer HomeMedia Connect
"{14291118-0C19-45EA-A4FA-5C1C0F5FDE09}" = Primo
"{1577A05B-EE62-4BBC-9DB7-FE748FA44EC2}" = NTI CD & DVD-Maker
"{1598034D-7147-432C-8CA8-888E0632D124}" = NTI Backup NOW! 4.7
"{15D967B5-A4BE-42AE-9E84-64CD062B25AA}" = eSobi v2
"{173823FE-9525-76D1-D97B-0FE91E155252}" = Skins
"{1A214451-2E9B-D3D3-47C6-A5721559CB4C}" = CCC Help Chinese Standard
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live Upload Tool
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{26A24AE4-039D-4CA4-87B4-2F83216013FF}" = Java 6 Update 26
"{26A24AE4-039D-4CA4-87B4-2F83217002FF}" = Java 7 Update 2
"{26ED1160-22B1-4b19-8C21-42A1BACAAF75}" = pdfforge Toolbar v4.9
"{277D09B9-B42D-2AC2-C924-EDDFCF2107A3}" = Catalyst Control Center Core Implementation
"{286062BC-BDD5-9672-C020-136205720097}" = Catalyst Control Center Localization German
"{2A697B53-0DE3-42DA-B41D-C3F804B1C538}" = iTunes
"{2A981294-F14C-4F0F-9627-D793270922F8}" = Bonjour
"{2BA19C43-B671-8CEE-9354-4045F2CA7EB4}" = Catalyst Control Center Graphics Full Existing
"{2C1F489E-5720-996D-B4C1-EDC85CE1B65E}" = CCC Help Finnish
"{2CF047B3-E199-A69F-6D92-AADFBA7FF661}" = Catalyst Control Center Localization Chinese Traditional
"{2D62916C-976C-4425-8833-8814D9A7A54D}" = ArcSoft Print Creations
"{2DC94AFD-A6E2-4AB4-9132-4A3F8E07B386}" = Apple Application Support
"{2DFF2037-F943-84F0-BE0C-64D0CDD77E58}" = Catalyst Control Center Localization French
"{36CCF09A-3ABB-C137-4EFD-07E91590D001}" = Catalyst Control Center Localization Swedish
"{39140291-BEC7-7D17-B3AC-BA327051FA0B}" = ccc-core-static
"{3A146779-C87B-332C-EBBC-8579497D68BA}" = Catalyst Control Center Localization Greek
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{41581EF5-45A7-11DA-9D78-000129760D75}" = Acer SlideShow DVD
"{423C4F57-FABA-53C2-BD7C-2C5A2EFC50B4}" = Catalyst Control Center Localization Spanish
"{4254E189-9BDD-3319-C681-F60AF423A509}" = CCC Help Polish
"{431643EB-1687-CB60-C9C9-E9E60937E87E}" = Catalyst Control Center Graphics Previews Vista
"{4677674C-59CE-41B0-AA32-44A30A9D1EEB}" = Catalyst Control Center - Branding
"{47A3FE80-528F-482B-8143-B3A4645557FC}" = Microsoft LifeCam
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4BBCED26-53AA-B0F9-753C-B7D7822F5B54}" = CCC Help Norwegian
"{4F99A59A-FA06-50CE-720F-983F59D14344}" = Catalyst Control Center Localization Thai
"{501451DE-5808-4599-B544-8BD0915B6B24}_is1" = FreeRIP v3.6
"{54B6DC7D-8C5B-4DFB-BC15-C010A3326B2B}" = Microsoft Security Client
"{555A4211-DCF8-2A4B-8521-F077D1C72E52}" = Catalyst Control Center Localization Turkish
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{57752979-A1C9-4C02-856B-FBB27AC4E02C}" = QuickTime
"{5A3C1721-F8ED-11E0-8AFB-B8AC6F97B88E}" = Google Earth
"{5C82DAE5-6EB0-4374-9254-BE3319BA4E82}" = Skype™ 3.8
"{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
"{61F260E7-05DE-9EBD-C5F0-4D8AF9FC16A3}" = CCC Help Chinese Traditional
"{65DA2EC9-0642-47E9-AAE2-B5267AA14D75}" = Activation Assistant for the 2007 Microsoft Office suites
"{68BD9036-0952-4849-AE7A-963BB53EDB71}" = GGPO
"{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
"{6D52C408-B09A-4520-9B18-475B81D393F1}" = Microsoft Works
"{6D8D64BE-F500-55B6-705D-DFD08AFE0624}" = Acrobat.com
"{6DE13770-01B7-4366-8DA6-48237793F445}" = VoiceOver Kit
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{79DD56FC-DB8B-47F5-9C80-78B62E05F9BC}" = Acer ScreenSaver
"{7C03DBF2-0F03-F9E8-3CBE-B07CB7F59318}" = CCC Help Greek
"{81128EE8-8EAD-4DB0-85C6-17C2CE50FF71}" = Windows Live Essentials
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111252743}" = Mahjong Escape Ancient China
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111692950}" = Mahjongg Artifacts
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-112310577}" = Flip Words 2
"{85C89C8C-4FD7-C7E2-97A7-847D947FFDDB}" = Catalyst Control Center Localization Chinese Standard
"{864A44F1-6AB7-5016-B275-DC2AC43D09E7}" = Catalyst Control Center Localization Portuguese
"{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8A7CAA24-7B23-410B-A7C3-F994B0944160}" = Microsoft Virtual PC 2007
"{8E279E44-FBBF-3C62-899C-E8D021697D52}" = ccc-utility
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
"{90120000-0016-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
"{90120000-0018-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
"{90120000-001B-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}_HOMESTUDENTR_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}_HOMESTUDENTR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007
"{90120000-00A1-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}_HOMESTUDENTR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
"{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{9422C8EA-B0C6-4197-B8FC-DC797658CA00}" = Windows Live Sign-in Assistant
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{96C48A0F-0368-554A-6833-F9B7D264B59F}" = CCC Help Italian
"{96C61636-0F21-403C-5348-AAE3C857BD72}" = Catalyst Control Center Graphics Full New
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9AF5B5DE-6161-F211-2052-54BB67F32008}" = Catalyst Control Center Localization Finnish
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable
"{A5633652-3795-4829-BB0B-644F0279E279}" = Acer eDataSecurity Management
"{A85FD55B-891B-4314-97A5-EA96C0BD80B5}" = Windows Live Messenger
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AA4BF92B-2AAF-11DA-9D78-000129760D75}" = Acer HomeMedia
"{AAF4238F-7C29-451D-9925-C753271A5728}" = Microsoft Visual C++ Run Time Lib Setup
"{AB6097D9-D722-4987-BD9E-A076E2848EE2}" = Acer Empowering Technology
"{AC76BA86-7AD7-1033-7B44-A93000000001}" = Adobe Reader 9.3.3
"{AC76BA86-7AD7-5464-3428-900000000004}" = Spelling Dictionaries Support For Adobe Reader 9
"{B075B92E-C60E-57C2-BDA4-A60E5FF71591}" = CCC Help Dutch
"{B145EC69-66F5-11D8-9D75-000129760D75}" = Acer DVDivine
"{B2544A03-10D0-4E5E-BA69-0362FFC20D18}" = OGA Notifier 2.0.0048.0
"{B3BC9DB1-0B0A-48B0-B86B-EA77CAA7F800}" = Microsoft Corporation
"{B420E03C-A7A8-7142-8BF1-D6798B98AC8A}" = CCC Help Korean
"{B580C409-E16F-44FF-904D-3AE94E113BE0}" = Acer HomeMedia Trial Creator
"{BE63EA03-29BF-4E9D-73C9-095850F069C8}" = CCC Help Swedish
"{BFFDAD41-BAAB-5602-CD1A-EE1171D14D40}" = Catalyst Control Center Localization Hungarian
"{C3452F04-DA8E-2119-1925-D0E050A64186}" = ATI Catalyst Install Manager
"{C41300B9-185D-475E-BFEC-39EF732F19B1}" = Apple Software Update
"{C8CF9485-B188-A9B0-FEE3-3F423779F89C}" = Catalyst Control Center Localization Dutch
"{CA9ED5E4-1548-485B-A293-417840060158}" = ArcSoft Print Creations - Photo Calendar
"{CACAEB5F-174D-4C7C-AC56-A33289A807CA}" = Apple Mobile Device Support
"{CE2121C6-C94D-4A73-8EA4-6943F33EE335}" = Music Transfer
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{CE386A4E-D0DA-4208-8235-BCE43275C694}" = LightScribe 1.4.142.1
"{CE65A9A0-9686-45C6-9098-3C9543A412F0}" = Acer eSettings Management
"{CEA453C2-40E0-9B65-A90D-DA8611C29F32}" = CCC Help Hungarian
"{CF097717-F174-4144-954A-FBC4BF301033}" = Nero 7 Ultra Edition
"{D17E2A02-5D61-C6F9-8D78-90FE1112C19A}" = CCC Help Spanish
"{D462BF9E-0C35-4705-BF9B-3DF9F3816643}" = Acer ePerformance Management
"{D5068583-D569-468B-9755-5FBF5848F46F}" = Sony Picture Utility
"{D53BAED6-CF1C-FF87-DE1A-D879D22EF67C}" = Catalyst Control Center Localization Czech
"{D5C388EB-9848-80F6-02F4-DBFED2DF02E8}" = CCC Help French
"{D7E3DAA3-78CB-A30F-FD58-94ED333AE524}" = CCC Help English
"{DABF43D9-1104-4764-927B-5BED1274A3B0}" = Runtime
"{DE44BDEC-6005-6676-DBA4-FC314F53DD49}" = Catalyst Control Center Localization Norwegian
"{E05830A9-573F-8253-C280-921FF1474DA5}" = Catalyst Control Center Localization Russian
"{E0D6A886-A34F-7303-C485-91FA655E83D5}" = CCC Help Japanese
"{E53B1B0E-C8DA-4105-2C41-210571998AB6}" = Catalyst Control Center Localization Korean
"{E927B65C-A081-8B68-705C-932883697B80}" = Catalyst Control Center Localization Italian
"{ED00D08A-3C5F-488D-93A0-A04F21F23956}" = Windows Live Communications Platform
"{EF70BC30-AEE6-5C73-DC7C-3C3B9A73D8FE}" = Catalyst Control Center Localization Polish
"{EFBDC2B0-FAA8-4B78-8DE1-AEBE7958FA37}" = Acer Arcade Live Main Page
"{F04F9557-81A9-4293-BC49-2C216FA325A7}" = ArcSoft Print Creations - Greeting Card
"{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F193FC0E-9E18-40FC-A974-509A1BDD240A}" = Samsung New PC Studio
"{F37200BB-2C03-42D9-DBE3-C6240D53DF06}" = CCC Help Portuguese
"{F57D72B6-7FBB-3C60-A19D-55C7B8042934}" = CCC Help Russian
"{F6BD194C-4190-4D73-B1B1-C48C99921BFE}" = Windows Live Call
"{F6EFFB76-4A07-11DA-9D78-000129760D75}" = Acer DV Magician
"{F79A208D-D929-11D9-9D77-000129760D75}" = Acer VideoMagician
"{F7FE23D7-980C-6250-6873-4BD1660FE4CB}" = CCC Help Czech
"{F90E2693-78D9-7CCB-4617-2383A0A31CD2}" = CCC Help Danish
"{F917BAC3-BC13-E3A0-EE98-74D9DA33BAE6}" = CCC Help German
"7-Zip" = 7-Zip 4.65
"Acer Assist" = Acer Assist
"Acer GameZone Console_is1" = Acer GameZone Console DTV 2.0.1.1
"Acer Registration" = Acer Registration
"Activation Assistant for the 2007 Microsoft Office suites" = Activation Assistant for the 2007 Microsoft Office suites
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.6
"AOL Uninstaller" = AOL Uninstaller (Choose which Products to Remove)
"Audacity 1.3 Beta (Unicode)_is1" = Audacity 1.3.13 (Unicode)
"AviSynth" = AviSynth 2.5
"Bejeweled 2" = Bejeweled 2
"Bejeweled 3" = Bejeweled 3
"BFGC" = Big Fish Games Client
"Bicycle Card Games 1.0" = Bicycle Card Games
"Carbonite Backup" = Carbonite
"Champ500" = Championship Five Hundred All-Stars 7.30
"CleanUp!" = CleanUp!
"DeskPins" = DeskPins (remove only)
"Digital Editions" = Adobe Digital Editions
"EPSON Scanner" = EPSON Scan
"EPSON Stylus NX400 Series" = EPSON Stylus NX400 Series Printer Uninstall
"Express" = Express Dictate
"ExpressBurn" = Express Burn Disc Burning Software
"FileHippo.com" = FileHippo.com Update Checker
"foobar2000" = foobar2000 v0.9.6.8
"Free Audio Editor" = Free Audio Editor
"Google Updater" = Google Updater
"GoToAssist Express Customer" = GoToAssist Customer 1.5.0.240
"HOMESTUDENTR" = Microsoft Office Home and Student 2007
"HotspotShield" = Hotspot Shield 2.24
"InstallShield_{1577A05B-EE62-4BBC-9DB7-FE748FA44EC2}" = NTI CD & DVD-Maker
"InstallShield_{1598034D-7147-432C-8CA8-888E0632D124}" = NTI Backup NOW! 4.7
"InstallShield_{15D967B5-A4BE-42AE-9E84-64CD062B25AA}" = eSobi v2
"InstallShield_{F193FC0E-9E18-40FC-A974-509A1BDD240A}" = Samsung New PC Studio
"iSofter DVD Audio Ripper Deluxe_is1" = iSofter DVD Audio Ripper Deluxe 3.0.2007.228
"KLiteCodecPack_is1" = K-Lite Codec Pack 7.6.0 (Basic)
"Kobo" = Kobo
"Mahjong Towers Eternity" = Mahjong Towers Eternity
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.60.0.1800
"MediaCoder" = MediaCoder 0.7.2.4536
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft Security Client" = Microsoft Security Essentials
"mIRC" = mIRC
"Mozilla Firefox 9.0.1 (x86 en-US)" = Mozilla Firefox 9.0.1 (x86 en-US)
"MSRS" = MSRS Recording System
"NVIDIA Drivers" = NVIDIA Drivers
"Pretty Good Solitaire_is1" = Pretty Good Solitaire version 12.0.1
"RealPlayer 12.0" = RealPlayer
"Recordpad" = RecordPad Sound Recorder
"SAMSUNG Mobile Modem" = SAMSUNG Mobile Modem Driver Set
"Samsung Mobile phone USB driver" = Samsung Mobile phone USB driver Software
"SAMSUNG Mobile USB Modem" = SAMSUNG Mobile USB Modem Software
"SAMSUNG Mobile USB Modem 1.0" = SAMSUNG Mobile USB Modem 1.0 Software
"Scribe" = Express Scribe
"SoftwareUpdUtility" = Download Updater (AOL LLC)
"Switch" = Switch Sound File Converter
"SystemRequirementsLab" = System Requirements Lab
"VLC media player" = VLC media player 0.9.8a
"VRS" = VRS Recording System
"WhoCrashed_is1" = WhoCrashed 3.03
"WinGimp-2.0_is1" = GIMP 2.6.11
"WinLiveSuite_Wave3" = Windows Live Essentials
"WinRAR archiver" = WinRAR archiver
"WinZip Self-Extractor" = WinZip Self-Extractor
"Yahoo! Companion" = Yahoo! Barre d'outils
"Yahoo! Messenger" = Yahoo! Messenger
========== HKEY_USERS Uninstall List ========== [HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
========== HKEY_USERS Uninstall List ========== [HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
========== HKEY_USERS Uninstall List ========== [HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
========== HKEY_USERS Uninstall List ========== [HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
========== HKEY_USERS Uninstall List ========== [HKEY_USERS\S-1-5-21-53930244-3333630975-3341998274-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Google Chrome" = Google Chrome
"Neo Final Burn Alpha" = Neo Final Burn Alpha
========== Last 10 Event Log Errors ========== [ Application Events ]
Error - 9/14/2011 08:07:03 | Computer Name = Linda-PC | Source = Application Error | ID = 1000
Description = Faulting application cvh.exe, version 14.0.6009.1000, time stamp 0x4cbf0774,
faulting module ntdll.dll, version 6.0.6002.18327, time stamp 0x4cb73436, exception
code 0xc0000374, fault offset 0x000b06fc, process id 0x1ae4, application start time
0x01cc72d6d01fde39.
Error - 9/14/2011 22:38:39 | Computer Name = Linda-PC | Source = Windows Search Service | ID = 3013
Description =
Error - 9/14/2011 23:31:09 | Computer Name = Linda-PC | Source = Windows Search Service | ID = 3013
Description =
Error - 9/15/2011 00:38:39 | Computer Name = Linda-PC | Source = Windows Search Service | ID = 3013
Description =
Error - 9/18/2011 08:50:30 | Computer Name = Linda-PC | Source = Windows Search Service | ID = 3013
Description =
Error - 9/24/2011 09:50:41 | Computer Name = Linda-PC | Source = Windows Search Service | ID = 3013
Description =
Error - 9/25/2011 09:34:40 | Computer Name = Linda-PC | Source = Application Error | ID = 1000
Description = Faulting application CWPlayer.exe, version 0.0.0.0, time stamp 0x00000000,
faulting module ntdll.dll, version 6.0.6002.18327, time stamp 0x4cb73436, exception
code 0xc0000005, fault offset 0x0004a132, process id 0x1c4c, application start time
0x01cc7ae609bc1690.
Error - 9/27/2011 07:36:03 | Computer Name = Linda-PC | Source = Application Error | ID = 1000
Description = Faulting application cvh.exe, version 14.0.6009.1000, time stamp 0x4cbf0774,
faulting module ntdll.dll, version 6.0.6002.18327, time stamp 0x4cb73436, exception
code 0xc0000374, fault offset 0x000b06fc, process id 0x8c8, application start time
0x01cc7d09a0b0a2d0.
Error - 9/30/2011 16:56:29 | Computer Name = Linda-PC | Source = WinMgmt | ID = 10
Description =
Error - 9/30/2011 16:57:31 | Computer Name = Linda-PC | Source = Application Error | ID = 1000
Description = Faulting application CVHSVC.EXE, version 14.0.6009.1000, time stamp
0x4cbf07ed, faulting module ntdll.dll, version 6.0.6002.18327, time stamp 0x4cb73436,
exception code 0xc0000374, fault offset 0x000b06fc, process id 0x1104, application
start time 0x01cc7fb39061c5b0.
[ System Events ]
Error - 1/28/2012 14:05:57 | Computer Name = Linda-PC | Source = ACPI | ID = 327685
Description = AMLI: ACPI BIOS is attempting to write to an illegal IO port address
(0x70), which lies in the 0x70 - 0x71 protected address range. This could lead to
system instability. Please contact your system vendor for technical assistance.
Error - 1/28/2012 14:05:57 | Computer Name = Linda-PC | Source = ACPI | ID = 327684
Description = AMLI: ACPI BIOS is attempting to read from an illegal IO port address
(0x71), which lies in the 0x70 - 0x71 protected address range. This could lead to
system instability. Please contact your system vendor for technical assistance.
Error - 1/28/2012 14:08:31 | Computer Name = Linda-PC | Source = DCOM | ID = 10005
Description =
Error - 1/28/2012 14:08:38 | Computer Name = Linda-PC | Source = DCOM | ID = 10005
Description =
Error - 1/28/2012 14:08:41 | Computer Name = Linda-PC | Source = DCOM | ID = 10005
Description =
Error - 1/28/2012 14:08:45 | Computer Name = Linda-PC | Source = DCOM | ID = 10005
Description =
Error - 1/28/2012 14:08:49 | Computer Name = Linda-PC | Source = Service Control Manager | ID = 7001
Description =
Error - 1/28/2012 14:08:49 | Computer Name = Linda-PC | Source = Service Control Manager | ID = 7026
Description =
Error - 1/28/2012 14:08:50 | Computer Name = Linda-PC | Source = DCOM | ID = 10005
Description =
Error - 1/28/2012 14:08:51 | Computer Name = Linda-PC | Source = DCOM | ID = 10005
Description =
< End of report >